[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff jmm at debian.org
Wed May 30 09:51:58 BST 2018


Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ba204677 by Moritz Muehlenhoff at 2018-05-30T10:51:25+02:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -1,13 +1,13 @@
 CVE-2018-11559 (DomainMod 4.10.0 has Stored XSS in the "/settings/profile/index.php" ...)
-	TODO: check
+	NOT-FOR-US: DomainMod
 CVE-2018-11558 (DomainMod 4.10.0 has Stored XSS in the "/settings/profile/index.php" ...)
-	TODO: check
+	NOT-FOR-US: DomainMod
 CVE-2018-11557 (YIBAN Easy class education platform 2.0 has XSS via the articlelist.php ...)
-	TODO: check
+	NOT-FOR-US: YIBAN Easy
 CVE-2018-11556 (tificc in Little CMS 2.9 has an out-of-bounds write in the ...)
-	TODO: check
+	NOT-FOR-US: Little CMS
 CVE-2018-11555 (tificc in Little CMS 2.9 has an out-of-bounds write in the ...)
-	TODO: check
+	NOT-FOR-US: Little CMS
 CVE-2018-11554
 	RESERVED
 CVE-2018-11553
@@ -18,19 +18,18 @@ CVE-2018-11551
 	RESERVED
 CVE-2018-11550
 	REJECTED
-	TODO: check
 CVE-2018-11549 (An issue was discovered in WUZHI CMS 4.1.0 There is a Stored XSS ...)
-	TODO: check
+	NOT-FOR-US: WUZHI CMS
 CVE-2018-11548 (An issue was discovered in EOS.IO DAWN 4.2. ...)
-	TODO: check
+	NOT-FOR-US: EOS.IO DAWN
 CVE-2018-11547 (md_is_link_reference_definition_helper in md4c 0.2.5 has a heap-based ...)
-	TODO: check
+	NOT-FOR-US: md4c
 CVE-2018-11546 (md4c 0.2.5 has a heap-based buffer over-read because ...)
-	TODO: check
+	NOT-FOR-US: md4c
 CVE-2018-11545 (md4c 0.2.5 has a heap-based buffer overflow in md_merge_lines because ...)
-	TODO: check
+	NOT-FOR-US: md4c
 CVE-2018-11544 (The Olive Tree Ftp Server application 1.32 for Android has Insecure ...)
-	TODO: check
+	NOT-FOR-US: Olive Tree Ftp Server application
 CVE-2018-11543
 	RESERVED
 CVE-2018-11542
@@ -406,7 +405,7 @@ CVE-2018-11394
 CVE-2018-11393
 	RESERVED
 CVE-2018-11392 (An arbitrary file upload vulnerability in /classes/profile.class.php ...)
-	TODO: check
+	NOT-FOR-US: Jigowatt
 CVE-2018-11391
 	RESERVED
 CVE-2018-11390
@@ -1361,7 +1360,7 @@ CVE-2018-11029
 CVE-2018-11028
 	RESERVED
 CVE-2018-11027 (A reflected XSS vulnerability on Ruckus ICX7450-48 devices allows ...)
-	TODO: check
+	NOT-FOR-US: Ruckus
 CVE-2018-11026
 	RESERVED
 CVE-2018-11025
@@ -2027,7 +2026,7 @@ CVE-2018-10753 (Stack-based buffer overflow in the delayed_output function in mu
 CVE-2018-10752 (The Tagregator plugin 0.6 for WordPress has stored XSS via the title ...)
 	NOT-FOR-US: Tagregator plugin for WordPress
 CVE-2018-10751 (A malformed OMACP WAP push message can cause memory corruption on a ...)
-	TODO: check
+	NOT-FOR-US: Samsung
 CVE-2018-10750 (An issue was discovered on D-Link DSL-3782 EU 1.01 devices. An ...)
 	NOT-FOR-US: D-Link
 CVE-2018-10749 (An issue was discovered on D-Link DSL-3782 EU 1.01 devices. An ...)
@@ -2720,7 +2719,7 @@ CVE-2018-10468 (The transferFrom function of a smart contract implementation for
 CVE-2018-10467
 	RESERVED
 CVE-2018-10466 (Zoho ManageEngine ADAudit Plus before 5.0.0 build 5100 allows blind ...)
-	TODO: check
+	NOT-FOR-US: Zoho
 CVE-2018-10465
 	RESERVED
 CVE-2018-10464
@@ -11919,7 +11918,7 @@ CVE-2018-6966
 CVE-2018-6965
 	RESERVED
 CVE-2018-6964 (VMware Horizon Client for Linux (4.x before 4.8.0 and prior) contains ...)
-	TODO: check
+	NOT-FOR-US: VMware
 CVE-2018-6963 (VMware Workstation (14.x before 14.1.2) and Fusion (10.x before ...)
 	NOT-FOR-US: VMware
 CVE-2018-6962 (VMware Fusion (10.x before 10.1.2) contains a signature bypass ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/ba2046773b1e5e2417b3e72cdbf968b037de7017

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/ba2046773b1e5e2417b3e72cdbf968b037de7017
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180530/050ec128/attachment.html>


More information about the debian-security-tracker-commits mailing list