[Git][security-tracker-team/security-tracker][master] Reference introducing commit for CVE-2026-41054/haveged
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue May 19 14:46:07 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
21161f76 by Salvatore Bonaccorso at 2026-05-19T15:45:22+02:00
Reference introducing commit for CVE-2026-41054/haveged
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,6 +1,7 @@
CVE-2026-41054 [haveged: missing exit out of permission check could lead to root exploit]
- haveged <unfixed>
NOTE: https://bugzilla.suse.com/show_bug.cgi?id=1264086
+ NOTE: Introduced with: https://github.com/jirka-h/haveged/commit/a2496c5de9af7e3ac3ef82a2257d14d8a0ac37fb (1.9.3)
NOTE: Fixed by: https://github.com/jirka-h/haveged/commit/3870de0270d3fa2067490ffa47491abde4ad69c6 (v1.9.21)
NOTE: Fixed by: https://github.com/jirka-h/haveged/commit/bcd7e52bcf0068225b7ee84a1f85c9d72a787b54 (v1.9.21)
CVE-2026-43493 [crypto: pcrypt - Fix handling of MAY_BACKLOG requests]
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/21161f765171c0c6e2672942f2702ec4737a5ecd
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/21161f765171c0c6e2672942f2702ec4737a5ecd
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260519/fe9029c5/attachment.htm>
More information about the debian-security-tracker-commits
mailing list