[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso carnil at debian.org
Sat May 12 09:39:00 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d54fe1e6 by Salvatore Bonaccorso at 2018-05-12T10:38:38+02:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -1,7 +1,7 @@
 CVE-2018-11012 (ruibaby Halo 0.0.2 has stored XSS via the loginName and loginPwd ...)
-	TODO: check
+	NOT-FOR-US: ruibaby Halo
 CVE-2018-11011 (ruibaby Halo 0.0.2 has stored XSS via the commentAuthor field to ...)
-	TODO: check
+	NOT-FOR-US: ruibaby Halo
 CVE-2018-11010
 	RESERVED
 CVE-2018-11009
@@ -15,9 +15,9 @@ CVE-2018-11006
 CVE-2018-11005
 	RESERVED
 CVE-2018-11004 (An issue was discovered in SDcms v1.5. Cross-site request forgery ...)
-	TODO: check
+	NOT-FOR-US: SDcms
 CVE-2018-11003 (An issue was discovered in YXcms 1.4.7. Cross-site request forgery ...)
-	TODO: check
+	NOT-FOR-US: YXcms
 CVE-2018-11002
 	RESERVED
 CVE-2018-11001
@@ -31,7 +31,7 @@ CVE-2018-10998 (An issue was discovered in Exiv2 0.26. readMetadata in jp2image.
 CVE-2018-10997
 	RESERVED
 CVE-2018-10996 (The weblogin_log function in /htdocs/cgibin on D-Link DIR-629-B1 ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2018-10995
 	RESERVED
 CVE-2018-10994
@@ -384,7 +384,7 @@ CVE-2018-10834
 CVE-2018-10833
 	RESERVED
 CVE-2018-10832 (ModbusPal 1.6b is vulnerable to an XML External Entity (XXE) attack. ...)
-	TODO: check
+	NOT-FOR-US: ModbusPal
 CVE-2018-10831 (Z-NOMP before 2018-04-05 has an incorrect Equihash solution verifier ...)
 	NOT-FOR-US: Z-NOMP
 CVE-2018-10830 (In 2345 Security Guard 3.7, the driver file (2345BdPcSafe.sys, X64 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/d54fe1e6b67dd6e7a77066a1dbe3f6776172d9d3

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/d54fe1e6b67dd6e7a77066a1dbe3f6776172d9d3
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180512/815e0135/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list