[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 2 commits: NFUs

Moritz Muehlenhoff jmm at debian.org
Thu Feb 15 21:42:39 UTC 2018


Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
11407338 by Moritz Muehlenhoff at 2018-02-15T22:41:41+01:00
NFUs

- - - - -
9c37f384 by Moritz Muehlenhoff at 2018-02-15T22:42:08+01:00
Merge branch 'master' of salsa.debian.org:security-tracker-team/security-tracker

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -233,11 +233,11 @@ CVE-2018-7059
 CVE-2018-7058
 	RESERVED
 CVE-2018-7057 (RoomWizard before 4.4.x allows XSS via the HelpAction.action pageName ...)
-	TODO: check
+	NOT-FOR-US: RoomWizard
 CVE-2018-7056 (RoomWizard before 4.4.x allows remote attackers to obtain potentially ...)
-	TODO: check
+	NOT-FOR-US: RoomWizard
 CVE-2018-7055 (GroupViewProxyServlet in RoomWizard before 4.4.x allows SSRF via the ...)
-	TODO: check
+	NOT-FOR-US: RoomWizard
 CVE-2018-7054 (An issue was discovered in Irssi before 1.0.7 and 1.1.x before 1.1.1. ...)
 	- irssi <unfixed>
 	NOTE: https://irssi.org/security/irssi_sa_2018_02.txt
@@ -1877,9 +1877,9 @@ CVE-2017-18090
 CVE-2017-18089
 	RESERVED
 CVE-2017-18088 (Various plugin servlet resources in Atlassian Bitbucket Server before ...)
-	TODO: check
+	NOT-FOR-US: Atlassian Bitbucket Server
 CVE-2017-18087 (The download commit resource in Atlassian Bitbucket Server from ...)
-	TODO: check
+	NOT-FOR-US: Atlassian Bitbucket Server
 CVE-2017-18086 (Various resources in Atlassian Confluence Server before version 6.4.2 ...)
 	NOT-FOR-US: Atlassian Confluence
 CVE-2017-18085 (The viewdefaultdecorator resource in Atlassian Confluence Server ...)
@@ -4537,7 +4537,7 @@ CVE-2018-5461
 CVE-2018-5460
 	RESERVED
 CVE-2018-5459 (An Improper Authentication issue was discovered in WAGO PFC200 Series ...)
-	TODO: check
+	NOT-FOR-US: WAGO PFC200
 CVE-2018-5458
 	RESERVED
 CVE-2018-5457 (A uncontrolled search path element issue was discovered in Vyaire ...)
@@ -4575,7 +4575,7 @@ CVE-2018-5442 (A Stack-based Buffer Overflow issue was discovered in Fuji Electr
 CVE-2018-5441 (An Improper Validation of Integrity Check Value issue was discovered in ...)
 	NOT-FOR-US: PHOENIX CONTACT mGuard firmware
 CVE-2018-5440 (A Stack-based Buffer Overflow issue was discovered in 3S-Smart CODESYS ...)
-	TODO: check
+	NOT-FOR-US: 3S-Smart
 CVE-2018-5439
 	RESERVED
 CVE-2018-5438
@@ -12448,7 +12448,7 @@ CVE-2018-2366
 CVE-2018-2365
 	RESERVED
 CVE-2018-2364 (SAP CRM WebClient UI 7.01, 7.31, 7.46, 7.47, 7.48, 8.00, 8.01, S4FND ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2018-2363 (SAP NetWeaver, SAP BASIS from 7.00 to 7.02, from 7.10 to 7.11, 7.30, ...)
 	NOT-FOR-US: SAP NetWeaver
 CVE-2018-2362 (A remote unauthenticated attacker, SAP HANA 1.00 and 2.00, could send ...)
@@ -16244,45 +16244,45 @@ CVE-2017-17304
 CVE-2017-17303
 	RESERVED
 CVE-2017-17302 (Huawei DP300 V500R002C00, RP200 V600R006C00, TE30 V100R001C10, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17301 (Huawei AR120-S V200R005C32, V200R006C10, V200R007C00, V200R008C20, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17300 (Huawei S12700 V200R008C00, V200R009C00, S5700 V200R007C00, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17299 (Huawei AR120-S V200R006C10, V200R007C00, AR1200 V200R006C10, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17298 (Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17297 (Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17296 (Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17295 (Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17294 (Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17293 (Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17292 (Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17291 (Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17290 (The Light Directory Access Protocol (LDAP) clients of Huawei TE60 with ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17289 (Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17288 (Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17287 (Huawei AR120-S V200R005C32, V200R006C10, V200R007C00, V200R008C20, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17286 (Huawei AR120-S V200R005C32, V200R006C10, V200R007C00, V200R008C20, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17285 (Bluetooth module in some Huawei mobile phones with software ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17284 (Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17283 (Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17282
 	RESERVED
 CVE-2017-17281
@@ -16444,9 +16444,9 @@ CVE-2017-17204
 CVE-2017-17203
 	RESERVED
 CVE-2017-17202 (Huawei AR120-S V200R005C32, V200R006C10, V200R007C00, V200R008C20, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17201 (Some huawei smartphones with software BTV-DL09C233B350, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17200
