[Git][security-tracker-team/security-tracker][master] new freeipa issues
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Fri Aug 21 08:10:16 BST 2026
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
19ecf1b8 by Moritz Muehlenhoff at 2026-08-21T08:51:28+02:00
new freeipa issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -192,13 +192,21 @@ CVE-2026-73253 (Mongoose is an embedded web server and network library. Prior to
CVE-2026-73220 (CVAT is an open source interactive video and image annotation tool for ...)
NOT-FOR-US: Computer Vision Annotation Tool (CVAT)
CVE-2026-73199 (A flaw was found in the `ipa-enrollment` SLAPI plugin. A remote authen ...)
- TODO: check
+ - freeipa <unfixed> (unimportant)
+ NOTE: FreeIPA in Debian only builds the client packages, not the server
+ NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2471741
CVE-2026-73198 (A flaw was found in FreeIPA. A remote, unauthenticated attacker can ex ...)
- TODO: check
+ - freeipa <unfixed> (unimportant)
+ NOTE: FreeIPA in Debian only builds the client packages, not the server
+ NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2472960
CVE-2026-73197 (A flaw was found in FreeIPA. A remote, unauthenticated attacker can ex ...)
- TODO: check
+ - freeipa <unfixed> (unimportant)
+ NOTE: FreeIPA in Debian only builds the client packages, not the server
+ NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2474697
CVE-2026-73196 (A flaw was found in FreeIPA. A low-privilege authenticated user can ex ...)
- TODO: check
+ - freeipa <unfixed> (unimportant)
+ NOTE: FreeIPA in Debian only builds the client packages, not the server
+ NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2474712
CVE-2026-72854 (msgpack_unpacker_expand_buffer in src/unpack.c, reached through the pu ...)
- msgpack-c <unfixed>
NOTE: https://github.com/msgpack/msgpack-c/issues/1181
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/19ecf1b8109e1ba632845562f4dc2f20b8b7d1a9
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/19ecf1b8109e1ba632845562f4dc2f20b8b7d1a9
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260821/04d068b1/attachment.htm>
More information about the debian-security-tracker-commits
mailing list