[Git][security-tracker-team/security-tracker][master] Add new batch of assimp issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Jun 2 07:15:05 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9d7ca07b by Salvatore Bonaccorso at 2026-06-02T08:13:53+02:00
Add new batch of assimp issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -439,15 +439,20 @@ CVE-2026-10235 (A flaw has been found in CodeAstro Ingredients Stock Management
 CVE-2026-10234 (A vulnerability was detected in Mettle sendportal up to 3.0.1. This af ...)
 	NOT-FOR-US: Mettle sendportal
 CVE-2026-10233 (A security vulnerability has been detected in Assimp up to 6.0.4. Affe ...)
-	TODO: check
+	- assimp <unfixed>
+	NOTE: https://github.com/assimp/assimp/issues/6619
 CVE-2026-10232 (A weakness has been identified in Assimp up to 6.0.4. Affected by this ...)
-	TODO: check
+	- assimp <unfixed>
+	NOTE: https://github.com/assimp/assimp/issues/6617
 CVE-2026-10231 (A security flaw has been discovered in Assimp up to 6.0.4. Affected is ...)
-	TODO: check
+	- assimp <unfixed>
+	NOTE: https://github.com/assimp/assimp/issues/6616
 CVE-2026-10230 (A vulnerability was identified in Assimp up to 6.0.4. This impacts the ...)
-	TODO: check
+	- assimp <unfixed>
+	NOTE: https://github.com/assimp/assimp/issues/6615
 CVE-2026-10229 (A vulnerability was determined in Assimp up to 6.0.4. This affects the ...)
-	TODO: check
+	- assimp <unfixed>
+	NOTE: https://github.com/assimp/assimp/issues/6614
 CVE-2026-10228 (A vulnerability was found in raisulislamg4 student_management_system_b ...)
 	NOT-FOR-US: raisulislamg4 student_management_system_by_php
 CVE-2026-10227 (A vulnerability has been found in raisulislamg4 student_management_sys ...)
@@ -501,15 +506,23 @@ CVE-2026-10203 (A security flaw has been discovered in OFCMS 1.1.3. Impacted is
 CVE-2026-10202 (A vulnerability was identified in OFCMS 1.1.3. This issue affects the  ...)
 	NOT-FOR-US: OFCMS
 CVE-2026-10201 (A vulnerability was determined in Assimp up to 6.0.4. This vulnerabili ...)
-	TODO: check
+	- assimp <unfixed>
+	NOTE: https://github.com/assimp/assimp/issues/6613
 CVE-2026-10200 (A vulnerability was found in Assimp up to 6.0.4. This affects the func ...)
-	TODO: check
+	- assimp <unfixed>
+	NOTE: https://github.com/assimp/assimp/issues/6612
 CVE-2026-10199 (A vulnerability has been found in Assimp up to 6.0.4. Affected by this ...)
-	TODO: check
+	- assimp <unfixed>
+	NOTE: https://github.com/assimp/assimp/issues/6611
+	NOTE: https://github.com/assimp/assimp/pull/6646
+	NOTE: https://github.com/assimp/assimp/commit/d24b85319bd70c65883a2b96613e07e23fb95981
 CVE-2026-10198 (A flaw has been found in Assimp up to 6.0.4. Affected by this vulnerab ...)
-	TODO: check
+	- assimp <unfixed>
+	NOTE: https://github.com/assimp/assimp/issues/6609
 CVE-2026-10197 (A vulnerability was detected in Assimp up to 6.0.4. Affected is the fu ...)
-	TODO: check
+	- assimp <unfixed>
+	NOTE: https://github.com/assimp/assimp/issues/6608
+	NOTE: https://github.com/assimp/assimp/pull/6645
 CVE-2026-10118 (A flaw was found in Poppler's Splash backend. A remote attacker could  ...)
 	TODO: check
 CVE-2026-0826 (In certain scenarios when the admin has enabled Interactive Connectivi ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9d7ca07bb2ccce63de006123a1d98bd3c7ea96a6

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9d7ca07bb2ccce63de006123a1d98bd3c7ea96a6
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260602/0a6f2e1d/attachment.htm>


More information about the debian-security-tracker-commits mailing list