[Git][security-tracker-team/security-tracker][master] Add CVE-2026-10650/libwebsockets

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jun 3 12:50:48 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0e134fe3 by Salvatore Bonaccorso at 2026-06-03T13:50:29+02:00
Add CVE-2026-10650/libwebsockets

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -137,7 +137,9 @@ CVE-2026-10662 (A vulnerability was found in ahujasid blender-mcp up to 7636d13b
 CVE-2026-10661 (A vulnerability has been found in ahujasid blender-mcp up to 7636d13bd ...)
 	NOT-FOR-US: ahujasid blender-mcp
 CVE-2026-10650 (A flaw has been found in warmcat libwebsockets up to 4.5.8. This issue ...)
-	TODO: check
+	- libwebsockets <unfixed>
+	NOTE: https://github.com/biniamf/pocs/tree/main/libwebsockets_sshd-parse-ic-unbounded-alloc
+	NOTE: https://libwebsockets.org/git/libwebsockets/commit?id=3f9f0c6ecaf0e6f3f219d30632c5d1f2479d7498
 CVE-2026-10624 (A vulnerability has been found in SourceCodester Human Resource Manage ...)
 	NOT-FOR-US: SourceCodester
 CVE-2026-10620 (A flaw has been found in code-projects Student Admission System 1.0. A ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0e134fe38979aae5c909d6401199ca4874056b20

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0e134fe38979aae5c909d6401199ca4874056b20
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260603/f8da373e/attachment.htm>


More information about the debian-security-tracker-commits mailing list