 	RESERVED
 CVE-2017-17199
@@ -16474,17 +16474,17 @@ CVE-2017-17189
 CVE-2017-17188
 	RESERVED
 CVE-2017-17187 (Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17186 (Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17185 (Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17184 (Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17183 (Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17182 (Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17181
 	RESERVED
 CVE-2017-17180
@@ -16516,37 +16516,37 @@ CVE-2017-17168
 CVE-2017-17167
 	RESERVED
 CVE-2017-17166 (Huawei DP300 V500R002C00, Secospace USG6300 V500R001C00, V500R001C20, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17165 (IPv6 function in Huawei Quidway S2700 V200R003C00SPC300, Quidway S5300 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17164 (Huawei Secospace AntiDDoS8000 V500R001C20SPC500 have a memory leak ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17163 (Huawei Secospace USG6600 V500R001C30SPC100 has an Out-of-Bounds memory ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17162 (Huawei Secospace USG6600 V500R001C30SPC100, Secospace USG6600 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17161 (The 'Find Phone' function in some Huawei smart phones with software ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17160 (Huawei AR120-S V200R006C10, V200R007C00, AR1200 V200R006C10, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17159 (Some Huawei smart phones with software of NXT-AL10C00B386, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17158
 	RESERVED
 CVE-2017-17157 (IKEv2 in Huawei IPS Module V500R001C00, V500R001C00SPC200, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17156 (IKEv2 in Huawei IPS Module V500R001C00, V500R001C00SPC200, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17155 (IKEv2 in Huawei IPS Module V500R001C00, V500R001C00SPC200, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17154 (IKEv2 in Huawei IPS Module V500R001C00, V500R001C00SPC200, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17153 (IKEv2 in Huawei IPS Module V500R001C00, V500R001C00SPC200, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17152 (IKEv2 in Huawei IPS Module V500R001C00, V500R001C00SPC200, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17151 (Huawei AR100, AR100-S, AR110-S, AR120, AR120-S, AR1200, AR1200-S, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-17150
 	RESERVED
 CVE-2017-17149
@@ -17047,105 +17047,105 @@ CVE-2018-0871
 CVE-2018-0870
 	RESERVED
 CVE-2018-0869 (SharePoint Server 2016 allows an elevation of privilege vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0868
 	RESERVED
 CVE-2018-0867
 	RESERVED
 CVE-2018-0866 (Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0865
 	RESERVED
 CVE-2018-0864 (SharePoint Project Server 2013 and SharePoint Enterprise Server 2016 ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0863
 	RESERVED
 CVE-2018-0862 (Equation Editor in Microsoft Office 2003, Microsoft Office 2007, ...)
 	NOT-FOR-US: Microsoft
 CVE-2018-0861 (Microsoft Edge in Microsoft Windows 10 1607, 1703, and Windows Server ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0860 (Microsoft Edge and ChakraCore in Microsoft Windows 10 Gold, 1511, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0859 (Microsoft Edge and ChakraCore in Microsoft Windows 10 Gold, 1511, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0858 (ChakraCore allows remote code execution, due to how the ChakraCore ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0857 (Microsoft Edge and ChakraCore in Microsoft Windows 10 Gold, 1511, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0856 (Microsoft Edge and ChakraCore in Microsoft Windows 10 1703 and 1709 ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0855 (The Microsoft Windows Embedded OpenType (EOT) font engine in Microsoft ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0854
 	RESERVED
 CVE-2018-0853 (Microsoft Office 2010 SP2, Microsoft Office 2013 SP1 and RT SP1, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0852 (Microsoft Outlook 2007 SP3, Microsoft Outlook 2010 SP2, Microsoft ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0851 (Microsoft Office 2007 SP2, Microsoft Office Word Viewer, Microsoft ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0850 (Microsoft Outlook 2007, Microsoft Outlook 2010, Microsoft Outlook ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0849 (Equation Editor in Microsoft Office 2003, Microsoft Office 2007, ...)
 	NOT-FOR-US: Microsoft
 CVE-2018-0848 (Equation Editor in Microsoft Office 2003, Microsoft Office 2007, ...)
 	NOT-FOR-US: Microsoft
 CVE-2018-0847 (Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0846 (The Windows Common Log File System (CLFS) driver in Windows 7 SP1, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0845 (Equation Editor in Microsoft Office 2003, Microsoft Office 2007, ...)
