[Git][security-tracker-team/security-tracker][master] Add AuthToken and RSS/iCal related changes for CVE-2026-44231
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue Jun 2 07:45:56 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
ba56c7cb by Salvatore Bonaccorso at 2026-06-02T08:45:22+02:00
Add AuthToken and RSS/iCal related changes for CVE-2026-44231
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -8580,6 +8580,14 @@ CVE-2026-44231
- request-tracker5 5.0.10+dfsg-1
- request-tracker4 <removed>
NOTE: https://github.com/bestpractical/rt/releases/tag/rt-5.0.10
+ NOTE: AuthToken fixes:
+ NOTE: https://github.com/bestpractical/rt/commit/5e35133b90303c7517b82de7c57cdb891ee61400
+ NOTE: https://github.com/bestpractical/rt/commit/b2ebecec307fb7a3ae1cf17b8728fae4f3457d7e
+ NOTE: https://github.com/bestpractical/rt/commit/d4c1f75941aeb54e39be62e5811045aa7a5cb29d
+ NOTE: https://github.com/bestpractical/rt/commit/79b2cae3757fc1714a392f198c3252358a251ef5
+ NOTE: https://github.com/bestpractical/rt/commit/ec1235aaf1ce4e3b4025d9ba9fb6dddd3fd61dd2
+ NOTE: Disable RSS/iCal feeds:
+ NOTE: https://github.com/bestpractical/rt/commit/e045dfe919aac20b76ca6d6fe026a5471d6569b5
CVE-2026-XXXX [RUSTSEC-2026-0145]
- rust-astral-tokio-tar 0.6.2-1
[trixie] - rust-astral-tokio-tar <no-dsa> (Minor issue)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ba56c7cbcfcf1cade6ed725610d2fbfccb93b954
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ba56c7cbcfcf1cade6ed725610d2fbfccb93b954
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260602/7d429e0e/attachment.htm>
More information about the debian-security-tracker-commits
mailing list