[Git][security-tracker-team/security-tracker][master] Track fixed version for two ironic-python-agent issues
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue Jul 28 15:13:43 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
4786293b by Salvatore Bonaccorso at 2026-07-28T16:13:11+02:00
Track fixed version for two ironic-python-agent issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -3094,7 +3094,7 @@ CVE-2026-66139 (OpenStack Zaqar through 22.0.0 allows authentication bypass via
NOTE: https://www.openwall.com/lists/oss-security/2026/07/23/7
NOTE: https://launchpad.net/bugs/2161254
CVE-2026-66138 (In OpenStack Ironic Python Agent through 11.6.0, aproject-scoped user ...)
- - ironic-python-agent <unfixed> (bug #1142857)
+ - ironic-python-agent 11.5.0-4 (bug #1142857)
NOTE: https://www.openwall.com/lists/oss-security/2026/07/23/5
NOTE: https://bugs.launchpad.net/ironic-python-agent/+bug/2160050
CVE-2026-65706 (FFmpeg versions 3.0 through 8.1.2 contain an out-of-bounds write vulne ...)
@@ -3290,7 +3290,7 @@ CVE-2026-XXXX [DNS-over-QUIC heap buffer overflow (RCE)]
NOTE: https://www.openwall.com/lists/oss-security/2026/07/23/6
NOTE: https://lists.nic.cz/hyperkitty/list/knot-resolver-announce@lists.nic.cz/thread/ESUJGSCVLNPPWB2F3DUPKCVY5KBVPYF2/
CVE-2026-54422 (In OpenStackIronic Python Agent through 11.5.0, a malicious bootc cont ...)
- - ironic-python-agent <unfixed> (bug #1142854)
+ - ironic-python-agent 11.5.0-4 (bug #1142854)
NOTE: https://www.openwall.com/lists/oss-security/2026/07/23/4
NOTE: https://bugs.launchpad.net/ironic/+bug/2155826
CVE-2026-58264 [heap-based buffer overrun in command handler]
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4786293be1eee904f777af3ebfc48f804760be2c
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4786293be1eee904f777af3ebfc48f804760be2c
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260728/e886f0a5/attachment.htm>
More information about the debian-security-tracker-commits
mailing list