[Git][security-tracker-team/security-tracker][master] Track fixes for glibc via unstable
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sat Sep 5 10:36:03 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
c7a1ea75 by Salvatore Bonaccorso at 2026-09-05T11:35:37+02:00
Track fixes for glibc via unstable
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -8137,7 +8137,7 @@ CVE-2026-81893 (A flaw was found in gdk-pixbuf. When loading a specially crafted
NOTE: Fixed by: https://gitlab.gnome.org/GNOME/gdk-pixbuf/-/commit/efe658674bd103d1c9bf50809d5767a3f6dd5a01
NOTE: The introducing commit is the fix for CVE-2025-7345.
CVE-2026-80489
- - glibc <unfixed> (bug #1145987)
+ - glibc 2.43-5 (bug #1145987)
[trixie] - glibc <no-dsa> (Minor issue)
[bookworm] - glibc <postponed> (Minor issue)
NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2524870
@@ -8156,7 +8156,7 @@ CVE-2026-81500
[trixie] - incus <no-dsa> (Minor issue)
NOTE: https://github.com/lxc/incus/security/advisories/GHSA-9pqw-c7m4-xvg7
CVE-2026-18374 (Passing an effectively empty string to the `,ccs=` syntax extension of ...)
- - glibc <unfixed> (bug #1146721)
+ - glibc 2.43-5 (bug #1146721)
[trixie] - glibc <no-dsa> (Minor issue)
[bookworm] - glibc <postponed> (Minor issue)
NOTE: https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2026-0015
@@ -9196,7 +9196,7 @@ CVE-2026-80158 (A flaw was found in the ipa_getkeytab module of the community.ge
CVE-2026-78360
NOT-FOR-US: fedora-infra/anitya
CVE-2026-77117
- - glibc <unfixed> (bug #1145880)
+ - glibc 2.43-5 (bug #1145880)
[trixie] - glibc <no-dsa> (Minor issue)
[bookworm] - glibc <postponed> (Minor issue)
NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2523274
@@ -11744,7 +11744,7 @@ CVE-2026-80182 (In OpenStack Keystone before 29.0.3, tokens obtained via OAuth1
NOTE: https://www.openwall.com/lists/oss-security/2026/08/25/9
NOTE: https://bugs.launchpad.net/keystone/+bug/2153453
CVE-2026-19499
- - glibc <unfixed> (bug #1145891)
+ - glibc 2.43-5 (bug #1145891)
[trixie] - glibc <no-dsa> (Minor issue)
[bookworm] - glibc <postponed> (Minor issue)
NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2523258
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c7a1ea75a99019f293251c8760cac9faa591b2ee
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c7a1ea75a99019f293251c8760cac9faa591b2ee
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260905/91ed3bf6/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list