[Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Thu Sep 3 21:30:08 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
5a0824a5 by Salvatore Bonaccorso at 2026-09-03T22:29:45+02:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -156,29 +156,29 @@ CVE-2026-85150 (A NULL pointer dereference flaw was found in GStreamer's RTSP su
NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer-security/-/merge_requests/120
TODO: recheck once SA-2026-0082 and MR public
CVE-2026-85138 (A vulnerability was detected in SeaCMS up to 13.6. Affected is the fun ...)
- TODO: check
+ NOT-FOR-US: SeaCMS
CVE-2026-85137 (A security vulnerability has been detected in SeaCMS up to 13.6. This ...)
- TODO: check
+ NOT-FOR-US: SeaCMS
CVE-2026-85135 (A security flaw has been discovered in ILIAS up to 9.21/10.9/11.2. Thi ...)
- TODO: check
+ NOT-FOR-US: ILIAS
CVE-2026-85124 (@fastify/http-proxy versions before 11.6.2 do not validate proxied HTT ...)
- TODO: check
+ NOT-FOR-US: fastify/http-proxy
CVE-2026-85110 (A vulnerability was identified in Tenda HG10 300001138. Impacted is th ...)
NOT-FOR-US: Tenda
CVE-2026-85109 (A vulnerability was determined in Tenda HG10 300001138. This issue aff ...)
NOT-FOR-US: Tenda
CVE-2026-85107 (A vulnerability was found in NousResearch hermes-agent 0.18.0. This vu ...)
- TODO: check
+ NOT-FOR-US: NousResearch
CVE-2026-85106 (A vulnerability has been found in NousResearch hermes-agent 0.18.0. Th ...)
- TODO: check
+ NOT-FOR-US: NousResearch
CVE-2026-85105 (A flaw has been found in NousResearch hermes-agent 0.18.0. Affected by ...)
- TODO: check
+ NOT-FOR-US: NousResearch
CVE-2026-85100 (A vulnerability was detected in 2FastLabs agent-squad up to 1.1.4. Aff ...)
- TODO: check
+ NOT-FOR-US: 2FastLabs agent-squad
CVE-2026-85093 (Cheshire Cat AI's GET /memory/collections/{collection_id}/points endpo ...)
- TODO: check
+ NOT-FOR-US: Cheshire Cat AI
CVE-2026-85092 (LiME through 1.12.0 fails to validate the disk acquisition output path ...)
- TODO: check
+ NOT-FOR-US: LiME
CVE-2026-85091 (zlib versions 1.3.1.2 through 1.3.2 contain a heap buffer overflow vul ...)
TODO: check
CVE-2026-85090 (FreeRDP before 3.31.0 contains a heap out-of-bounds read vulnerability ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5a0824a5c73878bbd323ee7b63f253a27674219d
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5a0824a5c73878bbd323ee7b63f253a27674219d
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260903/bcf29880/attachment.htm>
More information about the debian-security-tracker-commits
mailing list