[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff jmm at debian.org
Thu Jan 24 14:27:16 GMT 2019


Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
3a6ad44b by Moritz Muehlenhoff at 2019-01-24T14:26:44Z
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -13,7 +13,7 @@ CVE-2019-6721
 CVE-2019-6720
 	RESERVED
 CVE-2019-6719 (An issue has been found in libIEC61850 v1.3.1. There is a ...)
-	TODO: check
+	NOT-FOR-US: libIEC61850
 CVE-2019-6718
 	RESERVED
 CVE-2019-6717
@@ -25,7 +25,7 @@ CVE-2019-6715
 CVE-2019-6714
 	RESERVED
 CVE-2019-6713 (app\admin\controller\RouteController.php in ThinkCMF 5.0.190111 allows ...)
-	TODO: check
+	NOT-FOR-US: ThinkCMF
 CVE-2019-6712
 	RESERVED
 CVE-2019-6711
@@ -33,7 +33,7 @@ CVE-2019-6711
 CVE-2019-6710
 	RESERVED
 CVE-2018-20742 (An issue was discovered in UC Berkeley RISE Opaque before 2018-12-01. ...)
-	TODO: check
+	NOT-FOR-US: UC Berkeley RISE Opaque
 CVE-2019-6709
 	RESERVED
 CVE-2019-6708 (PHPSHE 1.7 has SQL injection via the admin.php?mod=order state ...)
@@ -12939,23 +12939,23 @@ CVE-2019-1646
 CVE-2019-1645
 	RESERVED
 CVE-2019-1644 (A vulnerability in the UDP protocol implementation for Cisco IoT Field ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1643 (A vulnerability in the web-based management interface of Cisco Prime ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1642 (A vulnerability in the web-based management interface of Cisco ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1641 (A vulnerability in the Cisco Webex Network Recording Player for ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1640 (A vulnerability in the Cisco Webex Network Recording Player for ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1639 (A vulnerability in the Cisco Webex Network Recording Player for ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1638 (A vulnerability in the Cisco Webex Network Recording Player for ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1637 (A vulnerability in the Cisco Webex Network Recording Player for ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1636 (A vulnerability in the Cisco Webex Teams client, formerly Cisco Spark, ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1635
 	RESERVED
 CVE-2019-1634
@@ -21897,7 +21897,7 @@ CVE-2018-17709
 CVE-2018-17708
 	RESERVED
 CVE-2018-17707 (This vulnerability allows remote attackers to execute arbitrary code ...)
-	TODO: check
+	NOT-FOR-US: Epic Games
 CVE-2018-17706 (This vulnerability allows remote attackers to execute arbitrary code ...)
 	NOT-FOR-US: Foxit PhantomPDF Phantom PDF
 CVE-2018-17705 (This vulnerability allows remote attackers to execute arbitrary code ...)
@@ -21909,35 +21909,35 @@ CVE-2018-17703 (This vulnerability allows remote attackers to execute arbitrary
 CVE-2018-17702 (This vulnerability allows remote attackers to execute arbitrary code ...)
 	NOT-FOR-US: Foxit Reader
 CVE-2018-17701 (This vulnerability allows remote attackers to execute arbitrary code ...)
-	TODO: check
+	NOT-FOR-US: Foxit
 CVE-2018-17700 (This vulnerability allows remote attackers to execute arbitrary code ...)
-	TODO: check
+	NOT-FOR-US: Foxit
 CVE-2018-17699 (This vulnerability allows remote attackers to disclose sensitive ...)
 	NOT-FOR-US: Foxit Reader
 CVE-2018-17698 (This vulnerability allows remote attackers to execute arbitrary code ...)
-	TODO: check
+	NOT-FOR-US: Foxit Reader
 CVE-2018-17697 (This vulnerability allows remote attackers to execute arbitrary code ...)
 	NOT-FOR-US: Foxit Reader
 CVE-2018-17696 (This vulnerability allows remote attackers to execute arbitrary code ...)
 	NOT-FOR-US: Foxit Reader
 CVE-2018-17695 (This vulnerability allows remote attackers to execute arbitrary code ...)
-	TODO: check
+	NOT-FOR-US: Foxit
 CVE-2018-17694 (This vulnerability allows remote attackers to execute arbitrary code ...)
-	TODO: check
+	NOT-FOR-US: Foxit
 CVE-2018-17693 (This vulnerability allows remote attackers to execute arbitrary code ...)
