[Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Fri Sep 25 07:57:49 BST 2026
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
4ae7b1f3 by Moritz Muehlenhoff at 2026-09-25T08:57:35+02:00
NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,3 +1,25 @@
+CVE-2026-84711
+ NOT-FOR-US: Red Hat Ansible Automation Platform
+CVE-2026-84709
+ NOT-FOR-US: Red Hat Ansible Automation Platform
+CVE-2026-84708
+ NOT-FOR-US: Red Hat Ansible Automation Platform
+CVE-2026-84707
+ NOT-FOR-US: Red Hat Ansible Automation Platform
+CVE-2026-84703
+ NOT-FOR-US: Red Hat Ansible Automation Platform
+CVE-2026-92550
+ - qpid-java <itp> (bug #840131)
+CVE-2026-92560
+ - qpid-java <itp> (bug #840131)
+CVE-2026-92564
+ - qpid-java <itp> (bug #840131)
+CVE-2026-92573
+ - qpid-java <itp> (bug #840131)
+CVE-2026-92608
+ - qpid-java <itp> (bug #840131)
+CVE-2026-92609
+ - qpid-java <itp> (bug #840131)
CVE-2026-97230
NOT-FOR-US: IO::Socket::SSL::SelfCertificate Perl module
CVE-2026-85491
@@ -103,7 +125,7 @@ CVE-2026-97057 (redis-parser through 3.0.0 fails to validate the multi-bulk leng
CVE-2026-96873 (Improper neutralization of input during web page generation ('cross-si ...)
TODO: check
CVE-2026-96750 (MongoDB Compass can interpolate a database name without escaping into ...)
- NOT-FOR-US: NOT-FOR-US: mongodb-js (not same as node-mongodb)
+ NOT-FOR-US: mongodb-js (not same as node-mongodb)
CVE-2026-96749 (An integer overflow in the BSON document encoding component of the Mon ...)
- pymongo <unfixed>
NOTE: https://github.com/mongodb/mongo-python-driver/security/advisories/GHSA-v4x9-3549-crwv
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4ae7b1f32aff93554b575c5d0fc30c75b53638a0
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4ae7b1f32aff93554b575c5d0fc30c75b53638a0
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260925/8fbbe1ee/attachment.htm>
More information about the debian-security-tracker-commits
mailing list