[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso carnil at debian.org
Sat Aug 8 09:10:29 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
2f9fea38 by security tracker role at 2020-08-08T08:10:21+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,127 @@
+CVE-2020-17445
+	RESERVED
+CVE-2020-17444
+	RESERVED
+CVE-2020-17443
+	RESERVED
+CVE-2020-17442
+	RESERVED
+CVE-2020-17441
+	RESERVED
+CVE-2020-17440
+	RESERVED
+CVE-2020-17439
+	RESERVED
+CVE-2020-17438
+	RESERVED
+CVE-2020-17437
+	RESERVED
+CVE-2020-17436
+	RESERVED
+CVE-2020-17435
+	RESERVED
+CVE-2020-17434
+	RESERVED
+CVE-2020-17433
+	RESERVED
+CVE-2020-17432
+	RESERVED
+CVE-2020-17431
+	RESERVED
+CVE-2020-17430
+	RESERVED
+CVE-2020-17429
+	RESERVED
+CVE-2020-17428
+	RESERVED
+CVE-2020-17427
+	RESERVED
+CVE-2020-17426
+	RESERVED
+CVE-2020-17425
+	RESERVED
+CVE-2020-17424
+	RESERVED
+CVE-2020-17423
+	RESERVED
+CVE-2020-17422
+	RESERVED
+CVE-2020-17421
+	RESERVED
+CVE-2020-17420
+	RESERVED
+CVE-2020-17419
+	RESERVED
+CVE-2020-17418
+	RESERVED
+CVE-2020-17417
+	RESERVED
+CVE-2020-17416
+	RESERVED
+CVE-2020-17415
+	RESERVED
+CVE-2020-17414
+	RESERVED
+CVE-2020-17413
+	RESERVED
+CVE-2020-17412
+	RESERVED
+CVE-2020-17411
+	RESERVED
+CVE-2020-17410
+	RESERVED
+CVE-2020-17409
+	RESERVED
+CVE-2020-17408
+	RESERVED
+CVE-2020-17407
+	RESERVED
+CVE-2020-17406
+	RESERVED
+CVE-2020-17405
+	RESERVED
+CVE-2020-17404
+	RESERVED
+CVE-2020-17403
+	RESERVED
+CVE-2020-17402
+	RESERVED
+CVE-2020-17401
+	RESERVED
+CVE-2020-17400
+	RESERVED
+CVE-2020-17399
+	RESERVED
+CVE-2020-17398
+	RESERVED
+CVE-2020-17397
+	RESERVED
+CVE-2020-17396
+	RESERVED
+CVE-2020-17395
+	RESERVED
+CVE-2020-17394
+	RESERVED
+CVE-2020-17393
+	RESERVED
+CVE-2020-17392
+	RESERVED
+CVE-2020-17391
+	RESERVED
+CVE-2020-17390
+	RESERVED
+CVE-2020-17389
+	RESERVED
+CVE-2020-17388
+	RESERVED
+CVE-2020-17387
+	RESERVED
+CVE-2020-17386
+	RESERVED
+CVE-2020-17385
+	RESERVED
+CVE-2020-17384
+	RESERVED
 CVE-2020-17383
 	RESERVED
 CVE-2020-17382
@@ -67,8 +191,8 @@ CVE-2020-17354
 CVE-2020-17353 (scm/define-stencil-commands.scm in LilyPond through 2.20.0, and 2.21.x ...)
 	- lilypond <unfixed>
 	NOTE: http://git.savannah.gnu.org/gitweb/?p=lilypond.git;a=commit;h=b84ea4740f3279516905c5db05f4074e777c16ff
-CVE-2020-17352
-	RESERVED
+CVE-2020-17352 (Two OS command injection vulnerabilities in the User Portal of Sophos  ...)
+	TODO: check
 CVE-2020-17351
 	RESERVED
 CVE-2020-17350
@@ -2443,12 +2567,12 @@ CVE-2020-16171
 	RESERVED
 CVE-2020-16170
 	RESERVED
-CVE-2020-16169
-	RESERVED
+CVE-2020-16169 (Temi Robox OS 117.21 through 119.24 allows Authentication Bypass via a ...)
+	TODO: check
 CVE-2020-16168 (Temi firmware 20190419.165201 does not properly verify that the source ...)