 	NOT-FOR-US: Microsoft
 CVE-2018-0844 (The Windows Common Log File System (CLFS) driver in Windows 7 SP1, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0843 (The Windows kernel in Windows 10 version 1709 and Windows Server, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0842 (Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0841 (Microsoft Office 2016 Click-to-Run allows a remote code execution ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0840 (Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0839 (Microsoft Edge in Microsoft Windows 10 1703 allows information ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0838 (Microsoft Edge and ChakraCore in Microsoft Windows 10 Gold, 1511, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0837 (Microsoft Edge and ChakraCore in Microsoft Windows 10 Gold, 1511, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0836 (Microsoft Edge and ChakraCore in Microsoft Windows 10 1703 and 1709 ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0835 (Microsoft Edge and ChakraCore in Microsoft Windows 10 Gold, 1511, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0834 (Microsoft Edge and ChakraCore in Microsoft Windows 10 Gold, 1511, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0833 (The Microsoft Server Message Block 2.0 and 3.0 (SMBv2/SMBv3) client in ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0832 (The Windows kernel in Windows 8.1 and RT 8.1, Windows Server 2012 R2, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0831 (The Windows kernel in Windows 10 versions 1607, 1703 and 1709, Windows ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0830 (The Windows kernel in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0829 (The Windows kernel in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0828 (Windows 10 version 1607 and Windows Server 2016 allow an elevation of ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0827 (Windows Scripting Host (WSH) in Windows 10 versions 1703 and 1709 and ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0826 (Windows Storage Services in Windows 10 versions 1511, 1607, 1703 and ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0825 (StructuredQuery in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0824
 	RESERVED
 CVE-2018-0823 (The Named Pipe File System in Windows 10 version 1709 and Windows ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0822 (NTFS in Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0821 (AppContainer in Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0820 (The Windows kernel in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0819 (Microsoft Office 2016 for Mac allows an attacker to send a specially ...)
 	NOT-FOR-US: Microsoft
 CVE-2018-0818 (Microsoft ChakraCore allows an attacker to bypass Control Flow Guard ...)
@@ -17165,9 +17165,9 @@ CVE-2018-0812 (Equation Editor in Microsoft Office 2003, Microsoft Office 2007, 
 CVE-2018-0811
 	RESERVED
 CVE-2018-0810 (The Windows kernel in Windows 7 SP1, Windows Server 2008 SP2 and R2, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0809 (The Windows kernel in Windows 10, versions 1703 and 1709, and Windows ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0808
 	RESERVED
 CVE-2018-0807 (Equation Editor in Microsoft Office 2003, Microsoft Office 2007, ...)
@@ -17243,7 +17243,7 @@ CVE-2018-0773 (Microsoft Edge in Windows 10 1709 allows an attacker to execute .
 CVE-2018-0772 (Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and ...)
 	NOT-FOR-US: Microsoft
 CVE-2018-0771 (Microsoft Edge in Microsoft Windows 10 1607, 1703, and Windows Server ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0770 (Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows ...)
 	NOT-FOR-US: Microsoft
 CVE-2018-0769 (Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows ...)
@@ -17259,23 +17259,23 @@ CVE-2018-0765
 CVE-2018-0764 (Microsoft .NET Framework 1.1, 2.0, 3.0, 3.5, 3.5.1, 4, 4.5, 4.5.1, ...)
 	NOT-FOR-US: Microsoft
 CVE-2018-0763 (Microsoft Edge in Microsoft Windows 10 1703 and 1709 allows ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0762 (Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and ...)
 	NOT-FOR-US: Microsoft
 CVE-2018-0761 (The Microsoft Windows Embedded OpenType (EOT) font engine in Microsoft ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0760 (The Microsoft Windows Embedded OpenType (EOT) font engine in Microsoft ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0759
 	RESERVED
 CVE-2018-0758 (Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows ...)
 	NOT-FOR-US: Microsoft
