[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso carnil at debian.org
Sat Dec 14 08:30:43 GMT 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
698e5142 by Salvatore Bonaccorso at 2019-12-14T08:30:13Z
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -14767,21 +14767,21 @@ CVE-2019-16738 (In MediaWiki through 1.33.0, Special:Redirect allows information
 	- mediawiki 1:1.31.4-1
 	NOTE: https://phabricator.wikimedia.org/T230402
 CVE-2019-16737 (The processCommandSetMac() function of libcommon.so in Petwant PF-103  ...)
-	TODO: check
+	NOT-FOR-US: Petwant PF-103 and Petalk AI
 CVE-2019-16736 (A stack-based buffer overflow in processCommandUploadSnapshot in libco ...)
-	TODO: check
+	NOT-FOR-US: Petwant PF-103 and Petalk AI
 CVE-2019-16735 (A stack-based buffer overflow in processCommandUploadLog in libcommon. ...)
-	TODO: check
+	NOT-FOR-US: Petwant PF-103 and Petalk AI
 CVE-2019-16734 (Use of default credentials for the TELNET server in Petwant PF-103 fir ...)
-	TODO: check
+	NOT-FOR-US: Petwant PF-103 and Petalk AI
 CVE-2019-16733 (processCommandSetUid() in libcommon.so in Petwant PF-103 firmware 4.22 ...)
-	TODO: check
+	NOT-FOR-US: Petwant PF-103 and Petalk AI
 CVE-2019-16732 (Unencrypted HTTP communications for firmware upgrades in Petalk AI and ...)
-	TODO: check
+	NOT-FOR-US: Petwant PF-103 and Petalk AI
 CVE-2019-16731 (The udpServerSys service in Petwant PF-103 firmware 4.22.2.42 and Peta ...)
-	TODO: check
+	NOT-FOR-US: Petwant PF-103 and Petalk AI
 CVE-2019-16730 (processCommandUpgrade() in libcommon.so in Petwant PF-103 firmware 4.2 ...)
-	TODO: check
+	NOT-FOR-US: Petwant PF-103 and Petalk AI
 CVE-2019-16728 (DOMPurify before 2.0.1 allows XSS because of innerHTML mutation XSS (m ...)
 	- dompurify.js <removed>
 	[stretch] - dompurify.js <ignored> (Minor issue)
@@ -48811,7 +48811,7 @@ CVE-2019-5279 (Huawei smart phones Emily-L29C with Versions earlier than 9.1.0.3
 CVE-2019-5278 (There is an out-of-bounds read vulnerability in the Advanced Packages  ...)
 	TODO: check
 CVE-2019-5277 (Huawei CloudUSM-EUA V600R006C10;V600R019C00 have an information leak v ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2019-5276
 	RESERVED
 CVE-2019-5275
@@ -48837,7 +48837,7 @@ CVE-2019-5266
 CVE-2019-5265
 	RESERVED
 CVE-2019-5264 (There is an information disclosure vulnerability in certain Huawei sma ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2019-5263 (HiSuite with 9.1.0.305 and earlier versions and 9.1.0.305(MAC) and ear ...)
 	NOT-FOR-US: Huawei
 CVE-2019-5262
@@ -48845,23 +48845,23 @@ CVE-2019-5262
 CVE-2019-5261
 	RESERVED
 CVE-2019-5260 (Huawei smartphones HUAWEI Y9 2019 and Honor View 20 have a denial of s ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2019-5259
 	RESERVED
 CVE-2019-5258 (Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2019-5257 (Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2019-5256 (Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2019-5255 (Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2019-5254 (Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2019-5253 (E5572-855 with versions earlier than 8.0.1.3(H335SP1C233) has an impro ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2019-5252 (There is an improper authentication vulnerability in Huawei smartphone ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2019-5251 (There is a path traversal vulnerability in several Huawei smartphones. ...)
 	NOT-FOR-US: Huawei
 CVE-2019-5250 (Mate 20 Pro smartphones with versions earlier than 9.1.0.135(C00E133R3 ...)
@@ -48895,7 +48895,7 @@ CVE-2019-5237 (Huawei PCManager with the versions before 9.0.1.66 (Oversea) and
 CVE-2019-5236 (Huawei smart phones Emily-L29C with versions of 8.1.0.132a(C432), 8.1. ...)
 	NOT-FOR-US: Huawei
 CVE-2019-5235 (Some Huawei smart phones have a null pointer dereference vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2019-5234
 	RESERVED
 CVE-2019-5233 (Huawei smartphones with versions earlier than Taurus-AL00B 10.0.0.41(S ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/698e514272896b4a6e9a7a395c50e52879cf755f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/698e514272896b4a6e9a7a395c50e52879cf755f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20191214/e57955b1/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list