[Git][security-tracker-team/security-tracker][master] Triage CVE-2026-42482, CVE-2026-42483 & CVE-2026-42484 in hashcat for bullseye LTS.

Chris Lamb (@lamby) lamby at debian.org
Sat May 2 17:49:29 BST 2026



Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker


Commits:
c09be24b by Chris Lamb at 2026-05-02T09:49:21-07:00
Triage CVE-2026-42482, CVE-2026-42483 & CVE-2026-42484 in hashcat for bullseye LTS.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -161,18 +161,21 @@ CVE-2026-42484 (A heap-based buffer overflow in hex_to_binary in the PKZIP hash
 	- hashcat <unfixed>
 	[trixie] - hashcat <no-dsa> (Minor issue)
 	[bookworm] - hashcat <no-dsa> (Minor issue)
+	[bullseye] - hashcat <postponed> (Minor issue; can be fixed in next update)
 	NOTE: https://gist.github.com/sgInnora/107f2eb20367e47d58c911e38d56a91f
 	TODO: check upstream details
 CVE-2026-42483 (A heap-based buffer overflow in the Kerberos hash parser in hashcat v7 ...)
 	- hashcat <unfixed>
 	[trixie] - hashcat <no-dsa> (Minor issue)
 	[bookworm] - hashcat <no-dsa> (Minor issue)
+	[bullseye] - hashcat <postponed> (Minor issue; can be fixed in next update)
 	NOTE: https://gist.github.com/sgInnora/107f2eb20367e47d58c911e38d56a91f
 	TODO: check upstream details
 CVE-2026-42482 (A stack-based buffer overflow in mangle_to_hex_lower() and mangle_to_h ...)
 	- hashcat <unfixed>
 	[trixie] - hashcat <no-dsa> (Minor issue)
 	[bookworm] - hashcat <no-dsa> (Minor issue)
+	[bullseye] - hashcat <postponed> (Minor issue; can be fixed in next update)
 	NOTE: https://gist.github.com/sgInnora/107f2eb20367e47d58c911e38d56a91f
 	TODO: check upstream details
 CVE-2026-42481 (Open CASCADE Technology (OCCT) V8_0_0_rc5 contains multiple vulnerabil ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c09be24b2e09861f585f479d62af22dc9eab2f74

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c09be24b2e09861f585f479d62af22dc9eab2f74
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260502/a234a8f2/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list