[Git][security-tracker-team/security-tracker][master] 2 commits: Track status for Wireshark CVEs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Mon Aug 24 22:04:33 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
75c57d1b by Matheus Polkorny at 2026-08-23T18:58:27-03:00
Track status for Wireshark CVEs
Mark CVE-2026-15165, CVE-2026-15172, CVE-2026-19694
as not-affected for trixie, bookworm and bullseye
- - - - -
75cee8f1 by Salvatore Bonaccorso at 2026-08-24T22:53:57+02:00
Merge branch 'master' into 'master'
Track status for Wireshark CVEs
See merge request security-tracker-team/security-tracker!323
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -15322,6 +15322,9 @@ CVE-2026-19695 (Gammu DCT3 trace file parser crash in 4.6.0 to 4.6.7 allows deni
NOTE: https://gitlab.com/wireshark/wireshark/-/work_items/21475
CVE-2026-19694 (TTX Logger file parser crash in 4.6.0 to 4.6.7 allows denial of servic ...)
- wireshark <unfixed> (bug #1144924)
+ [trixie] - wireshark <not-affected> (Only affects 4.6)
+ [bookworm] - wireshark <not-affected> (Only affects 4.6)
+ [bullseye] - wireshark <not-affected> (Only affects 4.6)
NOTE: https://www.wireshark.org/security/wnpa-sec-2026-68.html
NOTE: https://gitlab.com/wireshark/wireshark/-/work_items/21389
CVE-2026-19487 (Perl versions from 5.9.4 before 5.41.9 produce incorrect regular expre ...)
@@ -50097,7 +50100,9 @@ CVE-2026-15174 (Catapult DCT2000 protocol dissector crash in Wireshark 4.6.0 to
NOTE: https://www.wireshark.org/security/wnpa-sec-2026-52.html
CVE-2026-15173 (pcapng file parser crash in Wireshark 4.6.0 to 4.6.6 allows denial of ...)
- wireshark <unfixed> (bug #1142268)
- [trixie] - wireshark <no-dsa> (Minor issue)
+ [trixie] - wireshark <not-affected> (Only affects 4.6)
+ [bookworm] - wireshark <not-affected> (Only affects 4.6)
+ [bullseye] - wireshark <not-affected> (Only affects 4.6)
NOTE: https://www.wireshark.org/security/wnpa-sec-2026-53.html
CVE-2026-15172 (FMP/NOTIFY protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4. ...)
- wireshark <unfixed> (bug #1142268)
@@ -50129,7 +50134,9 @@ CVE-2026-15166 (IEEE 802.11 protocol dissector crash in Wireshark 4.6.0 to 4.6.6
NOTE: https://www.wireshark.org/security/wnpa-sec-2026-57.html
CVE-2026-15165 (TLS ECH decryptor crash in Wireshark 4.6.0 to 4.6.6 allows denial of s ...)
- wireshark <unfixed> (bug #1142268)
- [trixie] - wireshark <no-dsa> (Minor issue)
+ [trixie] - wireshark <not-affected> (Only affects 4.6)
+ [bookworm] - wireshark <not-affected> (Only affects 4.6)
+ [bullseye] - wireshark <not-affected> (Only affects 4.6)
NOTE: https://www.wireshark.org/security/wnpa-sec-2026-56.html
CVE-2026-15164 (Crash in ciscodump 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of ...)
- wireshark <unfixed> (bug #1142268)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/3d30cb6f363611d8986103b776dccba1e2a56ae6...75cee8f163d6a731f70e696ad3cf8b83231a384d
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/3d30cb6f363611d8986103b776dccba1e2a56ae6...75cee8f163d6a731f70e696ad3cf8b83231a384d
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260824/47c5382a/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list