[Git][security-tracker-team/security-tracker][master] two zabbix issues n/a
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Sun Aug 23 17:44:33 BST 2026
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
5ebf9e9a by Moritz Muehlenhoff at 2026-08-23T18:43:35+02:00
two zabbix issues n/a
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -7254,17 +7254,13 @@ CVE-2026-23935 (A Zabbix administrator is able to read out of bounds memory by u
[bookworm] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
NOTE: https://support.zabbix.com/browse/ZBX-28073
CVE-2026-23934 (An authenticated user is able to cause disproportionate CPU load on th ...)
- - zabbix <unfixed>
- [trixie] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
- [bookworm] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
+ - zabbix <not-affected> (Only affects 7.4.x)
NOTE: https://support.zabbix.com/browse/ZBX-28072
CVE-2026-23933 (In Zabbix 7.4 the cryptographic key used for signing Frontend sessions ...)
- zabbix <not-affected> (Only affects 7.4.x)
NOTE: https://support.zabbix.com/browse/ZBX-28071
CVE-2026-23931 (The frontend validatate.api.exists action can be exploited by authenti ...)
- - zabbix <unfixed>
- [trixie] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
- [bookworm] - zabbix <ignored> (The WEB UI is only supported for access by trusted users, no security updates issued for it, #1124558)
+ - zabbix <not-affected> (Only affects 7.4.x)
NOTE: https://support.zabbix.com/browse/ZBX-28070
CVE-2026-23930 (An unauthenticated user is able to cause disproportionate CPU load on ...)
- zabbix 1:7.0.27+dfsg-1
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5ebf9e9abbffc2a9c073280a2117cee701b55b81
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5ebf9e9abbffc2a9c073280a2117cee701b55b81
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260823/6230adb5/attachment.htm>
More information about the debian-security-tracker-commits
mailing list