[Git][security-tracker-team/security-tracker][master] Update status for CVE-2026-58374/wpa

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jul 1 22:01:39 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e812144f by Salvatore Bonaccorso at 2026-07-01T23:01:08+02:00
Update status for CVE-2026-58374/wpa

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -2074,7 +2074,7 @@ CVE-2026-58376 (Dolibarr through 23.0.3, fixed in commit 14db36e, contains a sql
 CVE-2026-58375 (JimuReport through 2.5.0 exposes the POST /jmreport/auto/export endpoi ...)
 	NOT-FOR-US: JimuReport
 CVE-2026-58374 (In hostapd before 2.12, a missing bounds check in AP-mode Wi-Fi 7 (IEE ...)
-	- wpa <unfixed>
+	- wpa <not-affected> (Vulnerable code not present; EHT/IEEE 802.11be/Wi-Fi 7 support introduced in v2.11)
 	NOTE: https://w1.fi/security/2026-1/missing-ml-parsing-validation.txt
 	NOTE: https://git.w1.fi/cgit/hostap/commit/?id=46dd5a4ffc9bcf44cf8fc45120b3e1e5ec922187
 	NOTE: https://git.w1.fi/cgit/hostap/commit/?id=aa9d345887389a251c63a3781d2ad2940d079193



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e812144f6e928028e082032b1058e8d991847146

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e812144f6e928028e082032b1058e8d991847146
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260701/cd996222/attachment.htm>


More information about the debian-security-tracker-commits mailing list