[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso carnil at debian.org
Thu May 16 11:11:32 BST 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
fb3fb841 by Salvatore Bonaccorso at 2019-05-16T10:11:09Z
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -27092,11 +27092,11 @@ CVE-2019-1862 (A vulnerability in the web-based user interface (Web UI) of Cisco
 CVE-2019-1861
 	RESERVED
 CVE-2019-1860 (A vulnerability in the dashboard gadget rendering of Cisco Unified Int ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1859 (A vulnerability in the Secure Shell (SSH) authentication process of Ci ...)
 	NOT-FOR-US: Cisco
 CVE-2019-1858 (A vulnerability in the Simple Network Management Protocol (SNMP) input ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1857 (A vulnerability in the web-based management interface of Cisco HyperFl ...)
 	NOT-FOR-US: Cisco
 CVE-2019-1856 (A vulnerability in the web-based management interface of Cisco Prime C ...)
@@ -27106,21 +27106,21 @@ CVE-2019-1855
 CVE-2019-1854 (A vulnerability in the management web interface of Cisco Expressway Se ...)
 	NOT-FOR-US: Cisco
 CVE-2019-1853 (A vulnerability in the HostScan component of Cisco AnyConnect Secure M ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1852 (A vulnerability in the web-based management interface of Cisco Prime N ...)
 	NOT-FOR-US: Cisco
 CVE-2019-1851 (A vulnerability in the External RESTful Services (ERS) API of the Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1850
 	RESERVED
 CVE-2019-1849 (A vulnerability in the Border Gateway Patrol (BGP) Multiprotocol Label ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1848
 	RESERVED
 CVE-2019-1847
 	RESERVED
 CVE-2019-1846 (A vulnerability in the Multiprotocol Label Switching (MPLS) Operations ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1845
 	RESERVED
 CVE-2019-1844 (A vulnerability in certain attachment detection mechanisms of the Cisc ...)
@@ -27146,9 +27146,9 @@ CVE-2019-1835 (A vulnerability in the CLI of Cisco Aironet Access Points (APs) c
 CVE-2019-1834 (A vulnerability in the internal packet processing of Cisco Aironet Ser ...)
 	NOT-FOR-US: Cisco
 CVE-2019-1833 (A vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Secu ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1832 (A vulnerability in the detection engine of Cisco Firepower Threat Defe ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1831 (A vulnerability in the email message scanning of Cisco AsyncOS Softwar ...)
 	NOT-FOR-US: Cisco
 CVE-2019-1830 (A vulnerability in Locally Significant Certificate (LSC) management fo ...)
@@ -27162,21 +27162,21 @@ CVE-2019-1827 (A vulnerability in the Online Help web service of Cisco Small Bus
 CVE-2019-1826 (A vulnerability in the quality of service (QoS) feature of Cisco Airon ...)
 	NOT-FOR-US: Cisco
 CVE-2019-1825 (A vulnerability in the web-based management interface of Cisco Prime I ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1824 (A vulnerability in the web-based management interface of Cisco Prime I ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1823 (A vulnerability in the web-based management interface of Cisco Prime I ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1822 (A vulnerability in the web-based management interface of Cisco Prime I ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1821 (A vulnerability in the web-based management interface of Cisco Prime I ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1820 (A vulnerability in the web-based management interface of Cisco Prime I ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1819 (A vulnerability in the web-based management interface of Cisco Prime I ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1818 (A vulnerability in the web-based management interface of Cisco Prime I ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1817 (A vulnerability in the web proxy functionality of Cisco AsyncOS Softwa ...)
 	NOT-FOR-US: Cisco
 CVE-2019-1816 (A vulnerability in the log subscription subsystem of the Cisco Web Sec ...)
@@ -27184,23 +27184,23 @@ CVE-2019-1816 (A vulnerability in the log subscription subsystem of the Cisco We
 CVE-2019-1815
 	RESERVED
 CVE-2019-1814 (A vulnerability in the interactions between the DHCP and TFTP features ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1813 (A vulnerability in the Image Signature Verification feature of Cisco N ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1812 (A vulnerability in the Image Signature Verification feature of Cisco N ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1811 (A vulnerability in the Image Signature Verification feature of Cisco N ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1810 (A vulnerability in the Image Signature Verification feature used in an ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1809 (A vulnerability in the Image Signature Verification feature of Cisco N ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1808 (A vulnerability in the Image Signature Verification feature of Cisco N ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1807 (A vulnerability in the session management functionality of the web UI  ...)
 	NOT-FOR-US: Cisco
 CVE-2019-1806 (A vulnerability in the Simple Network Management Protocol (SNMP) input ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1805 (A vulnerability in certain access control mechanisms for the Secure Sh ...)
