[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso carnil at debian.org
Tue Apr 2 21:41:30 BST 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
3f1438d7 by Salvatore Bonaccorso at 2019-04-02T20:40:59Z
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,7 +1,7 @@
 CVE-2019-10708 (S-CMS PHP v1.0 has SQL injection via the 4/js/scms.php?action=unlike i ...)
-	TODO: check
+	NOT-FOR-US: S-CMS PHP
 CVE-2019-10707 (MKCMS V5.0 has SQL injection via the bplay.php play parameter. ...)
-	TODO: check
+	NOT-FOR-US: MKCMS
 CVE-2019-10706
 	RESERVED
 CVE-2019-10705
@@ -31,7 +31,7 @@ CVE-2019-10694
 CVE-2019-10693
 	RESERVED
 CVE-2019-10692 (In the wp-google-maps plugin before 7.11.18 for WordPress, includes/cl ...)
-	TODO: check
+	NOT-FOR-US: wp-google-maps plugin for WordPress
 CVE-2019-10691
 	RESERVED
 CVE-2019-10690
@@ -8307,13 +8307,13 @@ CVE-2019-7479
 CVE-2019-7478
 	RESERVED
 CVE-2019-7477 (A vulnerability in SonicWall SonicOS and SonicOSv TLS CBC Cipher allow ...)
-	TODO: check
+	NOT-FOR-US: SonicWall
 CVE-2019-7476
 	RESERVED
 CVE-2019-7475 (A vulnerability in SonicWall SonicOS and SonicOSv with management enab ...)
-	TODO: check
+	NOT-FOR-US: SonicWall
 CVE-2019-7474 (A vulnerability in SonicWall SonicOS and SonicOSv, allow authenticated ...)
-	TODO: check
+	NOT-FOR-US: SonicWall
 CVE-2019-7473
 	RESERVED
 CVE-2019-7472
@@ -13257,7 +13257,7 @@ CVE-2019-5526
 CVE-2019-5525
 	RESERVED
 CVE-2019-5524 (VMware Workstation (14.x before 14.1.6) and Fusion (10.x before 10.1.6 ...)
-	TODO: check
+	NOT-FOR-US: VMware
 CVE-2019-5523 (VMware vCloud Director for Service Providers 9.5.x prior to 9.5.0.3 up ...)
 	NOT-FOR-US: VMware vCloud Director for Service Providers
 CVE-2019-5522
@@ -13275,7 +13275,7 @@ CVE-2019-5517
 CVE-2019-5516
 	RESERVED
 CVE-2019-5515 (VMware Workstation (15.x before 15.0.3, 14.x before 14.1.6) and Fusion ...)
-	TODO: check
+	NOT-FOR-US: VMware
 CVE-2019-5514 (VMware VMware Fusion (11.x before 11.0.3) contains a security vulnerab ...)
 	NOT-FOR-US: VMware
 CVE-2019-5513
@@ -16154,7 +16154,7 @@ CVE-2019-4095
 CVE-2019-4094 (IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, ...)
 	NOT-FOR-US: IBM
 CVE-2019-4093 (IBM Tivoli Storage Manager (IBM Spectrum Protect 8.1.7) could allow a  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2019-4092
 	RESERVED
 CVE-2019-4091
@@ -16180,7 +16180,7 @@ CVE-2019-4082
 CVE-2019-4081
 	RESERVED
 CVE-2019-4080 (IBM WebSphere Application Server Admin Console 7.5, 8.0, 8.5, and 9.0  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2019-4079
 	RESERVED
 CVE-2019-4078
@@ -16254,7 +16254,7 @@ CVE-2019-4045
 CVE-2019-4044
 	RESERVED
 CVE-2019-4043 (IBM Sterling B2B Integrator Standard Edition 5.2.0 snf 6.0.0.0 is vuln ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2019-4042
 	RESERVED
 CVE-2019-4041
@@ -76231,7 +76231,7 @@ CVE-2018-1919
 CVE-2018-1918 (IBM Jazz Reporting Service (JRS) 6.0.3, 6.0.4, 6.0.5, and 6.0.6 is vul ...)
 	NOT-FOR-US: IBM
 CVE-2018-1917 (IBM InfoSphere Information Server 11.3, 11.5, and 11.7 could allow an  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2018-1916 (IBM Jazz Foundation (IBM Rational Engineering Lifecycle Manager 5.0 th ...)
 	NOT-FOR-US: IBM
 CVE-2018-1915
@@ -76253,7 +76253,7 @@ CVE-2018-1908 (IBM Robotic Process Automation with Automation Anywhere 11 is vul
 CVE-2018-1907
 	RESERVED
 CVE-2018-1906 (IBM InfoSphere Information Server 11.3, 11.5, and 11.7could allow an a ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2018-1905 (IBM WebSphere Application Server 9.0.0.0 through 9.0.0.9 is vulnerable ...)
 	NOT-FOR-US: IBM
 CVE-2018-1904 (IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow re ...)
@@ -76317,7 +76317,7 @@ CVE-2018-1876 (IBM Robotic Process Automation with Automation Anywhere 11 could
 CVE-2018-1875 (IBM InfoSphere Information Governance Catalog 11.3, 11.5, and 11.7 cou ...)
 	NOT-FOR-US: IBM
 CVE-2018-1874 (IBM API Connect 5.0.0.0 through 5.0.8.5 could display highly sensitive ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2018-1873
 	RESERVED
 CVE-2018-1872 (IBM Maximo Asset Management 7.6 is vulnerable to cross-site scripting. ...)
@@ -76705,7 +76705,7 @@ CVE-2018-1682
 CVE-2018-1681
 	RESERVED
 CVE-2018-1680 (IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 does  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2018-1679 (IBM Sterling B2B Integrator Standard Edition 5.2 through 5.2.6 could a ...)
 	NOT-FOR-US: IBM
 CVE-2018-1678
@@ -76785,7 +76785,7 @@ CVE-2018-1642
 CVE-2018-1641
 	RESERVED
 CVE-2018-1640 (IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 could ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2018-1639 (The Report Builder of Jazz Reporting Service 5.0 through 5.0.2 and 6.0 ...)
 	NOT-FOR-US: IBM
 CVE-2018-1638 (IBM API Connect 5.0.0.0-5.0.8.3 Developer Portal does not enforce Two  ...)
@@ -76813,15 +76813,15 @@ CVE-2018-1628
 CVE-2018-1627
 	RESERVED
 CVE-2018-1626 (IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 does  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2018-1625 (IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 gener ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2018-1624
 	RESERVED
 CVE-2018-1623 (IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 allow ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2018-1622 (IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 is vu ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2018-1621 (IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a  ...)
 	NOT-FOR-US: IBM WebSphere Application Server
 CVE-2018-1620
@@ -76829,7 +76829,7 @@ CVE-2018-1620
 CVE-2018-1619
 	RESERVED
 CVE-2018-1618 (IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 could ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2018-1617
 	RESERVED
 CVE-2018-1616



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/3f1438d7efd4f1e75b1aac5e63d2ea5b75361bbb

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/3f1438d7efd4f1e75b1aac5e63d2ea5b75361bbb
You're receiving this email because of your account on salsa.debian.org.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190402/e81c5da2/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list