[Secure-testing-commits] r56961 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed Oct 25 09:20:26 UTC 2017


Author: jmm
Date: 2017-10-25 09:20:25 +0000 (Wed, 25 Oct 2017)
New Revision: 56961

Modified:
   data/CVE/list
Log:
NFUs


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-10-25 09:10:16 UTC (rev 56960)
+++ data/CVE/list	2017-10-25 09:20:25 UTC (rev 56961)
@@ -1,5 +1,5 @@
 CVE-2017-15885 (Reflected XSS in the web administration portal on the Axis 2100 Network ...)
-	TODO: check
+	NOT-FOR-US: Axis
 CVE-2017-15884
 	RESERVED
 CVE-2017-15883
@@ -7,13 +7,13 @@
 CVE-2017-15882
 	RESERVED
 CVE-2017-15881 (Cross-Site Scripting vulnerability in KeystoneJS before 4.0.0-beta.7 ...)
-	TODO: check
+	NOT-FOR-US: KeystoneJS
 CVE-2017-15880 (SQL injection vulnerability vulnerability in the EyesOfNetwork web ...)
-	TODO: check
+	NOT-FOR-US: EyesOfNetwork (EON)
 CVE-2017-15879 (CSV Injection (aka Excel Macro Injection or Formula Injection) exists ...)
-	TODO: check
+	NOT-FOR-US: KeystoneJS
 CVE-2017-15878 (A cross-site scripting (XSS) vulnerability exists in ...)
-	TODO: check
+	NOT-FOR-US: KeystoneJS
 CVE-2017-15877
 	RESERVED
 CVE-2017-15876
@@ -31,7 +31,7 @@
 CVE-2017-15872 (phpwcms 1.8.9 has XSS in include/inc_tmpl/admin.edituser.tmpl.php and ...)
 	NOT-FOR-US: phpwcms
 CVE-2017-15871 (** DISPUTED ** The deserialize function in serialize-to-js through ...)
-	TODO: check
+	NOT-FOR-US: Disputed serialize-to-js issue
 CVE-2017-15870
 	RESERVED
 CVE-2017-15869
@@ -8867,7 +8867,7 @@
 CVE-2017-12706 (A stack-based buffer overflow issue was discovered in Advantech ...)
 	NOT-FOR-US: Advantech WebAccess
 CVE-2017-12705 (A Heap-Based Buffer Overflow issue was discovered in Advantech WebOP. A ...)
-	TODO: check
+	NOT-FOR-US: Advantech
 CVE-2017-12704 (A heap-based buffer overflow issue was discovered in Advantech ...)
 	NOT-FOR-US: Advantech WebAccess
 CVE-2017-12703 (A Cross-Site Request Forgery (CSRF) issue was discovered in Westermo ...)
@@ -41578,7 +41578,7 @@
 CVE-2017-1584
 	RESERVED
 CVE-2017-1583 (IBM WebSphere Application Server (IBM Liberty for Java for Bluemix ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2017-1582
 	RESERVED
 CVE-2017-1581
@@ -41698,7 +41698,7 @@
 CVE-2017-1524
 	RESERVED
 CVE-2017-1523 (IBM InfoSphere Master Data Management - Collaborative Edition 11.5 ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2017-1522 (IBM Content Navigator & CMIS 2.0.3, 3.0.0, and 3.0.1 is vulnerable to ...)
 	NOT-FOR-US: IBM
 CVE-2017-1521
@@ -41994,7 +41994,7 @@
 CVE-2017-1376 (A flaw in the IBM J9 VM class verifier allows untrusted code to ...)
 	NOT-FOR-US: IBM JDK
 CVE-2017-1375 (IBM System Storage Storwize V7000 Unified (V7000U) 1.5 and 1.6 uses ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2017-1374 (Sensitive data can be exposed in the IBM TRIRIGA Application Platform ...)
 	NOT-FOR-US: IBM
 CVE-2017-1373 (Reports executed in the IBM TRIRIGA Application Platform 3.3, 3.4, and ...)
@@ -42320,13 +42320,13 @@
 CVE-2017-1213
 	RESERVED
 CVE-2017-1212 (IBM Daeja ViewONE Professional, Standard & Virtual 4.1.5.1 and 5.0.2 ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2017-1211 (IBM Daeja ViewONE Professional, Standard & Virtual 4.1.5.1 and 5.0.2 ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2017-1210 (IBM Daeja ViewONE Professional, Standard & Virtual 4.1.5.1 and 5.0.2 ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2017-1209 (IBM Daeja ViewONE Professional, Standard & Virtual 4.1.5.1 and 5.0.2 ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2017-1208 (IBM Maximo Asset Management 7.1, 7.5, and 7.6 is vulnerable to ...)
 	NOT-FOR-US: IBM
 CVE-2017-1207 (IBM WebSphere Message Broker stores user credentials in plain in clear ...)
@@ -66315,7 +66315,7 @@
 CVE-2016-3050
 	RESERVED
 CVE-2016-3049 (IBM OpenPages GRC Platform 7.1, 7.2, and 7.3 is vulnerable to HTML ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2016-3048
 	RESERVED
 CVE-2016-3047 (Open redirect vulnerability in IBM FileNet Workplace 4.0.2 through ...)




More information about the Secure-testing-commits mailing list