[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-77220/pdfio

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Aug 31 20:09:10 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
c67331b4 by Salvatore Bonaccorso at 2026-08-31T21:08:37+02:00
Add Debian bug reference for CVE-2026-77220/pdfio

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -8424,7 +8424,7 @@ CVE-2026-77354 (kin-openapi is a Go project for handling OpenAPI files. From 0.1
 CVE-2026-77220 (PDFio before 1.6.5 contains a dangling pointer vulnerability in the di ...)
 	- ippsample <unfixed> (bug #1145176)
 	[bookworm] - ippsample <postponed> (Minor issue, low popcon)
-	- pdfio <unfixed>
+	- pdfio <unfixed> (bug #1146359)
 	NOTE: Fixed by: https://github.com/michaelrsweet/pdfio/commit/22b9afc800c5833f9e851e35938972bd4c76a357 (v1.6.5)
 CVE-2026-77219 (GNU Emacs before 31.0.91 contains an integer overflow in the PBM/PPM/P ...)
 	- emacs <unfixed> (bug #1145175)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c67331b4586181c0e3ba9008d8a180351bca7463

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c67331b4586181c0e3ba9008d8a180351bca7463
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260831/806c05a1/attachment.htm>


More information about the debian-security-tracker-commits mailing list