[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
carnil at debian.org
Wed Mar 28 08:52:41 UTC 2018
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
e14a1ed8 by Salvatore Bonaccorso at 2018-03-28T10:52:21+02:00
Process NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -1,13 +1,13 @@
CVE-2018-9109 (Studio 42 elFinder before 2.1.36 has Directory Traversal via the ...)
- TODO: check
+ NOT-FOR-US: Studio 42 elFinder
CVE-2018-9108 (CSRF in /admin/user/manage/add in QuickAppsCMS 2.0.0-beta2 allows an ...)
- TODO: check
+ NOT-FOR-US: QuickAppsCMS
CVE-2018-9107 (CSV Injection (aka Excel Macro Injection or Formula Injection) exists ...)
- TODO: check
+ NOT-FOR-US: Acyba AcyMailing extension for Joomla!
CVE-2018-9106 (CSV Injection (aka Excel Macro Injection or Formula Injection) exists ...)
- TODO: check
+ NOT-FOR-US: Acyba AcyMailing extension for Joomla!
CVE-2018-9105 (NordVPN 3.3.10 for macOS suffers from a root privilege escalation ...)
- TODO: check
+ NOT-FOR-US: NordVPN
CVE-2018-9104
RESERVED
CVE-2018-9103
@@ -33,7 +33,7 @@ CVE-2018-9094
CVE-2018-9093
RESERVED
CVE-2018-9092 (There is a CSRF vulnerability in mc-admin/conf.php in MiniCMS 1.10 that ...)
- TODO: check
+ NOT-FOR-US: MiniCMS
CVE-2018-9091
RESERVED
CVE-2018-9090
@@ -699,7 +699,7 @@ CVE-2018-8825
CVE-2018-8824
RESERVED
CVE-2018-8823 (modules/bamegamenu/ajax_phpcode.php in the Responsive Mega Menu ...)
- TODO: check
+ NOT-FOR-US: Responsive Mega Menu Pro module for PrestaShop
CVE-2018-8822 (Incorrect buffer length handling in the ncp_read_kernel function in ...)
- linux <unfixed>
CVE-2018-1000135 (GNOME NetworkManager version 1.10.2 and earlier contains a Information ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/e14a1ed8b33333c6da31e4cac69cb8cfb2ab2bb8
---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/e14a1ed8b33333c6da31e4cac69cb8cfb2ab2bb8
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180328/4c88d773/attachment.html>
More information about the Secure-testing-commits
mailing list