[Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso
carnil at debian.org
Fri Apr 5 08:27:49 BST 2019
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
af013da1 by Salvatore Bonaccorso at 2019-04-05T07:27:27Z
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -292,31 +292,31 @@ CVE-2019-10723 (An issue was discovered in PoDoFo 0.9.6. The PdfPagesTreeCache c
- libpodofo <unfixed>
NOTE: https://sourceforge.net/p/podofo/tickets/46/
CVE-2019-1003099 (A missing permission check in Jenkins openid Plugin in the OpenIdSsoSe ...)
- TODO: check
+ NOT-FOR-US: Jenkins openid Plugin
CVE-2019-1003098 (A cross-site request forgery vulnerability in Jenkins openid Plugin in ...)
- TODO: check
+ NOT-FOR-US: Jenkins openid Plugin
CVE-2019-1003097 (Jenkins Crowd Integration Plugin stores credentials unencrypted in the ...)
- TODO: check
+ NOT-FOR-US: Jenkins Crowd Integration Plugin
CVE-2019-1003096 (Jenkins TestFairy Plugin stores credentials unencrypted in job config. ...)
- TODO: check
+ NOT-FOR-US: Jenkins TestFairy Plugin
CVE-2019-1003095 (Jenkins Perfecto Mobile Plugin stores credentials unencrypted in its g ...)
- TODO: check
+ NOT-FOR-US: Jenkins Perfecto Mobile Plugin
CVE-2019-1003094 (Jenkins Open STF Plugin stores credentials unencrypted in its global c ...)
- TODO: check
+ NOT-FOR-US: Jenkins Open STF Plugin
CVE-2019-1003093 (A missing permission check in Jenkins Nomad Plugin in the NomadCloud.D ...)
- TODO: check
+ NOT-FOR-US: Jenkins Nomad Plugin
CVE-2019-1003092 (A cross-site request forgery vulnerability in Jenkins Nomad Plugin in ...)
- TODO: check
+ NOT-FOR-US: Jenkins Nomad Plugin
CVE-2019-1003091 (A missing permission check in Jenkins SOASTA CloudTest Plugin in the C ...)
- TODO: check
+ NOT-FOR-US: Jenkins SOASTA CloudTest Plugin
CVE-2019-1003090 (A cross-site request forgery vulnerability in Jenkins SOASTA CloudTest ...)
- TODO: check
+ NOT-FOR-US: Jenkins SOASTA CloudTest Plugin
CVE-2019-1003089 (Jenkins Upload to pgyer Plugin stores credentials unencrypted in job c ...)
- TODO: check
+ NOT-FOR-US: Jenkins Upload to pgyer Plugin
CVE-2019-1003088 (Jenkins Fabric Beta Publisher Plugin stores credentials unencrypted in ...)
- TODO: check
+ NOT-FOR-US: Jenkins Fabric Beta Publisher Plugin
CVE-2019-1003087 (A missing permission check in Jenkins Chef Sinatra Plugin in the ChefB ...)
- TODO: check
+ NOT-FOR-US: Jenkins Chef Sinatra Plugin
CVE-2019-1003086 (A cross-site request forgery vulnerability in Jenkins Chef Sinatra Plu ...)
TODO: check
CVE-2019-1003085 (A missing permission check in Jenkins Zephyr Enterprise Test Managemen ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/af013da183e1ab016b3c98b71874d283cf540c13
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/af013da183e1ab016b3c98b71874d283cf540c13
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190405/468acbf6/attachment.html>
More information about the debian-security-tracker-commits
mailing list