[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff jmm at debian.org
Tue Feb 20 18:04:24 UTC 2018


Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f373c472 by Moritz Muehlenhoff at 2018-02-20T19:03:58+01:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -43652,67 +43652,67 @@ CVE-2017-8977 (A Remote Denial of Service vulnerability in Hewlett Packard Enter
 CVE-2017-8976 (A Remote Code Execution vulnerability in Hewlett Packard Enterprise ...)
 	TODO: check
 CVE-2017-8975 (A Remote Code Execution vulnerability in Hewlett Packard Enterprise ...)
-	TODO: check
+	TODO: checkG
 CVE-2017-8974 (A Local Authentication Restriction Bypass vulnerability in HPE NonStop ...)
-	TODO: check
+	NOT-FOR-US: HPE NonStop Server
 CVE-2017-8973 (An improper input validation vulnerability in HPE Matrix Operating ...)
-	TODO: check
+	NOT-FOR-US: HPE Matrix Operating Environment
 CVE-2017-8972 (A clickjacking vulnerability in HPE Matrix Operating Environment ...)
-	TODO: check
+	NOT-FOR-US: HPE Matrix Operating Environment
 CVE-2017-8971 (A clickjacking vulnerability in HPE Matrix Operating Environment ...)
-	TODO: check
+	NOT-FOR-US: HPE Matrix Operating Environment
 CVE-2017-8970 (A remote unauthenticated disclosure of information vulnerability in ...)
-	TODO: check
+	NOT-FOR-US: HPE Matrix Operating Environment
 CVE-2017-8969 (An improper input validation vulnerability in HPE Insight Control ...)
-	TODO: check
+	NOT-FOR-US: HPE Insight Control
 CVE-2017-8968
 	RESERVED
 CVE-2017-8967 (A Deserialization of Untrusted Data vulnerability in Hewlett Packard ...)
-	TODO: check
+	NOT-FOR-US: HPE Intelligent Management Center
 CVE-2017-8966 (A Deserialization of Untrusted Data vulnerability in Hewlett Packard ...)
-	TODO: check
+	NOT-FOR-US: HPE Intelligent Management Center
 CVE-2017-8965 (A Deserialization of Untrusted Data vulnerability in Hewlett Packard ...)
-	TODO: check
+	NOT-FOR-US: HPE Intelligent Management Center
 CVE-2017-8964 (A Deserialization of Untrusted Data vulnerability in Hewlett Packard ...)
-	TODO: check
+	NOT-FOR-US: HPE Intelligent Management Center
 CVE-2017-8963 (A Deserialization of Untrusted Data vulnerability in Hewlett Packard ...)
-	TODO: check
+	NOT-FOR-US: HPE Intelligent Management Center
 CVE-2017-8962 (A Deserialization of Untrusted Data vulnerability in Hewlett Packard ...)
-	TODO: check
+	NOT-FOR-US: HPE Intelligent Management Center
 CVE-2017-8961 (A directory traversal vulnerability in HPE Intelligent Management ...)
-	TODO: check
+	NOT-FOR-US: HPE Intelligent Management Center
 CVE-2017-8960 (An Authentication Bypass vulnerability in HPE MSA 1040 and MSA 2040 ...)
-	TODO: check
+	NOT-FOR-US: HPE MSA
 CVE-2017-8959 (An Authentication Bypass vulnerability in HPE MSA 1040 and HPE MSA ...)
-	TODO: check
+	NOT-FOR-US: HPE MSA
 CVE-2017-8958 (A Remote Code Execution vulnerability in HPE Intelligent Management ...)
-	TODO: check
+	NOT-FOR-US: HPE Intelligent Management Center
 CVE-2017-8957 (A Remote Code Execution vulnerability in HPE Intelligent Management ...)
-	TODO: check
+	NOT-FOR-US: HPE Intelligent Management Center
 CVE-2017-8956 (A Remote Code Execution vulnerability in HPE Intelligent Management ...)
-	TODO: check
+	NOT-FOR-US: HPE Intelligent Management Center
 CVE-2017-8955 (A Remote Code Execution vulnerability in HPE Intelligent Management ...)
-	TODO: check
+	NOT-FOR-US: HPE Intelligent Management Center
 CVE-2017-8954 (A Remote Code Execution vulnerability in HPE Intelligent Management ...)
-	TODO: check
+	NOT-FOR-US: HPE Intelligent Management Center
 CVE-2017-8953 (A Remote Cross-Site Scripting (XSS) vulnerability in HPE LoadRunner ...)
