[Git][security-tracker-team/security-tracker][master] Track fixed version for CVE-2026-18917/libvirt

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Sep 3 05:34:46 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
317c4769 by Salvatore Bonaccorso at 2026-09-03T06:33:11+02:00
Track fixed version for CVE-2026-18917/libvirt

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -12492,7 +12492,7 @@ CVE-2026-19611 (A flaw was found in WildFly Elytron. Password hashing and verifi
 CVE-2026-19586 (A pre-authentication OS command injection vulnerability has been ident ...)
 	NOT-FOR-US: TPLink
 CVE-2026-18917 (A flaw was found in libvirt. An unprivileged local user could exploit  ...)
-	- libvirt <unfixed> (bug #1145069)
+	- libvirt 12.7.0-1 (bug #1145069)
 	[trixie] - libvirt <no-dsa> (Minor issue)
 	NOTE: https://gitlab.com/libvirt/libvirt/-/work_items/903
 	NOTE: Introduced with: https://gitlab.com/libvirt/libvirt/-/commit/34f2d0319d2098c77c8cc27d8350616029125a2b (v1.2.6-rc1)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/317c4769f90a22cb5bc75f96fa932efca319b5b6

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/317c4769f90a22cb5bc75f96fa932efca319b5b6
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260903/640c6827/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list