[Git][security-tracker-team/security-tracker][master] Add Debian bug references for some issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Aug 20 19:54:42 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ea492628 by Salvatore Bonaccorso at 2026-08-20T20:31:14+02:00
Add Debian bug references for some issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -738,19 +738,19 @@ CVE-2026-XXXX [arbitrary code execution upon opening file]
 	NOTE: Mitigated by: https://cgit.git.savannah.gnu.org/cgit/emacs.git/commit/?h=emacs-31&id=8466eb44991707d128110bdc549fad14c8e1d61e
 	NOTE: Fixed by: https://cgit.git.savannah.gnu.org/cgit/emacs.git/commit/?id=c1337758a6c00e22e2a685e0556068fd73fa9a54
 CVE-2025-30156
-	- ceph <unfixed>
+	- ceph <unfixed> (bug #1144947)
 	NOTE: https://github.com/ceph/ceph/security/advisories/GHSA-7q3q-3975-qw3q
 	NOTE: https://docs.ceph.com/en/latest/security/CVE-2025-30156/
 CVE-2026-54330
-	- ceph <unfixed>
+	- ceph <unfixed> (bug #1144947)
 	NOTE: https://github.com/ceph/ceph/security/advisories/GHSA-rmjq-ffrm-j6vj
 	NOTE: https://docs.ceph.com/en/latest/security/CVE-2026-54330/
 CVE-2026-50152
-	- ceph <unfixed>
+	- ceph <unfixed> (bug #1144947)
 	NOTE: https://github.com/ceph/ceph/security/advisories/GHSA-rg9p-5xcp-wm8h
 	NOTE: https://docs.ceph.com/en/latest/security/CVE-2026-50152/
 CVE-2026-39944
-	- ceph <unfixed>
+	- ceph <unfixed> (bug #1144947)
 	NOTE: https://github.com/ceph/ceph/security/advisories/GHSA-j73r-qrgx-jvq2
 	NOTE: https://docs.ceph.com/en/latest/security/CVE-2026-39944/
 CVE-2026-76614 (OpenEMR before 8.3.0 contains a path traversal vulnerability in the ED ...)
@@ -4644,10 +4644,10 @@ CVE-2026-23938 (An authenticated administrator is able to crash Zabbix server or
 	[bookworm] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
 	NOTE: https://support.zabbix.com/browse/ZBX-28075
 CVE-2026-23937 (The Zabbix API host.get action can be exploited by authenticated users ...)
-	- zabbix <unfixed>
+	- zabbix <unfixed> (bug #1144945)
 	NOTE: https://support.zabbix.com/browse/ZBX-28074
 CVE-2026-23935 (A Zabbix administrator is able to read out of bounds memory by utilizi ...)
-	- zabbix <unfixed>
+	- zabbix <unfixed> (bug #1144946)
 	[trixie] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
 	[bookworm] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
 	NOTE: https://support.zabbix.com/browse/ZBX-28073
@@ -4678,7 +4678,7 @@ CVE-2026-23922 (The email media OAuth field 'Client secret' cannot be read after
 	- zabbix <not-affected> (Only affects 7.4.x)
 	NOTE: https://support.zabbix.com/browse/ZBX-28067
 CVE-2026-1199 (Zabbix API and Frontend login lockout mechanism has a flaw where sever ...)
-	- zabbix <unfixed>
+	- zabbix <unfixed> (bug #1144944)
 	[trixie] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
 	[bookworm] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
 	NOTE: https://support.zabbix.com/browse/ZBX-28076



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ea492628d5e8ca589b31a45aa0a1ee888002a09d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ea492628d5e8ca589b31a45aa0a1ee888002a09d
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260820/c2976fd2/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list