[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff jmm at debian.org
Wed Jun 13 12:04:38 BST 2018


Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0e3631df by Moritz Muehlenhoff at 2018-06-13T13:04:14+02:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -36917,21 +36917,21 @@ CVE-2016-10623 (macaca-chromedriver-zxa is a Node.js wrapper for the selenium ..
 CVE-2016-10622 (nodeschnaps is a NodeJS compatibility layer for Java (Rhino). ...)
 	TODO: check
 CVE-2016-10621 (fibjs is a runtime for javascript applictions built on google v8 JS. ...)
-	TODO: check
+	NOT-FOR-US: fibjs
 CVE-2016-10620 (atom-node-module-installer installs node modules for atom-shell ...)
-	TODO: check
+	NOT-FOR-US: atom-node-module-installer
 CVE-2016-10619 (pennyworth is a natural language templating engine. pennyworth ...)
-	TODO: check
+	NOT-FOR-US: pennyworth
 CVE-2016-10618 (node-browser is a wrapper webdriver by nodejs. node-browser downloads ...)
-	TODO: check
+	NOT-FOR-US: node-browser
 CVE-2016-10617 (box2d-native downloads binary resources over HTTP, which leaves it ...)
-	TODO: check
+	NOT-FOR-US: box2d-native (different from src:box2d)
 CVE-2016-10616 (openframe-image is an Openframe extension which adds support for ...)
-	TODO: check
+	NOT-FOR-US: openframe-image
 CVE-2016-10615 (curses is bindings for the native curses library, a full featured ...)
-	TODO: check
+	NOT-FOR-US: curses node module
 CVE-2016-10614 (httpsync is a port of libcurl to node.js. httpsync downloads binary ...)
-	TODO: check
+	NOT-FOR-US: httpsync node module
 CVE-2016-10613 (bionode-sra is a Node.js wrapper for SRA Toolkit. bionode-sra ...)
 	TODO: check
 CVE-2016-10612 (dalek-browser-ie-canary is Internet Explorer bindings for DalekJS. ...)
@@ -37903,6 +37903,7 @@ CVE-2017-15696 (When an Apache Geode cluster before v1.4.0 is operating in secur
 	NOT-FOR-US: Apache Geode
 CVE-2017-15695
 	RESERVED
+	NOT-FOR-US: Apache Geode
 CVE-2017-15694
 	RESERVED
 CVE-2017-15693 (In Apache Geode before v1.4.0, the Geode server stores application ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/0e3631df397aab84842af6641d23b2cfd3d728ba

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/0e3631df397aab84842af6641d23b2cfd3d728ba
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180613/cc1e812e/attachment.html>


More information about the debian-security-tracker-commits mailing list