 	NOT-FOR-US: Cisco
 CVE-2019-1804 (A vulnerability in the SSH key management for the Cisco Nexus 9000 Ser ...)
@@ -27228,7 +27228,7 @@ CVE-2019-1797 (A vulnerability in the web-based management interface of Cisco Wi
 CVE-2019-1796 (A vulnerability in the handling of Inter-Access Point Protocol (IAPP)  ...)
 	NOT-FOR-US: Cisco
 CVE-2019-1795 (A vulnerability in the CLI of Cisco FXOS Software and Cisco NX-OS Soft ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1794 (A vulnerability in the search path processing of Cisco Directory Conne ...)
 	NOT-FOR-US: Cisco
 CVE-2019-1793
@@ -27236,9 +27236,9 @@ CVE-2019-1793
 CVE-2019-1792 (A vulnerability in the URL block page of Cisco Umbrella could allow an ...)
 	NOT-FOR-US: Cisco
 CVE-2019-1791 (A vulnerability in the CLI of Cisco NX-OS Software could allow an auth ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1790 (A vulnerability in the CLI of Cisco NX-OS Software could allow an auth ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1789 [An out-of-bounds heap read condition when scanning PE files]
 	RESERVED
 	{DLA-1759-1}
@@ -27269,39 +27269,39 @@ CVE-2019-1785 (A vulnerability in the RAR file scanning functionality of Clam An
 	[jessie] - clamav <not-affected> (Vulnerable code introduced later)
 	NOTE: https://blog.clamav.net/2019/03/clamav-01012-and-01003-patches-have.html
 CVE-2019-1784 (A vulnerability in the CLI of Cisco NX-OS Software could allow an auth ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1783 (A vulnerability in the CLI of Cisco NX-OS Software could allow an auth ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1782 (A vulnerability in the CLI of Cisco FXOS Software and Cisco NX-OS Soft ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1781 (A vulnerability in the CLI of Cisco FXOS Software and Cisco NX-OS Soft ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1780
 	RESERVED
 CVE-2019-1779 (A vulnerability in the CLI of Cisco FXOS Software and Cisco NX-OS Soft ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1778 (A vulnerability in the CLI of Cisco NX-OS Software could allow an auth ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1777 (A vulnerability in the web-based interface of the Cisco Registered Env ...)
 	NOT-FOR-US: Cisco
 CVE-2019-1776 (A vulnerability in the CLI of Cisco NX-OS Software could allow an auth ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1775 (A vulnerability in the CLI of Cisco NX-OS Software could allow an auth ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1774 (A vulnerability in the CLI of Cisco NX-OS Software could allow an auth ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1773 (A vulnerability in the Cisco Webex Network Recording Player for Micros ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1772 (A vulnerability in the Cisco Webex Network Recording Player for Micros ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1771 (A vulnerability in the Cisco Webex Network Recording Player for Micros ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1770 (A vulnerability in the CLI of Cisco NX-OS Software could allow an auth ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1769 (A vulnerability in the CLI of Cisco NX-OS Software could allow an auth ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1768 (A vulnerability in the implementation of a specific CLI command for Ci ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2019-1767 (Multiple vulnerabilities in the implementation of a specific CLI comma ...)
 	NOT-FOR-US: Cisco
 CVE-2019-1766 (A vulnerability in the web-based management interface of Session Initi ...)
@@ -120459,11 +120459,11 @@ CVE-2017-6003 (dotCMS 3.7.0 has XSS reachable from ext/languages_manager/edit_la
 CVE-2017-6002 (Subrion CMS 4.0.5.10 has CSRF in admin/blog/add/. The attacker can add ...)
 	NOT-FOR-US: Subrion CMS
 CVE-2014-9919 (An issue was discovered in Bilboplanet 2.0. Stored XSS exists in the f ...)
-	TODO: check
+	NOT-FOR-US: Bilboplanet
 CVE-2014-9918 (An issue was discovered in Bilboplanet 2.0. Stored XSS exists in the u ...)
-	TODO: check
+	NOT-FOR-US: Bilboplanet
 CVE-2014-9917 (An issue was discovered in Bilboplanet 2.0. There is a stored XSS vuln ...)
-	TODO: check
+	NOT-FOR-US: Bilboplanet
 CVE-2014-9916 (Multiple cross-site scripting (XSS) vulnerabilities in Bilboplanet 2.0 ...)
 	NOT-FOR-US: Bilboplanet
 CVE-2017-6001 (Race condition in kernel/events/core.c in the Linux kernel before 4.9. ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/fb3fb841a0ecb2cb0371fbb87f68c343ed04a15d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/fb3fb841a0ecb2cb0371fbb87f68c343ed04a15d
You're receiving this email because of your account on salsa.debian.org.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190516/ffdae422/attachment.html>


More information about the debian-security-tracker-commits mailing list