[Secure-testing-commits] r22001 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Fri Apr 19 14:29:50 UTC 2013


Author: carnil
Date: 2013-04-19 14:29:50 +0000 (Fri, 19 Apr 2013)
New Revision: 22001

Modified:
   data/CVE/list
Log:
mark some NFU

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-04-19 13:53:04 UTC (rev 22000)
+++ data/CVE/list	2013-04-19 14:29:50 UTC (rev 22001)
@@ -1685,7 +1685,7 @@
 CVE-2013-2442
 	RESERVED
 CVE-2013-2441 (Unspecified vulnerability in the Agile EDM component in Oracle Supply ...)
-	TODO: check
+	NOT-FOR-US: Oracle Supply Chain Products Suite
 CVE-2013-2440 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	TODO: check
 CVE-2013-2439 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
@@ -1741,48 +1741,48 @@
 CVE-2013-2414 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	TODO: check
 CVE-2013-2413 (Unspecified vulnerability in the Siebel Enterprise Application ...)
-	TODO: check
+	NOT-FOR-US: Oracle Siebel CRM
 CVE-2013-2412
 	RESERVED
 CVE-2013-2411 (Unspecified vulnerability in the Primavera P6 Enterprise Project ...)
-	TODO: check
+	NOT-FOR-US: Oracle Primavera Products
 CVE-2013-2410 (Unspecified vulnerability in the PeopleSoft Enterprise HRMS component ...)
-	TODO: check
+	NOT-FOR-US: Oracle PeopleSoft Products
 CVE-2013-2409 (Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools ...)
-	TODO: check
+	NOT-FOR-US: Oracle PeopleSoft Products
 CVE-2013-2408 (Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools ...)
-	TODO: check
+	NOT-FOR-US: Oracle PeopleSoft Products
 CVE-2013-2407
 	RESERVED
 CVE-2013-2406 (Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools ...)
-	TODO: check
+	NOT-FOR-US: Oracle PeopleSoft Products
 CVE-2013-2405 (Unspecified vulnerability in the Primavera P6 Enterprise Project ...)
-	TODO: check
+	NOT-FOR-US: Oracle Primavera Products
 CVE-2013-2404 (Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools ...)
-	TODO: check
+	NOT-FOR-US: Oracle PeopleSoft Products
 CVE-2013-2403 (Unspecified vulnerability in the Siebel Enterprise Application ...)
-	TODO: check
+	NOT-FOR-US: Oracle Siebel CRM
 CVE-2013-2402 (Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools ...)
-	TODO: check
+	NOT-FOR-US: Oracle PeopleSoft Products
 CVE-2013-2401 (Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools ...)
-	TODO: check
+	NOT-FOR-US: Oracle PeopleSoft Products
 CVE-2013-2400
 	RESERVED
 CVE-2013-2399 (Unspecified vulnerability in the Siebel Call Center component in ...)
-	TODO: check
+	NOT-FOR-US: Oracle Siebel CRM
 CVE-2013-2398 (Unspecified vulnerability in the Siebel UI Framework component in ...)
-	TODO: check
+	NOT-FOR-US: Oracle Siebel CRM
 CVE-2013-2397 (Unspecified vulnerability in the Oracle Retail Central Office ...)
-	TODO: check
+	NOT-FOR-US: Oracle Industry Applications
 CVE-2013-2396 (Unspecified vulnerability in the Oracle Applications Manager component ...)
-	TODO: check
+	NOT-FOR-US: Oracle E-Business Suite
 CVE-2013-2395 (Unspecified vulnerability in Oracle MySQL 5.6.10 and earlier allows ...)
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
 CVE-2013-2394 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	TODO: check
 CVE-2013-2393 (Unspecified vulnerability in the Oracle Outside In Technology ...)
-	TODO: check
+	NOT-FOR-US: Oracle Fusion Middleware
 CVE-2013-2392 (Unspecified vulnerability in Oracle MySQL 5.1.68 and earlier, 5.5.30 ...)
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
@@ -1790,18 +1790,18 @@
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
 CVE-2013-2390 (Unspecified vulnerability in the Oracle WebLogic Server component in ...)
