[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff jmm at debian.org
Thu Feb 8 18:22:16 UTC 2018


Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4c373cee by Moritz Muehlenhoff at 2018-02-08T19:21:55+01:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -1,5 +1,5 @@
 CVE-2018-6844 (MyBB 1.8.14 has XSS via the Title or Description field on the Edit ...)
-	TODO: check
+	NOT-FOR-US: MyBB
 CVE-2018-6843
 	RESERVED
 CVE-2018-6842
@@ -46,11 +46,11 @@ CVE-2018-6826
 CVE-2018-6825
 	RESERVED
 CVE-2018-6824 (Cozy has XSS allowing remote attackers to obtain administrative access ...)
-	TODO: check
+	NOT-FOR-US: Cozy
 CVE-2018-6823 (In the VPN client in Mailbutler Shimo before 4.1.5.1 on macOS, the ...)
-	TODO: check
+	NOT-FOR-US: Mailbutler Shimo
 CVE-2018-6822 (In PureVPN 6.0.1 on macOS, HelperTool LaunchDaemon implements an ...)
-	TODO: check
+	NOT-FOR-US: PureVPN
 CVE-2018-6821
 	RESERVED
 CVE-2018-6820
@@ -103,9 +103,9 @@ CVE-2018-6798
 CVE-2018-6797
 	RESERVED
 CVE-2018-6796 (PHP Scripts Mall Multilanguage Real Estate MLM Script 3.0 has Stored ...)
-	TODO: check
+	NOT-FOR-US: PHP Scripts Mall Multilanguage Real Estate MLM Script
 CVE-2018-6795 (PHP Scripts Mall Naukri Clone Script 3.0.3 has Stored XSS via every ...)
-	TODO: check
+	NOT-FOR-US: PHP Scripts Mall Naukri Clone Script
 CVE-2018-6794 (Suricata before 4.1 is prone to an HTTP detection bypass vulnerability ...)
 	- suricata <unfixed> (bug #889842)
 	NOTE: https://redmine.openinfosecfoundation.org/issues/2427
@@ -411,9 +411,9 @@ CVE-2018-6657
 CVE-2018-6656 (Z-BlogPHP 1.5.1 has CSRF via zb_users/plugin/AppCentre/app_del.php, as ...)
 	NOT-FOR-US: Z-BlogPHP
 CVE-2018-6655 (PHP Scripts Mall Doctor Search Script 1.0.2 has Stored XSS via an ...)
-	TODO: check
+	NOT-FOR-US: PHP Scripts Mall Doctor Search Script
 CVE-2018-6654 (The Grammarly extension before 2018-02-02 for Chrome allows remote ...)
-	TODO: check
+	NOT-FOR-US: Grammarly extension for Chrome
 CVE-2018-6653
 	RESERVED
 CVE-2018-6652
@@ -7661,7 +7661,7 @@ CVE-2017-17997 (In Wireshark before 2.2.12, the MRDISC dissector misuses a NULL 
 	NOTE: https://code.wireshark.org/review/#/c/25063/
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=80a695869c9aef2fb473d9361da068022be7cb50
 CVE-2017-17996 (A buffer overflow vulnerability in "Add command" functionality exists ...)
-	TODO: check
+	NOT-FOR-US: Flexense SyncBreeze Enterprise
 CVE-2017-17995 (Biometric Shift Employee Management System has XSS via the Last_Name ...)
 	NOT-FOR-US: Biometric Shift Employee Management System
 CVE-2017-17994 (Biometric Shift Employee Management System has XSS via the criteria ...)
@@ -17960,61 +17960,61 @@ CVE-2018-0142
 CVE-2018-0141
 	RESERVED
 CVE-2018-0140 (A vulnerability in the spam quarantine of Cisco Email Security ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0139
 	RESERVED
 CVE-2018-0138 (A vulnerability in the detection engine of Cisco Firepower System ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0137 (A vulnerability in the TCP throttling process of Cisco Prime Network ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0136 (A vulnerability in the IPv6 subsystem of Cisco IOS XR Software Release ...)
 	NOT-FOR-US: Cisco
 CVE-2018-0135 (A vulnerability in Cisco Unified Communications Manager could allow an ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0134 (A vulnerability in the RADIUS authentication module of Cisco Policy ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0133
 	RESERVED
 CVE-2018-0132 (A vulnerability in the forwarding information base (FIB) code of Cisco ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0131
 	RESERVED
 CVE-2018-0130
 	RESERVED
 CVE-2018-0129 (A vulnerability in the web-based management interface of Cisco Data ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0128 (A vulnerability in the web-based management interface of Cisco Data ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0127 (A vulnerability in the web interface of Cisco RV132W ADSL2+ Wireless-N ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0126
 	RESERVED
 CVE-2018-0125 (A vulnerability in the web interface of the Cisco RV132W ADSL2+ ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0124
 	RESERVED
 CVE-2018-0123 (A Path Traversal vulnerability in the diagnostic shell for Cisco IOS ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0122 (A vulnerability in the CLI of the Cisco StarOS operating system for ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0121
 	RESERVED
 CVE-2018-0120 (A vulnerability in the web framework of Cisco Unified Communications ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0119 (A vulnerability in certain authentication controls in the account ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0118 (A vulnerability in the web-based management interface of Cisco Unified ...)
 	NOT-FOR-US: Cisco
 CVE-2018-0117 (A vulnerability in the ingress packet processing functionality of the ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0116 (A vulnerability in the RADIUS authentication module of Cisco Policy ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0115 (A vulnerability in the CLI of the Cisco StarOS operating system for ...)
 	NOT-FOR-US: Cisco
 CVE-2018-0114 (A vulnerability in the Cisco node-jose open source library before ...)
 	NOT-FOR-US: Cisco node-jose
 CVE-2018-0113 (A vulnerability in an operations script of Cisco UCS Central could ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0112
 	RESERVED
 CVE-2018-0111 (A vulnerability in Cisco WebEx Meetings Server could allow an ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/4c373cee6318a3ce9d31fac286a3c005df67218f

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/4c373cee6318a3ce9d31fac286a3c005df67218f
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180208/35a9e2ab/attachment-0001.html>


More information about the Secure-testing-commits mailing list