[Git][security-tracker-team/security-tracker][master] Reference upstream commits for CVE-2026-10649

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Jun 22 09:59:09 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
14988c6b by Salvatore Bonaccorso at 2026-06-22T10:42:02+02:00
Reference upstream commits for CVE-2026-10649

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -3371,6 +3371,11 @@ CVE-2026-10649 (A flaw was found in Pacemaker. An unauthenticated remote attacke
 	- pacemaker <unfixed> (bug #1140188)
 	NOTE: https://www.openwall.com/lists/oss-security/2026/06/16/6
 	NOTE: https://github.com/clusterLabs/pacemaker/pull/4128
+	NOTE: Fixed by: https://github.com/ClusterLabs/pacemaker/commit/8e667ef87ac4bc66ab8c64599334b521655925f7
+	NOTE: Fixed by: https://github.com/ClusterLabs/pacemaker/commit/1e1825bf2c28a349c576521fbda4393455297987
+	NOTE: Fixed by: https://github.com/ClusterLabs/pacemaker/commit/bb37829e00c782071906305d2cf50247179f0fd7
+	NOTE: Fixed by: https://github.com/ClusterLabs/pacemaker/commit/6dd7ce8e656b6c629d3268038d6606041460fae7
+	NOTE: Fixed by: https://github.com/ClusterLabs/pacemaker/commit/c49b26cb1e11bb160198a28ac5567b0154b49121
 CVE-2026-50203 (A path traversal in the SFTP provider (`SFTPHook.retrieve_directory` / ...)
 	NOT-FOR-US: Airflow provider
 CVE-2026-46331 (In the Linux kernel, the following vulnerability has been resolved:  n ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/14988c6b81bdd39b624c4af11cd24438cbaab989

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/14988c6b81bdd39b624c4af11cd24438cbaab989
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260622/57756d0d/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list