[Git][security-tracker-team/security-tracker][master] Add reference for second required commit for CVE-2026-50811

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Jul 13 23:13:39 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
953b3941 by Salvatore Bonaccorso at 2026-07-14T00:12:45+02:00
Add reference for second required commit for CVE-2026-50811

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -3299,6 +3299,7 @@ CVE-2026-50811 (An out-of-bounds read vulnerability exists in FreeType 2.14.3 an
 	[bookworm] - freetype <not-affected> (TT_Get_Var_Design OOB read introduced in 2.14.0; shipped code uses safe coords[i]=0)
 	[bullseye] - freetype <not-affected> (TT_Get_Var_Design OOB read introduced in 2.14.0; shipped code uses safe coords[i]=0)
 	NOTE: https://gitlab.freedesktop.org/freetype/freetype/-/work_items/1436
+	NOTE: Fixed by: https://gitlab.freedesktop.org/freetype/freetype/-/commit/8fa928f1617aba65f45b00f0dcb109f077b7741e
 	NOTE: Fixed by: https://gitlab.freedesktop.org/freetype/freetype/-/commit/5a280ecde6f324de0d226261036e736e0cb49a71
 CVE-2026-50810 (A NULL pointer dereference in smooth_parse_stream_index() in src/media ...)
 	- gpac <removed>



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/953b3941554d5448d3c58ca6ef929931ad8ade2a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/953b3941554d5448d3c58ca6ef929931ad8ade2a
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260713/02b39de8/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list