[Git][security-tracker-team/security-tracker][master] Two new corosync issues
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sat Sep 5 10:59:42 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
a48a5388 by Salvatore Bonaccorso at 2026-09-05T11:59:23+02:00
Two new corosync issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -421,9 +421,11 @@ CVE-2026-81859 (CP4BA - IBM Enterprise Records could allow a local attacker to o
CVE-2026-81832 (IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 thr ...)
NOT-FOR-US: IBM
CVE-2026-81666 (An integer overflow was found in Corosync's handling of membership com ...)
- TODO: check
+ - corosync <unfixed>
+ NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2524923
CVE-2026-81665 (A heap-based buffer overflow was found in Corosync's Totem Process Gro ...)
- TODO: check
+ - corosync <unfixed>
+ NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2524910
CVE-2026-81424 (The Accept Stripe Payments WordPress plugin before 2.1.4 does not veri ...)
NOT-FOR-US: WordPress plugin
CVE-2026-81423 (The Accept Stripe Payments WordPress plugin before 2.1.4 does not vali ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a48a5388127e1d547564e35bdce6b49ca895c6fe
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a48a5388127e1d547564e35bdce6b49ca895c6fe
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260905/9db0c6a4/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list