[Secure-testing-commits] r55805 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Sep 15 21:50:08 UTC 2017


Author: carnil
Date: 2017-09-15 21:50:08 +0000 (Fri, 15 Sep 2017)
New Revision: 55805

Modified:
   data/CVE/list
Log:
Process more NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-15 21:33:06 UTC (rev 55804)
+++ data/CVE/list	2017-09-15 21:50:08 UTC (rev 55805)
@@ -10250,7 +10250,7 @@
 CVE-2017-10857
 	RESERVED
 CVE-2017-10856 (SEIL/X 4.60 to 5.72, SEIL/B1 4.60 to 5.72, SEIL/x86 3.20 to 5.72, ...)
-	TODO: check
+	NOT-FOR-US: SEIL
 CVE-2017-10855 (Untrusted search path vulnerability in FENCE-Explorer for Windows ...)
 	NOT-FOR-US: FENCE-Explorer for Windows
 CVE-2017-10854
@@ -14323,7 +14323,7 @@
 CVE-2017-9329
 	RESERVED
 CVE-2017-9328 (Shell metacharacter injection vulnerability in ...)
-	TODO: check
+	NOT-FOR-US: TerraMaster TOS
 CVE-2017-9327
 	RESERVED
 CVE-2017-9326
@@ -96449,7 +96449,7 @@
 CVE-2014-9464 (SQL injection vulnerability in Category.php in Microweber CMS 0.95 ...)
 	NOT-FOR-US: Microweber CMS
 CVE-2014-9463 (functions_vbseo_hook.php in the VBSEO module for vBulletin allows ...)
-	TODO: check
+	NOT-FOR-US: vBulletin
 CVE-2014-9462 (The _validaterepo function in sshpeer in Mercurial before 3.2.4 allows ...)
 	{DSA-3257-1 DLA-237-1}
 	- mercurial 3.4-1 (bug #783237)
@@ -102865,7 +102865,7 @@
 CVE-2014-7809 (Apache Struts 2.0.0 through 2.3.x before 2.3.20 uses predictable ...)
 	- libstruts1.2-java <not-affected> (Struts 2.0.0 through to Struts 2.3.16.3)
 CVE-2014-7808 (Apache Wicket before 1.5.13, 6.x before 6.19.0, and 7.x before ...)
-	TODO: check
+	NOT-FOR-US: Apache Wicket
 CVE-2014-7807 (Apache CloudStack 4.3.x before 4.3.2 and 4.4.x before 4.4.2 allows ...)
 	NOT-FOR-US: Apache CloudStack
 CVE-2014-7806




More information about the Secure-testing-commits mailing list