[Git][security-tracker-team/security-tracker][master] Add CVE-2026-8836/lwip

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon May 18 20:29:39 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f3301afc by Salvatore Bonaccorso at 2026-05-18T21:29:20+02:00
Add CVE-2026-8836/lwip

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -2,7 +2,9 @@ CVE-2026-8843 (Creating a "2dsphere_bucket" index on a non-timeseries bucket col
 	- mongodb <removed>
 	NOTE: https://jira.mongodb.org/browse/SERVER-116327
 CVE-2026-8836 (A vulnerability was found in lwIP up to 2.2.1. Affected is the functio ...)
-	TODO: check
+	- lwip <unfixed>
+	NOTE: https://savannah.nongnu.org/bugs/?68194
+	NOTE: https://cgit.git.savannah.gnu.org/cgit/lwip.git/commit/?id=0c957ec03054eb6c8205e9c9d1d05d90ada3898c
 CVE-2026-8803 (A flaw has been found in opensourcepos Open Source Point of Sale up to ...)
 	TODO: check
 CVE-2026-8802 (A vulnerability was detected in opensourcepos Open Source Point of Sal ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f3301afc3581d88d75c27814cb06c81c1164546c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f3301afc3581d88d75c27814cb06c81c1164546c
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260518/68fc5f80/attachment.htm>


More information about the debian-security-tracker-commits mailing list