[Git][security-tracker-team/security-tracker][master] First pass of trixie-pu updates for point release

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue May 12 21:30:26 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
dc4a81f3 by Salvatore Bonaccorso at 2026-05-12T22:29:43+02:00
First pass of trixie-pu updates for point release

Move not uploaded and not accepted uploads to the end of list for easier
merging and second review.

- - - - -


1 changed file:

- data/next-point-update.txt


Changes:

=====================================
data/next-point-update.txt
=====================================
@@ -104,8 +104,6 @@ CVE-2026-1485
 	[trixie] - glib2.0 2.84.4-3~deb13u3
 CVE-2026-1489
 	[trixie] - glib2.0 2.84.4-3~deb13u3
-CVE-2026-25727
-	[trixie] - rust-time 0.3.37-1+deb13u1
 CVE-2025-68158
 	[trixie] - python-authlib 1.6.0-1+deb13u1
 CVE-2025-62706
@@ -114,8 +112,6 @@ CVE-2025-61920
 	[trixie] - python-authlib 1.6.0-1+deb13u1
 CVE-2025-59420
 	[trixie] - python-authlib 1.6.0-1+deb13u1
-CVE-2025-68920
-	[trixie] - ckermit 416~beta12-1+deb13u1
 CVE-2025-13034
 	[trixie] - curl 8.14.1-2+deb13u3
 CVE-2021-37746
@@ -162,8 +158,6 @@ CVE-2026-28753
 	[trixie] - nginx 1.26.3-3+deb13u3
 CVE-2026-28755
 	[trixie] - nginx 1.26.3-3+deb13u3
-CVE-2026-32953
-	[trixie] - golang-github-tillitis-tkeyclient 1.3.0-1~deb13u1
 CVE-2025-63261
 	[trixie] - awstats 7.9-1+deb13u1
 CVE-2026-34881
@@ -264,12 +258,6 @@ CVE-2026-40199
 	[trixie] - libnet-cidr-lite-perl 0.22-3~deb13u1
 CVE-2026-35535
 	[trixie] - sudo 1.9.16p2-3+deb13u2
-CVE-2026-33551
-	[trixie] - keystone 2:27.0.0-3+deb13u3
-CVE-2026-40683
-	[trixie] - keystone 2:27.0.0-3+deb13u3
-CVE-2026-34956
-	[trixie] - openvswitch 3.5.4-1~deb13u1
 CVE-2026-40386
 	[trixie] - libexif 0.6.25-1+deb13u1
 CVE-2026-40385
@@ -358,8 +346,6 @@ CVE-2026-29111
 	[trixie] - systemd 257.13-1~deb13u1
 CVE-2026-4105
 	[trixie] - systemd 257.13-1~deb13u1
-CVE-2026-35444
-	[trixie] - libsdl2-image 2.8.8+dfsg-1+deb13u1
 CVE-2026-33691
 	[trixie] - modsecurity-crs 3.3.7-1+deb13u2
 CVE-2026-39402
@@ -420,16 +406,54 @@ CVE-2026-6843
 	[trixie] - nano 8.4-1+deb13u1
 CVE-2026-6842
 	[trixie] - nano 8.4-1+deb13u1
-CVE-2026-42997
-	[trixie] - ironic 1:29.0.5-1~debu13u1
-CVE-2026-42510
-	[trixie] - ironic 1:29.0.5-1~debu13u1
 CVE-2026-22693
 	[trixie] - harfbuzz 10.2.0-1+deb13u1
 CVE-2026-42144
 	[trixie] - cimg 3.5.2+dfsg-1+deb13u1
 CVE-2026-42146
 	[trixie] - cimg 3.5.2+dfsg-1+deb13u1
+CVE-2023-44483
+	[trixie] - libxml-security-java 2.1.8-1.1~deb13u1
+CVE-2025-34297
+	[trixie] - kissfft 131.1.0-4.1~deb13u1
+CVE-2026-41445
+	[trixie] - kissfft 131.1.0-4.1~deb13u1
+CVE-2026-6042
+	[trixie] - musl 1.2.5-3.1~deb13u1
+CVE-2026-40200
+	[trixie] - musl 1.2.5-3.1~deb13u1
+CVE-2026-6667
+	[trixie] - pgbouncer 1.24.1-1+deb13u2
+CVE-2026-6666
+	[trixie] - pgbouncer 1.24.1-1+deb13u2
+CVE-2026-6665
+	[trixie] - pgbouncer 1.24.1-1+deb13u2
+CVE-2026-6664
+	[trixie] - pgbouncer 1.24.1-1+deb13u2
+CVE-2026-32711
+	[trixie] - pydicom 2.4.3-2+deb13u1
+CVE-2026-5265
+	[trixie] - ovn 25.03.0-1+deb13u1
+CVE-2026-5367
+	[trixie] - ovn 25.03.0-1+deb13u1
+CVE-2026-25727
+	[trixie] - rust-time 0.3.37-1+deb13u1
+CVE-2025-68920
+	[trixie] - ckermit 416~beta12-1+deb13u1
+CVE-2026-32953
+	[trixie] - golang-github-tillitis-tkeyclient 1.3.0-1~deb13u1
+CVE-2026-33551
+	[trixie] - keystone 2:27.0.0-3+deb13u3
+CVE-2026-40683
+	[trixie] - keystone 2:27.0.0-3+deb13u3
+CVE-2026-34956
+	[trixie] - openvswitch 3.5.4-1~deb13u1
+CVE-2026-35444
+	[trixie] - libsdl2-image 2.8.8+dfsg-1+deb13u1
+CVE-2026-42997
+	[trixie] - ironic 1:29.0.5-1~debu13u1
+CVE-2026-42510
+	[trixie] - ironic 1:29.0.5-1~debu13u1
 CVE-2025-14524
 	[trixie] - curl 8.14.1-2+deb13u4
 CVE-2025-14819
@@ -456,27 +480,3 @@ CVE-2026-6429
 	[trixie] - curl 8.14.1-2+deb13u4
 CVE-2026-7168
 	[trixie] - curl 8.14.1-2+deb13u4
-CVE-2023-44483
-	[trixie] - libxml-security-java 2.1.8-1.1~deb13u1
-CVE-2025-34297
-	[trixie] - kissfft 131.1.0-4.1~deb13u1
-CVE-2026-41445
-	[trixie] - kissfft 131.1.0-4.1~deb13u1
-CVE-2026-6042
-	[trixie] - musl 1.2.5-3.1~deb13u1
-CVE-2026-40200
-	[trixie] - musl 1.2.5-3.1~deb13u1
-CVE-2026-6667
-	[trixie] - pgbouncer 1.24.1-1+deb13u2
-CVE-2026-6666
-	[trixie] - pgbouncer 1.24.1-1+deb13u2
-CVE-2026-6665
-	[trixie] - pgbouncer 1.24.1-1+deb13u2
-CVE-2026-6664
-	[trixie] - pgbouncer 1.24.1-1+deb13u2
-CVE-2026-32711
-	[trixie] - pydicom 2.4.3-2+deb13u1
-CVE-2026-5265
-	[trixie] - ovn 25.03.0-1+deb13u1
-CVE-2026-5367
-	[trixie] - ovn 25.03.0-1+deb13u1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dc4a81f3d9e7080c01905a49911c54d6e2661ea0

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dc4a81f3d9e7080c01905a49911c54d6e2661ea0
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260512/49deaeda/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list