[Git][security-tracker-team/security-tracker][master] Add CVE-2026-76781/libxml2

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Sep 19 11:18:43 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
992e94db by Salvatore Bonaccorso at 2026-09-19T12:17:42+02:00
Add CVE-2026-76781/libxml2

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1905,7 +1905,9 @@ CVE-2026-77614 (Opencast is a free, open-source platform to support the manageme
 CVE-2026-76834 (b2evolution CMS versions 6.7.8 through 7.2.5 contain an incomplete fix ...)
 	NOT-FOR-US: b2evolution CMS
 CVE-2026-76781 (A flaw was found in libxml2. A local user or an attacker providing a s ...)
-	TODO: check
+	- libxml2 <unfixed>
+	NOTE: https://gitlab.gnome.org/GNOME/libxml2/-/merge_requests/442
+	NOTE: Fixed by: https://gitlab.gnome.org/GNOME/libxml2/-/commit/c63248941708bc1d2e3a4292954593312212f6ca
 CVE-2026-75588 (Mattermost Desktop App versions <=6.2 6.2.2.0 fail to validate the URL ...)
 	TODO: check
 CVE-2026-75523 (Steeltoe is an open source project that provides a collection of libra ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/992e94dbea7f40c9891765e17091337b82a91316

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/992e94dbea7f40c9891765e17091337b82a91316
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260919/57933f34/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list