[Git][security-tracker-team/security-tracker][master] two zabbix issues n/a

Moritz Muehlenhoff (@jmm) jmm at debian.org
Sun Aug 23 17:44:33 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5ebf9e9a by Moritz Muehlenhoff at 2026-08-23T18:43:35+02:00
two zabbix issues n/a

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -7254,17 +7254,13 @@ CVE-2026-23935 (A Zabbix administrator is able to read out of bounds memory by u
 	[bookworm] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
 	NOTE: https://support.zabbix.com/browse/ZBX-28073
 CVE-2026-23934 (An authenticated user is able to cause disproportionate CPU load on th ...)
-	- zabbix <unfixed>
-	[trixie] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
-	[bookworm] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
+	- zabbix <not-affected> (Only affects 7.4.x)
 	NOTE: https://support.zabbix.com/browse/ZBX-28072
 CVE-2026-23933 (In Zabbix 7.4 the cryptographic key used for signing Frontend sessions ...)
 	- zabbix <not-affected> (Only affects 7.4.x)
 	NOTE: https://support.zabbix.com/browse/ZBX-28071
 CVE-2026-23931 (The frontend validatate.api.exists action can be exploited by authenti ...)
-	- zabbix <unfixed>
-	[trixie] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
-	[bookworm] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
+	- zabbix <not-affected> (Only affects 7.4.x)
 	NOTE: https://support.zabbix.com/browse/ZBX-28070
 CVE-2026-23930 (An unauthenticated user is able to cause disproportionate CPU load on  ...)
 	- zabbix 1:7.0.27+dfsg-1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5ebf9e9abbffc2a9c073280a2117cee701b55b81

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5ebf9e9abbffc2a9c073280a2117cee701b55b81
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260823/6230adb5/attachment.htm>


More information about the debian-security-tracker-commits mailing list