[Git][security-tracker-team/security-tracker][master] Add CVE-2024-14041/bouncycastle

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Jul 28 22:13:04 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b7d6acc1 by Salvatore Bonaccorso at 2026-07-28T23:11:18+02:00
Add CVE-2024-14041/bouncycastle

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -334,7 +334,9 @@ CVE-2026-11598 (The Shortcodify plugin for WordPress is vulnerable to Stored Cro
 CVE-2026-10207 (The PickPlugins Question Answer plugin for WordPress is vulnerable to  ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2024-14041 (In Bouncy Castle for Java from 1.73 to before 1.78, three ML-KEM (CRYS ...)
-	TODO: check
+	- bouncycastle 1.80-1
+	NOTE: Fixed by: https://github.com/bcgit/bc-java/commit/5adb2c5c5b462a332b01a012bea0784b40b904e5 (r1rv78v1)
+	NOTE: Fixed by: https://github.com/bcgit/bc-java/commit/1590247178f2280defa36421475f015175dfbe9e (r1rv78v1)
 CVE-2026-59986
 	- librabbitmq 0.17.0-1
 	NOTE: https://github.com/alanxz/rabbitmq-c/security/advisories/GHSA-jgjf-7fwf-f3c7



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b7d6acc1abf3fc50e26881e5cc95bc4924d044cf

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b7d6acc1abf3fc50e26881e5cc95bc4924d044cf
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260728/aba29d69/attachment.htm>


More information about the debian-security-tracker-commits mailing list