[Git][security-tracker-team/security-tracker][master] Add new freeipmi issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Sep 4 08:20:06 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ecb8c435 by Salvatore Bonaccorso at 2026-09-04T09:19:39+02:00
Add new freeipmi issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9,17 +9,23 @@ CVE-2026-9036 (IBM Netezza Software 11.3.0.3 through Interim Fix 002 does not va
 CVE-2026-8862 (IBM Netezza Software 11.3.0.3 through Interim Fix 002 has credentials  ...)
 	NOT-FOR-US: IBM
 CVE-2026-85509 (FreeIPMI before 1.6.19 has a stack-based buffer overflow in _read_fru_ ...)
-	TODO: check
+	- freeipmi <unfixed>
+	NOTE: https://www.openwall.com/lists/oss-security/2026/08/28/5
 CVE-2026-85508 (ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer overflow i ...)
-	TODO: check
+	- freeipmi <unfixed>
+	NOTE: https://www.openwall.com/lists/oss-security/2026/08/28/5
 CVE-2026-85507 (ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer overflow i ...)
-	TODO: check
+	- freeipmi <unfixed>
+	NOTE: https://www.openwall.com/lists/oss-security/2026/08/28/5
 CVE-2026-85506 (ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer overflow i ...)
-	TODO: check
+	- freeipmi <unfixed>
+	NOTE: https://www.openwall.com/lists/oss-security/2026/08/28/5
 CVE-2026-85505 (ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer over-read  ...)
-	TODO: check
+	- freeipmi <unfixed>
+	NOTE: https://www.openwall.com/lists/oss-security/2026/08/28/5
 CVE-2026-85504 (FreeIPMI before 1.6.19 has a stack-based buffer overflow in _ipmi_sel_ ...)
-	TODO: check
+	- freeipmi <unfixed>
+	NOTE: https://www.openwall.com/lists/oss-security/2026/08/28/5
 CVE-2026-85458 (Divide-by-zero in Xpdf 4.06 (and earlier), when a glyph in a Type 3 fo ...)
 	TODO: check
 CVE-2026-85456 (MOOS-IvP through 24.8.1 fails to properly validate variable names extr ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ecb8c4354511ec9b468d1ddd5b0328d91c5ff2c9

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ecb8c4354511ec9b468d1ddd5b0328d91c5ff2c9
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260904/6ce9abe6/attachment.htm>


More information about the debian-security-tracker-commits mailing list