[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sun Jul 12 08:13:23 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
c9e5668f by security tracker role at 2026-07-12T07:13:17+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,35 @@
+CVE-2026-58281 (Deserialization of untrusted data in Microsoft Edge (Chromium-based) a ...)
+	TODO: check
+CVE-2026-15484 (A vulnerability was detected in TRENDnet TEW-821DAP 1.12B01. The affec ...)
+	TODO: check
+CVE-2026-15483 (A security vulnerability has been detected in TRENDnet TEW-821DAP 1.12 ...)
+	TODO: check
+CVE-2026-15482 (A weakness has been identified in Aster Telecom Azcall 10/11. This iss ...)
+	TODO: check
+CVE-2026-15481 (A security flaw has been discovered in Trendnet TEW-635BRM up to 1.00. ...)
+	TODO: check
+CVE-2026-15480 (A vulnerability was identified in Trendnet TEW-635BRM up to 1.00.03. T ...)
+	TODO: check
+CVE-2026-15479 (A vulnerability was found in H3C NX15 V100R017. Affected by this vulne ...)
+	TODO: check
+CVE-2026-15478 (A flaw has been found in IceHRM up to 35.0.1. This impacts an unknown  ...)
+	TODO: check
+CVE-2026-15477 (A vulnerability was detected in Bahmni bahmnicore up to 0.93. This aff ...)
+	TODO: check
+CVE-2026-15476 (A security vulnerability has been detected in QILING Disk Master 6.0.0 ...)
+	TODO: check
+CVE-2026-15475 (A weakness has been identified in MiniTool Partition Wizard up to 13.6 ...)
+	TODO: check
+CVE-2026-15474 (A security flaw has been discovered in Eleveo Call Recording Software  ...)
+	TODO: check
+CVE-2026-15473 (A vulnerability was identified in Eleveo Call Recording Software 9.7.0 ...)
+	TODO: check
+CVE-2026-15472 (A vulnerability was determined in Eleveo Call Recording Software 9.7.0 ...)
+	TODO: check
+CVE-2026-15471 (A vulnerability was found in Eleveo Call Recording Software 9.7.0. Thi ...)
+	TODO: check
+CVE-2026-15470 (A vulnerability has been found in Eleveo Call Recording Software 9.7.0 ...)
+	TODO: check
 CVE-2026-61870 (ImageMagick before 7.1.2-26 contains a memory leak vulnerability in th ...)
 	- imagemagick 8:7.1.2.26+dfsg1-1
 	NOTE: https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-m596-67p7-69wh
@@ -1765,84 +1797,111 @@ CVE-2026-0288 (Multiple buffer overflow vulnerabilities in the User-ID Terminal
 CVE-2025-12506 (GitLab has remediated an issue in GitLab CE/EE affecting all versions  ...)
 	NOT-FOR-US: GitLab (used to be packaged in the Debian archive as src:gitlab, but never in a stable release)
 CVE-2026-15112 (Use after free in Ozone in Google Chrome prior to 150.0.7871.115 allow ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15129 (Use after free in Views in Google Chrome prior to 150.0.7871.115 allow ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15132 (Uninitialized Use in V8 in Google Chrome prior to 150.0.7871.115 allow ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15133 (Use after free in InterestGroups in Google Chrome prior to 150.0.7871. ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15108 (Integer overflow in Extensions API in Google Chrome prior to 150.0.787 ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15109 (Uninitialized Use in ANGLE in Google Chrome prior to 150.0.7871.115 al ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15110 (Use after free in Extensions in Google Chrome prior to 150.0.7871.115  ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15111 (Use after free in Views in Google Chrome prior to 150.0.7871.115 allow ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15113 (Use after free in Autofill in Google Chrome on Android prior to 150.0. ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15114 (Out of bounds read and write in Codecs in Google Chrome prior to 150.0 ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15115 (Insufficient validation of untrusted input in WebAppInstalls in Google ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15116 (Use after free in Actor in Google Chrome prior to 150.0.7871.115 allow ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15117 (Use after free in Payments in Google Chrome prior to 150.0.7871.115 al ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15118 (Use after free in Input in Google Chrome prior to 150.0.7871.115 allow ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15119 (Race in GetUserMedia in Google Chrome prior to 150.0.7871.115 allowed  ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15120 (Use after free in Core in Google Chrome on Windows prior to 150.0.7871 ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15121 (Use after free in WebRTC in Google Chrome prior to 150.0.7871.115 allo ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15122 (Insufficient validation of untrusted input in Codecs in Google Chrome  ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15123 (Inappropriate implementation in DOM in Google Chrome prior to 150.0.78 ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15124 (Insufficient policy enforcement in Passwords in Google Chrome prior to ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15125 (Inappropriate implementation in Forms in Google Chrome prior to 150.0. ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15126 (Use after free in Forms in Google Chrome prior to 150.0.7871.115 allow ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15127 (Inappropriate implementation in WebGL in Google Chrome prior to 150.0. ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15128 (Inappropriate implementation in Forms in Google Chrome prior to 150.0. ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15130 (Insufficient policy enforcement in Navigation in Google Chrome prior t ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15107 (Use after free in IndexedDB in Google Chrome prior to 150.0.7871.115 a ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-15131 (Inappropriate implementation in Navigation in Google Chrome prior to 1 ...)
+	{DSA-6387-1}
 	- chromium 150.0.7871.114-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-9074 (IBM API Connect 10.0.8.0 through 10.0.8.9 and12.1.0.0 through 12.1.0.3 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c9e5668f93b6ef136ede676b5b5619389cd5ca4f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c9e5668f93b6ef136ede676b5b5619389cd5ca4f
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260712/20bfea0a/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list