[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff jmm at debian.org
Wed Sep 18 08:00:03 BST 2019



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
3837ddb6 by Moritz Muehlenhoff at 2019-09-18T06:59:45Z
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -43985,161 +43985,161 @@ CVE-2019-1308
 CVE-2019-1307
 	RESERVED
 CVE-2019-1306 (A remote code execution vulnerability exists when Azure DevOps Server  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1305 (A Cross-site Scripting (XSS) vulnerability exists when Team Foundation ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1304
 	RESERVED
 CVE-2019-1303 (An elevation of privilege vulnerability exists when the Windows AppX D ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1302 (An elevation of privilege vulnerability exists when a ASP.NET Core web ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1301 (A denial of service vulnerability exists when .NET Core improperly han ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1300 (A remote code execution vulnerability exists in the way that the Chakr ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1299 (An information disclosure vulnerability exists when Microsoft Edge bas ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1298 (A remote code execution vulnerability exists in the way that the Chakr ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1297 (A remote code execution vulnerability exists in Microsoft Excel softwa ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1296 (A remote code execution vulnerability exists in Microsoft SharePoint w ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1295 (A remote code execution vulnerability exists in Microsoft SharePoint w ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1294 (A security feature bypass exists when Windows Secure Boot improperly r ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1293 (An information disclosure vulnerability exists in Windows when the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1292 (A denial of service vulnerability exists when Windows improperly handl ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1291 (A remote code execution vulnerability exists in the Windows Remote Des ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1290 (A remote code execution vulnerability exists in the Windows Remote Des ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1289 (An elevation of privilege vulnerability exists when the Windows Update ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1288
 	RESERVED
 CVE-2019-1287 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1286 (An information disclosure vulnerability exists when the Windows GDI co ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1285 (An elevation of privilege vulnerability exists in Windows when the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1284 (An elevation of privilege vulnerability exists when DirectX improperly ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1283 (An information disclosure vulnerability exists in the way that Microso ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1282 (An information disclosure exists in the Windows Common Log File System ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1281
 	RESERVED
 CVE-2019-1280 (A remote code execution vulnerability exists in Microsoft Windows that ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1279
 	RESERVED
 CVE-2019-1278 (An elevation of privilege vulnerability exists in the way that the uni ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1277 (An elevation of privilege vulnerability exists in Windows Audio Servic ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1276
 	RESERVED
 CVE-2019-1275
 	RESERVED
 CVE-2019-1274 (An information disclosure vulnerability exists when the Windows kernel ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1273 (A cross-site-scripting (XSS) vulnerability exists when Active Director ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1272 (An elevation of privilege vulnerability exists when Windows improperly ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1271 (An elevation of privilege exists in hdAudio.sys which may lead to an o ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1270 (An elevation of privilege vulnerability exists in Windows store instal ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1269 (An elevation of privilege vulnerability exists when Windows improperly ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1268 (An elevation of privilege exists when Winlogon does not properly handl ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1267 (An elevation of privilege vulnerability exists in Microsoft Compatibil ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1266 (A spoofing vulnerability exists in Microsoft Exchange Server when Outl ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1265 (A security feature bypass vulnerability exists when Microsoft Yammer A ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1264 (A security feature bypass vulnerability exists when Microsoft Office i ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1263 (An information disclosure vulnerability exists when Microsoft Excel im ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1262 (A cross-site-scripting (XSS) vulnerability exists when Microsoft Share ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1261 (A spoofing vulnerability exists in Microsoft SharePoint when it improp ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1260 (An elevation of privilege vulnerability exists in Microsoft SharePoint ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1259 (A spoofing vulnerability exists in Microsoft SharePoint when it improp ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1258 (An elevation of privilege vulnerability exists in Azure Active Directo ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1257 (A remote code execution vulnerability exists in Microsoft SharePoint w ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1256 (An elevation of privilege vulnerability exists in Windows when the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1255
 	RESERVED
 CVE-2019-1254 (An information disclosure vulnerability exists when Windows Hyper-V wr ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1253 (An elevation of privilege vulnerability exists when the Windows AppX D ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1252 (An information disclosure vulnerability exists when the Windows GDI co ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1251 (An information disclosure vulnerability exists when DirectWrite improp ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1250 (A remote code execution vulnerability exists when the Windows Jet Data ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1249 (A remote code execution vulnerability exists when the Windows Jet Data ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1248 (A remote code execution vulnerability exists when the Windows Jet Data ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1247 (A remote code execution vulnerability exists when the Windows Jet Data ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1246 (A remote code execution vulnerability exists when the Windows Jet Data ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1245 (An information disclosure vulnerability exists when DirectWrite improp ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1244 (An information disclosure vulnerability exists when DirectWrite improp ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1243 (A remote code execution vulnerability exists when the Windows Jet Data ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1242 (A remote code execution vulnerability exists when the Windows Jet Data ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1241 (A remote code execution vulnerability exists when the Windows Jet Data ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1240 (A remote code execution vulnerability exists when the Windows Jet Data ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1239
 	RESERVED
 CVE-2019-1238
 	RESERVED
 CVE-2019-1237 (A remote code execution vulnerability exists in the way that the Chakr ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1236 (A remote code execution vulnerability exists in the way that the VBScr ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1235 (An elevation of privilege vulnerability exists in Windows Text Service ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1234
 	RESERVED
 CVE-2019-1233 (A denial of service vulnerability exists in Microsoft Exchange Server  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1232 (An elevation of privilege vulnerability exists when the Diagnostics Hu ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1231 (An information disclosure vulnerability exists in the way Rome SDK han ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1230
 	RESERVED
 CVE-2019-1229 (An elevation of privilege vulnerability exists in Dynamics On-Premise  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1228 (An information disclosure vulnerability exists when the Windows kernel ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1227 (An information disclosure vulnerability exists when the Windows kernel ...)
