[Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
carnil at debian.org
Mon Sep 3 21:26:21 BST 2018
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
a79be50d by Salvatore Bonaccorso at 2018-09-03T20:21:57Z
Process NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,7 +1,7 @@
CVE-2018-16417
RESERVED
CVE-2018-16416 (Cross-site request forgery (CSRF) vulnerability in ...)
- TODO: check
+ NOT-FOR-US: FUEL CMS
CVE-2018-16415
RESERVED
CVE-2018-16414
@@ -15,9 +15,9 @@ CVE-2018-16411
CVE-2018-16410 (Vanilla before 2.6.1 allows SQL injection via an invitationID array to ...)
TODO: check
CVE-2018-16409 (In Gogs 0.11.53, an attacker can use migrate to send arbitrary HTTP GET ...)
- TODO: check
+ NOT-FOR-US: Go Git Service
CVE-2018-16408 (D-Link DIR-846 devices with firmware 100.26 allow remote attackers to ...)
- TODO: check
+ NOT-FOR-US: D-Link DIR-846 devices
CVE-2018-16407 (An issue was discovered in Mayan EDMS before 3.0.3. The Tags app has ...)
TODO: check
CVE-2018-16406 (An issue was discovered in Mayan EDMS before 3.0.2. The Cabinets app ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/a79be50d45b8d9cf7601752890062620a3e98125
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/a79be50d45b8d9cf7601752890062620a3e98125
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180903/f9c329a2/attachment.html>
More information about the debian-security-tracker-commits
mailing list