[Git][security-tracker-team/security-tracker][master] Add CVE-2026-46433/lldpd
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Fri May 15 22:10:08 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
7dfe6345 by Salvatore Bonaccorso at 2026-05-15T23:09:32+02:00
Add CVE-2026-46433/lldpd
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,3 +1,8 @@
+CVE-2026-46433 [Heap OOB Read in VLAN Decapsulation memmove]
+ - lldpd 1.0.22-1
+ NOTE: https://github.com/lldpd/lldpd/security/advisories/GHSA-2g8p-2h3j-63m3
+ NOTE: https://github.com/lldpd/lldpd/pull/787
+ NOTE: Fixed by: https://github.com/lldpd/lldpd/commit/ca931be63a9cae0fcd8e9b6ae4e916d49f141cd6 (1.0.22)
CVE-2026-8695 (radare2 6.1.5 contains a use-after-free vulnerability in the gdbr_thre ...)
- radare2 <unfixed>
NOTE: https://github.com/radareorg/radare2/issues/25835
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7dfe63455ad8288c02467d45cf69d40f41931589
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7dfe63455ad8288c02467d45cf69d40f41931589
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260515/735dcbf4/attachment.htm>
More information about the debian-security-tracker-commits
mailing list