@@ -44155,33 +44155,33 @@ CVE-2019-1223 (A denial of service vulnerability exists in Remote Desktop Protoc
 CVE-2019-1222 (A remote code execution vulnerability exists in Remote Desktop Service ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1221 (A remote code execution vulnerability exists in the way that the scrip ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1220 (A security feature bypass vulnerability exists when Microsoft Browsers ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1219 (An information disclosure vulnerability exists when the Windows Transa ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1218 (A spoofing vulnerability exists in the way Microsoft Outlook iOS softw ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1217 (A remote code execution vulnerability exists in the way that the Chakr ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1216 (An information disclosure vulnerability exists when DirectX improperly ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1215 (An elevation of privilege vulnerability exists in the way that ws2ifsl ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1214 (An elevation of privilege vulnerability exists when the Windows Common ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1213 (A memory corruption vulnerability exists in the Windows Server DHCP se ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1212 (A memory corruption vulnerability exists in the Windows Server DHCP se ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1211 (An elevation of privilege vulnerability exists in Git for Visual Studi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1210
 	RESERVED
 CVE-2019-1209 (An information disclosure vulnerability exists in Lync 2013, aka 'Lync ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1208 (A remote code execution vulnerability exists in the way that the VBScr ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1207
 	RESERVED
 CVE-2019-1206 (A memory corruption vulnerability exists in the Windows Server DHCP se ...)
@@ -44223,7 +44223,7 @@ CVE-2019-1189
 CVE-2019-1188 (A remote code execution vulnerability exists in Microsoft Windows that ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1187 (A denial of service vulnerability exists when the XmlLite runtime (Xml ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1186 (An elevation of privilege vulnerability exists in the way that the wcm ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1185 (An elevation of privilege vulnerability exists due to a stack corrupti ...)
@@ -44253,9 +44253,9 @@ CVE-2019-1174 (An elevation of privilege vulnerability exists in the way that th
 CVE-2019-1173 (An elevation of privilege vulnerability exists in the way that the Psm ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1172 (An information disclosure vulnerability exists in Azure Active Directo ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1171 (An information disclosure vulnerability exists in SymCrypt during the  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1170 (An elevation of privilege vulnerability exists when reparse points are ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1169 (An elevation of privilege vulnerability exists in Windows when the Win ...)
@@ -44271,7 +44271,7 @@ CVE-2019-1165
 CVE-2019-1164 (An elevation of privilege vulnerability exists when the Windows kernel ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1163 (A security feature bypass exists when Windows incorrectly validates CA ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1162 (An elevation of privilege vulnerability exists when Windows improperly ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1161 (An elevation of privilege vulnerability exists when the MpSigStub.exe  ...)
@@ -44313,7 +44313,7 @@ CVE-2019-1144 (A remote code execution vulnerability exists when the Windows fon
 CVE-2019-1143 (An information disclosure vulnerability exists when the Windows GDI co ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1142 (An elevation of privilege vulnerability exists when the .NET Framework ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1141 (A remote code execution vulnerability exists in the way that the Chakr ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1140 (A remote code execution vulnerability exists in the way that the Chakr ...)
@@ -44321,7 +44321,7 @@ CVE-2019-1140 (A remote code execution vulnerability exists in the way that the
 CVE-2019-1139 (A remote code execution vulnerability exists in the way that the Chakr ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1138 (A remote code execution vulnerability exists in the way that the Chakr ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-1137 (A cross-site-scripting (XSS) vulnerability exists when Microsoft Excha ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-1136 (An elevation of privilege vulnerability exists in Microsoft Exchange S ...)
@@ -44746,7 +44746,7 @@ CVE-2019-0930 (An information disclosure vulnerability exists when Internet Expl
 CVE-2019-0929 (A remote code execution vulnerability exists when Internet Explorer im ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-0928 (A denial of service vulnerability exists when Microsoft Hyper-V on a h ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-0927 (A remote code execution vulnerability exists in the way that the Chakr ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-0926 (A remote code execution vulnerability exists when Microsoft Edge impro ...)
@@ -45031,9 +45031,9 @@ CVE-2019-0790 (A remote code execution vulnerability exists when the Microsoft X
 CVE-2019-0789
 	RESERVED
 CVE-2019-0788 (A remote code execution vulnerability exists in the Windows Remote Des ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-0787 (A remote code execution vulnerability exists in the Windows Remote Des ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2019-0786 (An elevation of privilege vulnerability exists in the Microsoft Server ...)
 	NOT-FOR-US: Microsoft
 CVE-2019-0785 (A memory corruption vulnerability exists in the Windows Server DHCP se ...)
@@ -47278,7 +47278,7 @@ CVE-2019-0174 (Logic condition in specific microprocessors may allow an authenti
 	NOT-FOR-US: RamBleed hardware vulnerability
 	NOTE: https://rambleed.com/
 CVE-2019-0173 (Authentication bypass in the web console for Intel(R) Raid Web Console ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2019-0172 (A logic issue in Intel Unite(R) Client for Android prior to version 4. ...)
 	NOT-FOR-US: Intel Unite(R) Client for Android
 CVE-2019-0171 (Improper directory permissions in the installer for Intel(R) Quartus(R ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/3837ddb6bccdb30a3540e0a95713e92c7eb4fe21

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/3837ddb6bccdb30a3540e0a95713e92c7eb4fe21
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190918/7391c648/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list