[Git][security-tracker-team/security-tracker][master] Track fixed version for libmodplug version fixed via unstable
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Fri Aug 28 16:12:54 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
c4bfca61 by Salvatore Bonaccorso at 2026-08-28T15:51:20+02:00
Track fixed version for libmodplug version fixed via unstable
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -12388,7 +12388,7 @@ CVE-2026-75912 (CodeWhale versions before 0.8.64 contain an argument injection v
CVE-2026-75911 (CodeWhale versions before 0.8.64 fail to properly validate the allow_s ...)
NOT-FOR-US: CodeWhale
CVE-2026-75904 (libmodplug through 0.8.9.1 contains an out-of-bounds read in pat_smplo ...)
- - libmodplug <unfixed> (bug #1144933)
+ - libmodplug 1:0.8.9.0-4 (bug #1144933)
[trixie] - libmodplug <postponed> (Minor issue, revisit when fixed upstream)
NOTE: https://github.com/Konstanty/libmodplug/issues/103
CVE-2026-75898 (RAGFlow before 0.26.3 contains a server-side request forgery vulnerabi ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c4bfca61135af92d3774c0ec89aaaaa772e5ca06
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c4bfca61135af92d3774c0ec89aaaaa772e5ca06
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260828/847c2e60/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list