[Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
carnil at debian.org
Sun Dec 30 20:26:58 GMT 2018
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
83efa9cb by Salvatore Bonaccorso at 2018-12-30T20:26:35Z
Process NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,9 +1,9 @@
CVE-2018-20596 (Jspxcms v9.0.0 allows SSRF. ...)
- TODO: check
+ NOT-FOR-US: Jspxcms
CVE-2018-20595 (A CSRF issue was discovered in ...)
- TODO: check
+ NOT-FOR-US: hsweb
CVE-2018-20594 (An issue was discovered in hsweb 3.0.4. It is a reflected XSS ...)
- TODO: check
+ NOT-FOR-US: hsweb
CVE-2018-20593 (In Mini-XML (aka mxml) v2.12, there is stack-based buffer overflow in ...)
TODO: check
CVE-2018-20592 (In Mini-XML (aka mxml) v2.12, there is a use-after-free in the mxmlAdd ...)
@@ -11,11 +11,11 @@ CVE-2018-20592 (In Mini-XML (aka mxml) v2.12, there is a use-after-free in the m
CVE-2018-20591 (A heap-based buffer over-read was discovered in decompileJUMP function ...)
TODO: check
CVE-2018-20590 (Ivan Cordoba Generic Content Management System (CMS) through 2018-04-28 ...)
- TODO: check
+ NOT-FOR-US: Ivan Cordoba Generic Content Management System (CMS)
CVE-2018-20589 (Ivan Cordoba Generic Content Management System (CMS) through 2018-04-28 ...)
- TODO: check
+ NOT-FOR-US: Ivan Cordoba Generic Content Management System (CMS)
CVE-2018-20588 (lib/support/unicodeconv/unicodeconv.c in libotfcc.a in otfcc ...)
- TODO: check
+ NOT-FOR-US: otfcc
CVE-2018-20587
RESERVED
CVE-2018-20586
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/83efa9cb257bd067ebfedab27b5b7acf29808a8e
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/83efa9cb257bd067ebfedab27b5b7acf29808a8e
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181230/aac8ac29/attachment-0001.html>
More information about the debian-security-tracker-commits
mailing list