[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-19685

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Aug 22 06:53:31 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d16ebe4d by Salvatore Bonaccorso at 2026-08-22T07:52:37+02:00
Update status for CVE-2026-19685

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -697,7 +697,10 @@ CVE-2026-74580 (In the Linux kernel, the following vulnerability has been resolv
 	NOTE: https://git.kernel.org/linus/de845981da67a6b049080c87e605130b0c30adc5 (7.2-rc7)
 CVE-2026-19685
 	- network-manager <unfixed>
+	[trixie] - network-manager <not-affected> (Fix for CVE-2025-9615 not applied)
 	NOTE: https://gitlab.freedesktop.org/NetworkManager/NetworkManager/-/merge_requests/2513
+	NOTE: Introduced with: https://gitlab.freedesktop.org/NetworkManager/NetworkManager/-/commit/e85cc46d0b36cdba50fe8411cc93d55a49ebfccf (1.57.1-dev)
+	NOTE: The introducing commit is part of the patchseries for CVE-2025-9615
 	NOTE: Fixed by: https://gitlab.freedesktop.org/NetworkManager/NetworkManager/-/commit/a8e87381a3e70060abd721d9a347f42b2ba68e6e
 CVE-2026-9033 (An unauthenticated attacker with network access to the captive portal  ...)
 	NOT-FOR-US: TPLink



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d16ebe4d1b5f5ef7ade1805233e646b7f036f8c5

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d16ebe4d1b5f5ef7ade1805233e646b7f036f8c5
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260822/ebb4982f/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list