[Git][security-tracker-team/security-tracker][master] Add Debian bug references for various issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Sep 3 22:21:14 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e5f0415f by Salvatore Bonaccorso at 2026-09-03T23:20:20+02:00
Add Debian bug references for various issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1927,7 +1927,7 @@ CVE-2026-9621 (A denial-of-service security issue exists within RSLinx\xae Class
 CVE-2026-8712 (Wyoming before 1.10.2 contains a server-side request forgery vulnerabi ...)
 	NOT-FOR-US: Wyoming
 CVE-2026-84305 (sqlparse is a non-validating SQL parser module for Python. Prior to 0. ...)
-	- sqlparse <unfixed>
+	- sqlparse <unfixed> (bug #1146628)
 	NOTE: https://github.com/andialbrecht/sqlparse/security/advisories/GHSA-cfqr-cjx5-5jcm
 	NOTE: Fixed by: https://github.com/andialbrecht/sqlparse/commit/a51df6d9e2d31b44be9adb6bc8732517db6bf96b (0.6.0)
 CVE-2026-84304 (gRPC-Go is the Go language implementation of gRPC. Prior to 1.83.1, in ...)
@@ -4641,7 +4641,7 @@ CVE-2026-77701 (The WCFM Marketplace  WordPress plugin before 3.8.2 does not cor
 CVE-2026-76581 (The WPMU DEV Dashboard plugin for WordPress is vulnerable to Authentic ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2026-75758 (Uncontrolled Recursion vulnerability in the Elixir standard library al ...)
-	- elixir-lang <unfixed>
+	- elixir-lang <unfixed> (bug #1146626)
 	[bookworm] - elixir-lang <not-affected> (Vulnerable code introduced later)
 	NOTE: https://github.com/elixir-lang/elixir/security/advisories/GHSA-jf5q-v438-665c
 	NOTE: https://cna.erlef.org/cves/CVE-2026-75758.html
@@ -7024,22 +7024,22 @@ CVE-2026-13414 (The CMP  WordPress plugin before 4.1.18 does not perform authori
 CVE-2025-70340 (A Broken Access Control vulnerability exists in ThingsBoard Profession ...)
 	NOT-FOR-US: ThingsBoard
 CVE-2025-70293 (An issue was discovered in Denx U-Boot before 2026.04. An integer over ...)
-	- u-boot <unfixed>
+	- u-boot <unfixed> (bug #1146625)
 	[trixie] - u-boot <no-dsa> (Minor issue)
 	NOTE: https://www.openwall.com/lists/oss-security/2026/08/28/4
 	NOTE: https://source.denx.de/u-boot/u-boot/-/commit/fc16c847a1c9c6e0ee1f605849cc500a04c21602 (v2026.04-rc1)
 CVE-2025-70292
-	- u-boot <unfixed>
+	- u-boot <unfixed> (bug #1146625)
 	[trixie] - u-boot <no-dsa> (Minor issue)
 	NOTE: https://www.openwall.com/lists/oss-security/2026/08/28/4
 	NOTE: https://source.denx.de/u-boot/u-boot/-/commit/870aff99a279ed428c5a2560b2441b3079ddb34b (v2026.04-rc1)
 CVE-2025-70291
-	- u-boot <unfixed>
+	- u-boot <unfixed> (bug #1146625)
 	[trixie] - u-boot <no-dsa> (Minor issue)
 	NOTE: https://www.openwall.com/lists/oss-security/2026/08/28/4
 	NOTE: https://source.denx.de/u-boot/u-boot/-/commit/99416665f006b925db12f6c02b11f9da02c10c5a (v2026.04-rc1)
 CVE-2025-70290 (An issue was discovered in Denx U-Boot before 2026.04. An integer over ...)
-	- u-boot <unfixed>
+	- u-boot <unfixed> (bug #1146625)
 	[trixie] - u-boot <no-dsa> (Minor issue)
 	NOTE: https://www.openwall.com/lists/oss-security/2026/08/28/4
 	NOTE: https://source.denx.de/u-boot/u-boot/-/commit/c8f0294285f6588322363e1711bc57118e6fc9a3 (v2026.04-rc1)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e5f0415fe094afac400d5513339d303c39905d68

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e5f0415fe094afac400d5513339d303c39905d68
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260903/801fc97c/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list