[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Feb 24 20:59:24 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5c48ec60 by Salvatore Bonaccorso at 2026-02-24T21:59:05+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -68,17 +68,17 @@ CVE-2026-27477 (Mastodon is a free, open-source social network server based on A
 CVE-2026-27468 (Mastodon is a free, open-source social network server based on Activit ...)
 	- mastodon <itp> (bug #859741)
 CVE-2026-27208 (bleon-ethical/api-gateway-deploy provides API gateway deployment. Vers ...)
-	TODO: check
+	NOT-FOR-US: bleon-ethical/api-gateway-deploy
 CVE-2026-27156 (NiceGUI is a Python-based UI framework. Prior to version 3.8.0, severa ...)
-	TODO: check
+	NOT-FOR-US: NiceGUI
 CVE-2026-26342 (Tattile Smart+, Vega, and Basic device families firmware versions 1.18 ...)
-	TODO: check
+	NOT-FOR-US: Tattile
 CVE-2026-26341 (Tattile Smart+, Vega, and Basic device families firmware versions 1.18 ...)
-	TODO: check
+	NOT-FOR-US: Tattile
 CVE-2026-26340 (Tattile Smart+, Vega, and Basic device families firmware versions 1.18 ...)
-	TODO: check
+	NOT-FOR-US: Tattile
 CVE-2026-26222 (Altec DocLink (now maintained by Beyond Limits Inc.) version 4.0.336.0 ...)
-	TODO: check
+	NOT-FOR-US: Altec DocLink
 CVE-2026-25603 (Improper Limitation of a Pathname to a Restricted Directory ('Path Tra ...)
 	NOT-FOR-US: Linksys
 CVE-2026-24241 (NVIDIA Delegated Licensing Service for all appliance platforms contain ...)
@@ -98,7 +98,7 @@ CVE-2026-23859 (Dell Wyse Management Suite, versions prior to WMS 5.5, contain a
 CVE-2026-23858 (Dell Wyse Management Suite, versions prior to WMS 5.5, contain an Impr ...)
 	NOT-FOR-US: Dell / EMC
 CVE-2026-23678 (Binardat 10G08-0800GSM network switch firmware versionV300SP10260209 a ...)
-	TODO: check
+	NOT-FOR-US: Binardat 10G08-0800GSM network switch firmware
 CVE-2026-22766 (Dell Wyse Management Suite, versions prior to WMS 5.5, contain an Unre ...)
 	NOT-FOR-US: Dell / EMC
 CVE-2026-22765 (Dell Wyse Management Suite, versions prior to WMS 5.5, contain a Missi ...)
@@ -118,7 +118,7 @@ CVE-2026-0400 (A post-authentication Format String vulnerability in SonicOS allo
 CVE-2026-0399 (Multiple post-authentication stack-based buffer overflow vulnerabiliti ...)
 	NOT-FOR-US: SonicWall
 CVE-2025-69985 (FUXA 1.2.8 and prior contains an Authentication Bypass vulnerability l ...)
-	TODO: check
+	NOT-FOR-US: FUXA
 CVE-2025-67445 (TOTOLINK X5000R V9.1.0cu.2415_B20250515 contains a denial-of-service v ...)
 	NOT-FOR-US: TOTOLINK
 CVE-2025-63409 (Privilege escalation and improper access control in GCOM EPON 1GE C00R ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5c48ec60be6fb58d7da3005e2594e82eeab71cce

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5c48ec60be6fb58d7da3005e2594e82eeab71cce
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260224/156a8378/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list