[Git][security-tracker-team/security-tracker][master] Reference directly commit from 1.6.x branch for CVE-2026-34502

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Aug 7 19:54:58 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a8250106 by Salvatore Bonaccorso at 2026-08-07T20:52:59+02:00
Reference directly commit from 1.6.x branch for CVE-2026-34502

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -877,7 +877,7 @@ CVE-2026-3430 (The Creative Mail WordPress plugin from 1.6.5 to 1.6.9 does not s
 CVE-2026-34502 (Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Ut ...)
 	- apr-util 1.6.4-1 (bug #1143837)
 	NOTE: https://lists.apache.org/thread/spk5643m4vq0mb8h5b9hz9gkp57ombl8
-	NOTE: Fixed by https://github.com/apache/apr-util/commit/e0221ffd4df4e08ebedff98222df9b79483f113d
+	NOTE: Fixed by: https://github.com/apache/apr-util/commit/f1c98dd0847c43375daf3789c936685adbc6d872 (1.6.4-rc1-candidate)
 CVE-2026-34501 (Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Ut ...)
 	- apr-util 1.6.4-1 (bug #1143837)
 	NOTE: https://lists.apache.org/thread/o8h6c7cq86fplxlnry6c3rn9x0ovq8mv



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a82501061900ba7c876dc03100ea05812b9b0543

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a82501061900ba7c876dc03100ea05812b9b0543
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260807/adf47a4e/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list