[Git][security-tracker-team/security-tracker][master] Update status for vinyl-cache issue

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Sep 17 22:58:19 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
28cf5a7a by Salvatore Bonaccorso at 2026-09-17T23:57:23+02:00
Update status for vinyl-cache issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -2675,10 +2675,11 @@ CVE-2026-90053 (In the Linux kernel, the following vulnerability has been resolv
 	- linux 7.2.6-1
 	NOTE: https://git.kernel.org/linus/729c4896ab829169f95915d65edd530325910b37 (7.3-rc1)
 CVE-2026-XXXX [VSV00020]
-	- vinyl-cache <unfixed>
+	- vinyl-cache <unfixed> (bug #1148187)
 	- varnish <removed>
 	NOTE: https://vinyl-cache.org/security/VSV00020.html
-	NOTE: https://code.vinyl-cache.org/vinyl-cache/vinyl-cache/commit/90f5bacc14b2404e6cc349ba015f0f73b8515136 (vinyl-cache-9.1.0)
+	NOTE: Fixed by: https://code.vinyl-cache.org/vinyl-cache/vinyl-cache/commit/90f5bacc14b2404e6cc349ba015f0f73b8515136 (vinyl-cache-9.1.0)
+	NOTE: Fixed by: https://code.vinyl-cache.org/vinyl-cache/vinyl-cache/commit/853d397f30753bce1587991fcf9193c63fb4d1eb (vinyl-cache-9.0.2)
 CVE-2026-92839 (Canva Desktop before v1.125.0 performed double decoding in the deeplin ...)
 	NOT-FOR-US: Canva Desktop
 CVE-2026-92838 (A DLL hijacking vulnerability exists in the GeoVisionGV-Remote E-Mapde ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/28cf5a7a1cbfb054bcdef07edbe2c82ddbe8a58c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/28cf5a7a1cbfb054bcdef07edbe2c82ddbe8a58c
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260917/d0c10a0c/attachment.htm>


More information about the debian-security-tracker-commits mailing list