[Secure-testing-commits] r20254 - data/CVE

Federico Ceratto federico-guest at alioth.debian.org
Sat Sep 29 14:01:24 UTC 2012


Author: federico-guest
Date: 2012-09-29 14:01:24 +0000 (Sat, 29 Sep 2012)
New Revision: 20254

Modified:
   data/CVE/list
Log:
NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-09-29 13:21:47 UTC (rev 20253)
+++ data/CVE/list	2012-09-29 14:01:24 UTC (rev 20254)
@@ -613,7 +613,7 @@
 CVE-2012-4913
 	RESERVED
 CVE-2012-4912 (Cross-site scripting (XSS) vulnerability in the WebAccess component in ...)
-	TODO: check
+	NOT-FOR-US: Novell GroupWise
 CVE-2011-5188 (Cross-site scripting (XSS) vulnerability in the Support Timer module ...)
 	NOT-FOR-US: Drupal module
 CVE-2011-5183 (Multiple SQL injection vulnerabilities in OrderSys 1.6.4 and earlier ...)
@@ -1465,19 +1465,19 @@
 CVE-2012-4624
 	RESERVED
 CVE-2012-4623 (The DHCPv6 server in Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 ...)
-	TODO: check
+	NOT-FOR-US: Cisco IOS
 CVE-2012-4622 (Cisco IOS XE 03.02.00.XO.15.0(2)XO on Catalyst 4500E series switches, ...)
-	TODO: check
+	NOT-FOR-US: Cisco IOS
 CVE-2012-4621 (The Device Sensor feature in Cisco IOS 15.0 through 15.2 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Cisco IOS
 CVE-2012-4620 (Cisco IOS 12.2 and 15.0 through 15.2 on Cisco 10000 series routers, ...)
-	TODO: check
+	NOT-FOR-US: Cisco IOS
 CVE-2012-4619 (The NAT implementation in Cisco IOS 12.2, 12.4, and 15.0 through 15.2 ...)
-	TODO: check
+	NOT-FOR-US: Cisco IOS
 CVE-2012-4618 (The SIP ALG feature in the NAT implementation in Cisco IOS 12.2, 12.4, ...)
-	TODO: check
+	NOT-FOR-US: Cisco IOS
 CVE-2012-4617 (The BGP implementation in Cisco IOS 15.2, IOS XE 3.5.xS before 3.5.2S, ...)
-	TODO: check
+	NOT-FOR-US: Cisco IOS
 CVE-2012-4616
 	RESERVED
 CVE-2012-4615
@@ -3260,9 +3260,9 @@
 CVE-2012-3951 (The MySQL component in Plixer Scrutinizer (aka Dell SonicWALL ...)
 	NOT-FOR-US: Plixer Scrutinizer
 CVE-2012-3950 (The Intrusion Prevention System (IPS) feature in Cisco IOS 12.3 ...)
-	TODO: check
+	NOT-FOR-US: Cisco IOS
 CVE-2012-3949 (The SIP implementation in Cisco Unified Communications Manager (CUCM) ...)
-	TODO: check
+	NOT-FOR-US: Cisco Unified Communications Manager
 CVE-2012-3948
 	RESERVED
 CVE-2012-3947
@@ -4801,7 +4801,7 @@
 CVE-2012-3335
 	RESERVED
 CVE-2012-3334 (Stack-based buffer overflow in IBM Informix Dynamic Server (IDS) 11.50 ...)
-	TODO: check
+	NOT-FOR-US: IBM Informix Dynamic Server
 CVE-2012-3333
 	RESERVED
 CVE-2012-3332
@@ -4821,7 +4821,7 @@
 CVE-2012-3325 (IBM WebSphere Application Server (WAS) 6.1.x before 6.1.0.45, 7.0.x ...)
 	NOT-FOR-US: IBM WebSphere Application Server
 CVE-2012-3324 (Directory traversal vulnerability in the UTL_FILE module in IBM DB2 ...)
-	TODO: check
+	NOT-FOR-US: IBM DB2
 CVE-2012-3323
 	RESERVED
 CVE-2012-3322
@@ -4847,7 +4847,7 @@
 CVE-2012-3312 (The datasource definition editor in IBM InfoSphere Guardium 8.2 and ...)
 	NOT-FOR-US: IBM InfoSphere Guardium
 CVE-2012-3311 (IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.45, 7.0 before ...)