-	TODO: check
+	NOT-FOR-US: Oracle Fusion Middleware
 CVE-2013-2389 (Unspecified vulnerability in Oracle MySQL 5.1.68 and earlier, 5.5.30 ...)
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
 CVE-2013-2388 (Unspecified vulnerability in the Oracle Applications Technology Stack ...)
-	TODO: check
+	NOT-FOR-US: Oracle E-Business Suite
 CVE-2013-2387 (Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking ...)
-	TODO: check
+	NOT-FOR-US: Oracle Financial Services Software
 CVE-2013-2386 (Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking ...)
-	TODO: check
+	NOT-FOR-US: Oracle Financial Services Software
 CVE-2013-2385 (Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking ...)
-	TODO: check
+	NOT-FOR-US: Oracle Financial Services Software
 CVE-2013-2384 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	TODO: check
 CVE-2013-2383 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
@@ -1812,14 +1812,14 @@
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
 CVE-2013-2380 (Unspecified vulnerability in the Oracle JRockit component in Oracle ...)
-	TODO: check
+	NOT-FOR-US: Oracle Fusion Middleware
 CVE-2013-2379 (Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking ...)
-	TODO: check
+	NOT-FOR-US: Oracle Financial Services Software
 CVE-2013-2378 (Unspecified vulnerability in Oracle MySQL 5.1.67 and earlier, 5.5.29 ...)
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
 CVE-2013-2377 (Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking ...)
-	TODO: check
+	NOT-FOR-US: Oracle Financial Services Software
 CVE-2013-2376 (Unspecified vulnerability in Oracle MySQL 5.5.30 and earlier and ...)
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
@@ -1827,7 +1827,7 @@
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
 CVE-2013-2374 (Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools ...)
-	TODO: check
+	NOT-FOR-US: Oracle PeopleSoft Products
 CVE-2013-2373 (The Engine in TIBCO Spotfire Web Player 3.3.x before 3.3.3, 4.0.x ...)
 	NOT-FOR-US: TIBCO Spotfire Web Player
 CVE-2013-2372 (Cross-site scripting (XSS) vulnerability in the Engine in TIBCO ...)
@@ -3775,7 +3775,7 @@
 CVE-2013-1569 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	TODO: check
 CVE-2013-1568 (Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking ...)
-	TODO: check
+	NOT-FOR-US: Oracle Financial Services Software
 CVE-2013-1567 (Unspecified vulnerability in Oracle MySQL 5.6.10 and earlier allows ...)
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
@@ -3783,75 +3783,75 @@
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
 CVE-2013-1565 (Unspecified vulnerability in the Oracle GoldenGate Veridata component ...)
-	TODO: check
+	NOT-FOR-US: Oracle Fusion Middleware
 CVE-2013-1564 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	TODO: check
 CVE-2013-1563 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	TODO: check
 CVE-2013-1562 (Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking ...)
-	TODO: check
+	NOT-FOR-US: Oracle Financial Services
 CVE-2013-1561 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	TODO: check
 CVE-2013-1560 (Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking ...)
-	TODO: check
+	NOT-FOR-US: Oracle Financial Services
 CVE-2013-1559 (Unspecified vulnerability in the Oracle WebCenter Content component in ...)
-	TODO: check
+	NOT-FOR-US: Oracle Fusion Middleware
 CVE-2013-1558 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	TODO: check
 CVE-2013-1557 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	TODO: check
 CVE-2013-1556 (Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking ...)
-	TODO: check
+	NOT-FOR-US: Oracle Financial Services Software
 CVE-2013-1555 (Unspecified vulnerability in MySQL 5.1.67 and earlier and 5.5.29 and ...)
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
 CVE-2013-1554 (Unspecified vulnerability in the Network Layer component in Oracle ...)
-	TODO: check
+	NOT-FOR-US: Oracle Database Server
 CVE-2013-1553 (Unspecified vulnerability in the Oracle Web Services Manager component ...)
-	TODO: check
+	NOT-FOR-US: Oracle Fusion Middleware
 CVE-2013-1552 (Unspecified vulnerability in Oracle MySQL 5.1.67 and earlier and ...)
