[Git][security-tracker-team/security-tracker][master] Directly reference non-merge commit for CVE-2026-34582

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon May 4 20:28:11 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d7cdbf84 by Salvatore Bonaccorso at 2026-05-04T21:27:32+02:00
Directly reference non-merge commit for CVE-2026-34582

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -18584,7 +18584,7 @@ CVE-2026-34582 (Botan is a C++ cryptography library. Prior to version 3.11.1, th
 	- botan <removed>
 	NOTE: https://github.com/randombit/botan/security/advisories/GHSA-pxcj-9ppx-g86g
 	NOTE: https://github.com/randombit/botan/pull/5499
-	NOTE: https://github.com/randombit/botan/commit/d0c85903c7efdb0bdf6042008e63e3115fc34df4 (3.11.1)
+	NOTE: Fixed by: https://github.com/randombit/botan/commit/4190398599413373f55b1073ac06fefd494af8c6 (3.11.1)
 CVE-2026-34580 (Botan is a C++ cryptography library. In 3.11.0, the function Certifica ...)
 	- botan3 <not-affected> (Vulnerable code introduced in 3.11.0, not released in unstable)
 	NOTE: https://github.com/randombit/botan/security/advisories/GHSA-v782-6fq4-q827



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d7cdbf84969391e8d2f26b1a630edc518a687328

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d7cdbf84969391e8d2f26b1a630edc518a687328
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260504/a406cd3c/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list