[Git][security-tracker-team/security-tracker][master] Add GHSA identifier in subject for easier merging when CVE asigned
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Mon Sep 21 20:10:32 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
dbdd390a by Salvatore Bonaccorso at 2026-09-21T21:09:55+02:00
Add GHSA identifier in subject for easier merging when CVE asigned
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -2,13 +2,13 @@ CVE-2026-93012
- libemail-sender-perl <not-affected> (Only affects Email::Sender on Windows)
NOTE: https://lists.security.metacpan.org/cve-announce/msg/43733017/
NOTE: Fixed by: https://github.com/rjbs/Email-Sender/commit/9a587bc9ff4edae13239190c2651da2c76b1e72c (2.602)
-CVE-2026-XXXX [HTTPS proxy TLS configuration may be ignored or overridden]
+CVE-2026-XXXX [GHSA-8988-9cw3-xx77: HTTPS proxy TLS configuration may be ignored or overridden]
- python-urllib3 2.8.0-1
NOTE: https://github.com/urllib3/urllib3/security/advisories/GHSA-8988-9cw3-xx77
-CVE-2026-XXXX [HTTPResponse.stream()/read_chunked() buffers an unbounded chunk-size line into memory]
+CVE-2026-XXXX [GHSA-vxq7-64xx-v4gw: HTTPResponse.stream()/read_chunked() buffers an unbounded chunk-size line into memory]
- python-urllib3 2.8.0-1
NOTE: https://github.com/urllib3/urllib3/security/advisories/GHSA-vxq7-64xx-v4gw
-CVE-2026-XXXX [Chunked Deflate streaming can enter an infinite loop]
+CVE-2026-XXXX [GHSA-gh4c-6fx4-qh6g: Chunked Deflate streaming can enter an infinite loop]
- python-urllib3 2.8.0-1
[trixie] - python-urllib3 <not-affected> (Vulnerable code not present, introduced in 2.6.2)
[bookworm] - python-urllib3 <not-affected> (Vulnerable code not present, introduced in 2.6.2)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dbdd390a13e8b46300153432f46be04513fd061e
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dbdd390a13e8b46300153432f46be04513fd061e
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260921/b75b448b/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list