[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Sep 3 21:30:08 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5a0824a5 by Salvatore Bonaccorso at 2026-09-03T22:29:45+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -156,29 +156,29 @@ CVE-2026-85150 (A NULL pointer dereference flaw was found in GStreamer's RTSP su
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer-security/-/merge_requests/120
 	TODO: recheck once SA-2026-0082 and MR public
 CVE-2026-85138 (A vulnerability was detected in SeaCMS up to 13.6. Affected is the fun ...)
-	TODO: check
+	NOT-FOR-US: SeaCMS
 CVE-2026-85137 (A security vulnerability has been detected in SeaCMS up to 13.6. This  ...)
-	TODO: check
+	NOT-FOR-US: SeaCMS
 CVE-2026-85135 (A security flaw has been discovered in ILIAS up to 9.21/10.9/11.2. Thi ...)
-	TODO: check
+	NOT-FOR-US: ILIAS
 CVE-2026-85124 (@fastify/http-proxy versions before 11.6.2 do not validate proxied HTT ...)
-	TODO: check
+	NOT-FOR-US: fastify/http-proxy
 CVE-2026-85110 (A vulnerability was identified in Tenda HG10 300001138. Impacted is th ...)
 	NOT-FOR-US: Tenda
 CVE-2026-85109 (A vulnerability was determined in Tenda HG10 300001138. This issue aff ...)
 	NOT-FOR-US: Tenda
 CVE-2026-85107 (A vulnerability was found in NousResearch hermes-agent 0.18.0. This vu ...)
-	TODO: check
+	NOT-FOR-US: NousResearch
 CVE-2026-85106 (A vulnerability has been found in NousResearch hermes-agent 0.18.0. Th ...)
-	TODO: check
+	NOT-FOR-US: NousResearch
 CVE-2026-85105 (A flaw has been found in NousResearch hermes-agent 0.18.0. Affected by ...)
-	TODO: check
+	NOT-FOR-US: NousResearch
 CVE-2026-85100 (A vulnerability was detected in 2FastLabs agent-squad up to 1.1.4. Aff ...)
-	TODO: check
+	NOT-FOR-US: 2FastLabs agent-squad
 CVE-2026-85093 (Cheshire Cat AI's GET /memory/collections/{collection_id}/points endpo ...)
-	TODO: check
+	NOT-FOR-US: Cheshire Cat AI
 CVE-2026-85092 (LiME through 1.12.0 fails to validate the disk acquisition output path ...)
-	TODO: check
+	NOT-FOR-US: LiME
 CVE-2026-85091 (zlib versions 1.3.1.2 through 1.3.2 contain a heap buffer overflow vul ...)
 	TODO: check
 CVE-2026-85090 (FreeRDP before 3.31.0 contains a heap out-of-bounds read vulnerability ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5a0824a5c73878bbd323ee7b63f253a27674219d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5a0824a5c73878bbd323ee7b63f253a27674219d
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260903/bcf29880/attachment.htm>


More information about the debian-security-tracker-commits mailing list