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
 CVE-2013-1551 (Unspecified vulnerability in the Siebel Enterprise Application ...)
-	TODO: check
+	NOT-FOR-US: Oracle Siebel CRM
 CVE-2013-1550 (Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools ...)
-	TODO: check
+	NOT-FOR-US: Oracle PeopleSoft Products
 CVE-2013-1549 (Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking ...)
-	TODO: check
+	NOT-FOR-US: Oracle Financial Services Software
 CVE-2013-1548 (Unspecified vulnerability in Oracle MySQL 5.1.63 and earlier allows ...)
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
 CVE-2013-1547 (Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking ...)
-	TODO: check
+	NOT-FOR-US: Oracle Financial Services Software
 CVE-2013-1546 (Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking ...)
-	TODO: check
+	NOT-FOR-US: Oracle Financial Services Software
 CVE-2013-1545 (Unspecified vulnerability in the Oracle HTTP Server component in ...)
-	TODO: check
+	NOT-FOR-US: Oracle Fusion Middleware
 CVE-2013-1544 (Unspecified vulnerability in Oracle MySQL 5.1.68 and earlier, 5.5.30 ...)
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
 CVE-2013-1543 (Unspecified vulnerability in the Siebel UI Framework component in ...)
-	TODO: check
+	NOT-FOR-US: Oracle Siebel CRM
 CVE-2013-1542 (Unspecified vulnerability in the Oracle Containers for J2EE component ...)
-	TODO: check
+	NOT-FOR-US: Oracle Fusion Middleware
 CVE-2013-1541 (Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking ...)
-	TODO: check
+	NOT-FOR-US: Oracle Finacial Services
 CVE-2013-1540 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	TODO: check
 CVE-2013-1539 (Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking ...)
-	TODO: check
+	NOT-FOR-US: Oracle Financial Services
 CVE-2013-1538 (Unspecified vulnerability in the Network Layer component in Oracle ...)
-	TODO: check
+	NOT-FOR-US: Oracle Database Server
 CVE-2013-1537 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	TODO: check
 CVE-2013-1536 (Unspecified vulnerability in the Oracle Transportation Management ...)
-	TODO: check
+	NOT-FOR-US: Oracle Supply Chain Products
 CVE-2013-1535 (Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking ...)
-	TODO: check
+	NOT-FOR-US: Oracle Financial Services Software
 CVE-2013-1534 (Unspecified vulnerability in the Workload Manager component in Oracle ...)
-	TODO: check
+	NOT-FOR-US: Oracle Database Server
 CVE-2013-1533 (Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking ...)
-	TODO: check
+	NOT-FOR-US: Oracle financial Services Software
 CVE-2013-1532 (Unspecified vulnerability in Oracle MySQL 5.1.68 and earlier, 5.5.30 ...)
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
@@ -3859,44 +3859,44 @@
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
 CVE-2013-1530 (Unspecified vulnerability in Oracle Sun Solaris 10 allows local users ...)
-	TODO: check
+	NOT-FOR-US: Oracle Solaris
 CVE-2013-1529 (Unspecified vulnerability in the Oracle WebCenter Interaction ...)
-	TODO: check
+	NOT-FOR-US: Oracle Fusion Middleware
 CVE-2013-1528 (Unspecified vulnerability in the Oracle HRMS component in Oracle ...)
-	TODO: check
+	NOT-FOR-US: Oracle E-Business Suite
 CVE-2013-1527 (Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools ...)
-	TODO: check
+	NOT-FOR-US: Oracle PeopleSoft Products
 CVE-2013-1526 (Unspecified vulnerability in Oracle MySQL 5.5.29 and earlier allows ...)
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
 CVE-2013-1525 (Unspecified vulnerability in the Oracle Retail Integration Bus ...)
-	TODO: check
+	NOT-FOR-US: Oracle Industry Applications
 CVE-2013-1524 (Unspecified vulnerability in the Oracle Application Object Library ...)
-	TODO: check
+	NOT-FOR-US: Oracle E-Business Suite
 CVE-2013-1523 (Unspecified vulnerability in Oracle MySQL 5.5.29 and earlier and ...)
