[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-77220/pdfio
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Mon Aug 31 20:09:10 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
c67331b4 by Salvatore Bonaccorso at 2026-08-31T21:08:37+02:00
Add Debian bug reference for CVE-2026-77220/pdfio
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -8424,7 +8424,7 @@ CVE-2026-77354 (kin-openapi is a Go project for handling OpenAPI files. From 0.1
CVE-2026-77220 (PDFio before 1.6.5 contains a dangling pointer vulnerability in the di ...)
- ippsample <unfixed> (bug #1145176)
[bookworm] - ippsample <postponed> (Minor issue, low popcon)
- - pdfio <unfixed>
+ - pdfio <unfixed> (bug #1146359)
NOTE: Fixed by: https://github.com/michaelrsweet/pdfio/commit/22b9afc800c5833f9e851e35938972bd4c76a357 (v1.6.5)
CVE-2026-77219 (GNU Emacs before 31.0.91 contains an integer overflow in the PBM/PPM/P ...)
- emacs <unfixed> (bug #1145175)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c67331b4586181c0e3ba9008d8a180351bca7463
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c67331b4586181c0e3ba9008d8a180351bca7463
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260831/806c05a1/attachment.htm>
More information about the debian-security-tracker-commits
mailing list