[Git][security-tracker-team/security-tracker][master] 2 commits: Add Debian bug reference for Apache::Session issue

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sun May 10 19:17:46 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
3e8068dc by Salvatore Bonaccorso at 2026-05-10T20:17:30+02:00
Add Debian bug reference for Apache::Session issue

- - - - -
fc48aaec by Salvatore Bonaccorso at 2026-05-10T20:17:32+02:00
Add Debian bug reference for invesalius issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1588,7 +1588,7 @@ CVE-2025-71297 (In the Linux kernel, the following vulnerability has been resolv
 	[bookworm] - linux 6.1.170-1
 	NOTE: https://git.kernel.org/linus/44d1f624bbdd2d60319374ba85f7195a28d00c90 (7.0-rc1)
 CVE-2013-10075 (Apache::Session versions through 1.94 for Perl re-creates deleted sess ...)
-	- libapache-session-perl <unfixed>
+	- libapache-session-perl <unfixed> (bug #1136206)
 	NOTE: https://lists.security.metacpan.org/cve-announce/msg/39844719/
 CVE-2026-43500 [rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present]
 	{DSA-6258-1 DSA-6253-1 DLA-4574-1 DLA-4572-1}
@@ -216062,7 +216062,7 @@ CVE-2024-45613 (CKEditor 5 is a JavaScript rich-text editor. Starting in version
 	- ckeditor <not-affected> (Specific to ckeditor 5)
 	- ckeditor3 <not-affected> (Specific to ckeditor 5)
 CVE-2024-44825 (Directory Traversal vulnerability in Centro de Tecnologia da Informaco ...)
-	- invesalius <unfixed>
+	- invesalius <unfixed> (bug #1136204)
 	NOTE: https://github.com/partywavesec/invesalius3_vulnerabilities/tree/main/CVE-2024-44825
 	NOTE: https://www.partywave.site/show/research/cve-2024-44825-invesalius-arbitrary-file-write-and-directory-traversal
 	NOTE: https://github.com/invesalius/invesalius3/commit/8b966260b3d9510e3ddc473aac4cc6578bab3aab



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/3e016197a0a313f5028049be8f17ddb6977d207c...fc48aaec49577ceea89ad5b0a38bf4e4fe9812f2

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/3e016197a0a313f5028049be8f17ddb6977d207c...fc48aaec49577ceea89ad5b0a38bf4e4fe9812f2
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260510/b62e1b28/attachment.htm>


More information about the debian-security-tracker-commits mailing list