Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
5c426ed3 by Salvatore Bonaccorso at 2026-07-13T23:18:04+02:00
auto-nfu: Add another product for the Apache CNA rule
- - - - -
59df6a73 by Salvatore Bonaccorso at 2026-07-13T23:18:29+02:00
Process one NFU
- - - - -
2 changed files:
- data/CVE/list
- data/packages/nfu.yaml
Changes:
=====================================
data/CVE/list
=====================================
@@ -1929,7 +1929,7 @@ CVE-2026-58198 (ChatterBot is a machine learning,
conversational dialog engine f
CVE-2026-58125
REJECTED
CVE-2026-57111 (Permissive Cross-Origin Resource Sharing (CORS) in the REST
API (helix ...)
- TODO: check
+ NOT-FOR-US: Apache software not packaged in Debian
CVE-2026-56460 (HCL DevOps Deploy / HCL Launch could disclose sensitive
configurations ...)
NOT-FOR-US: HCL
CVE-2026-56459 (HCL DevOps Deploy / HCL Launch is susceptible to sensitive
information ...)
=====================================
data/packages/nfu.yaml
=====================================
@@ -358,6 +358,7 @@
- product: Apache Fory
- product: Apache Geode
- product: Apache Gravitino
+ - product: Apache Helix REST
- product: Apache HertzBeat
- product: Apache HertzBeat (incubating)
- product: Apache Hive
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/b74335b3360ac52cf52c5d65223a971d69e4f0fb...59df6a7359852a90c21a46e9c53a513f5f6af456
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/b74335b3360ac52cf52c5d65223a971d69e4f0fb...59df6a7359852a90c21a46e9c53a513f5f6af456
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits