[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso carnil at debian.org
Tue Feb 20 21:27:24 UTC 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
dd8f6ac7 by Salvatore Bonaccorso at 2018-02-20T22:27:01+01:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -19,13 +19,13 @@ CVE-2018-7255
 CVE-2018-7252
 	RESERVED
 CVE-2018-7251 (An issue was discovered in config/error.php in Anchor 0.12.3. The error ...)
-	TODO: check
+	NOT-FOR-US: Anchor CMS
 CVE-2018-7250
 	RESERVED
 CVE-2018-7249
 	RESERVED
 CVE-2017-18192 (smart/calculator/gallerylock/CalculatorActivity.java in the ...)
-	TODO: check
+	NOT-FOR-US: "Photo,Video Locker-Calculator" application for Android
 CVE-2015-9256 (Datto ALTO and SIRIS devices allow remote attackers to obtain sensitive ...)
 	NOT-FOR-US: Datto ALTO and SIRIS devices
 CVE-2015-9255 (Datto ALTO and SIRIS devices allow remote attackers to obtain sensitive ...)
@@ -152,7 +152,7 @@ CVE-2018-7207
 CVE-2018-7206 (An issue was discovered in Project Jupyter JupyterHub OAuthenticator ...)
 	TODO: check
 CVE-2018-7205 (** DISPUTED ** Reflected Cross-Site Scripting vulnerability in ...)
-	TODO: check
+	NOT-FOR-US: Kentico
 CVE-2018-7204
 	RESERVED
 CVE-2018-7203
@@ -528,7 +528,7 @@ CVE-2018-7048
 CVE-2018-7047
 	RESERVED
 CVE-2018-7046 (** DISPUTED ** Arbitrary code execution vulnerability in Kentico 9 ...)
-	TODO: check
+	NOT-FOR-US: Kentico
 CVE-2018-7045
 	RESERVED
 CVE-2018-7044
@@ -765,9 +765,9 @@ CVE-2018-6942 (An issue was discovered in FreeType 2 through 2.9. A NULL pointer
 	NOTE: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=5736
 	NOTE: https://git.savannah.gnu.org/cgit/freetype/freetype2.git/commit/?id=29c759284e305ec428703c9a5831d0b1fc3497ef
 CVE-2018-6941 (A /shell?cmd= CSRF issue exists in the HTTPD component of NAT32 v2.2 ...)
-	TODO: check
+	NOT-FOR-US: NAT32 devices
 CVE-2018-6940 (A /shell?cmd= XSS issue exists in the HTTPD component of NAT32 v2.2 ...)
-	TODO: check
+	NOT-FOR-US: NAT32 devices
 CVE-2018-6939
 	RESERVED
 CVE-2018-6938



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/dd8f6ac758647b2e70ae98394af5d806a2ebd7c3

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/dd8f6ac758647b2e70ae98394af5d806a2ebd7c3
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180220/19269bd6/attachment.html>


More information about the Secure-testing-commits mailing list