[Git][security-tracker-team/security-tracker][master] Reserve DLA-4451-1 for shapelib

Thorsten Alteholz (@alteholz) alteholz at debian.org
Sat Jan 24 18:45:40 GMT 2026



Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d5f62c55 by Thorsten Alteholz at 2026-01-24T19:45:20+01:00
Reserve DLA-4451-1 for shapelib

- - - - -


2 changed files:

- data/CVE/list
- data/DLA/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -368396,7 +368396,6 @@ CVE-2022-0700 (The Simple Tracking WordPress plugin before 1.7 does not sanitise
 	NOT-FOR-US: WordPress plugin
 CVE-2022-0699 (A double-free condition exists in contrib/shpsort.c of shapelib 1.5.0  ...)
 	- shapelib 1.5.0-3 (bug #1022557)
-	[bullseye] - shapelib <no-dsa> (Minor issue)
 	[buster] - shapelib <no-dsa> (Minor issue)
 	NOTE: https://github.com/OSGeo/shapelib/commit/c75b9281a5b9452d92e1682bdfe6019a13ed819f
 	NOTE: https://github.com/OSGeo/shapelib/issues/39


=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[24 Jan 2026] DLA-4451-1 shapelib - security update
+	{CVE-2022-0699}
+	[bullseye] - shapelib 1.5.0-2+deb11u1
 [24 Jan 2026] DLA-4450-1 taglib - security update
 	{CVE-2023-47466}
 	[bullseye] - taglib 1.11.1+dfsg.1-3+deb11u1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d5f62c55f85864eb3bb17337b186f2c0cb111794

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d5f62c55f85864eb3bb17337b186f2c0cb111794
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260124/87023fdb/attachment.htm>


More information about the debian-security-tracker-commits mailing list