[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso carnil at debian.org
Fri Aug 7 12:37:51 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
6e458372 by Salvatore Bonaccorso at 2020-08-07T13:37:15+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -2314,23 +2314,23 @@ CVE-2020-16229 (Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. P
 CVE-2020-16228
 	RESERVED
 CVE-2020-16227 (Delta Electronics TPEditor Versions 1.97 and prior. An improper input  ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2020-16226
 	RESERVED
 CVE-2020-16225 (Delta Electronics TPEditor Versions 1.97 and prior. A write-what-where ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2020-16224
 	RESERVED
 CVE-2020-16223 (Delta Electronics TPEditor Versions 1.97 and prior. A heap-based buffe ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2020-16222
 	RESERVED
 CVE-2020-16221 (Delta Electronics TPEditor Versions 1.97 and prior. A stack-based buff ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2020-16220
 	RESERVED
 CVE-2020-16219 (Delta Electronics TPEditor Versions 1.97 and prior. An out-of-bounds r ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2020-16218
 	RESERVED
 CVE-2020-16217 (Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. A doubl ...)
@@ -3523,9 +3523,9 @@ CVE-2020-15704 [ppp ZDI-CAN-11504]
 CVE-2020-15703
 	RESERVED
 CVE-2020-15702 (TOCTOU Race Condition vulnerability in apport allows a local attacker  ...)
-	TODO: check
+	NOT-FOR-US: Apport
 CVE-2020-15701 (An unhandled exception in check_ignored() in apport/report.py can be e ...)
-	TODO: check
+	NOT-FOR-US: Apport
 CVE-2020-15700 (An issue was discovered in Joomla! through 3.9.19. A missing token che ...)
 	NOT-FOR-US: Joomla!
 CVE-2020-15699 (An issue was discovered in Joomla! through 3.9.19. Missing validation  ...)
@@ -11693,7 +11693,7 @@ CVE-2020-12443 (BigBlueButton before 2.2.6 allows remote attackers to read arbit
 CVE-2020-12442 (Ivanti Avalanche 6.3 allows a SQL injection that is vaguely associated ...)
 	NOT-FOR-US: Ivanti
 CVE-2020-12441 (Denial-of-Service (DoS) in Ivanti Service Manager HEAT Remote Control  ...)
-	TODO: check
+	NOT-FOR-US: Ivanti
 CVE-2020-12440
 	REJECTED
 CVE-2020-12439 (Grin before 3.1.0 allows attackers to adversely affect availability of ...)
@@ -13009,7 +13009,7 @@ CVE-2020-11939 (In nDPI through 3.2 Stable, the SSH protocol dissector has multi
 CVE-2020-11938 (In JetBrains TeamCity 2018.2 through 2019.2.1, a project administrator ...)
 	NOT-FOR-US: JetBrains TeamCity
 CVE-2020-11937 (In whoopsie, parse_report() from whoopsie.c allows a local attacker to ...)
-	TODO: check
+	NOT-FOR-US: Whoopsie
 CVE-2020-11936
 	RESERVED
 CVE-2020-11935



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6e4583724be47ae2d98439535533302ea36b4332

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6e4583724be47ae2d98439535533302ea36b4332
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200807/6c38d825/attachment.html>


More information about the debian-security-tracker-commits mailing list