CVE-2026-19349

NameCVE-2026-19349
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
lemonldap-ng (PTS)bullseye2.0.11+ds-4+deb11u5vulnerable
bullseye (security)2.0.11+ds-4+deb11u9vulnerable
bookworm2.16.1+ds-deb12u8vulnerable
bookworm (security)2.16.1+ds-deb12u9vulnerable
trixie2.21.2+ds-1+deb13u2vulnerable
forky2.23.2+ds-2vulnerable
sid2.23.3+ds-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
lemonldap-ngsource(unstable)2.23.3+ds-1

Notes

https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/-/commit/8c6015d6f0b4f1aa78bd54e159a74cd151e8e00d (v2.23.3)
https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/-/commit/eef2aa31ad26c685769c9602588bb85572da0c00 (v2.23.3)
https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/-/commit/96fde2e1a45fd70b2d793210bd0ec931be7b0dec (v2.23.3)

Search for package or bug name: Reporting problems