[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso carnil at debian.org
Tue Oct 2 09:36:17 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0a5e1bc3 by Salvatore Bonaccorso at 2018-10-02T08:35:52Z
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -15,7 +15,7 @@ CVE-2018-17876
 CVE-2018-17875
 	RESERVED
 CVE-2018-17874 (ExpressionEngine before 4.3.5 has reflected XSS. ...)
-	TODO: check
+	NOT-FOR-US: ExpressionEngine
 CVE-2018-17873
 	RESERVED
 CVE-2018-17872
@@ -23,13 +23,13 @@ CVE-2018-17872
 CVE-2018-17871
 	RESERVED
 CVE-2018-17870 (An issue was discovered in BTITeam XBTIT 2.5.4. The "returnto" ...)
-	TODO: check
+	NOT-FOR-US: BTITeam XBTIT
 CVE-2018-17869 (DASAN H660GW devices do not implement any CSRF protection mechanism. ...)
-	TODO: check
+	NOT-FOR-US: DASAN H660GW devices
 CVE-2018-17868 (DASAN H660GW devices have Stored XSS in the Port Forwarding ...)
-	TODO: check
+	NOT-FOR-US: DASAN H660GW devices
 CVE-2018-17867 (The Port Forwarding functionality on DASAN H660GW devices allows remote ...)
-	TODO: check
+	NOT-FOR-US: DASAN H660GW device
 CVE-2018-17866
 	RESERVED
 CVE-2018-17865
@@ -55,9 +55,9 @@ CVE-2018-17856
 CVE-2018-17855
 	RESERVED
 CVE-2015-9270 (XSS exists in the the-holiday-calendar plugin before 1.11.3 for ...)
-	TODO: check
+	NOT-FOR-US: the-holiday-calendar plugin for WordPress
 CVE-2015-9269 (The export/content.php exportarticle feature in the ...)
-	TODO: check
+	NOT-FOR-US: wordpress-mobile-pack plugin for WordPress
 CVE-2018-17854 (SIMDComp before 0.1.1 allows remote attackers to cause a denial of ...)
 	NOT-FOR-US: SIMDComp
 CVE-2018-17853



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/0a5e1bc377cb21adac76fb591e99add7a26e40ce

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/0a5e1bc377cb21adac76fb591e99add7a26e40ce
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181002/586b4334/attachment.html>


More information about the debian-security-tracker-commits mailing list