[Git][security-tracker-team/security-tracker][master] new netatalk issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Thu May 14 23:14:06 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
70c8b406 by Moritz Mühlenhoff at 2026-05-14T23:46:06+02:00
new netatalk issue

- - - - -


2 changed files:

- data/CVE/list
- data/dsa-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,135 @@
+CVE-2026-44068
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-44068
+CVE-2026-44066
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-44066
+CVE-2026-44064
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-44064
+CVE-2026-44062
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-44062
+CVE-2026-44060
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-44060
+CVE-2026-44057
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-44057
+CVE-2026-44055
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-44055
+CVE-2026-44054
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-44054
+CVE-2026-44052
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-44052
+CVE-2026-44051
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-44051
+CVE-2026-44050
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-44050
+CVE-2026-44049
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-44049
+CVE-2026-44048
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-44048
+CVE-2026-44047
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-44047
+CVE-2026-7837
+	- netatalk <unfixed> (unimportant)
+	NOTE: https://netatalk.io/security/CVE-2026-7837
+	NOTE: No security impact per upstream assessment
+CVE-2026-7836
+	- netatalk <unfixed> (unimportant)
+	NOTE: https://netatalk.io/security/CVE-2026-7836
+	NOTE: No security impact per upstream assessment
+CVE-2026-7835
+	- netatalk <unfixed> (unimportant)
+	NOTE: https://netatalk.io/security/CVE-2026-7835
+	NOTE: No security impact per upstream assessment
+CVE-2026-44059
+	- netatalk <unfixed> (unimportant)
+	NOTE: https://netatalk.io/security/CVE-2026-44059
+	NOTE: No security impact per upstream assessment, just hardening
+CVE-2026-44058
+	- netatalk <unfixed>
+	[trixie] - netatalk <postponed> (Minor issue, revisit when merged upstream)
+	NOTE: https://netatalk.io/security/CVE-2026-44058
+CVE-2026-44053
+	- netatalk <unfixed>
+	[trixie] - netatalk <postponed> (Minor issue, revisit when merged upstream)
+	NOTE: https://netatalk.io/security/CVE-2026-44053
+CVE-2026-44063
+	- netatalk <unfixed>
+	[trixie] - netatalk <postponed> (Minor issue, revisit when merged upstream)
+	NOTE: https://netatalk.io/security/CVE-2026-44063
+CVE-2026-44061
+	- netatalk <unfixed>
+	[trixie] - netatalk <postponed> (Minor issue, revisit when merged upstream)
+	NOTE: https://netatalk.io/security/CVE-2026-44061
+CVE-2026-44056
+	- netatalk <unfixed>
+	[trixie] - netatalk <postponed> (Minor issue, revisit when merged upstream)
+	NOTE: https://netatalk.io/security/CVE-2026-44056
+CVE-2026-44069
+	- netatalk <unfixed> (unimportant)
+	NOTE: https://netatalk.io/security/CVE-2026-44069
+	NOTE: No security impact per upstream assessment
+CVE-2026-44067
+	- netatalk <unfixed>
+	[trixie] - netatalk <postponed> (Minor issue, revisit when merged upstream)
+	NOTE: https://netatalk.io/security/CVE-2026-44067
+CVE-2026-44065
+	- netatalk <unfixed>
+	[trixie] - netatalk <postponed> (Minor issue, revisit when merged upstream)
+	NOTE: https://netatalk.io/security/CVE-2026-44065
+CVE-2026-44072
+	- netatalk <unfixed> (unimportant)
+	NOTE: https://netatalk.io/security/CVE-2026-44072
+	NOTE: No security impact per upstream assessment
+CVE-2026-44071
+	- netatalk <unfixed> (unimportant)
+	NOTE: https://netatalk.io/security/CVE-2026-44071
+	NOTE: Missing hardening, not a security issue
+CVE-2026-44070
+	- netatalk <unfixed> (unimportant)
+	NOTE: https://netatalk.io/security/CVE-2026-44070
+	NOTE: Not exploitable per upstream assessment
+CVE-2026-44075
+	- netatalk <unfixed> (unimportant)
+	NOTE: https://netatalk.io/security/CVE-2026-44075
+	NOTE: No security impact per upstream assessment
+CVE-2026-44074
+	- netatalk <unfixed> (unimportant)
+	NOTE: https://netatalk.io/security/CVE-2026-44074
+	NOTE: No security impact per upstream assessment
+CVE-2026-44073
+	- netatalk <unfixed> (unimportant)
+	NOTE: https://netatalk.io/security/CVE-2026-44073
+	NOTE: No security impact per upstream assessment
+CVE-2026-44076
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-44076
+CVE-2026-45356
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-45356
+CVE-2026-45355
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-45355
+CVE-2026-45354
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-45354
+CVE-2026-45699
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-45699
+CVE-2026-45698
+	- netatalk <unfixed>
+	NOTE: https://netatalk.io/security/CVE-2026-45698
 CVE-2026-8509
 	- chromium 148.0.7778.167-1
 	[bullseye] - chromium <end-of-life> (see #1061268)


=====================================
data/dsa-needed.txt
=====================================
@@ -60,6 +60,8 @@ mbedtls/oldstable
 --
 mimetex/oldstable
 --
+netatalk
+--
 netty
 --
 nginx



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/70c8b406242b3272c1d68671554ac77348ab4ba4

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/70c8b406242b3272c1d68671554ac77348ab4ba4
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260514/a8064716/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list