[Git][security-tracker-team/security-tracker][master] new freeipa issues

Moritz Muehlenhoff (@jmm) jmm at debian.org
Fri Aug 21 08:10:16 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
19ecf1b8 by Moritz Muehlenhoff at 2026-08-21T08:51:28+02:00
new freeipa issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -192,13 +192,21 @@ CVE-2026-73253 (Mongoose is an embedded web server and network library. Prior to
 CVE-2026-73220 (CVAT is an open source interactive video and image annotation tool for ...)
 	NOT-FOR-US: Computer Vision Annotation Tool (CVAT)
 CVE-2026-73199 (A flaw was found in the `ipa-enrollment` SLAPI plugin. A remote authen ...)
-	TODO: check
+	- freeipa <unfixed> (unimportant)
+	NOTE: FreeIPA in Debian only builds the client packages, not the server
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2471741
 CVE-2026-73198 (A flaw was found in FreeIPA. A remote, unauthenticated attacker can ex ...)
-	TODO: check
+	- freeipa <unfixed> (unimportant)
+	NOTE: FreeIPA in Debian only builds the client packages, not the server
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2472960
 CVE-2026-73197 (A flaw was found in FreeIPA. A remote, unauthenticated attacker can ex ...)
-	TODO: check
+	- freeipa <unfixed> (unimportant)
+	NOTE: FreeIPA in Debian only builds the client packages, not the server
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2474697
 CVE-2026-73196 (A flaw was found in FreeIPA. A low-privilege authenticated user can ex ...)
-	TODO: check
+	- freeipa <unfixed> (unimportant)
+	NOTE: FreeIPA in Debian only builds the client packages, not the server
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2474712
 CVE-2026-72854 (msgpack_unpacker_expand_buffer in src/unpack.c, reached through the pu ...)
 	- msgpack-c <unfixed>
 	NOTE: https://github.com/msgpack/msgpack-c/issues/1181



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/19ecf1b8109e1ba632845562f4dc2f20b8b7d1a9

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/19ecf1b8109e1ba632845562f4dc2f20b8b7d1a9
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260821/04d068b1/attachment.htm>


More information about the debian-security-tracker-commits mailing list