[Secure-testing-commits] r52460 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Jun 10 04:10:27 UTC 2017


Author: carnil
Date: 2017-06-10 04:10:26 +0000 (Sat, 10 Jun 2017)
New Revision: 52460

Modified:
   data/CVE/list
Log:
Process NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-06-10 03:58:44 UTC (rev 52459)
+++ data/CVE/list	2017-06-10 04:10:26 UTC (rev 52460)
@@ -21127,7 +21127,7 @@
 CVE-2017-2220
 	RESERVED
 CVE-2017-2219 (Untrusted search path vulnerability in the [Simeji for Windows] ...)
-	TODO: check
+	NOT-FOR-US: Simeji
 CVE-2017-2218
 	RESERVED
 CVE-2017-2217
@@ -21137,23 +21137,23 @@
 CVE-2017-2215
 	RESERVED
 CVE-2017-2214 (Untrusted search path vulnerability in AppCheck and AppCheck Pro prior ...)
-	TODO: check
+	NOT-FOR-US: AppCheck
 CVE-2017-2213 (Untrusted search path vulnerability in SemiDynaEXE ...)
-	TODO: check
+	NOT-FOR-US: SemiDynaEXE
 CVE-2017-2212 (Untrusted search path vulnerability in TKY2JGD (TKY2JGD1379.EXE) ver. ...)
-	TODO: check
+	NOT-FOR-US: TKY2JGD
 CVE-2017-2211 (Untrusted search path vulnerability in PatchJGD (Hyoko) ...)
-	TODO: check
+	NOT-FOR-US: PatchJGD
 CVE-2017-2210 (Untrusted search path vulnerability in PatchJGD (PatchJGD101.EXE) ver. ...)
-	TODO: check
+	NOT-FOR-US: PatchJGD
 CVE-2017-2209 (Untrusted search path vulnerability in the installer of Houkokusyo ...)
-	TODO: check
+	NOT-FOR-US: Houkokusyo Sakusei Shien Tool
 CVE-2017-2208
 	RESERVED
 CVE-2017-2207 (Untrusted search path vulnerability in the installer of SaAT Personal ...)
-	TODO: check
+	NOT-FOR-US: SaAT Personal
 CVE-2017-2206 (Untrusted search path vulnerability in the installer of SaAT Netizen ...)
-	TODO: check
+	NOT-FOR-US: SaAT Netizen
 CVE-2017-2205
 	RESERVED
 CVE-2017-2204
@@ -21175,7 +21175,7 @@
 CVE-2017-2196
 	RESERVED
 CVE-2017-2195 (SQL injection vulnerability in the Multi Feed Reader prior to version ...)
-	TODO: check
+	NOT-FOR-US: Multi Feed Reader plugin for wordpress
 CVE-2017-2194
 	RESERVED
 CVE-2017-2193 (Untrusted search path vulnerability in the installer of Tera Term 4.94 ...)
@@ -31847,19 +31847,19 @@
 	[wheezy] - bluez <no-dsa> (Minor issue)
 	NOTE: Fixed by: http://git.kernel.org/cgit/bluetooth/bluez.git/commit/?id=8514068150759c1d6a46d4605d2351babfde1601 (5.42)
 CVE-2016-7836 (SKYSEA Client View Ver.11.221.03 and earlier allows remote code ...)
-	TODO: check
+	NOT-FOR-US: SKYSEA Client View
 CVE-2016-7835 (Use-after-free vulnerability in H2O allows remote attackers to cause a ...)
 	TODO: check
 CVE-2016-7834 (SONY SNC-CH115, SNC-CH120, SNC-CH160, SNC-CH220, SNC-CH260, SNC-DH120, ...)
 	NOT-FOR-US: SONY
 CVE-2016-7833 (Cybozu Dezie 8.0.0 to 8.1.1 allows remote attackers to bypass access ...)
