[Secure-testing-commits] r31243 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Jan 10 09:22:26 UTC 2015


Author: carnil
Date: 2015-01-10 09:22:26 +0000 (Sat, 10 Jan 2015)
New Revision: 31243

Modified:
   data/CVE/list
Log:
Process new NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-01-10 09:18:59 UTC (rev 31242)
+++ data/CVE/list	2015-01-10 09:22:26 UTC (rev 31243)
@@ -1,7 +1,7 @@
 CVE-2015-0922 (McAfee ePolicy Orchestrator (ePO) before 4.6.9 and 5.x before 5.1.2 ...)
-	TODO: check
+	NOT-FOR-US: McAfee ePolicy Orchestrator
 CVE-2015-0921 (XML external entity (XXE) vulnerability in the Server Task Log in ...)
-	TODO: check
+	NOT-FOR-US: McAfee ePolicy Orchestrator
 CVE-2014-1155
 	REJECTED
 CVE-2014-1137
@@ -9,7 +9,7 @@
 CVE-2014-1004
 	REJECTED
 CVE-2013-7419 (Cross-site scripting (XSS) vulnerability in includes/refreshDate.php ...)
-	TODO: check
+	NOT-FOR-US: Joomlaskin JS Multi Hotel (aka JS MultiHotel and Js-Multi-Hotel) plugin for WordPress
 CVE-2015-XXXX [buffer overflow]
 	- unace <unfixed> (bug #775003)
 CVE-2015-0920 (Cross-site request forgery (CSRF) vulnerability in the Banner Effect ...)
@@ -952,7 +952,7 @@
 CVE-2014-9511
 	RESERVED
 CVE-2014-9510 (Cross-site request forgery (CSRF) vulnerability in the administration ...)
-	TODO: check
+	NOT-FOR-US: TP-Link TL-WR840N router
 CVE-2014-9509 (The frontend rendering component in TYPO3 4.5.x before 4.5.39, 4.6.x ...)
 	- typo3-src <unfixed>
 	TODO: check
@@ -960,7 +960,7 @@
 	- typo3-src <unfixed>
 	TODO: check
 CVE-2014-9505 (Cross-site scripting (XSS) vulnerability in the School Administration ...)
-	TODO: check
+	NOT-FOR-US: School Administration module for Drupal
 CVE-2014-9504
 	RESERVED
 CVE-2014-9503
@@ -968,13 +968,13 @@
 CVE-2014-9502
 	RESERVED
 CVE-2014-9501 (Cross-site scripting (XSS) vulnerability in the Poll Chart Block ...)
-	TODO: check
+	NOT-FOR-US: Poll Chart Block module for Drupal
 CVE-2014-9500 (Cross-site scripting (XSS) vulnerability in the Moip module 7.x-1.x ...)
-	TODO: check
+	NOT-FOR-US: Moip module for Drupal
 CVE-2014-9499 (Cross-site scripting (XSS) vulnerability in the Godwin's Law module ...)
-	TODO: check
+	NOT-FOR-US: Godwin's Law for Drupal
 CVE-2014-9498 (Cross-site scripting (XSS) vulnerability in the Webform Invitation ...)
-	TODO: check
+	NOT-FOR-US: Webform Invitation module for Drupal
 CVE-2014-9492
 	REJECTED
 CVE-2014-9491




More information about the Secure-testing-commits mailing list