[Git][security-tracker-team/security-tracker][master] NFUs, two apcupsd issues n/a

Moritz Muehlenhoff jmm at debian.org
Tue Jun 11 23:58:49 BST 2019



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9d0a09ad by Moritz Muehlenhoff at 2019-06-11T22:58:12Z
NFUs, two apcupsd issues n/a

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,5 +1,5 @@
 CVE-2019-12794 (An issue was discovered in MISP 2.4.108. Organization admins could res ...)
-	TODO: check
+	NOT-FOR-US: MISP
 CVE-2019-XXXX [faad2 issue fixed in vlc]
 	- faad2 2.8.8-3
 CVE-2019-XXXX [security issues fixed in 1.8.5]
@@ -66,11 +66,11 @@ CVE-2019-12768
 CVE-2019-12767
 	RESERVED
 CVE-2019-12766 (An issue was discovered in Joomla! before 3.9.7. The subform fieldtype ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2019-12765 (An issue was discovered in Joomla! before 3.9.7. The CSV export of com ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2019-12764 (An issue was discovered in Joomla! before 3.9.7. The update server URL ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2019-12763 (The Security Camera CZ application through 1.6.8 for Android stores po ...)
 	NOT-FOR-US: Security Camera CZ application for Android
 CVE-2019-12762 (Xiaomi Mi 5s Plus devices allow attackers to trigger touchscreen anoma ...)
@@ -449,9 +449,9 @@ CVE-2019-12587
 CVE-2019-12586
 	RESERVED
 CVE-2019-12585 (Apcupsd 0.3.91_5, as used in pfSense through 2.4.4-RELEASE-p3 and othe ...)
-	TODO: check
+	- apcupsd <not-affected> (Vulnerable code in pfSense-specific status page)
 CVE-2019-12584 (Apcupsd 0.3.91_5, as used in pfSense through 2.4.4-RELEASE-p3 and othe ...)
-	TODO: check
+	- apcupsd <not-affected> (Vulnerable code in pfSense-specific status page)
 CVE-2019-12583
 	RESERVED
 CVE-2019-12582
@@ -481,7 +481,7 @@ CVE-2019-12571
 CVE-2019-12570
 	RESERVED
 CVE-2019-12569 (A vulnerability in Viber before 10.7.0 for Desktop (Windows) could all ...)
-	TODO: check
+	NOT-FOR-US: Viber
 CVE-2019-12568
 	RESERVED
 CVE-2019-12567
@@ -6010,23 +6010,23 @@ CVE-2019-10341
 CVE-2019-10340
 	RESERVED
 CVE-2019-10339 (A missing permission check in Jenkins JX Resources Plugin 1.0.36 and e ...)
-	TODO: check
+	NOT-FOR-US: Jenkins plugin
 CVE-2019-10338 (A cross-site request forgery vulnerability in Jenkins JX Resources Plu ...)
-	TODO: check
+	NOT-FOR-US: Jenkins plugin
 CVE-2019-10337 (An XML external entities (XXE) vulnerability in Jenkins Token Macro Pl ...)
-	TODO: check
+	NOT-FOR-US: Jenkins plugin
 CVE-2019-10336 (A reflected cross site scripting vulnerability in Jenkins ElectricFlow ...)
-	TODO: check
+	NOT-FOR-US: Jenkins plugin
 CVE-2019-10335 (A stored cross site scripting vulnerability in Jenkins ElectricFlow Pl ...)
-	TODO: check
+	NOT-FOR-US: Jenkins plugin
 CVE-2019-10334 (Jenkins ElectricFlow Plugin 1.1.5 and earlier disabled SSL/TLS and hos ...)
-	TODO: check
+	NOT-FOR-US: Jenkins plugin
 CVE-2019-10333 (Missing permission checks in Jenkins ElectricFlow Plugin 1.1.5 and ear ...)
-	TODO: check
+	NOT-FOR-US: Jenkins plugin
 CVE-2019-10332 (A missing permission check in Jenkins ElectricFlow Plugin 1.1.5 and ea ...)
-	TODO: check
+	NOT-FOR-US: Jenkins plugin
 CVE-2019-10331 (A cross-site request forgery vulnerability in Jenkins ElectricFlow Plu ...)
-	TODO: check
+	NOT-FOR-US: Jenkins plugin
 CVE-2019-10330 (Jenkins Gitea Plugin 1.1.1 and earlier did not implement trusted revis ...)
 	NOT-FOR-US: Jenkins plugin
 CVE-2019-10329 (Jenkins InfluxDB Plugin 1.21 and earlier stored credentials unencrypte ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/9d0a09ad5ded36c41ba3099c2ad3864b192cb45f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/9d0a09ad5ded36c41ba3099c2ad3864b192cb45f
You're receiving this email because of your account on salsa.debian.org.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190611/2be7a0f9/attachment.html>


More information about the debian-security-tracker-commits mailing list