[Git][security-tracker-team/security-tracker][master] Add CVE-2026-3713/libpng1.6

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sun Mar 8 13:07:04 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4bda4bac by Salvatore Bonaccorso at 2026-03-08T14:05:47+01:00
Add CVE-2026-3713/libpng1.6

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -11,7 +11,9 @@ CVE-2026-3715 (A vulnerability was found in Wavlink WL-WN579X3-C 231124. This af
 CVE-2026-3714 (A vulnerability has been found in OpenCart 4.0.2.3. Affected by this i ...)
 	TODO: check
 CVE-2026-3713 (A flaw has been found in pnggroup libpng up to 1.6.55. Affected by thi ...)
-	TODO: check
+	- libpng1.6 <unfixed> (unimportant)
+	NOTE: https://github.com/pnggroup/libpng/issues/794
+	NOTE: contrib/pngminus/pnm2png.c not built in binary packages
 CVE-2026-3711 (A vulnerability was detected in code-projects Simple Flight Ticket Boo ...)
 	NOT-FOR-US: code-projects
 CVE-2026-3710 (A security vulnerability has been detected in code-projects Simple Fli ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4bda4bacb5a41a65df81febdbb468c0feeedad71

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4bda4bacb5a41a65df81febdbb468c0feeedad71
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260308/61cde68c/attachment.htm>


More information about the debian-security-tracker-commits mailing list