[Git][security-tracker-team/security-tracker][master] Track fixes for glibc via unstable

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Sep 5 10:36:03 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
c7a1ea75 by Salvatore Bonaccorso at 2026-09-05T11:35:37+02:00
Track fixes for glibc via unstable

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -8137,7 +8137,7 @@ CVE-2026-81893 (A flaw was found in gdk-pixbuf. When loading a specially crafted
 	NOTE: Fixed by: https://gitlab.gnome.org/GNOME/gdk-pixbuf/-/commit/efe658674bd103d1c9bf50809d5767a3f6dd5a01
 	NOTE: The introducing commit is the fix for CVE-2025-7345.
 CVE-2026-80489
-	- glibc <unfixed> (bug #1145987)
+	- glibc 2.43-5 (bug #1145987)
 	[trixie] - glibc <no-dsa> (Minor issue)
 	[bookworm] - glibc <postponed> (Minor issue)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2524870
@@ -8156,7 +8156,7 @@ CVE-2026-81500
 	[trixie] - incus <no-dsa> (Minor issue)
 	NOTE: https://github.com/lxc/incus/security/advisories/GHSA-9pqw-c7m4-xvg7
 CVE-2026-18374 (Passing an effectively empty string to the `,ccs=` syntax extension of ...)
-	- glibc <unfixed> (bug #1146721)
+	- glibc 2.43-5 (bug #1146721)
 	[trixie] - glibc <no-dsa> (Minor issue)
 	[bookworm] - glibc <postponed> (Minor issue)
 	NOTE: https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2026-0015
@@ -9196,7 +9196,7 @@ CVE-2026-80158 (A flaw was found in the ipa_getkeytab module of the community.ge
 CVE-2026-78360
 	NOT-FOR-US: fedora-infra/anitya
 CVE-2026-77117
-	- glibc <unfixed> (bug #1145880)
+	- glibc 2.43-5 (bug #1145880)
 	[trixie] - glibc <no-dsa> (Minor issue)
 	[bookworm] - glibc <postponed> (Minor issue)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2523274
@@ -11744,7 +11744,7 @@ CVE-2026-80182 (In OpenStack Keystone before 29.0.3, tokens obtained via OAuth1
 	NOTE: https://www.openwall.com/lists/oss-security/2026/08/25/9
 	NOTE: https://bugs.launchpad.net/keystone/+bug/2153453
 CVE-2026-19499
-	- glibc <unfixed> (bug #1145891)
+	- glibc 2.43-5 (bug #1145891)
 	[trixie] - glibc <no-dsa> (Minor issue)
 	[bookworm] - glibc <postponed> (Minor issue)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2523258



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c7a1ea75a99019f293251c8760cac9faa591b2ee

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c7a1ea75a99019f293251c8760cac9faa591b2ee
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260905/91ed3bf6/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list