-	TODO: check
+	NOT-FOR-US: Cybozu
 CVE-2016-7832 (Cybozu Dezie 8.0.0 to 8.1.1 allows remote attackers to bypass access ...)
-	TODO: check
+	NOT-FOR-US: Cybozu
 CVE-2016-7831 (Sleipnir 4 Black Edition for Mac 4.5.3 and earlier and Sleipnir 4 for ...)
-	TODO: check
+	NOT-FOR-US: Sleipnir
 CVE-2016-7830 (Sony PCS-XG100, PCS-XG100S, PCS-XG100C, PCS-XG77, PCS-XG77S, PCS-XG77C ...)
-	TODO: check
+	NOT-FOR-US: Sony
 CVE-2016-7829
 	REJECTED
 CVE-2016-7828
@@ -31867,57 +31867,57 @@
 CVE-2016-7827
 	REJECTED
 CVE-2016-7826 (Directory traversal vulnerability in Buffalo WNC01WH devices with ...)
-	TODO: check
+	NOT-FOR-US: Buffalo
 CVE-2016-7825 (Directory traversal vulnerability in Buffalo WNC01WH devices with ...)
-	TODO: check
+	NOT-FOR-US: Buffalo
 CVE-2016-7824 (Buffalo NC01WH devices with firmware version 1.0.0.8 and earlier ...)
-	TODO: check
+	NOT-FOR-US: Buffalo
 CVE-2016-7823 (Cross-site scripting vulnerability in Buffalo WNC01WH devices with ...)
-	TODO: check
+	NOT-FOR-US: Buffalo
 CVE-2016-7822 (Cross-site request forgery (CSRF) vulnerability in Buffalo WNC01WH ...)
-	TODO: check
+	NOT-FOR-US: Buffalo
 CVE-2016-7821 (Buffalo WNC01WH devices with firmware version 1.0.0.8 and earlier ...)
-	TODO: check
+	NOT-FOR-US: Buffalo
 CVE-2016-7820 (Buffer overflow in I-O DATA DEVICE TS-WRLP firmware version 1.01.02 ...)
-	TODO: check
+	NOT-FOR-US: I-O DATA DEVICE
 CVE-2016-7819 (I-O DATA DEVICE TS-WRLP firmware version 1.01.02 and earlier and ...)
-	TODO: check
+	NOT-FOR-US: I-O DATA DEVICE
 CVE-2016-7818 (Untrusted search path vulnerability in Installers for Specification ...)
 	TODO: check
 CVE-2016-7817 (Cross-site scripting vulnerability in Simple keitai chat 2.0 and ...)
-	TODO: check
+	NOT-FOR-US: Simple keitai chat
 CVE-2016-7816 (The Cybozu kintone mobile for Android 1.0.6 and earlier does not ...)
-	TODO: check
+	NOT-FOR-US: Cybozu
 CVE-2016-7815 (Remote Service Manager 3.0.0 to 3.1.4 fails to verify client ...)
 	NOT-FOR-US: Remote Service Manager provided by Cybozu
 CVE-2016-7814 (I-O DATA DEVICE TS-WRLP firmware version 1.00.01 and earlier and ...)
-	TODO: check
+	NOT-FOR-US: I-O DATA DEVICE
 CVE-2016-7813 (Cross-site scripting vulnerability in DERAEMON-CMS version 0.8.9 and ...)
-	TODO: check
+	NOT-FOR-US: DERAEMON-CMS
 CVE-2016-7812
 	RESERVED
 CVE-2016-7811 (Corega CG-WLR300NX firmware Ver. 1.20 and earlier allows an attacker ...)
-	TODO: check
+	NOT-FOR-US: Corega
 CVE-2016-7810 (Cross-site scripting vulnerability in Corega CG-WLR300NX firmware Ver. ...)
-	TODO: check
+	NOT-FOR-US: Corega
 CVE-2016-7809 (Cross-site request forgery (CSRF) vulnerability in Corega CG-WLR300NX ...)
