[Git][security-tracker-team/security-tracker][master] new golang-github-rabbitmq-amqp091-go issues

Moritz Muehlenhoff (@jmm) jmm at debian.org
Fri Sep 18 16:26:53 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
409252f2 by Moritz Muehlenhoff at 2026-09-18T17:26:22+02:00
new golang-github-rabbitmq-amqp091-go issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -5372,25 +5372,55 @@ CVE-2026-78088 (The Contest Gallery \u2013 Upload & Vote Photos, Media, Sell wit
 CVE-2026-77702 (The Eventin  WordPress plugin before 4.1.24 does not prevent the token ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2026-77412 (RabbitMQ amqp091-go is a Go AMQP 0.9.1 client. Prior to 1.13.0, readFi ...)
-	TODO: check
+	- golang-github-rabbitmq-amqp091-go 1.14.0-1
+	NOTE: https://github.com/rabbitmq/amqp091-go/security/advisories/GHSA-4v58-74mf-rjx3
+	NOTE: https://github.com/rabbitmq/amqp091-go/pull/344
+	NOTE: https://github.com/rabbitmq/amqp091-go/commit/669b42bf7b1db76bc6d4973e3634247f680accbf (v1.13.0)
 CVE-2026-77411 (RabbitMQ amqp091-go is a Go AMQP 0.9.1 client. Prior to 1.13.0, readLo ...)
-	TODO: check
+	- golang-github-rabbitmq-amqp091-go 1.14.0-1
+	NOTE: https://github.com/rabbitmq/amqp091-go/security/advisories/GHSA-c5pq-fr2g-9jpf
+	NOTE: https://github.com/rabbitmq/amqp091-go/pull/347
+	NOTE: https://github.com/rabbitmq/amqp091-go/commit/143c1ace5fa7344cee135e5c7d22970f0de68282 (v1.13.0)
 CVE-2026-77410 (RabbitMQ amqp091-go is a Go AMQP 0.9.1 client. Prior to 1.13.0, Channe ...)
-	TODO: check
+	- golang-github-rabbitmq-amqp091-go 1.14.0-1
+	NOTE: https://github.com/rabbitmq/amqp091-go/security/advisories/GHSA-r9c8-gcjp-xfwh
+	NOTE: https://github.com/rabbitmq/amqp091-go/pull/346
+	NOTE: https://github.com/rabbitmq/amqp091-go/commit/91b65fa0096a99a580cf51a31b24028ff1c60382 (v1.13.0)
 CVE-2026-77409 (RabbitMQ amqp091-go is a Go AMQP 0.9.1 client. Prior to 1.13.0, Channe ...)
-	TODO: check
+	- golang-github-rabbitmq-amqp091-go 1.14.0-1
+	NOTE: https://github.com/rabbitmq/amqp091-go/security/advisories/GHSA-wxx3-cj7g-w73j
+	NOTE: https://github.com/rabbitmq/amqp091-go/pull/349
+	NOTE: https://github.com/rabbitmq/amqp091-go/commit/5b0ccbb8d7bc3dfa18129d9b0f9256d656809494 (v1.13.0)
 CVE-2026-77408 (RabbitMQ amqp091-go is a Go AMQP 0.9.1 client. Prior to 1.13.0, the wr ...)
-	TODO: check
+	- golang-github-rabbitmq-amqp091-go 1.14.0-1
+	NOTE: https://github.com/rabbitmq/amqp091-go/security/advisories/GHSA-j497-x9hr-x34x
+	NOTE: https://github.com/rabbitmq/amqp091-go/pull/354
+	NOTE: https://github.com/rabbitmq/amqp091-go/commit/6959423aa2784a1971e399175dfb2065dea0f3b0 (v1.13.0)
 CVE-2026-77407 (RabbitMQ amqp091-go is a Go AMQP 0.9.1 client. Prior to 1.13.0, PlainA ...)
-	TODO: check
+	- golang-github-rabbitmq-amqp091-go 1.14.0-1
+	NOTE: https://github.com/rabbitmq/amqp091-go/security/advisories/GHSA-27gv-rfvv-22mv
+	NOTE: https://github.com/rabbitmq/amqp091-go/pull/350
+	NOTE: https://github.com/rabbitmq/amqp091-go/commit/fa013b8447eb60988db3c9281ff6b981e4d2fb4f (v1.13.0)
 CVE-2026-77406 (RabbitMQ amqp091-go is a Go AMQP 0.9.1 client. Prior to 1.13.0, Channe ...)
-	TODO: check
+	- golang-github-rabbitmq-amqp091-go 1.14.0-1
+	NOTE: https://github.com/rabbitmq/amqp091-go/security/advisories/GHSA-rm6m-hrcw-jw33
+	NOTE: https://github.com/rabbitmq/amqp091-go/pull/351
+	NOTE: https://github.com/rabbitmq/amqp091-go/commit/3b879e1d1d25b544e26b3bc3d7db3213203c0f3b (v1.13.0)
 CVE-2026-77405 (RabbitMQ amqp091-go is a Go AMQP 0.9.1 client. Prior to 1.13.0, tlsCon ...)
-	TODO: check
+	- golang-github-rabbitmq-amqp091-go 1.14.0-1
+	NOTE: https://github.com/rabbitmq/amqp091-go/security/advisories/GHSA-33mj-cw25-m34h
+	NOTE: https://github.com/rabbitmq/amqp091-go/pull/355
+	NOTE: https://github.com/rabbitmq/amqp091-go/commit/c9fd433ecac2e557919e51acc9d809390c402c6e (v1.13.0)
 CVE-2026-77404 (RabbitMQ amqp091-go is a Go AMQP 0.9.1 client. Prior to 1.13.0, URI.St ...)
-	TODO: check
+	- golang-github-rabbitmq-amqp091-go 1.14.0-1
+	NOTE: https://github.com/rabbitmq/amqp091-go/security/advisories/GHSA-465g-fh3v-9jw4
+	NOTE: https://github.com/rabbitmq/amqp091-go/pull/352
+	NOTE: https://github.com/rabbitmq/amqp091-go/commit/743d488e46955fe7ffc55506fe2c401d01216783 (v1.13.0)
 CVE-2026-77403 (RabbitMQ amqp091-go is a Go AMQP 0.9.1 client. Prior to 1.13.0, Connec ...)
-	TODO: check
+	- golang-github-rabbitmq-amqp091-go 1.14.0-1
+	NOTE: https://github.com/rabbitmq/amqp091-go/security/advisories/GHSA-xwwf-m8fg-p9q2
+	NOTE: https://github.com/rabbitmq/amqp091-go/pull/353
+	NOTE: https://github.com/rabbitmq/amqp091-go/commit/2e0a919b89f337dbf58db2bb34ab206dac354a06 (v1.13.0)
 CVE-2026-77401 (Zope AccessControl provides a general security framework for use in Zo ...)
 	TODO: check
 CVE-2026-77360 (oRPC is an tool that helps build APIs that are end-to-end type-safe an ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/409252f2d35dfcac01e04d7895e42afb8d252802

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/409252f2d35dfcac01e04d7895e42afb8d252802
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260918/0153eb90/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list