[Git][security-tracker-team/security-tracker][master] new rust-quinn issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Fri Mar 13 16:26:35 GMT 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
eb786aab by Moritz Muehlenhoff at 2026-03-13T17:20:55+01:00
new rust-quinn issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1113,6 +1113,11 @@ CVE-2026-31815 (Unicorn adds modern reactive component functionality to your Dja
 	TODO: check
 CVE-2026-31812 (Quinn is a pure-Rust, async-compatible implementation of the IETF QUIC ...)
 	TODO: check
+	- rust-quinn <unfixed>
+	NOTE: https://github.com/quinn-rs/quinn/security/advisories/GHSA-6xvm-j4wr-6v98
+	NOTE: https://github.com/quinn-rs/quinn/pull/2558
+	NOTE: Fixed by: https://github.com/quinn-rs/quinn/commit/655a8ad094e4fad463c90c4666c62db7de56384b
+	NOTE: Fixed by: https://github.com/quinn-rs/quinn/commit/57b9d0abf33cf59e0cbd787ca79e2687807c7c85
 CVE-2026-31809 (SiYuan is a personal knowledge management system. Prior to 3.5.10, SiY ...)
 	NOT-FOR-US: SiYuan
 CVE-2026-31808 (file-type detects the file type of a file, stream, or data. Prior to 2 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/eb786aabf4e3274a303e9c1f02ca2bdf40ed5a7d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/eb786aabf4e3274a303e9c1f02ca2bdf40ed5a7d
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260313/71083abc/attachment.htm>


More information about the debian-security-tracker-commits mailing list