[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso carnil at debian.org
Thu Jun 13 08:53:02 BST 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b0ffd8d4 by Salvatore Bonaccorso at 2019-06-13T07:52:38Z
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -31681,7 +31681,7 @@ CVE-2019-1083
 CVE-2019-1082
 	RESERVED
 CVE-2019-1081 (An information disclosure vulnerability exists when affected Microsoft ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1080 (A remote code execution vulnerability exists in the way the scripting  ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1079
@@ -31763,7 +31763,7 @@ CVE-2019-1042
 CVE-2019-1041 (An elevation of privilege vulnerability exists when the Windows kernel ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1040 (A tampering vulnerability exists in Microsoft Windows when a man-in-th ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1039 (An information disclosure vulnerability exists when the Windows kernel ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1038 (A remote code execution vulnerability exists in the way that Microsoft ...)
@@ -31785,7 +31785,7 @@ CVE-2019-1031 (A cross-site-scripting (XSS) vulnerability exists when Microsoft
 CVE-2019-1030
 	RESERVED
 CVE-2019-1029 (A denial of service vulnerability exists in Skype for Business, aka 'S ...)
-	TODO: check
+	NOT-FOR-US: Skype
 CVE-2019-1028 (An elevation of privilege exists in Windows Audio Service, aka 'Window ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1027 (An elevation of privilege exists in Windows Audio Service, aka 'Window ...)
@@ -31807,7 +31807,7 @@ CVE-2019-1020
 CVE-2019-1019 (A security feature bypass vulnerability exists where a NETLOGON messag ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1018 (An elevation of privilege vulnerability exists when DirectX improperly ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1017 (An elevation of privilege vulnerability exists in Windows when the Win ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1016 (An information disclosure vulnerability exists when the Windows GDI co ...)
@@ -31871,7 +31871,7 @@ CVE-2019-0988 (A remote code execution vulnerability exists in the way that the
 CVE-2019-0987
 	RESERVED
 CVE-2019-0986 (An elevation of privilege vulnerability exists when the Windows User P ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-0985 (A remote code execution vulnerability exists when the Microsoft Speech ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-0984 (An elevation of privilege vulnerability exists when the Windows Common ...)
@@ -32030,15 +32030,15 @@ CVE-2019-0910
 CVE-2019-0909 (A remote code execution vulnerability exists when the Windows Jet Data ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-0908 (A remote code execution vulnerability exists when the Windows Jet Data ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-0907 (A remote code execution vulnerability exists when the Windows Jet Data ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-0906 (A remote code execution vulnerability exists when the Windows Jet Data ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-0905 (A remote code execution vulnerability exists when the Windows Jet Data ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-0904 (A remote code execution vulnerability exists when the Windows Jet Data ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-0903 (A remote code execution vulnerability exists in the way that the Windo ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-0902 (A remote code execution vulnerability exists when the Windows Jet Data ...)
@@ -32070,7 +32070,7 @@ CVE-2019-0890 (A remote code execution vulnerability exists when the Windows Jet
 CVE-2019-0889 (A remote code execution vulnerability exists when the Windows Jet Data ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-0888 (A remote code execution vulnerability exists in the way that ActiveX D ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-0887
 	RESERVED
 CVE-2019-0886 (An information disclosure vulnerability exists when Windows Hyper-V on ...)
@@ -32411,7 +32411,7 @@ CVE-2019-0724 (An elevation of privilege vulnerability exists in Microsoft Excha
 CVE-2019-0723
 	RESERVED
 CVE-2019-0722 (A remote code execution vulnerability exists when Windows Hyper-V on a ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-0721
 	RESERVED
 CVE-2019-0720
@@ -32429,15 +32429,15 @@ CVE-2019-0715
 CVE-2019-0714
 	RESERVED
 CVE-2019-0713 (A denial of service vulnerability exists when Microsoft Hyper-V on a h ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-0712
 	RESERVED
 CVE-2019-0711 (A denial of service vulnerability exists when Microsoft Hyper-V on a h ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-0710 (A denial of service vulnerability exists when Microsoft Hyper-V on a h ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-0709 (A remote code execution vulnerability exists when Windows Hyper-V on a ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-0708 (A remote code execution vulnerability exists in Remote Desktop Service ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-0707 (An elevation of privilege vulnerability exists in the Network Driver I ...)
@@ -32615,7 +32615,7 @@ CVE-2019-0622 (An elevation of privilege vulnerability exists when Skype for And
 CVE-2019-0621 (An information disclosure vulnerability exists when the Windows kernel ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-0620 (A remote code execution vulnerability exists when Windows Hyper-V on a ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-0619 (An information disclosure vulnerability exists when the Windows GDI co ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-0618 (A remote code execution vulnerability exists in the way that the Windo ...)
@@ -33363,29 +33363,29 @@ CVE-2019-0317
 CVE-2019-0316
 	RESERVED
 CVE-2019-0315 (Under certain conditions the PI Integration Builder Web UI of SAP NetW ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2019-0314 (SAP Work Manager, versions: 6.3, 6.4, 6.5 and SAP Inventory Manager, v ...)
-	TODO: check
+	NOT-FOR-US: SAP Work Manager
 CVE-2019-0313
 	RESERVED
 CVE-2019-0312 (Several web pages provided SAP NetWeaver Process Integration (versions ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2019-0311 (Automotive Dealer Portal in SAP R/3 Enterprise Application (versions:  ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2019-0310
 	RESERVED
 CVE-2019-0309
 	RESERVED
 CVE-2019-0308 (An authenticated attacker in SAP E-Commerce (Business-to-Consumer appl ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2019-0307 (Diagnostics Agent in Solution Manager, version 7.2, stores several cre ...)
-	TODO: check
+	NOT-FOR-US: SAP / Solution Manager
 CVE-2019-0306 (SAP HANA Extended Application Services (advanced model), version 1, al ...)
-	TODO: check
+	NOT-FOR-US: SAP HANA Extended Application Services
 CVE-2019-0305 (Java Server Pages (JSPs) provided by the SAP NetWeaver Process Integra ...)
-	TODO: check
+	NOT-FOR-US: SAP NetWeaver Process Integration
 CVE-2019-0304 (FTP Function of SAP NetWeaver AS ABAP Platform, versions- KRNL32NUC 7. ...)
-	TODO: check
+	NOT-FOR-US: SAP NetWeaver AS ABAP Platform
 CVE-2019-0303
 	RESERVED
 CVE-2019-0302



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b0ffd8d42060e59f0a58ee1c73b3de5e86ddc60a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b0ffd8d42060e59f0a58ee1c73b3de5e86ddc60a
You're receiving this email because of your account on salsa.debian.org.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190613/c75d1db0/attachment.html>


More information about the debian-security-tracker-commits mailing list