[Git][security-tracker-team/security-tracker][master] Add CVE-2026-93657/rust-hickory-resolver
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Fri Sep 18 21:39:55 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
c5cfc8df by Salvatore Bonaccorso at 2026-09-18T22:39:13+02:00
Add CVE-2026-93657/rust-hickory-resolver
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -66,7 +66,9 @@ CVE-2026-93658 (uutils coreutils versions before 0.10.0 apply setuid or setgid m
NOTE: https://github.com/uutils/coreutils/pull/13629
NOTE: Fixed by: https://github.com/uutils/coreutils/commit/7c87ab04fee8e52d989fb2625568a3eeda1b1f55 (0.10.0)
CVE-2026-93657 (hickory-resolver versions before 0.26.2 fail to propagate bogus DNSSEC ...)
- TODO: check
+ - rust-hickory-resolver <unfixed>
+ NOTE: https://github.com/hickory-dns/hickory-dns/security/advisories/GHSA-5j98-2g5x-46v6
+ NOTE: https://github.com/hickory-dns/hickory-dns/commit/30720f4fb22e5556ecbf26d2c8274ea4a9fdd238
CVE-2026-93653 (A denial of service flaw was found in Poppler's Splash backend. A craf ...)
TODO: check
CVE-2026-93652 (Integer overflow in \xb5D3TN v0.15.0 TCPCLv3 handshake causes heap ove ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c5cfc8dfba31e77807a9b6ec5bedb553779d7fcc
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c5cfc8dfba31e77807a9b6ec5bedb553779d7fcc
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260918/04816eb0/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list