Root has patched CVE-2026-36849 in the tiff package for Root:Debian:13. Multiple fixed versions available.
{
"distro": "debian",
"distro_version": "13",
"severity": "HIGH",
"source": "Root"
}[
"4.7.0-3+deb13u3.aikido.8",
"4.7.0-3+deb13u3.aikido.9",
"4.7.0-3+deb13u3.aikido.10"
]
"aikido.10"
true
"https://api.root.io/external/osv/ROOT-OS-DEBIAN-13-CVE-2026-36849.json"
3
"4.7.0-3+deb13u3"
[
"4.7.0-3+deb13u3.aikido.8",
"4.7.0-3+deb13u3.aikido.9",
"4.7.0-3+deb13u3.aikido.10"
]
"aikido.10"
true
"https://api.root.io/external/osv/ROOT-OS-DEBIAN-13-CVE-2026-36849.json"
3
"4.7.0-3+deb13u3"