[Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
carnil at debian.org
Fri Jan 4 20:08:52 GMT 2019
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
5a904d0f by Salvatore Bonaccorso at 2019-01-04T20:08:31Z
Process NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -2869,7 +2869,7 @@ CVE-2019-3581
CVE-2018-20664 (Zoho ManageEngine ADSelfService Plus 5.x before build 5701 has XXE via ...)
NOT-FOR-US: Zoho ManageEngine ADSelfService Plus
CVE-2018-20663 (The Reporting Addon (aka Reports Addon) through 2019-01-02 for CUBA ...)
- TODO: check
+ NOT-FOR-US: Reporting Addon for CUBA Platform
CVE-2018-20662 (In Poppler 0.72.0, PDFDoc::setup in PDFDoc.cc allows attackers to cause ...)
- poppler <unfixed> (bug #918158)
NOTE: https://gitlab.freedesktop.org/poppler/poppler/issues/706
@@ -2887,7 +2887,7 @@ CVE-2019-3577 (An issue was discovered in Waimai Super Cms 20150505. ...)
CVE-2019-3576 (inxedu through 2018-12-24 has a SQL Injection vulnerability that can ...)
NOT-FOR-US: inxedu
CVE-2019-3575 (Sqla_yaml_fixtures 0.9.1 allows local users to execute arbitrary ...)
- TODO: check
+ NOT-FOR-US: Sqla_yaml_fixtures
CVE-2019-3574 (In libsixel v1.8.2, there is a heap-based buffer over-read in the ...)
- libsixel <unfixed> (low)
[stretch] - libsixel <no-dsa> (Minor issue)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/5a904d0fa1aecb2bbf6a569c9b3b02ec1dfaf703
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/5a904d0fa1aecb2bbf6a569c9b3b02ec1dfaf703
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190104/0d77a963/attachment.html>
More information about the debian-security-tracker-commits
mailing list