[Git][security-tracker-team/security-tracker][master] Merge Linux CVEs from kernel-sec
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Thu Aug 13 15:39:37 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
1c4c50d4 by Salvatore Bonaccorso at 2026-08-13T16:38:40+02:00
Merge Linux CVEs from kernel-sec
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,3 +1,18 @@
+CVE-2026-68454 [KVM: s390: pci: Fix handling of AIF enable without AISB]
+ - linux 7.1.5-1
+ [trixie] - linux 6.12.100-1
+ [bookworm] - linux 6.1.180-1
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/3e3aa6da87d30a0064a17b836685cd43c90a3572 (7.2-rc4)
+CVE-2026-68453 [s390/zcrypt: Fix buffer over-read in cca_cipher2protkey]
+ - linux 7.1.8-1
+ NOTE: https://git.kernel.org/linus/36b230835b8a008266aad22168ca52afacc8a58d (7.2-rc6)
+CVE-2026-68452 [s390/zcrypt: Validate length for CCA AES cipher key requests]
+ - linux 7.1.8-1
+ NOTE: https://git.kernel.org/linus/06afe425d5283b9764303de47f554da5a808ce8a (7.2-rc6)
+CVE-2026-68451 [s390/zcrypt: Validate length for CCA ECC private key requests]
+ - linux 7.1.8-1
+ NOTE: https://git.kernel.org/linus/a9ae0f6dd45c3ccc1d69363f7aea8af179122730 (7.2-rc6)
CVE-2026-7366 (IBM DataPower Gateway 11.0.0.0 through 11.0.0.1 and IBM DataPower Gate ...)
NOT-FOR-US: IBM
CVE-2026-73519 (WolfStack before 25.9.2 contains a hard-coded cluster-authentication s ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1c4c50d4d6509d1ad5b9abddda31847e5c9cd43c
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1c4c50d4d6509d1ad5b9abddda31847e5c9cd43c
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260813/f1bacb3a/attachment.htm>
More information about the debian-security-tracker-commits
mailing list