[Git][security-tracker-team/security-tracker][master] NFUs, two apcupsd issues n/a
Moritz Muehlenhoff
jmm at debian.org
Tue Jun 11 23:58:49 BST 2019
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
9d0a09ad by Moritz Muehlenhoff at 2019-06-11T22:58:12Z
NFUs, two apcupsd issues n/a
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,5 +1,5 @@
CVE-2019-12794 (An issue was discovered in MISP 2.4.108. Organization admins could res ...)
- TODO: check
+ NOT-FOR-US: MISP
CVE-2019-XXXX [faad2 issue fixed in vlc]
- faad2 2.8.8-3
CVE-2019-XXXX [security issues fixed in 1.8.5]
@@ -66,11 +66,11 @@ CVE-2019-12768
CVE-2019-12767
RESERVED
CVE-2019-12766 (An issue was discovered in Joomla! before 3.9.7. The subform fieldtype ...)
- TODO: check
+ NOT-FOR-US: Joomla!
CVE-2019-12765 (An issue was discovered in Joomla! before 3.9.7. The CSV export of com ...)
- TODO: check
+ NOT-FOR-US: Joomla!
CVE-2019-12764 (An issue was discovered in Joomla! before 3.9.7. The update server URL ...)
- TODO: check
+ NOT-FOR-US: Joomla!
CVE-2019-12763 (The Security Camera CZ application through 1.6.8 for Android stores po ...)
NOT-FOR-US: Security Camera CZ application for Android
CVE-2019-12762 (Xiaomi Mi 5s Plus devices allow attackers to trigger touchscreen anoma ...)
@@ -449,9 +449,9 @@ CVE-2019-12587
CVE-2019-12586
RESERVED
CVE-2019-12585 (Apcupsd 0.3.91_5, as used in pfSense through 2.4.4-RELEASE-p3 and othe ...)
- TODO: check
+ - apcupsd <not-affected> (Vulnerable code in pfSense-specific status page)
CVE-2019-12584 (Apcupsd 0.3.91_5, as used in pfSense through 2.4.4-RELEASE-p3 and othe ...)
- TODO: check
+ - apcupsd <not-affected> (Vulnerable code in pfSense-specific status page)
CVE-2019-12583
RESERVED
CVE-2019-12582
@@ -481,7 +481,7 @@ CVE-2019-12571
CVE-2019-12570
RESERVED
CVE-2019-12569 (A vulnerability in Viber before 10.7.0 for Desktop (Windows) could all ...)
- TODO: check
+ NOT-FOR-US: Viber
CVE-2019-12568
RESERVED
CVE-2019-12567
@@ -6010,23 +6010,23 @@ CVE-2019-10341
CVE-2019-10340
RESERVED
CVE-2019-10339 (A missing permission check in Jenkins JX Resources Plugin 1.0.36 and e ...)
- TODO: check
+ NOT-FOR-US: Jenkins plugin
CVE-2019-10338 (A cross-site request forgery vulnerability in Jenkins JX Resources Plu ...)
- TODO: check
+ NOT-FOR-US: Jenkins plugin
CVE-2019-10337 (An XML external entities (XXE) vulnerability in Jenkins Token Macro Pl ...)
- TODO: check
+ NOT-FOR-US: Jenkins plugin
CVE-2019-10336 (A reflected cross site scripting vulnerability in Jenkins ElectricFlow ...)
- TODO: check
+ NOT-FOR-US: Jenkins plugin
CVE-2019-10335 (A stored cross site scripting vulnerability in Jenkins ElectricFlow Pl ...)
- TODO: check
+ NOT-FOR-US: Jenkins plugin
CVE-2019-10334 (Jenkins ElectricFlow Plugin 1.1.5 and earlier disabled SSL/TLS and hos ...)
- TODO: check
+ NOT-FOR-US: Jenkins plugin
CVE-2019-10333 (Missing permission checks in Jenkins ElectricFlow Plugin 1.1.5 and ear ...)
- TODO: check
+ NOT-FOR-US: Jenkins plugin
CVE-2019-10332 (A missing permission check in Jenkins ElectricFlow Plugin 1.1.5 and ea ...)
- TODO: check
+ NOT-FOR-US: Jenkins plugin
CVE-2019-10331 (A cross-site request forgery vulnerability in Jenkins ElectricFlow Plu ...)
- TODO: check
+ NOT-FOR-US: Jenkins plugin
CVE-2019-10330 (Jenkins Gitea Plugin 1.1.1 and earlier did not implement trusted revis ...)
NOT-FOR-US: Jenkins plugin
CVE-2019-10329 (Jenkins InfluxDB Plugin 1.21 and earlier stored credentials unencrypte ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/9d0a09ad5ded36c41ba3099c2ad3864b192cb45f
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/9d0a09ad5ded36c41ba3099c2ad3864b192cb45f
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190611/2be7a0f9/attachment.html>
More information about the debian-security-tracker-commits
mailing list