[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso carnil at debian.org
Thu Jun 6 09:10:34 BST 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b9ca1ea7 by security tracker role at 2019-06-06T08:10:20Z
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -21408,8 +21408,8 @@ CVE-2019-4222 (IBM Sterling B2B Integrator Standard Edition 6.0.0.0 and 6.0.0.1
 	NOT-FOR-US: IBM
 CVE-2019-4221
 	RESERVED
-CVE-2019-4220
-	RESERVED
+CVE-2019-4220 (IBM InfoSphere Information Server 11.7.1.0 stores a common hard coded  ...)
+	TODO: check
 CVE-2019-4219
 	RESERVED
 CVE-2019-4218
@@ -21446,8 +21446,8 @@ CVE-2019-4203 (IBM API Connect 5.0.0.0 and 5.0.8.6 Developer Portal can be explo
 	NOT-FOR-US: IBM
 CVE-2019-4202 (IBM API Connect 5.0.0.0 and 5.0.8.6 Developer Portal is vulnerable to  ...)
 	NOT-FOR-US: IBM
-CVE-2019-4201
-	RESERVED
+CVE-2019-4201 (IBM Jazz for Service Management 1.1.3, 1.1.3.1, and 1.1.3.2 could allo ...)
+	TODO: check
 CVE-2019-4200
 	RESERVED
 CVE-2019-4199
@@ -21478,8 +21478,8 @@ CVE-2019-4187
 	RESERVED
 CVE-2019-4186
 	RESERVED
-CVE-2019-4185
-	RESERVED
+CVE-2019-4185 (IBM InfoSphere Information Server 11.7.1 containers are vulnerable to  ...)
+	TODO: check
 CVE-2019-4184 (IBM Jazz Reporting Service 6.0 through 6.0.6.1 is vulnerable to cross- ...)
 	NOT-FOR-US: IBM
 CVE-2019-4183
@@ -21736,8 +21736,8 @@ CVE-2019-4058 (IBM BigFix Platform 9.2 and 9.5 could allow a low-privilege user
 	NOT-FOR-US: IBM
 CVE-2019-4057
 	RESERVED
-CVE-2019-4056
-	RESERVED
+CVE-2019-4056 (IBM Maximo Asset Management 7.6 Work Centers' application does not val ...)
+	TODO: check
 CVE-2019-4055 (IBM MQ 8.0.0.0 through 8.0.0.10, 9.0.0.0 through 9.0.0.5, and 9.1.0.0  ...)
 	NOT-FOR-US: IBM
 CVE-2019-4054
@@ -21752,8 +21752,8 @@ CVE-2019-4050
 	RESERVED
 CVE-2019-4049
 	RESERVED
-CVE-2019-4048
-	RESERVED
+CVE-2019-4048 (IBM Maximo Asset Management 7.6 could allow a physical user of the sys ...)
+	TODO: check
 CVE-2019-4047 (IBM Jazz Reporting Service (JRS) 6.0.6 could allow an authenticated us ...)
 	NOT-FOR-US: IBM
 CVE-2019-4046 (IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable  ...)
@@ -58653,8 +58653,8 @@ CVE-2018-10173 (Digital Guardian Management Console 7.1.2.0015 allows authentica
 	NOT-FOR-US: Digital Guardian Management Console
 CVE-2018-10172 (7-Zip through 18.01 on Windows implements the "Large memory pages" opt ...)
 	NOT-FOR-US: 7-Zip
-CVE-2018-10171
-	RESERVED
+CVE-2018-10171 (Kromtech MacKeeper 3.20.4 suffers from a root privilege escalation vul ...)
+	TODO: check
 CVE-2018-10170 (NordVPN 6.12.7.0 for Windows suffers from a SYSTEM privilege escalatio ...)
 	NOT-FOR-US: NordVPN for Windows
 CVE-2018-10169 (ProtonVPN 1.3.3 for Windows suffers from a SYSTEM privilege escalation ...)
@@ -81845,8 +81845,8 @@ CVE-2018-2030
 	RESERVED
 CVE-2018-2029
 	RESERVED
-CVE-2018-2028
-	RESERVED
+CVE-2018-2028 (IBM Maximo Asset Management 7.6 could allow a an authenticated user to ...)
+	TODO: check
 CVE-2018-2027
 	RESERVED
 CVE-2018-2026 (IBM Financial Transaction Manager 3.2.1 for Digital Payments could all ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b9ca1ea7debfaa5f1ab0eac095abb62f7b95b05a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b9ca1ea7debfaa5f1ab0eac095abb62f7b95b05a
You're receiving this email because of your account on salsa.debian.org.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190606/0577b27a/attachment.html>


More information about the debian-security-tracker-commits mailing list