[Git][security-tracker-team/security-tracker][master] Add two more wolfssl issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Mar 21 07:40:39 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
662b8fd1 by Salvatore Bonaccorso at 2026-03-21T08:40:15+01:00
Add two more wolfssl issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -933,9 +933,13 @@ CVE-2026-22557 (A malicious actor with access to the network could exploit a Pat
 CVE-2026-21788 (HCL Connections is vulnerable to a cross-site scripting attack where a ...)
 	NOT-FOR-US: HCL
 CVE-2026-1005 (Integer underflow in wolfSSL packet sniffer <= 5.8.4 allows an attacke ...)
-	TODO: check
+	- wolfssl 5.9.0-0.1
+	NOTE: https://github.com/wolfSSL/wolfssl/pull/9571
+	NOTE: Fixed by: https://github.com/wolfSSL/wolfssl/commit/ca7899429844e8bd3824fe92a709978b51f750c4 (v5.9.0-stable)
 CVE-2026-0819 (A stack buffer overflow vulnerability exists in wolfSSL's PKCS7 Signed ...)
-	TODO: check
+	- wolfssl 5.9.0-0.1
+	NOTE: https://github.com/wolfSSL/wolfssl/pull/9630
+	NOTE: Fixed by: https://github.com/wolfSSL/wolfssl/commit/9c7b58656541e8d31876d7ccd2cd38140b8ffb79 (v5.9.0-stable)
 CVE-2025-71260 (BMC FootPrints ITSM versions 20.20.02 through 20.24.01.001 contain a d ...)
 	NOT-FOR-US: BMC FootPrints ITSM
 CVE-2025-71259 (BMC FootPrints ITSM versions 20.20.02 through 20.24.01.001 contain a b ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/662b8fd137dcc1fc1c502c6278a80ed0234beb2b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/662b8fd137dcc1fc1c502c6278a80ed0234beb2b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260321/4c197949/attachment.htm>


More information about the debian-security-tracker-commits mailing list