[Git][security-tracker-team/security-tracker][master] Add CVE-2026-52584/jpeg-xl
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sat Jul 18 15:24:51 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
29fd805c by Salvatore Bonaccorso at 2026-07-18T16:24:13+02:00
Add CVE-2026-52584/jpeg-xl
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -101,7 +101,11 @@ CVE-2026-53727 (css_parser is a Ruby CSS parser. From 2.2.0 until 3.0.0, CssPars
NOTE: Fixed by: https://github.com/premailer/css_parser/commit/7d2ddf0189cd54b54f378f59daefa10cb036e476 (v3.0.0)
NOTE: Fixed by: https://github.com/premailer/css_parser/commit/e0a151458b2a801ae265ba420862ef8b1127b3ae (v3.0.0)
CVE-2026-52584 (Buffer Overflow vulnerability in libjxl v.0.11.2 and before allows a l ...)
- TODO: check
+ - jpeg-xl <unfixed>
+ NOTE: https://github.com/libjxl/libjxl/issues/4803
+ NOTE: https://github.com/libjxl/libjxl/pull/4804
+ NOTE: https://github.com/libjxl/libjxl/pull/4870
+ NOTE: Fixed by: https://github.com/libjxl/libjxl/commit/2cdc4c78b6f08c09ae70627d99900446b4450b47 (v0.12.0)
CVE-2026-52348 (cool-admin-java 8.0.0 has a SQL injection vulnerability in the order() ...)
NOT-FOR-US: cool-admin-java
CVE-2026-52203 (An issue in MCMS v.6.1.1 allows a remote attacker to obtain sensitive ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/29fd805c82202979f807584f9d7575d1a058a195
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/29fd805c82202979f807584f9d7575d1a058a195
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260718/a3137015/attachment.htm>
More information about the debian-security-tracker-commits
mailing list