[Git][security-tracker-team/security-tracker][master] Add upstream tag reference for CVE-2026-18917
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sun Aug 30 19:40:18 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
72dc1185 by Salvatore Bonaccorso at 2026-08-30T20:39:49+02:00
Add upstream tag reference for CVE-2026-18917
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -9482,7 +9482,7 @@ CVE-2026-18917 (A flaw was found in libvirt. An unprivileged local user could ex
[trixie] - libvirt <no-dsa> (Minor issue)
NOTE: https://gitlab.com/libvirt/libvirt/-/work_items/903
NOTE: Introduced with: https://gitlab.com/libvirt/libvirt/-/commit/34f2d0319d2098c77c8cc27d8350616029125a2b (v1.2.6-rc1)
- NOTE: Fixed by: https://gitlab.com/libvirt/libvirt/-/commit/5a62cbf2907d4590283597b46da9c0f41e7b4d4f
+ NOTE: Fixed by: https://gitlab.com/libvirt/libvirt/-/commit/5a62cbf2907d4590283597b46da9c0f41e7b4d4f (v12.7.0-rc1)
CVE-2026-18482 (Neo.mjs contains a command injection vulnerability within the FileSyst ...)
NOT-FOR-US: Neo.mjs
CVE-2026-18309 (GIMP APNG File Parsing Integer Overflow Remote Code Execution Vulnerab ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/72dc11856dd06117c0599a3cbdf48d369db63280
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/72dc11856dd06117c0599a3cbdf48d369db63280
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260830/38c73671/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list