-	TODO: check
+	NOT-FOR-US: IBM WebSphere Application Server
 CVE-2012-3310
 	RESERVED
 CVE-2012-3309 (Cross-site request forgery (CSRF) vulnerability in the ...)
@@ -4857,11 +4857,11 @@
 CVE-2012-3307
 	RESERVED
 CVE-2012-3306 (IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.45, 7.0 before ...)
-	TODO: check
+	NOT-FOR-US: IBM WebSphere Application Server
 CVE-2012-3305 (Directory traversal vulnerability in IBM WebSphere Application Server ...)
-	TODO: check
+	NOT-FOR-US: IBM WebSphere Application Server
 CVE-2012-3304 (The Administrative Console in IBM WebSphere Application Server (WAS) ...)
-	TODO: check
+	NOT-FOR-US: IBM WebSphere Application Server
 CVE-2012-3303
 	RESERVED
 CVE-2012-3302 (Multiple cross-site scripting (XSS) vulnerabilities in IBM Lotus ...)
@@ -4869,11 +4869,11 @@
 CVE-2012-3301 (Multiple CRLF injection vulnerabilities in the HTTP server in IBM ...)
 	NOT-FOR-US: IBM Lotus Domino
 CVE-2012-3300 (IBM WebSphere Commerce 7.0 before 7.0.0.6, when persistent sessions ...)
-	TODO: check
+	NOT-FOR-US: IBM WebSphere Commerce
 CVE-2012-3299
 	RESERVED
 CVE-2012-3298 (Unspecified vulnerability in the REST services framework in IBM ...)
-	TODO: check
+	NOT-FOR-US: IBM WebSphere Commerce
 CVE-2012-3297
 	RESERVED
 CVE-2012-3296 (Cross-site scripting (XSS) vulnerability in the Help link in the login ...)
@@ -5481,7 +5481,7 @@
 CVE-2012-2999
 	RESERVED
 CVE-2012-2998 (SQL injection vulnerability in the ad hoc query module in Trend Micro ...)
-	TODO: check
+	NOT-FOR-US: Trend Micro Control Manager
 CVE-2012-2997
 	RESERVED
 CVE-2012-2996 (Cross-site request forgery (CSRF) vulnerability in ...)
@@ -7518,7 +7518,7 @@
 CVE-2012-2200 (The default configuration of sendmail in IBM AIX 6.1 and 7.1, and VIOS ...)
 	NOT-FOR-US: sendmail configuration in AIX 
 CVE-2012-2199 (The server message channel agent in the queue manager in the server in ...)
-	TODO: check
+	NOT-FOR-US: IBM WebSphere MQ
 CVE-2012-2198
 	RESERVED
 CVE-2012-2197 (Stack-based buffer overflow in the Java Stored Procedure ...)
@@ -7542,7 +7542,7 @@
 CVE-2012-2188 (IBM Power Hardware Management Console (HMC) 7R3.5.0 before SP4, ...)
 	NOT-FOR-US: IBM Power Hardware Management Console
 CVE-2012-2187 (IBM Remote Supervisor Adapter II firmware for System x3650, x3850 M2, ...)
-	TODO: check
+	NOT-FOR-US: IBM Remote Supervisor Adapter
 CVE-2012-2186 (Incomplete blacklist vulnerability in main/manager.c in Asterisk Open ...)
 	{DSA-2550-1}
 	- asterisk 1:1.8.13.1~dfsg-1 (bug #680470)
@@ -11939,11 +11939,11 @@
 CVE-2012-0420
 	RESERVED
 CVE-2012-0419 (Directory traversal vulnerability in the agent HTTP interfaces in ...)
-	TODO: check
+	NOT-FOR-US: Novell GroupWise
 CVE-2012-0418 (Unspecified vulnerability in the client in Novell GroupWise 8.0 before ...)
-	TODO: check
+	NOT-FOR-US: Novell GroupWise
 CVE-2012-0417 (Integer overflow in GroupWise Internet Agent (GWIA) in Novell ...)
-	TODO: check
+	NOT-FOR-US: Novell GroupWise
 CVE-2012-0416
 	RESERVED
 CVE-2012-0415




More information about the Secure-testing-commits mailing list