[Git][security-tracker-team/security-tracker][master] bugnums
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Sun Sep 13 22:14:01 BST 2026
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
10c6a7ac by Moritz Muehlenhoff at 2026-09-13T23:12:02+02:00
bugnums
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -217,7 +217,7 @@ CVE-2026-90560 (zstd-jni versions 1.2.0 through 1.5.7-13 contain an out-of-bound
CVE-2026-90559 (snappy-java through 1.1.10.8 contains an out-of-bounds write vulnerabi ...)
NOT-FOR-US: snappy-java
CVE-2026-90558 (sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in ...)
- - sngrep <unfixed>
+ - sngrep <unfixed> (bug #1147622)
[trixie] - sngrep <no-dsa> (Minor issue)
NOTE: Fixed by: https://github.com/irontec/sngrep/commit/1ff74ee3ab5ff280e8ba976aa8c744dca57eb35b
CVE-2026-90555 (vLLM versions before 0.28.0 fail to validate audio sample rate headers ...)
@@ -66167,7 +66167,7 @@ CVE-2026-53368 (In the Linux kernel, the following vulnerability has been resolv
- linux 7.0.7-1
NOTE: https://git.kernel.org/linus/019f9dda7f66e55eb94cd32e1d3fff5835f73fbc (7.1-rc1)
CVE-2026-9323 (The urwid web display backend (urwid/display/web.py) generates web ses ...)
- - urwid <unfixed>
+ - urwid <unfixed> (bug #1147615)
[trixie] - urwid <no-dsa> (Minor issue)
NOTE: https://github.com/urwid/urwid/security/advisories/GHSA-rjwp-g85x-gmjv
NOTE: https://github.com/urwid/urwid/pull/1128
@@ -107467,7 +107467,7 @@ CVE-2026-9543 (A vulnerability has been found in Totolink N300RH 6.1c.1353_B2019
CVE-2026-9542 (A weakness has been identified in CodeAstro Leave Management System 1. ...)
NOT-FOR-US: CodeAstro
CVE-2026-9541 (A security flaw has been discovered in Squirrel up to 3.2. Impacted is ...)
- - squirrel3 <unfixed>
+ - squirrel3 <unfixed> (bug #1147618)
[trixie] - squirrel3 <ignored> (Minor issue)
[bullseye] - squirrel3 <postponed> (Minor issue)
NOTE: https://github.com/albertodemichelis/squirrel/issues/327
@@ -108491,7 +108491,7 @@ CVE-2026-9367 (A vulnerability was determined in NousResearch hermes-agent up to
CVE-2026-9366 (A vulnerability was found in NousResearch hermes-agent 2026.4.23. The ...)
NOT-FOR-US: NousResearch hermes-agent
CVE-2026-9365 (A vulnerability has been found in Ettercap up to 0.8.3. The affected e ...)
- - ettercap <unfixed>
+ - ettercap <unfixed> (bug #1147620)
[trixie] - ettercap <no-dsa> (Minor issue)
[bookworm] - ettercap <no-dsa> (Minor issue)
[bullseye] - ettercap <no-dsa> (Minor issue)
@@ -116222,7 +116222,7 @@ CVE-2026-8263 (A security flaw has been discovered in Tenda AC6 15.03.06.49_mult
CVE-2026-8262 (A vulnerability was identified in Devs Palace ERP Online up to 4.0.0. ...)
NOT-FOR-US: Devs Palace ERP Online
CVE-2026-8261 (A vulnerability was determined in Squirrel up to 3.2. This affects the ...)
- - squirrel3 <unfixed>
+ - squirrel3 <unfixed> (bug #1147618)
[trixie] - squirrel3 <no-dsa> (Minor issue)
[bullseye] - squirrel3 <postponed> (Minor issue)
NOTE: https://github.com/albertodemichelis/squirrel/issues/326
@@ -116231,7 +116231,7 @@ CVE-2026-8260 (A vulnerability was found in D-Link DCS-935L up to 1.10.01. The i
CVE-2026-8259 (A vulnerability has been found in Tenda AC6 2.0/15.03.06.23. The affec ...)
NOT-FOR-US: Tenda
CVE-2026-8258 (A flaw has been found in Squirrel up to 3.2. Impacted is the function ...)
- - squirrel3 <unfixed>
+ - squirrel3 <unfixed> (bug #1147618)
[trixie] - squirrel3 <no-dsa> (Minor issue)
[bullseye] - squirrel3 <postponed> (Minor issue)
NOTE: https://github.com/albertodemichelis/squirrel/issues/325
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/10c6a7acdd2fbff1476cb6b66435d121794528c1
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/10c6a7acdd2fbff1476cb6b66435d121794528c1
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260913/d4a499aa/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list