| Release | Version |
|---|---|
| bookworm | 1.7.2-1 |
| trixie | 1.13.2-1+deb13u1 |
| forky | 1.20.4-1 |
| sid | 1.20.4-1 |
| Bug | bookworm | trixie | forky | sid | Description |
|---|---|---|---|---|---|
| CVE-2026-84971 | vulnerable (no DSA, postponed) | vulnerable (no DSA) | fixed | fixed | Improper handling of an unexpected value size in the decryption path o ... |
| CVE-2026-84962 | vulnerable (no DSA, postponed) | vulnerable (no DSA) | fixed | fixed | An unauthorized user with key vault write access may cause an authoriz ... |
| CVE-2026-81523 | vulnerable (no DSA, postponed) | fixed | fixed | fixed | A missing input-validation issue in MongoDB libmongocrypt's automatic- ... |