-	TODO: check
+	NOT-FOR-US: Foxit
 CVE-2018-17692 (This vulnerability allows remote attackers to execute arbitrary code ...)
-	TODO: check
+	NOT-FOR-US: Foxit
 CVE-2018-17691 (This vulnerability allows remote attackers to execute arbitrary code ...)
-	TODO: check
+	NOT-FOR-US: Foxit
 CVE-2018-17690 (This vulnerability allows remote attackers to execute arbitrary code ...)
-	TODO: check
+	NOT-FOR-US: Foxit
 CVE-2018-17689 (This vulnerability allows remote attackers to execute arbitrary code ...)
-	TODO: check
+	NOT-FOR-US: Foxit
 CVE-2018-17688 (This vulnerability allows remote attackers to execute arbitrary code ...)
-	TODO: check
+	NOT-FOR-US: Foxit
 CVE-2018-17687 (This vulnerability allows remote attackers to execute arbitrary code ...)
-	TODO: check
+	NOT-FOR-US: Foxit
 CVE-2018-17686 (This vulnerability allows remote attackers to disclose sensitive ...)
 	NOT-FOR-US: Foxit Reader
 CVE-2018-17685 (This vulnerability allows remote attackers to execute arbitrary code ...)
@@ -27213,7 +27213,7 @@ CVE-2018-15616 (A vulnerability in the Web UI component of Avaya Aura System Pla
 CVE-2018-15615 (A vulnerability in the Supervisor component of Avaya Call Management ...)
 	NOT-FOR-US: Avaya
 CVE-2018-15614 (A vulnerability in the one-x Portal component of IP Office could allow ...)
-	TODO: check
+	NOT-FOR-US: IP Office
 CVE-2018-15613 (A cross-site scripting (XSS) vulnerability in the Runtime Config ...)
 	NOT-FOR-US: Avaya
 CVE-2018-15612 (A CSRF vulnerability in the Runtime Config component of Avaya Aura ...)
@@ -27659,7 +27659,7 @@ CVE-2018-15461 (A vulnerability in the MyWebex component of Cisco Webex Business
 CVE-2018-15460 (A vulnerability in the email message filtering feature of Cisco ...)
 	NOT-FOR-US: Cisco
 CVE-2018-15459 (A vulnerability in the administrative web interface of Cisco Identity ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-15458 (A vulnerability in the Shell Access Filter feature of Cisco Firepower ...)
 	NOT-FOR-US: Cisco
 CVE-2018-15457 (A vulnerability in the web-based management interface of Cisco Prime ...)
@@ -27667,7 +27667,7 @@ CVE-2018-15457 (A vulnerability in the web-based management interface of Cisco P
 CVE-2018-15456 (A vulnerability in the Admin Portal of Cisco Identity Services Engine ...)
 	NOT-FOR-US: Cisco
 CVE-2018-15455 (A vulnerability in the logging component of Cisco Identity Services ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-15454 (A vulnerability in the Session Initiation Protocol (SIP) inspection ...)
 	NOT-FOR-US: Cisco
 CVE-2018-15453 (A vulnerability in the Secure/Multipurpose Internet Mail Extensions ...)
@@ -67098,6 +67098,7 @@ CVE-2018-1297 (When using Distributed Test only (RMI based), Apache JMeter 2.x a
 	NOTE: https://bz.apache.org/bugzilla/show_bug.cgi?id=62039
 CVE-2018-1296
 	RESERVED
+	- hadoop <itp> (bug #793644)
 CVE-2018-1295 (In Apache Ignite 2.3 or earlier, the serialization mechanism does not ...)
 	NOT-FOR-US: Apache Ignite
 CVE-2018-1294 (If a user of Commons-Email (typically an application programmer) ...)
@@ -70984,7 +70985,7 @@ CVE-2018-0189 (A vulnerability in the Forwarding Information Base (FIB) code of
 CVE-2018-0188 (Multiple vulnerabilities in the web-based user interface (web UI) of ...)
 	NOT-FOR-US: Cisco
 CVE-2018-0187 (A vulnerability in the Admin portal of Cisco Identity Services Engine ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2018-0186 (Multiple vulnerabilities in the web-based user interface (web UI) of ...)
 	NOT-FOR-US: Cisco
 CVE-2018-0185 (Multiple vulnerabilities in the CLI parser of Cisco IOS XE Software ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/3a6ad44bb96552876943f0d91cb2827c82516d34

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/3a6ad44bb96552876943f0d91cb2827c82516d34
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190124/aaef1f41/attachment.html>


More information about the debian-security-tracker-commits mailing list