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
 CVE-2013-1522 (Unspecified vulnerability in the Oracle WebCenter Content component in ...)
-	TODO: check
+	NOT-FOR-US: Oracle Fusion Middleware
 CVE-2013-1521 (Unspecified vulnerability in Oracle MySQL 5.1.67 and earlier and ...)
 	- mysql-5.5 <unfixed>		
 	- mysql-5.1 <removed>
 CVE-2013-1520 (Unspecified vulnerability in the Oracle Clinical Remote Data Capture ...)
-	TODO: check
+	NOT-FOR-US: Oracle Industry Applications
 CVE-2013-1519 (Unspecified vulnerability in the Application Express component in ...)
-	TODO: check
+	NOT-FOR-US: Oracle Database Server
 CVE-2013-1518 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	TODO: check
 CVE-2013-1517 (Unspecified vulnerability in the Oracle Application Object Library ...)
-	TODO: check
+	NOT-FOR-US: Oracle E-Business Suite
 CVE-2013-1516 (Unspecified vulnerability in the Oracle WebCenter Capture component in ...)
-	TODO: check
+	NOT-FOR-US: Oracle Fusion Middleware
 CVE-2013-1515 (Unspecified vulnerability in the Oracle GlassFish Server component in ...)
-	TODO: check
+	NOT-FOR-US: Oracle Sun Middleware Products
 CVE-2013-1514 (Unspecified vulnerability in the Oracle Containers for J2EE component ...)
-	TODO: check
+	NOT-FOR-US: Oracle Fusion Middleware
 CVE-2013-1513 (Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools ...)
-	TODO: check
+	NOT-FOR-US: Oracle PeopleSoft Products
 CVE-2013-1512 (Unspecified vulnerability in Oracle MySQL 5.5.29 and earlier allows ...)
 	- mysql-5.5 <unfixed>
 	- mysql-5.1 <removed>
@@ -5979,7 +5979,7 @@
 CVE-2013-0688
 	RESERVED
 CVE-2013-0687 (The installer routine in Schneider Electric MiCOM S1 Studio uses ...)
-	TODO: check
+	NOT-FOR-US: Schneider Electric
 CVE-2013-0686
 	RESERVED
 CVE-2013-0685
@@ -12123,11 +12123,11 @@
 CVE-2012-4716
 	RESERVED
 CVE-2012-4715 (Buffer overflow in LogReceiver.exe in Rockwell Automation RSLinx ...)
-	TODO: check
+	NOT-FOR-US: Rockwell Automation RSLinx Enterprise
 CVE-2012-4714 (Integer overflow in RNADiagnostics.dll in Rockwell Automation ...)
-	TODO: check
+	NOT-FOR-US: Rockwell Automation FactoryTalk Services Platform
 CVE-2012-4713 (Integer signedness error in RNADiagnostics.dll in Rockwell Automation ...)
-	TODO: check
+	NOT-FOR-US: Rockwell Automation FactoryTalk Services Platform
 CVE-2012-4712 (Moxa EDR-G903 series routers with firmware before 2.11 have a ...)
 	NOT-FOR-US: Moxa EDR-G903
 CVE-2012-4711 (Buffer overflow in kingMess.exe 65.20.2003.10300 in WellinTech ...)
@@ -12163,7 +12163,7 @@
 CVE-2012-4696 (Buffer overflow in Beijer ADP 6.5.0-180_R1967 and 6.5.1-186_R2942, and ...)
 	NOT-FOR-US: Beijer
 CVE-2012-4695 (LogReceiver.exe in Rockwell Automation RSLinx Enterprise CPR9, ...)
-	TODO: check
+	NOT-FOR-US: Rockwell Automation RSLinx Enterprise
 CVE-2012-4694 (Moxa EDR-G903 series routers with firmware before 2.11 do not use a ...)
 	NOT-FOR-US: Moxa EDR-G903
 CVE-2012-4693 (Invensys Wonderware InTouch 2012 R2 and earlier and Siemens ...)




More information about the Secure-testing-commits mailing list