[Git][security-tracker-team/security-tracker][master] Add CVE-2026-91826/rlottie

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Sep 16 06:50:43 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
32c8c982 by Salvatore Bonaccorso at 2026-09-16T07:50:19+02:00
Add CVE-2026-91826/rlottie

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -234,7 +234,9 @@ CVE-2026-91836 (A flaw has been found in OpenClaw ClawScan up to 0.1.6. This aff
 CVE-2026-91835 (A vulnerability was detected in OpenClaw ClawScan up to 0.1.6. The imp ...)
 	NOT-FOR-US: OpenClaw
 CVE-2026-91826 (Stack-based buffer overflow vulnerability in Samsung Opensource rLotti ...)
-	TODO: check
+	- rlottie <unfixed>
+	NOTE: https://github.com/Samsung/rlottie/pull/607
+	NOTE: Fixed by: https://github.com/Samsung/rlottie/commit/480a2ad0c5d2e45458c545b8213279e9e8b71e39
 CVE-2026-91825 (Affected versions of MISP fail to authorize a submitted sharing group  ...)
 	- misp <itp> (bug #1144317)
 CVE-2026-91819 (Affected versions of MISP rely on CakePHP request-method override proc ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/32c8c98225dc7abfc0691ab79bf6220d93fd5092

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/32c8c98225dc7abfc0691ab79bf6220d93fd5092
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260916/8166c433/attachment.htm>


More information about the debian-security-tracker-commits mailing list