[Git][security-tracker-team/security-tracker][master] Track fixed version via unstable for some vips issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sun Mar 1 13:23:15 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e0a71f61 by Salvatore Bonaccorso at 2026-03-01T14:22:39+01:00
Track fixed version via unstable for some vips issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -311,22 +311,22 @@ CVE-2026-3286 (A vulnerability was identified in itwanger paicoding 1.0.0/1.0.1/
 CVE-2026-3285 (A vulnerability was determined in berry-lang berry up to 1.1.0. The af ...)
 	NOT-FOR-US: berry-lang berry
 CVE-2026-3284 (A vulnerability was found in libvips 8.19.0. Impacted is the function  ...)
-	- vips <unfixed> (bug #1129310)
+	- vips 8.18.0-3 (bug #1129310)
 	NOTE: https://github.com/libvips/libvips/issues/4879
 	NOTE: https://github.com/libvips/libvips/pull/4887
 	NOTE: Fixed by: https://github.com/libvips/libvips/commit/24795bb3d19d84f7b6f5ed86451ad556c8f2fe70
 CVE-2026-3283 (A vulnerability has been found in libvips 8.19.0. This issue affects t ...)
-	- vips <unfixed> (bug #1129310)
+	- vips 8.18.0-3 (bug #1129310)
 	NOTE: https://github.com/libvips/libvips/issues/4880
 	NOTE: https://github.com/libvips/libvips/pull/4887
 	NOTE: Fixed by: https://github.com/libvips/libvips/commit/24795bb3d19d84f7b6f5ed86451ad556c8f2fe70
 CVE-2026-3282 (A flaw has been found in libvips 8.19.0. This vulnerability affects th ...)
-	- vips <unfixed> (bug #1129311)
+	- vips 8.18.0-3 (bug #1129311)
 	NOTE: https://github.com/libvips/libvips/issues/4881
 	NOTE: https://github.com/libvips/libvips/pull/4886
 	NOTE: Fixed by: https://github.com/libvips/libvips/commit/7215ead1e0cd7d3703cc4f5fca06d7d0f4c22b91
 CVE-2026-3281 (A vulnerability was detected in libvips 8.19.0. This affects the funct ...)
-	- vips <unfixed> (bug #1129312)
+	- vips 8.18.0-3 (bug #1129312)
 	NOTE: https://github.com/libvips/libvips/issues/4878
 	NOTE: https://github.com/libvips/libvips/pull/4895
 	NOTE: Fixed by: https://github.com/libvips/libvips/commit/fd28c5463697712cb0ab116a2c55e4f4d92c4088
@@ -1313,17 +1313,17 @@ CVE-2026-3149 (A weakness has been identified in itsourcecode College Management
 CVE-2026-3148 (A vulnerability was determined in SourceCodester Simple and Nice Shopp ...)
 	NOT-FOR-US: SourceCodester
 CVE-2026-3147 (A vulnerability was found in libvips up to 8.18.0. This affects the fu ...)
-	- vips <unfixed> (bug #1129314)
+	- vips 8.18.0-3 (bug #1129314)
 	NOTE: https://github.com/libvips/libvips/issues/4874
 	NOTE: https://github.com/libvips/libvips/pull/4894
 	NOTE: Fixed by: https://github.com/libvips/libvips/commit/b3ab458a25e0e261cbd1788474bbc763f7435780
 CVE-2026-3146 (A vulnerability has been found in libvips up to 8.18.0. The impacted e ...)
-	- vips <unfixed> (bug #1129315)
+	- vips 8.18.0-3 (bug #1129315)
 	NOTE: https://github.com/libvips/libvips/issues/4875
 	NOTE: https://github.com/libvips/libvips/pull/4888
 	NOTE: Fixed by: https://github.com/libvips/libvips/commit/d4ce337c76bff1b278d7085c3c4f4725e3aa6ece
 CVE-2026-3145 (A flaw has been found in libvips up to 8.18.0. The affected element is ...)
-	- vips <unfixed> (bug #1129315)
+	- vips 8.18.0-3 (bug #1129315)
 	NOTE: https://github.com/libvips/libvips/issues/4876
 	NOTE: https://github.com/libvips/libvips/pull/4888
 	NOTE: Fixed by: https://github.com/libvips/libvips/commit/d4ce337c76bff1b278d7085c3c4f4725e3aa6ece



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e0a71f61be0abb62cf06818a0743f1862934de39

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e0a71f61be0abb62cf06818a0743f1862934de39
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260301/5244dd49/attachment.htm>


More information about the debian-security-tracker-commits mailing list