 CVE-2018-0757 (The Windows kernel in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0756 (The Windows kernel in Windows 10 Gold, 1511, 1607, 1703 and 1709, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0755 (The Microsoft Windows Embedded OpenType (EOT) font engine in Microsoft ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0754 (The Windows Adobe Type Manager Font Driver (Atmfd.dll) in Windows 7 ...)
 	NOT-FOR-US: Microsoft
 CVE-2018-0753 (Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, ...)
@@ -17301,7 +17301,7 @@ CVE-2018-0744 (The Windows kernel in Windows 8.1 and RT 8.1, Windows Server 2012
 CVE-2018-0743 (Windows Subsystem for Linux in Windows 10 version 1703, Windows 10 ...)
 	NOT-FOR-US: Microsoft
 CVE-2018-0742 (The Windows kernel in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2018-0741 (The Color Management Module (Icm32.dll) in Windows 7 SP1 and Windows ...)
 	NOT-FOR-US: Microsoft
 CVE-2017-17089 (custom/run.cgi in Webmin before 1.870 allows remote authenticated ...)
@@ -24028,61 +24028,61 @@ CVE-2017-15358
 CVE-2017-15357 (The setpermissions function in the auto-updater in Arq before 5.9.7 ...)
 	NOT-FOR-US: Arq
 CVE-2017-15356 (Huawei DP300, V500R002C00, RP200, V600R006C00, TE30, V100R001C10, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15355 (Huawei DP300, V500R002C00, RP200, V600R006C00, TE30, V100R001C10, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15354 (Huawei DP300, V500R002C00, RP200, V600R006C00, TE30, V100R001C10, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15353 (Huawei DP300, V500R002C00, RP200, V500R002C00, V600R006C00, RSE6500, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15352 (Huawei OceanStor 2800 V3, V300R003C00, V300R003C20, OceanStor 5300 V3, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15351 (The 'Find Phone' function in Huawei Honor V9 play smart phones with ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15350 (The Common Open Policy Service Protocol (COPS) module in Huawei DP300 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15349 (Huawei CloudEngine 12800 V100R003C00, V100R005C00, V100R005C10, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15348 (Huawei IPS Module V500R001C00, NGFW Module V500R001C00, NIP6300 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15347 (Huawei Mate 9 Pro mobile phones with software of versions earlier than ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15346 (XML parser in Huawei S12700 V200R005C00,S1700 V200R009C00, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15345 (Huawei Smartphones with software LON-L29DC721B186 have a denial of ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15344 (Huawei AR3200 with software V200R006C10, V200R006C11, V200R007C00, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15343 (Huawei AR3200 with software V200R006C10, V200R006C11, V200R007C00, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15342 (Huawei DP300 V500R002C00, TE60 V600R006C00, TP3106 V100R002C00, eSpace ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15341 (Huawei AR3200 V200R008C20, V200R008C30, TE40 V600R006C00, TE50 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15340 (Huawei smartphones with software of TAG-AL00C92B168 have an ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15339 (The SIP module in Huawei DP300 V500R002C00, IPS Module V100R001C10, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15338 (The SIP module in Huawei DP300 V500R002C00, IPS Module V100R001C10, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15337 (The SIP module in Huawei DP300 V500R002C00, IPS Module V100R001C10, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15336 (The SIP backup feature in Huawei DP300 V500R002C00, IPS Module ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15335 (The SIP backup feature in Huawei DP300 V500R002C00, IPS Module ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15334 (The SIP backup feature in Huawei DP300 V500R002C00, IPS Module ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15333 (XML parser in Huawei S12700 V200R005C00,S1700 V200R009C00, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15332 (Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15331 (Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15330 (The Flp Driver in some Huawei smartphones of the software ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15329 (Huawei UMA V200R001C00 has a SQL injection vulnerability in the ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2017-15328 (Huawei HG8245H version earlier than V300R018C00SPC110 has an ...)
 	NOT-FOR-US: Huawei
 CVE-2017-15327



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/1aadafc4dcf4e1c15f11ecc9d005eb77255e6305...9c37f384caff129a5136fdfaaf7e13546bbe729f

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/1aadafc4dcf4e1c15f11ecc9d005eb77255e6305...9c37f384caff129a5136fdfaaf7e13546bbe729f
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180215/e5717cf4/attachment-0001.html>


More information about the Secure-testing-commits mailing list