There are 2 open security issues in trixie.
2 issues left for the package maintainer to handle:
- CVE-2026-10294:
(needs triaging)
A vulnerability has been found in PackageKit up to 1.3.5. Affected is the function g_file_test of the file src/pk-transaction.c of the component API. Such manipulation of the argument frontend-socket leads to improper authorization. The attack can be executed remotely. The exploit has been disclosed to the public and may be used.
- CVE-2026-19816:
(needs triaging)
You can find information about how to handle these issues in the security team's documentation.