[Git][security-tracker-team/security-tracker][master] Add two new vim issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat May 9 09:16:21 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
272db41c by Salvatore Bonaccorso at 2026-05-09T10:15:50+02:00
Add two new vim issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -17,13 +17,17 @@ CVE-2026-6665 (The SCRAM code in PgBouncer before 1.25.2 did not check the retur
 CVE-2026-6664 (An integer overflow in network packet parsing code in PgBouncer before ...)
 	TODO: check
 CVE-2026-45130 (Vim is an open source, command line text editor. Prior to version 9.2. ...)
-	TODO: check
+	- vim <unfixed>
+	NOTE: https://github.com/vim/vim/security/advisories/GHSA-q4jv-r9gj-6cwv
+	NOTE: Fixed by: https://github.com/vim/vim/commit/92993329178cb1f72d700fff45ca86e1c2d369f8 (v9.2.0450)
 CVE-2026-44987 (SysReptor is a fully customizable pentest reporting platform. Prior to ...)
 	TODO: check
 CVE-2026-44694 (n8n-MCP is an MCP server that provides AI assistants access to n8n nod ...)
 	TODO: check
 CVE-2026-44656 (Vim is an open source, command line text editor. Prior to version 9.2. ...)
-	TODO: check
+	- vim <unfixed>
+	NOTE: https://github.com/vim/vim/security/advisories/GHSA-hwg5-3cxw-wvvg
+	NOTE: Fixed by: https://github.com/vim/vim/commit/190cb3c2b9c769a3972bcfd991a7b5b6cb771ef0 (v9.2.0435)
 CVE-2026-44400 (MailEnable Enterprise Premium 10.55 and earlier contains an improper a ...)
 	NOT-FOR-US: MailEnable
 CVE-2026-44313 (Linkwarden is a self-hosted, open-source collaborative bookmark manage ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/272db41c074b81aadbf45c84dad21ea773d769f5

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/272db41c074b81aadbf45c84dad21ea773d769f5
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260509/1fb4b592/attachment.htm>


More information about the debian-security-tracker-commits mailing list