[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2026-21444/libtpms via unstable

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Jan 3 05:59:30 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d30d8890 by Salvatore Bonaccorso at 2026-01-03T06:58:51+01:00
Track fixed version for CVE-2026-21444/libtpms via unstable

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1359,7 +1359,7 @@ CVE-2025-11837 (An improper control of generation of code vulnerability has been
 CVE-2024-55374 (REDCap 14.3.13 allows an attacker to enumerate usernames due to an obs ...)
 	NOT-FOR-US: REDCap
 CVE-2026-21444 (libtpms, a library that provides software emulation of a Trusted Platf ...)
-	- libtpms <unfixed> (bug #1124557)
+	- libtpms 0.10.2-1 (bug #1124557)
 	[trixie] - libtpms <not-affected> (Vulnerable code introduced later)
 	[bookworm] - libtpms <not-affected> (Vulnerable code introduced later)
 	NOTE: https://github.com/stefanberger/libtpms/security/advisories/GHSA-7jxr-4j3g-p34f



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d30d8890e90d8e78681d7862dba957d3f70b5ced

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d30d8890e90d8e78681d7862dba957d3f70b5ced
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260103/ae631240/attachment.htm>


More information about the debian-security-tracker-commits mailing list