[Git][security-tracker-team/security-tracker][master] Add Debian bug references for okular issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Jun 6 13:24:42 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e0d09cb6 by Salvatore Bonaccorso at 2026-06-06T14:24:08+02:00
Add Debian bug references for okular issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -2121,23 +2121,23 @@ CVE-2026-8829 (HTML::Entities versions before 3.84 for Perl read freed heap memo
 CVE-2026-8722 (Net::Async::Statsd::Client versions through 0.005 for Perl allow metri ...)
 	NOT-FOR-US: Net::Async::Statsd::Client Perl module
 CVE-2026-XXXX [integer overflow in fax image allocation leads to undersized heap allocation]
-	- okular <unfixed>
+	- okular <unfixed> (bug #1139009)
 	NOTE: https://kde.org/info/security/advisory-20260511-5.txt
 	NOTE: https://commits.kde.org/okular/49cccdec814b2ddb0a403b63994114f09b007a2c
 CVE-2026-XXXX [unsigned integer wrap-around in fax backend leads to heap out-of-bounds read and write]
-	- okular <unfixed>
+	- okular <unfixed> (bug #1139008)
 	NOTE: https://kde.org/info/security/advisory-20260511-4.txt
 	NOTE: https://commits.kde.org/okular/e5f088674223019fafac26800a2ae0c0d6afc85b
 CVE-2026-XXXX [heap out-of-bounds read in fax backend Ghostscript header handling]
-	- okular <unfixed>
+	- okular <unfixed> (bug #1139007)
 	NOTE: https://kde.org/info/security/advisory-20260511-3.txt
 	NOTE: https://commits.kde.org/okular/e5f088674223019fafac26800a2ae0c0d6afc85b
 CVE-2026-XXXX [heap out-of-bounds read in fax backend FAXMAGIC comparison]
-	- okular <unfixed>
+	- okular <unfixed> (bug #1139005)
 	NOTE: https://kde.org/info/security/advisory-20260511-2.txt
 	NOTE: https://commits.kde.org/okular/e5f088674223019fafac26800a2ae0c0d6afc85b
 CVE-2026-XXXX [heap out-of-bounds write in fax backend on zero-length input]
-	- okular <unfixed>
+	- okular <unfixed> (bug #1139004)
 	NOTE: https://kde.org/info/security/advisory-20260511-1.txt
 	NOTE: https://commits.kde.org/okular/466786c354d890e39a3871f80ed686958d2513a2
 CVE-2026-49941 (Net::CIDR::Set versions through 0.20 for Perl did not validate IP addr ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e0d09cb62280a55f389665482f49389db90fd332

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e0d09cb62280a55f389665482f49389db90fd332
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260606/641ddf60/attachment.htm>


More information about the debian-security-tracker-commits mailing list