[Git][security-tracker-team/security-tracker][master] Remove notes on rejected CVEs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue Sep 22 08:20:15 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
cdf4a7ac by Salvatore Bonaccorso at 2026-09-22T09:19:13+02:00
Remove notes on rejected CVEs
Two of them were duplicate assignments for libmojolicious-perl, where
CPANSec is is more narrow scope for assignment. This has been sorted.
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1823,7 +1823,6 @@ CVE-2026-77606 (Semantic MediaWiki is a free, open-source extension to MediaWiki
NOT-FOR-US: Semantic MediaWiki MediaWiki extension
CVE-2026-77568
REJECTED
- TODO: check, duplicate of CVE-2026-15747, CNAs contacted to resolve issue
CVE-2026-77396 (PJSIP is a free and open source multimedia communication library writt ...)
- pjproject <removed>
- asterisk <unfixed>
@@ -1873,7 +1872,6 @@ CVE-2026-6205 (An external control of file name or path vulnerability in Upload
NOT-FOR-US: Synology
CVE-2026-68914
REJECTED
- TODO: check, duplicate of CVE-2026-14803, CNAs contacted to resolve issue
CVE-2026-67549 (OpenImageIO is a toolset for reading, writing, and manipulating image ...)
- openimageio <not-affected> (Vulnerable code introduced later)
NOTE: https://github.com/AcademySoftwareFoundation/OpenImageIO/security/advisories/GHSA-3wxw-rqhw-j2w4
@@ -19086,7 +19084,6 @@ CVE-2026-81349 (Improper neutralization of special elements used in an os comman
NOT-FOR-US: Microsoft
CVE-2026-80219
REJECTED
- NOT-FOR-US: hawtio-operator
CVE-2026-80097 (Improper authentication in Microsoft Authenticator allows an unauthori ...)
NOT-FOR-US: Microsoft
CVE-2026-80096 (Out-of-bounds read in Windows Remote Desktop Services allows an author ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/cdf4a7ac7bd15d07ff31cc82e2b9151ab1929c95
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/cdf4a7ac7bd15d07ff31cc82e2b9151ab1929c95
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260922/b68565e7/attachment.htm>
More information about the debian-security-tracker-commits
mailing list