[Git][security-tracker-team/security-tracker][master] Add CVE-2026-14191/unrar
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sat Jul 25 06:53:02 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
474c6a5b by Salvatore Bonaccorso at 2026-07-25T07:50:45+02:00
Add CVE-2026-14191/unrar
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -19966,7 +19966,8 @@ CVE-2026-1239 (The Ninja Forms \u2013 The Contact Form Builder That Grows With Y
CVE-2026-14193 (DVP80ES300T with Improper Validation of Array Index Vulnerability)
NOT-FOR-US: Delta Electronics
CVE-2026-14191 (An out-of-bounds heap write exists in the RAR5 recovery-volume (.rev) ...)
- TODO: check
+ - unrar <unfixed>
+ [trixie] - unrar <no-dsa> (non-free not supported)
CVE-2026-13773 (IBM WebSphere Extreme Scale 8.6.1.0 through 8.6.1.6 Approximately 50 g ...)
NOT-FOR-US: IBM
CVE-2026-13772 (IBM WebSphere Extreme Scale 8.6.1.0 through 8.6.1.6 's Object Query La ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/474c6a5b67a8ec07b6a1f3802735f9b967d8d584
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/474c6a5b67a8ec07b6a1f3802735f9b967d8d584
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260725/c97de49b/attachment.htm>
More information about the debian-security-tracker-commits
mailing list