[Git][security-tracker-team/security-tracker][master] new bluez issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Sep 16 12:55:02 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
6cf0dfab by Moritz Muehlenhoff at 2026-09-16T13:54:39+02:00
new bluez issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -971,7 +971,9 @@ CVE-2026-19781 (Ashlar-Vellum Cobalt VS File Parsing Heap-based Buffer Overflow
 CVE-2026-19780 (Koha Eval Code Injection Remote Code Execution Vulnerability. This vul ...)
 	TODO: check
 CVE-2026-19774 (BlueZ A2DP Stack-based Buffer Overflow Remote Code Execution Vulnerabi ...)
-	TODO: check
+	- bluez 5.87-1
+	NOTE: https://github.com/bluez/bluez/pull/2251
+	NOTE: Fixed by: https://github.com/bluez/bluez/commit/912f5efb0dd9bb08e408d33371a57182c5678aef (5.87)
 CVE-2026-19773 (libwebsockets HTTP/2 HPACK Path Header Parsing Out-Of-Bounds Write Rem ...)
 	TODO: check
 CVE-2026-19641 (On affected platforms running Arista EOS with password authentication  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6cf0dfabf54ed001397fb4e5c1f85ce2a1d89784

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6cf0dfabf54ed001397fb4e5c1f85ce2a1d89784
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260916/aa5177d2/attachment.htm>


More information about the debian-security-tracker-commits mailing list