[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2026-8669/libimager-perl
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Fri May 15 22:20:13 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
083c9f50 by Salvatore Bonaccorso at 2026-05-15T23:19:39+02:00
Track fixed version for CVE-2026-8669/libimager-perl
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -218,7 +218,7 @@ CVE-2026-8503 (Apache::Session::Generate::SHA256 versions before 1.3.19 for Perl
NOTE: https://lists.security.metacpan.org/cve-announce/msg/40079348/
NOTE: https://github.com/LemonLDAPNG/Apache-Session-Browseable/commit/cc915cbbd266776eec3dd8bf4748b15fa827dbd0 (v1.3.19)
CVE-2026-8669 (Imager versions through 1.030 for Perl allow a heap out of bounds (OOB ...)
- - libimager-perl <unfixed>
+ - libimager-perl 1.031+dfsg-1
NOTE: https://lists.security.metacpan.org/cve-announce/msg/40083214/
NOTE: Imager embbeds the Imager::File::GIF code and syncs the fix:
NOTE: Fixed by: https://github.com/tonycoz/imager/commit/782e9c06cc75a0f7eed383f39522f51f44598b04 (v1.031)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/083c9f501daea43e501f2269c90c6d599d0e6c8b
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/083c9f501daea43e501f2269c90c6d599d0e6c8b
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260515/0ed0d711/attachment.htm>
More information about the debian-security-tracker-commits
mailing list