[Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
carnil at debian.org
Sun Sep 2 10:23:00 BST 2018
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
14cf625e by Salvatore Bonaccorso at 2018-09-02T09:22:29Z
Process NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -8,13 +8,13 @@ CVE-2018-16335 (newoffsets handling in ChopUpSingleUncompressedStrip in tif_dirr
NOTE: http://bugzilla.maptools.org/show_bug.cgi?id=2809
NOTE: The fix for CVE-2017-11613 is possibly covering the bug.
CVE-2018-16334 (An issue was discovered on Tenda AC9 V15.03.05.19(6318)_CN and AC10 ...)
- TODO: check
+ NOT-FOR-US: Tenda
CVE-2018-16333 (An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 ...)
- TODO: check
+ NOT-FOR-US: Tenda
CVE-2018-16332 (An issue was discovered in iCMS 7.0.9. There is an ...)
- TODO: check
+ NOT-FOR-US: iCMS
CVE-2018-16331 (admin.php?s=/Admin/doedit in DamiCMS v6.0.0 allows CSRF to change the ...)
- TODO: check
+ NOT-FOR-US: DamiCMS
CVE-2018-16330 (Pandao Editor.md 1.5.0 allows XSS via crafted attributes of an invalid ...)
TODO: check
CVE-2018-16329 (In ImageMagick before 7.0.8-8, a NULL pointer dereference exists in the ...)
@@ -26,7 +26,7 @@ CVE-2018-16327 (There is Stored XSS in Subrion 4.2.1 via the admin panel URL ...
CVE-2018-16326
RESERVED
CVE-2018-16325 (There is XSS in GetSimple CMS 3.4.0.9 via the admin/edit.php title ...)
- TODO: check
+ NOT-FOR-US: GetSimple CMS
CVE-2018-16324 (In IceWarp Server 12.0.3.1 and before, there is XSS in the /webmail/ ...)
NOT-FOR-US: IceWarp Server
CVE-2018-16323 (ReadXBMImage in coders/xbm.c in ImageMagick before 7.0.8-9 leaves data ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/14cf625e7712c9e72de1cc4acf244c96d1a32858
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/14cf625e7712c9e72de1cc4acf244c96d1a32858
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180902/95ff1878/attachment.html>
More information about the debian-security-tracker-commits
mailing list