[Git][security-tracker-team/security-tracker][master] Remove notes on rejected CVEs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Sep 22 08:20:15 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
cdf4a7ac by Salvatore Bonaccorso at 2026-09-22T09:19:13+02:00
Remove notes on rejected CVEs

Two of them were duplicate assignments for libmojolicious-perl, where
CPANSec is is more narrow scope for assignment. This has been sorted.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1823,7 +1823,6 @@ CVE-2026-77606 (Semantic MediaWiki is a free, open-source extension to MediaWiki
 	NOT-FOR-US: Semantic MediaWiki MediaWiki extension
 CVE-2026-77568
 	REJECTED
-	TODO: check, duplicate of CVE-2026-15747, CNAs contacted to resolve issue
 CVE-2026-77396 (PJSIP is a free and open source multimedia communication library writt ...)
 	- pjproject <removed>
 	- asterisk <unfixed>
@@ -1873,7 +1872,6 @@ CVE-2026-6205 (An external control of file name or path vulnerability in Upload
 	NOT-FOR-US: Synology
 CVE-2026-68914
 	REJECTED
-	TODO: check, duplicate of CVE-2026-14803, CNAs contacted to resolve issue
 CVE-2026-67549 (OpenImageIO is a toolset for reading, writing, and manipulating image  ...)
 	- openimageio <not-affected> (Vulnerable code introduced later)
 	NOTE: https://github.com/AcademySoftwareFoundation/OpenImageIO/security/advisories/GHSA-3wxw-rqhw-j2w4
@@ -19086,7 +19084,6 @@ CVE-2026-81349 (Improper neutralization of special elements used in an os comman
 	NOT-FOR-US: Microsoft
 CVE-2026-80219
 	REJECTED
-	NOT-FOR-US: hawtio-operator
 CVE-2026-80097 (Improper authentication in Microsoft Authenticator allows an unauthori ...)
 	NOT-FOR-US: Microsoft
 CVE-2026-80096 (Out-of-bounds read in Windows Remote Desktop Services allows an author ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/cdf4a7ac7bd15d07ff31cc82e2b9151ab1929c95

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/cdf4a7ac7bd15d07ff31cc82e2b9151ab1929c95
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260922/b68565e7/attachment.htm>


More information about the debian-security-tracker-commits mailing list