-	TODO: check
+	NOT-FOR-US: HPE LoadRunner
 CVE-2017-8952 (A Disclosure of Sensitive Information vulnerability in HPE SiteScope ...)
-	TODO: check
+	NOT-FOR-US: HPE SiteScope
 CVE-2017-8951 (A Disclosure of Sensitive Information vulnerability in HPE SiteScope ...)
-	TODO: check
+	NOT-FOR-US: HPE SiteScope
 CVE-2017-8950 (A Disclosure of Sensitive Information vulnerability in HPE SiteScope ...)
-	TODO: check
+	NOT-FOR-US: HPE SiteScope
 CVE-2017-8949 (A Disclosure of Sensitive Information vulnerability in HPE SiteScope ...)
-	TODO: check
+	NOT-FOR-US: HPE SiteScope
 CVE-2017-8948 (A Remote Bypass Security Restriction vulnerability in HPE Network Node ...)
-	TODO: check
+	NOT-FOR-US: HPE Network Node Manager
 CVE-2017-8947 (A Remote Code Execution vulnerability in HPE UCMDB version v10.10, ...)
 	NOT-FOR-US: HPE UCMDB
 CVE-2017-8946 (A Remote Code Execution vulnerability in HPE Aruba AirWave Glass ...)
 	NOT-FOR-US: HPE Aruba AirWave Glass
 CVE-2017-8945 (A Remote Unauthorized Disclosure of Information vulnerability in HPE ...)
-	TODO: check
+	NOT-FOR-US: HPE IceWall Federation Agent
 CVE-2017-8944 (A Remote Disclosure of Information vulnerability in HPE Cloud ...)
 	NOT-FOR-US: HPE Cloud Optimizer
 CVE-2017-8943 (The PUMA PUMATRAC app 3.0.2 for iOS does not verify X.509 certificates ...)
@@ -44237,7 +44237,7 @@ CVE-2017-8804 (The xdr_bytes and xdr_string functions in the GNU C Library (aka 
 CVE-2017-8803 (Notepad++ 7.3.3 (32-bit) with Hex Editor Plugin v0.9.5 might allow ...)
 	NOT-FOR-US: Notepad++
 CVE-2017-8802 (Cross-site scripting (XSS) vulnerability in Zimbra Collaboration Suite ...)
-	TODO: check
+	NOT-FOR-US: Zimbra
 CVE-2017-8801 (Trend Micro OfficeScan 11.0 before SP1 CP 6325 (with Agent Module Build ...)
 	NOT-FOR-US: Trend Micro
 CVE-2017-8800
@@ -63240,27 +63240,27 @@ CVE-2017-2752
 CVE-2017-2751
 	RESERVED
 CVE-2017-2750 (Insufficient Solution DLL Signature Validation allows potential ...)
-	TODO: check
+	NOT-FOR-US: HP printers
 CVE-2017-2749
 	RESERVED
 CVE-2017-2748
 	RESERVED
 CVE-2017-2747 (HP has identified a potential security vulnerability before ...)
-	TODO: check
+	NOT-FOR-US: HP printers
 CVE-2017-2746 (Potential security vulnerabilities have been identified with HP ...)
-	TODO: check
+	NOT-FOR-US: HP JetAdvantage Security Manager
 CVE-2017-2745 (Potential security vulnerabilities have been identified with HP ...)
-	TODO: check
+	NOT-FOR-US: HP JetAdvantage Security Manager
 CVE-2017-2744 (The vulnerability allows attacker to extract binaries into protected ...)
-	TODO: check
+	NOT-FOR-US: HP Support Assistant
 CVE-2017-2743 (HP has identified a potential security vulnerability with HP ...)
-	TODO: check
+	NOT-FOR-US: HP printers
 CVE-2017-2742 (A potential security vulnerability has been identified with HP Web ...)
-	TODO: check
+	NOT-FOR-US: HP Web JetAdmin
 CVE-2017-2741 (A potential security vulnerability has been identified with HP ...)
-	TODO: check
+	NOT-FOR-US: HP printers
 CVE-2017-2740 (A potential security vulnerability has been identified with the ...)
-	TODO: check
+	NOT-FOR-US: HP ThinPro
 CVE-2017-2739 (The upgrade package of Huawei Vmall APP Earlier than HwVmall 1.5.3.0 ...)
 	NOT-FOR-US: Huawei
 CVE-2017-2738 (VCM5010 with software versions earlier before V100R002C50SPC100 has an ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/f373c472b30da482165872d92cfe6745e6b83b60

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/f373c472b30da482165872d92cfe6745e6b83b60
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180220/f912ae72/attachment.html>


More information about the Secure-testing-commits mailing list