[Git][security-tracker-team/security-tracker][master] Process two NFUs

Salvatore Bonaccorso carnil at debian.org
Mon May 20 13:28:22 BST 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
c6d8cd22 by Salvatore Bonaccorso at 2019-05-20T12:26:10Z
Process two NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9,7 +9,7 @@ CVE-2019-12200
 CVE-2019-12199
 	RESERVED
 CVE-2019-12198 (In GoHttp through 2017-07-25, there is a stack-based buffer over-read  ...)
-	TODO: check
+	NOT-FOR-US: GoHttp
 CVE-2019-12197
 	RESERVED
 CVE-2019-12196
@@ -35,7 +35,7 @@ CVE-2019-12187
 CVE-2019-12186
 	RESERVED
 CVE-2019-12185 (eLabFTW 1.8.5 is vulnerable to arbitrary file uploads via the /app/con ...)
-	TODO: check
+	NOT-FOR-US: eLabFTW
 CVE-2019-12184 (There is XSS in browser/components/MarkdownPreview.js in BoostIO Boost ...)
 	NOT-FOR-US: Boostnote
 CVE-2019-12183



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/c6d8cd22b3b04d140f6c8280e6c37be50005a032

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/c6d8cd22b3b04d140f6c8280e6c37be50005a032
You're receiving this email because of your account on salsa.debian.org.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190520/931da5ff/attachment.html>


More information about the debian-security-tracker-commits mailing list