-	TODO: check
+	NOT-FOR-US: Corega
 CVE-2016-7808 (Cross-site scripting vulnerability in Corega CG-WLBARGMH and ...)
-	TODO: check
+	NOT-FOR-US: Corega
 CVE-2016-7807 (I-O DATA DEVICE WFS-SR01 firmware version 1.10 and earlier allow ...)
-	TODO: check
+	NOT-FOR-US: I-O DATA DEVICE
 CVE-2016-7806 (I-O DATA DEVICE WFS-SR01 firmware version 1.10 and earlier allow ...)
-	TODO: check
+	NOT-FOR-US: I-O DATA DEVICE
 CVE-2016-7805 (The mobiGate App for Android version 2.2.1.2 and earlier and mobiGate ...)
-	TODO: check
+	NOT-FOR-US: mobiGate App
 CVE-2016-7804 (Untrusted search path vulnerability in 7 Zip for Windows 16.02 and ...)
 	NOT-FOR-US: 7 Zip for Windows
 CVE-2016-7803 (SQL injection vulnerability in the Cybozu Garoon 3.0.0 to 4.2.2 allows ...)
-	TODO: check
+	NOT-FOR-US: Cybozu
 CVE-2016-7802 (Directory traversal vulnerability in Cybozu Garoon 3.0.0 to 4.2.2 ...)
-	TODO: check
+	NOT-FOR-US: Cybozu
 CVE-2016-7801 (Cybozu Garoon 3.0.0 to 4.2.2 allows remote attackers to bypass access ...)
-	TODO: check
+	NOT-FOR-US: Cybozu
 CVE-2016-7800 (Integer underflow in the parse8BIM function in coders/meta.c in ...)
 	{DSA-3746-1 DLA-651-1}
 	- graphicsmagick 1.3.25-3
@@ -32653,7 +32653,7 @@
 CVE-2016-7470
 	RESERVED
 CVE-2016-7469 (A stored cross-site scripting (XSS) vulnerability in the Configuration ...)
-	TODO: check
+	NOT-FOR-US: BIG-IP
 CVE-2016-7468 (An unauthenticated remote attacker may be able to disrupt services on ...)
 	NOT-FOR-US: F5
 CVE-2016-7467 (The TMM SSO plugin in F5 BIG-IP APM 12.0.0 - 12.1.1, 11.6.0 - 11.6.1 ...)
@@ -41917,15 +41917,15 @@
 CVE-2016-1000000 (Ipswitch WhatsUp Gold 16.4.1 WrFreeFormText.asp sUniqueID Parameter ...)
 	NOT-FOR-US: Ipswitch
 CVE-2016-4910 (Cybozu Garoon 3.0.0 to 4.2.2 allows remote authenticated attackers to ...)
-	TODO: check
+	NOT-FOR-US: Cybozu
 CVE-2016-4909 (Cross-site request forgery (CSRF) vulnerability in Cybozu Garoon 3.0.0 ...)
-	TODO: check
+	NOT-FOR-US: Cybozu
 CVE-2016-4908 (Cybozu Garoon 3.0.0 to 4.2.2 allows remote authenticated attackers to ...)
-	TODO: check
+	NOT-FOR-US: Cybozu
 CVE-2016-4907 (Cybozu Garoon 3.0.0 to 4.2.2 allow remote attackers to obtain CSRF ...)
-	TODO: check
+	NOT-FOR-US: Cybozu
 CVE-2016-4906 (Cross-site scripting vulnerability in Cybozu Garoon 3.0.0 to 4.2.2 ...)
-	TODO: check
+	NOT-FOR-US: Cybozu
 CVE-2016-4905 (SQL injection vulnerability in the WP-OliveCart versions prior to ...)
 	NOT-FOR-US: WP-OliveCart
 CVE-2016-4904 (Cross-site request forgery (CSRF) vulnerability in WP-OliveCart ...)




More information about the Secure-testing-commits mailing list