[Git][security-tracker-team/security-tracker][master] Add Debian bug references for some issues
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Thu Aug 20 19:54:42 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
ea492628 by Salvatore Bonaccorso at 2026-08-20T20:31:14+02:00
Add Debian bug references for some issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -738,19 +738,19 @@ CVE-2026-XXXX [arbitrary code execution upon opening file]
NOTE: Mitigated by: https://cgit.git.savannah.gnu.org/cgit/emacs.git/commit/?h=emacs-31&id=8466eb44991707d128110bdc549fad14c8e1d61e
NOTE: Fixed by: https://cgit.git.savannah.gnu.org/cgit/emacs.git/commit/?id=c1337758a6c00e22e2a685e0556068fd73fa9a54
CVE-2025-30156
- - ceph <unfixed>
+ - ceph <unfixed> (bug #1144947)
NOTE: https://github.com/ceph/ceph/security/advisories/GHSA-7q3q-3975-qw3q
NOTE: https://docs.ceph.com/en/latest/security/CVE-2025-30156/
CVE-2026-54330
- - ceph <unfixed>
+ - ceph <unfixed> (bug #1144947)
NOTE: https://github.com/ceph/ceph/security/advisories/GHSA-rmjq-ffrm-j6vj
NOTE: https://docs.ceph.com/en/latest/security/CVE-2026-54330/
CVE-2026-50152
- - ceph <unfixed>
+ - ceph <unfixed> (bug #1144947)
NOTE: https://github.com/ceph/ceph/security/advisories/GHSA-rg9p-5xcp-wm8h
NOTE: https://docs.ceph.com/en/latest/security/CVE-2026-50152/
CVE-2026-39944
- - ceph <unfixed>
+ - ceph <unfixed> (bug #1144947)
NOTE: https://github.com/ceph/ceph/security/advisories/GHSA-j73r-qrgx-jvq2
NOTE: https://docs.ceph.com/en/latest/security/CVE-2026-39944/
CVE-2026-76614 (OpenEMR before 8.3.0 contains a path traversal vulnerability in the ED ...)
@@ -4644,10 +4644,10 @@ CVE-2026-23938 (An authenticated administrator is able to crash Zabbix server or
[bookworm] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
NOTE: https://support.zabbix.com/browse/ZBX-28075
CVE-2026-23937 (The Zabbix API host.get action can be exploited by authenticated users ...)
- - zabbix <unfixed>
+ - zabbix <unfixed> (bug #1144945)
NOTE: https://support.zabbix.com/browse/ZBX-28074
CVE-2026-23935 (A Zabbix administrator is able to read out of bounds memory by utilizi ...)
- - zabbix <unfixed>
+ - zabbix <unfixed> (bug #1144946)
[trixie] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
[bookworm] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
NOTE: https://support.zabbix.com/browse/ZBX-28073
@@ -4678,7 +4678,7 @@ CVE-2026-23922 (The email media OAuth field 'Client secret' cannot be read after
- zabbix <not-affected> (Only affects 7.4.x)
NOTE: https://support.zabbix.com/browse/ZBX-28067
CVE-2026-1199 (Zabbix API and Frontend login lockout mechanism has a flaw where sever ...)
- - zabbix <unfixed>
+ - zabbix <unfixed> (bug #1144944)
[trixie] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
[bookworm] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
NOTE: https://support.zabbix.com/browse/ZBX-28076
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ea492628d5e8ca589b31a45aa0a1ee888002a09d
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ea492628d5e8ca589b31a45aa0a1ee888002a09d
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260820/c2976fd2/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list