[Git][security-tracker-team/security-tracker][master] Track fixed version for xrdp issues via unstable

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Jul 9 04:54:47 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
3b96f6b2 by Salvatore Bonaccorso at 2026-07-09T05:54:18+02:00
Track fixed version for xrdp issues via unstable

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -822,45 +822,45 @@ CVE-2026-42505 (Handshakes which used Encrypted Client Hello could be de-anonymi
 	NOTE: Fixed by: https://github.com/golang/go/commit/fc9f821bb660c1dcb9e57868b62f62bf3afb5842 (go1.25.12)
 CVE-2026-41252
 	[experimental] - xrdp 0.10.6.1-1
-	- xrdp <unfixed>
+	- xrdp 0.10.6.1-2
 	NOTE: https://github.com/neutrinolabs/xrdp/security/advisories/GHSA-w5vg-6qmv-j63j
 CVE-2026-41521
 	[experimental] - xrdp 0.10.6.1-1
-	- xrdp <unfixed>
+	- xrdp 0.10.6.1-2
 	NOTE: https://github.com/neutrinolabs/xrdp/security/advisories/GHSA-v8w6-pf78-9458
 CVE-2026-44178
 	[experimental] - xrdp 0.10.6.1-1
-	- xrdp <unfixed>
+	- xrdp 0.10.6.1-2
 	NOTE: https://github.com/neutrinolabs/xrdp/security/advisories/GHSA-hh7r-2rmq-q4g4
 CVE-2026-42218
 	[experimental] - xrdp 0.10.6.1-1
-	- xrdp <unfixed>
+	- xrdp 0.10.6.1-2
 	NOTE: https://github.com/neutrinolabs/xrdp/security/advisories/GHSA-3wr5-fwmh-qh34
 CVE-2026-44978
 	[experimental] - xrdp 0.10.6.1-1
-	- xrdp <unfixed>
+	- xrdp 0.10.6.1-2
 	NOTE: https://github.com/neutrinolabs/xrdp/security/advisories/GHSA-9cg5-f7m7-ppvj
 CVE-2026-54538
 	[experimental] - xrdp 0.10.6.1-1
-	- xrdp <unfixed>
+	- xrdp 0.10.6.1-2
 	NOTE: https://github.com/neutrinolabs/xrdp/security/advisories/GHSA-9j3q-9mvw-qv7j
 CVE-2026-55238
 	[experimental] - xrdp 0.10.6.1-1
-	- xrdp <unfixed>
+	- xrdp 0.10.6.1-2
 	NOTE: https://github.com/neutrinolabs/xrdp/security/advisories/GHSA-mg8j-x9rw-9xv3
 CVE-2026-55626
 	[experimental] - xrdp 0.10.6.1-1
-	- xrdp <unfixed>
+	- xrdp 0.10.6.1-2
 	[trixie] - xrdp <not-affected> (Vulnerable code introduced later)
 	[bookworm] - xrdp <not-affected> (Vulnerable code introduced later)
 	NOTE: https://github.com/neutrinolabs/xrdp/security/advisories/GHSA-m3xx-cpc4-982r
 CVE-2026-55639
 	[experimental] - xrdp 0.10.6.1-1
-	- xrdp <unfixed>
+	- xrdp 0.10.6.1-2
 	NOTE: https://github.com/neutrinolabs/xrdp/security/advisories/GHSA-6g36-mxcf-r3gc
 CVE-2026-55645
 	[experimental] - xrdp 0.10.6.1-1
-	- xrdp <unfixed>
+	- xrdp 0.10.6.1-2
 	NOTE: https://github.com/neutrinolabs/xrdp/security/advisories/GHSA-3m4m-h22g-c7xx
 CVE-2026-57158
 	- freerdp3 3.28.0+dfsg-1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3b96f6b2e3927aa676c52358b77b22e4ac06ed87

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3b96f6b2e3927aa676c52358b77b22e4ac06ed87
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260709/5af8f258/attachment.htm>


More information about the debian-security-tracker-commits mailing list