[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso carnil at debian.org
Thu Feb 21 20:10:30 GMT 2019


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
c3404c28 by security tracker role at 2019-02-21T20:10:21Z
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,15 @@
+CVE-2019-8985 (On Netis WF2880 and WF2411 2.1.36123 devices, there is a stack-based ...)
+	TODO: check
+CVE-2019-8984 (MDaemon Webmail 14.x through 18.x before 18.5.2 has XSS (issue 2 of 2). ...)
+	TODO: check
+CVE-2019-8983 (MDaemon Webmail 14.x through 18.x before 18.5.2 has XSS (issue 1 of 2). ...)
+	TODO: check
+CVE-2019-8982 (com/wavemaker/studio/StudioService.java in WaveMaker Studio 6.6 ...)
+	TODO: check
+CVE-2019-8981
+	RESERVED
+CVE-2018-20783 (In PHP before 5.6.39, 7.x before 7.0.33, 7.1.x before 7.1.25, and 7.2.x ...)
+	TODO: check
 CVE-2018-1002161 [SQL injection in multiple remote calls]
 	- koji <unfixed>
 	NOTE: https://docs.pagure.org/koji/CVE-2018-1002161/
@@ -16316,8 +16328,8 @@ CVE-2018-20145 (Eclipse Mosquitto 1.5.x before 1.5.5 allows ACL bypass: if the o
 	[jessie] - mosquitto <not-affected> (Only affects 1.5.x)
 	NOTE: https://github.com/eclipse/mosquitto/commit/9097577b49b7fdcf45d30975976dd93808ccc0c4
 	NOTE: https://github.com/eclipse/mosquitto/issues/1073
-CVE-2018-20122
-	RESERVED
+CVE-2018-20122 (The web interface on FASTGate Fastweb devices with firmware through ...)
+	TODO: check
 CVE-2018-20121
 	RESERVED
 CVE-2018-20120
@@ -18298,22 +18310,22 @@ CVE-2019-1668 (A vulnerability in the chat feed feature of Cisco SocialMiner cou
 	NOT-FOR-US: Cisco
 CVE-2019-1667
 	RESERVED
-CVE-2019-1666
-	RESERVED
-CVE-2019-1665
-	RESERVED
-CVE-2019-1664
-	RESERVED
+CVE-2019-1666 (A vulnerability in the Graphite service of Cisco HyperFlex software ...)
+	TODO: check
+CVE-2019-1665 (A vulnerability in the web-based management interface of Cisco ...)
+	TODO: check
+CVE-2019-1664 (A vulnerability in the hxterm service of Cisco HyperFlex Software ...)
+	TODO: check
 CVE-2019-1663
 	RESERVED
-CVE-2019-1662
-	RESERVED
+CVE-2019-1662 (A vulnerability in the Quality of Voice Reporting (QOVR) service of ...)
+	TODO: check
 CVE-2019-1661 (A vulnerability in the web-based management interface of Cisco ...)
 	NOT-FOR-US: Cisco
 CVE-2019-1660 (A vulnerability in the Simple Object Access Protocol (SOAP) of Cisco ...)
 	NOT-FOR-US: Cisco
-CVE-2019-1659
-	RESERVED
+CVE-2019-1659 (A vulnerability in the Identity Services Engine (ISE) integration ...)
+	TODO: check
 CVE-2019-1658 (A vulnerability in the web-based management interface of Cisco Unified ...)
 	NOT-FOR-US: Cisco
 CVE-2019-1657 (A vulnerability in Cisco AMP Threat Grid could allow an authenticated, ...)
@@ -56772,8 +56784,8 @@ CVE-2018-6689 (Authentication Bypass vulnerability in McAfee Data Loss Preventio
 	NOT-FOR-US: McAfee
 CVE-2018-6688
 	RESERVED
-CVE-2018-6687
-	RESERVED
+CVE-2018-6687 (Loop with Unreachable Exit Condition ('Infinite Loop') in McAfee ...)
+	TODO: check
 CVE-2018-6686 (Authentication Bypass vulnerability in TPM autoboot in McAfee Drive ...)
 	NOT-FOR-US: McAfee
 CVE-2018-6685
@@ -70559,8 +70571,8 @@ CVE-2018-2008
 	RESERVED
 CVE-2018-2007
 	RESERVED
-CVE-2018-2006
-	RESERVED
+CVE-2018-2006 (IBM Robotic Process Automation with Automation Anywhere 11 could allow ...)
+	TODO: check
 CVE-2018-2005
 	RESERVED
 CVE-2018-2004
@@ -70671,20 +70683,20 @@ CVE-2018-1952
 	RESERVED
 CVE-2018-1951 (IBM Publishing Engine 2.1.2, 6.0.5, and 6.0.6 is vulnerable to ...)
 	NOT-FOR-US: IBM
-CVE-2018-1950
-	RESERVED
-CVE-2018-1949
-	RESERVED
-CVE-2018-1948
-	RESERVED
-CVE-2018-1947
-	RESERVED
-CVE-2018-1946
-	RESERVED
-CVE-2018-1945
-	RESERVED
-CVE-2018-1944
-	RESERVED
+CVE-2018-1950 (IBM Security Identity Governance and Intelligence 5.2 through 5.2.4.1 ...)
+	TODO: check
+CVE-2018-1949 (IBM Security Identity Governance and Intelligence 5.2 through 5.2.4.1 ...)
+	TODO: check
+CVE-2018-1948 (IBM Security Identity Governance and Intelligence 5.2 through 5.2.4.1 ...)
+	TODO: check
+CVE-2018-1947 (IBM Security Identity Governance and Intelligence 5.2 through 5.2.4.1 ...)
+	TODO: check
+CVE-2018-1946 (IBM Security Identity Governance and Intelligence 5.2 through 5.2.4.1 ...)
+	TODO: check
+CVE-2018-1945 (IBM Security Identity Governance and Intelligence 5.2 through 5.2.4.1 ...)
+	TODO: check
+CVE-2018-1944 (IBM Security Identity Governance and Intelligence 5.2 through 5.2.4.1 ...)
+	TODO: check
 CVE-2018-1943
 	RESERVED
 CVE-2018-1942



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/c3404c2867a0eb4f400c7e234a19e68c10cf31b2

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/c3404c2867a0eb4f400c7e234a19e68c10cf31b2
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190221/57e45052/attachment.html>


More information about the debian-security-tracker-commits mailing list