[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2026-10650/libwebsockets

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sun Jun 7 08:11:38 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
006dbd61 by Salvatore Bonaccorso at 2026-06-07T09:11:10+02:00
Track fixed version for CVE-2026-10650/libwebsockets

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -2794,7 +2794,7 @@ CVE-2026-10662 (A vulnerability was found in ahujasid blender-mcp up to 7636d13b
 CVE-2026-10661 (A vulnerability has been found in ahujasid blender-mcp up to 7636d13bd ...)
 	NOT-FOR-US: ahujasid blender-mcp
 CVE-2026-10650 (A flaw has been found in warmcat libwebsockets up to 4.5.8. This issue ...)
-	- libwebsockets <unfixed> (bug #1139178)
+	- libwebsockets 4.3.5-5 (bug #1139178)
 	NOTE: https://github.com/biniamf/pocs/tree/main/libwebsockets_sshd-parse-ic-unbounded-alloc
 	NOTE: https://libwebsockets.org/git/libwebsockets/commit?id=3f9f0c6ecaf0e6f3f219d30632c5d1f2479d7498
 CVE-2026-10624 (A vulnerability has been found in SourceCodester Human Resource Manage ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/006dbd611e06111bb23b622ed90985094552c48b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/006dbd611e06111bb23b622ed90985094552c48b
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260607/25c5e971/attachment.htm>


More information about the debian-security-tracker-commits mailing list