[Git][security-tracker-team/security-tracker][master] Add CVE-2026-77118/graphicsmagick

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Aug 20 22:11:41 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
2b7bc864 by Salvatore Bonaccorso at 2026-08-20T22:07:17+02:00
Add CVE-2026-77118/graphicsmagick

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9,7 +9,8 @@ CVE-2026-77176 (A flaw was found in Kata Containers. In configurations utilizing
 CVE-2026-77148 (A vulnerability was found in Comfast CF-N1-S 2.6.0.1. This impacts the ...)
 	NOT-FOR-US: Comfast
 CVE-2026-77118 (A heap out-of-bounds write exists in the Photo CD (PCD) decoder of Gra ...)
-	TODO: check
+	- graphicsmagick 1.4+really1.3.48-1
+	NOTE: Fixed by: https://foss.heptapod.net/graphicsmagick/graphicsmagick/-/commit/937cdd9920bd966517c5f7a3595397af96b6ab6f (GraphicsMagick-1_3_48)
 CVE-2026-77085 (n8n before 2.34.1 and 2.33.x before 2.33.4 contains an SSRF protection ...)
 	NOT-FOR-US: n8n
 CVE-2026-77084 (n8n before 1.123.69 (and 2.x before 2.33.4 / 2.34.1) contains a code e ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2b7bc86485f89bdc2f36c70b62b705aca2d913aa

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2b7bc86485f89bdc2f36c70b62b705aca2d913aa
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260820/43e1bab4/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list