[Git][security-tracker-team/security-tracker][master] Track fixed version for python-anyio issues
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Wed Sep 23 13:33:11 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
14c7dd61 by Salvatore Bonaccorso at 2026-09-23T14:32:47+02:00
Track fixed version for python-anyio issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -3507,7 +3507,7 @@ CVE-2026-65969 (OpenImageIO is a toolset for reading, writing, and manipulating
NOTE: https://github.com/AcademySoftwareFoundation/OpenImageIO/pull/5292
NOTE: https://github.com/AcademySoftwareFoundation/OpenImageIO/commit/134977da625a84fc5a09a34321806f1fe0093c24 (v3.2.0.3-beta1)
CVE-2026-64847 (AnyIO is a high level asynchronous concurrency and networking framewor ...)
- - python-anyio <unfixed> (bug #1148561)
+ - python-anyio 4.15.1-1 (bug #1148561)
NOTE: https://github.com/agronholm/anyio/security/advisories/GHSA-5p39-cfhj-2xmp
NOTE: https://github.com/agronholm/anyio/pull/1207
NOTE: Fixed by: https://github.com/agronholm/anyio/commit/f1b7301c8264b0d2e8d24a5788fd29e93dea4040 (4.14.2)
@@ -3545,12 +3545,12 @@ CVE-2026-63406 (AnyCable is a realtime server for reliable two-way communication
CVE-2026-63405 (AnyCable is a realtime server for reliable two-way communication that ...)
NOT-FOR-US: AnyCable
CVE-2026-63374 (AnyIO is a high level asynchronous concurrency and networking framewor ...)
- - python-anyio <unfixed> (bug #1148561)
+ - python-anyio 4.15.1-1 (bug #1148561)
NOTE: https://github.com/agronholm/anyio/security/advisories/GHSA-82r6-8w77-94w6
NOTE: https://github.com/agronholm/anyio/pull/1208
NOTE: Fixed by: https://github.com/agronholm/anyio/commit/68f58915f82d9be8109ebbbd8f5d70577d43f2ce (4.14.2)
CVE-2026-63349 (AnyIO is a high level asynchronous concurrency and networking framewor ...)
- - python-anyio <unfixed> (bug #1148561)
+ - python-anyio 4.15.1-1 (bug #1148561)
NOTE: https://github.com/agronholm/anyio/security/advisories/GHSA-3w57-8xmc-8v26
NOTE: https://github.com/agronholm/anyio/pull/1209
NOTE: Fixed by: https://github.com/agronholm/anyio/commit/eb562e6462ee46b1904e50b02ce00a858cdeb200 (4.14.2)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/14c7dd618f8b7d1282cec27ac2e49399762646e8
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/14c7dd618f8b7d1282cec27ac2e49399762646e8
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260923/d905871d/attachment.htm>
More information about the debian-security-tracker-commits
mailing list