[Git][security-tracker-team/security-tracker][master] new pion dtls issues

Moritz Muehlenhoff (@jmm) jmm at debian.org
Thu Jul 2 13:44:30 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a28eedc8 by Moritz Muehlenhoff at 2026-07-02T14:44:01+02:00
new pion dtls issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -65,7 +65,10 @@ CVE-2026-55660 (Tina is a headless content management system. In versions prior
 CVE-2026-55153 (mchange-commons-java is a Java library of shared utility classes used  ...)
 	- mchange-commons-java <itp> (bug #806774)
 CVE-2026-54908 (Pion DTLS is a Go implementation of Datagram Transport Layer Security. ...)
-	TODO: check
+	- golang-github-pion-dtls.v2 <unfixed>
+	- golang-github-pion-dtls.v3 <unfixed>
+	NOTE: https://github.com/pion/dtls/security/advisories/GHSA-wg4g-wm44-ch5j
+	NOTE: https://github.com/pion/dtls/pull/839
 CVE-2026-54786 (Wasmtime is a runtime for WebAssembly. All versions prior to 24.0.10;  ...)
 	TODO: check
 CVE-2026-54756 (Jodit Editor is a WYSIWYG editor with written in pure TypeScript file  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a28eedc8f0f1cb4e481e01cbd4eabcc82af0dc4f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a28eedc8f0f1cb4e481e01cbd4eabcc82af0dc4f
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260702/2d387f42/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list