[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso carnil at debian.org
Thu Apr 30 22:46:09 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5d7efdbd by Salvatore Bonaccorso at 2020-04-30T23:45:36+02:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1108,7 +1108,7 @@ CVE-2020-12103 (In Tiny File Manager 2.4.1 there is a vulnerability in the ajax
 CVE-2020-12102 (In Tiny File Manager 2.4.1, there is a Path Traversal vulnerability in ...)
 	NOT-FOR-US: Tiny File Manager
 CVE-2020-12101 (The address-management feature in xt:Commerce 5.1 to 6.2.2 allows remo ...)
-	TODO: check
+	NOT-FOR-US: xt:Commerce
 CVE-2020-12100
 	RESERVED
 CVE-2020-12099
@@ -16771,7 +16771,7 @@ CVE-2020-6012
 CVE-2020-6011
 	RESERVED
 CVE-2020-6010 (LearnPress Wordpress plugin version prior and including 3.2.6.7 is vul ...)
-	TODO: check
+	NOT-FOR-US: LearnPress Wordpress plugin
 CVE-2020-6009 (LearnDash Wordpress plugin version below 3.1.6 is vulnerable to Unauth ...)
 	NOT-FOR-US: LearnDash Wordpress plugin
 CVE-2020-6008 (LifterLMS Wordpress plugin version below 3.37.15 is vulnerable to arbi ...)
@@ -29182,17 +29182,17 @@ CVE-2019-19221 (In Libarchive 3.4.0, archive_wstring_append_from_mbs in archive_
 	NOTE: https://github.com/libarchive/libarchive/commit/22b1db9d46654afc6f0c28f90af8cdc84a199f41
 	NOTE: https://github.com/libarchive/libarchive/issues/1276
 CVE-2019-19220 (BMC Control-M/Agent 7.0.00.000 allows OS Command Injection (issue 2 of ...)
-	TODO: check
+	NOT-FOR-US: BMC Control-M/Agent
 CVE-2019-19219 (BMC Control-M/Agent 7.0.00.000 allows Arbitrary File Download. ...)
-	TODO: check
+	NOT-FOR-US: BMC Control-M/Agent
 CVE-2019-19218 (BMC Control-M/Agent 7.0.00.000 has Insecure Password Storage. ...)
-	TODO: check
+	NOT-FOR-US: BMC Control-M/Agent
 CVE-2019-19217 (BMC Control-M/Agent 7.0.00.000 allows OS Command Injection. ...)
-	TODO: check
+	NOT-FOR-US: BMC Control-M/Agent
 CVE-2019-19216 (BMC Control-M/Agent 7.0.00.000 has an Insecure File Copy. ...)
-	TODO: check
+	NOT-FOR-US: BMC Control-M/Agent
 CVE-2019-19215 (A buffer overflow vulnerability in BMC Control-M/Agent 7.0.00.000 when ...)
-	TODO: check
+	NOT-FOR-US: BMC Control-M/Agent
 CVE-2019-19214
 	RESERVED
 CVE-2019-19213
@@ -29309,7 +29309,7 @@ CVE-2019-19167
 CVE-2019-19166
 	RESERVED
 CVE-2019-19165 (AxECM.cab(ActiveX Control) in Inogard Ebiz4u contains a vulnerability  ...)
-	TODO: check
+	NOT-FOR-US: Inogard Ebiz4u
 CVE-2019-19164
 	RESERVED
 CVE-2019-19163
@@ -29452,9 +29452,9 @@ CVE-2019-19103
 CVE-2019-19102 (A directory traversal vulnerability in SharpZipLib used in the upgrade ...)
 	TODO: check
 CVE-2019-19101 (A missing secure communication definition and an incomplete TLS valida ...)
-	TODO: check
+	NOT-FOR-US: B&R Automation Studio
 CVE-2019-19100 (A privilege escalation vulnerability in the upgrade service in B&R ...)
-	TODO: check
+	NOT-FOR-US: B&R Automation Studio
 CVE-2019-19099
 	RESERVED
 CVE-2019-19098



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5d7efdbd7d8b0431a618c62d7bd4ad4f759f40df

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5d7efdbd7d8b0431a618c62d7bd4ad4f759f40df
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200430/5920feed/attachment.html>


More information about the debian-security-tracker-commits mailing list