[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso carnil at debian.org
Wed Sep 19 09:26:19 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
13f0810f by Salvatore Bonaccorso at 2018-09-19T08:25:49Z
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -144,7 +144,7 @@ CVE-2018-17113 (App/Modules/Admin/Tpl/default/Public/dwz/uploadify/scripts/uploa
 CVE-2018-17112
 	RESERVED
 CVE-2018-17111 (The onlyOwner modifier of a smart contract implementation for ...)
-	TODO: check
+	NOT-FOR-US: onlyOwner modifier of a smart contract implementation for Coinlancer (CL)
 CVE-2018-17110 (Simple POS 4.0.24 allows SQL Injection via a products/get_products/ ...)
 	NOT-FOR-US: Simple POS
 CVE-2018-17109
@@ -253,7 +253,7 @@ CVE-2018-17073 (wernsey/bitmap before 2018-08-18 allows a NULL pointer dereferen
 CVE-2018-17072 (JSON++ through 2016-06-15 has a buffer over-read in yyparse() in ...)
 	NOT-FOR-US: JSON++
 CVE-2018-17071 (The fallback function of a simple lottery smart contract ...)
-	TODO: check
+	NOT-FOR-US: fallback function of a simple lottery smart contract implementation for Lucky9io
 CVE-2018-17070 (An issue was discovered in UNL-CMS 7.59. A CSRF attack can update the ...)
 	NOT-FOR-US: UNL-CMS
 CVE-2018-17069 (An issue was discovered in UNL-CMS 7.59. A CSRF attack can create new ...)
@@ -810,9 +810,9 @@ CVE-2018-16822
 CVE-2018-16821
 	RESERVED
 CVE-2018-16820 (admin/index.php in Monstra CMS 3.0.4 allows arbitrary directory ...)
-	TODO: check
+	NOT-FOR-US: Monstra CMS
 CVE-2018-16819 (admin/index.php in Monstra CMS 3.0.4 allows arbitrary file deletion ...)
-	TODO: check
+	NOT-FOR-US: Monstra CMS
 CVE-2018-16818
 	RESERVED
 CVE-2018-16817
@@ -862,7 +862,7 @@ CVE-2018-16796 (HiScout GRC Suite before 3.1.5 allows Unrestricted Upload of Fil
 CVE-2018-16795
 	RESERVED
 CVE-2018-16794 (Microsoft ADFS 4.0 Windows Server 2016 and previous (Active Directory ...)
-	TODO: check
+	NOT-FOR-US: Microsoft ADFS 4.0 Windows Server
 CVE-2018-16793
 	RESERVED
 CVE-2018-16802 (An issue was discovered in Artifex Ghostscript before 9.25. Incorrect ...)
@@ -1139,13 +1139,13 @@ CVE-2018-16673
 CVE-2018-16672
 	RESERVED
 CVE-2018-16671 (An issue was discovered in CIRCONTROL CirCarLife before 4.3. There is ...)
-	TODO: check
+	NOT-FOR-US: CIRCONTROL CirCarLife
 CVE-2018-16670 (An issue was discovered in CIRCONTROL CirCarLife before 4.3. There is ...)
-	TODO: check
+	NOT-FOR-US: CIRCONTROL CirCarLife
 CVE-2018-16669 (An issue was discovered in CIRCONTROL Open Charge Point Protocol ...)
-	TODO: check
+	NOT-FOR-US: CIRCONTROL Open Charge Point Protocol
 CVE-2018-16668 (An issue was discovered in CIRCONTROL CirCarLife before 4.3. There is ...)
-	TODO: check
+	NOT-FOR-US: CIRCONTROL CirCarLife
 CVE-2018-16667 (An issue was discovered in Contiki-NG through 4.1. There is a buffer ...)
 	NOT-FOR-US:  Contiki Operating System
 CVE-2018-16666 (An issue was discovered in Contiki-NG through 4.1. There is a ...)
@@ -2224,7 +2224,7 @@ CVE-2018-16227
 CVE-2018-16226
 	RESERVED
 CVE-2018-16225 (The QBee MultiSensor Camera through 4.16.4 accepts unencrypted network ...)
-	TODO: check
+	NOT-FOR-US: QBee MultiSensor Camera
 CVE-2018-16224
 	RESERVED
 CVE-2018-16223



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/13f0810f646e6d27d89a08c28768af52a8b0050f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/13f0810f646e6d27d89a08c28768af52a8b0050f
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180919/92b0c925/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list