[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso carnil at debian.org
Fri May 4 09:16:29 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5af9d455 by Salvatore Bonaccorso at 2018-05-04T10:16:10+02:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -1,5 +1,5 @@
 CVE-2018-10722 (In Cylance CylancePROTECT before 1470, an unprivileged local user can ...)
-	TODO: check
+	NOT-FOR-US: Cylance CylancePROTECT
 CVE-2018-10721
 	RESERVED
 CVE-2018-10720
@@ -180,7 +180,7 @@ CVE-2018-10643
 CVE-2018-10642 (Command injection vulnerability in Combodo iTop 2.4.1 allows remote ...)
 	NOT-FOR-US: Combodo iTop
 CVE-2018-10641 (D-Link DIR-601 A1 1.02NA devices do not require the old password for a ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2018-10640
 	RESERVED
 CVE-2018-10639
@@ -346,9 +346,9 @@ CVE-2018-10564 (XSS exists in Flexense DiskPulse Enterprise from v10.4 to v10.7.
 CVE-2018-10563 (An XSS in Flexense SyncBreeze affects all versions (tested from ...)
 	NOT-FOR-US: Flexense SyncBreeze
 CVE-2018-10562 (An issue was discovered on Dasan GPON home routers. Command Injection ...)
-	TODO: check
+	NOT-FOR-US: Dasan GPON home routers
 CVE-2018-10561 (An issue was discovered on Dasan GPON home routers. It is possible to ...)
-	TODO: check
+	NOT-FOR-US: Dasan GPON home routers
 CVE-2018-10560
 	RESERVED
 CVE-2018-10559
@@ -6472,7 +6472,7 @@ CVE-2018-8005
 CVE-2018-8004
 	RESERVED
 CVE-2018-8003 (Apache Ambari, versions 1.4.0 to 2.6.1, is susceptible to a directory ...)
-	TODO: check
+	NOT-FOR-US: Apache Ambari
 CVE-2018-8002 (In PoDoFo 0.9.5, there exists an infinite loop vulnerability in ...)
 	- libpodofo <unfixed> (low; bug #892557)
 	[stretch] - libpodofo <no-dsa> (Minor issue)
@@ -51579,9 +51579,9 @@ CVE-2017-9660 (A Heap-Based Buffer Overflow was discovered in Fuji Electric Moni
 CVE-2017-9659 (A Stack-Based Buffer Overflow issue was discovered in Fuji Electric ...)
 	NOT-FOR-US: Fuji Electric Monitouch V-SFT
 CVE-2017-9658 (Certain 802.11 network management messages have been determined to ...)
-	TODO: check
+	NOT-FOR-US: Philips IntelliVue MX40
 CVE-2017-9657 (Under specific 802.11 network conditions, a partial re-association of ...)
-	TODO: check
+	NOT-FOR-US: Philips IntelliVue MX40
 CVE-2017-9656 (The backend database of the Philips DoseWise Portal application ...)
 	NOT-FOR-US: Philips DoseWise Portal
 CVE-2017-9655 (A Cross-Site Scripting issue was discovered in OSIsoft PI Integrator ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/5af9d4551a9c0ef66ea015f3866811df4ba8ccdd

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/5af9d4551a9c0ef66ea015f3866811df4ba8ccdd
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180504/0279a865/attachment.html>


More information about the debian-security-tracker-commits mailing list