[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso carnil at debian.org
Fri Jan 4 20:08:52 GMT 2019


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5a904d0f by Salvatore Bonaccorso at 2019-01-04T20:08:31Z
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -2869,7 +2869,7 @@ CVE-2019-3581
 CVE-2018-20664 (Zoho ManageEngine ADSelfService Plus 5.x before build 5701 has XXE via ...)
 	NOT-FOR-US: Zoho ManageEngine ADSelfService Plus
 CVE-2018-20663 (The Reporting Addon (aka Reports Addon) through 2019-01-02 for CUBA ...)
-	TODO: check
+	NOT-FOR-US: Reporting Addon for CUBA Platform
 CVE-2018-20662 (In Poppler 0.72.0, PDFDoc::setup in PDFDoc.cc allows attackers to cause ...)
 	- poppler <unfixed> (bug #918158)
 	NOTE: https://gitlab.freedesktop.org/poppler/poppler/issues/706
@@ -2887,7 +2887,7 @@ CVE-2019-3577 (An issue was discovered in Waimai Super Cms 20150505. ...)
 CVE-2019-3576 (inxedu through 2018-12-24 has a SQL Injection vulnerability that can ...)
 	NOT-FOR-US: inxedu
 CVE-2019-3575 (Sqla_yaml_fixtures 0.9.1 allows local users to execute arbitrary ...)
-	TODO: check
+	NOT-FOR-US: Sqla_yaml_fixtures
 CVE-2019-3574 (In libsixel v1.8.2, there is a heap-based buffer over-read in the ...)
 	- libsixel <unfixed> (low)
 	[stretch] - libsixel <no-dsa> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/5a904d0fa1aecb2bbf6a569c9b3b02ec1dfaf703

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/5a904d0fa1aecb2bbf6a569c9b3b02ec1dfaf703
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190104/0d77a963/attachment.html>


More information about the debian-security-tracker-commits mailing list