 	NOT-FOR-US: Temi firmware
-CVE-2020-16167
-	RESERVED
+CVE-2020-16167 (Temi Launcher OS 11969 through 13146 has Missing Authentication for a  ...)
+	TODO: check
 CVE-2020-16166 (The Linux kernel through 5.7.11 allows remote attackers to make observ ...)
 	- linux <unfixed>
 	NOTE: https://git.kernel.org/linus/f227e3ec3b5cad859ad15666874405e8c1bbc1d4
@@ -3013,8 +3137,8 @@ CVE-2020-15909
 	RESERVED
 CVE-2020-15908 (tar/TarFileReader.cpp in Cauldron cbang (aka C-Bang or C!) before 1.6. ...)
 	NOT-FOR-US: Cauldron cbang
-CVE-2020-15907
-	RESERVED
+CVE-2020-15907 (In Mahara 19.04 before 19.04.6, 19.10 before 19.10.4, and 20.04 before ...)
+	TODO: check
 CVE-2020-15906
 	RESERVED
 CVE-2020-15905
@@ -3564,7 +3688,7 @@ CVE-2020-15690
 	RESERVED
 CVE-2020-15689 (Appweb before 7.2.2 and 8.x before 8.1.0, when built with CGI support, ...)
 	NOT-FOR-US: Appweb
-CVE-2020-15688 (GoAhead before 5.1.2 mishandles the nonce value during Digest authenti ...)
+CVE-2020-15688 (The HTTP Digest Authentication in the GoAhead web server before 5.1.2  ...)
 	NOT-FOR-US: Embedthis GoAhead
 CVE-2020-15687
 	RESERVED
@@ -4120,10 +4244,10 @@ CVE-2020-15482
 	RESERVED
 CVE-2020-15481
 	RESERVED
-CVE-2020-15480
-	RESERVED
-CVE-2020-15479
-	RESERVED
+CVE-2020-15480 (An issue was discovered in PassMark BurnInTest through 9.1, OSForensic ...)
+	TODO: check
+CVE-2020-15479 (An issue was discovered in PassMark BurnInTest through 9.1, OSForensic ...)
+	TODO: check
 CVE-2020-15478 (The Journal theme before 3.1.0 for OpenCart allows exposure of sensiti ...)
 	NOT-FOR-US: Journal theme for OpenCart
 CVE-2020-15477 (The WebControl in RaspberryTortoise through 2012-10-28 is vulnerable t ...)
@@ -5047,30 +5171,30 @@ CVE-2020-15067
 	RESERVED
 CVE-2020-15066
 	RESERVED
-CVE-2020-15065
-	RESERVED
-CVE-2020-15064
-	RESERVED
-CVE-2020-15063
-	RESERVED
-CVE-2020-15062
-	RESERVED
-CVE-2020-15061
-	RESERVED
-CVE-2020-15060
-	RESERVED
-CVE-2020-15059
-	RESERVED
-CVE-2020-15058
-	RESERVED
-CVE-2020-15057
-	RESERVED
-CVE-2020-15056
-	RESERVED
-CVE-2020-15055
-	RESERVED
-CVE-2020-15054
-	RESERVED
+CVE-2020-15065 (DIGITUS DA-70254 4-Port Gigabit Network Hub 2.073.000.E0008 devices al ...)
+	TODO: check
+CVE-2020-15064 (DIGITUS DA-70254 4-Port Gigabit Network Hub 2.073.000.E0008 devices al ...)
+	TODO: check
+CVE-2020-15063 (DIGITUS DA-70254 4-Port Gigabit Network Hub 2.073.000.E0008 devices al ...)
+	TODO: check
+CVE-2020-15062 (DIGITUS DA-70254 4-Port Gigabit Network Hub 2.073.000.E0008 devices al ...)
+	TODO: check
+CVE-2020-15061 (Lindy 42633 4-Port USB 2.0 Gigabit Network Server 2.078.000 devices al ...)
+	TODO: check
+CVE-2020-15060 (Lindy 42633 4-Port USB 2.0 Gigabit Network Server 2.078.000 devices al ...)
+	TODO: check
+CVE-2020-15059 (Lindy 42633 4-Port USB 2.0 Gigabit Network Server 2.078.000 devices al ...)
+	TODO: check
+CVE-2020-15058 (Lindy 42633 4-Port USB 2.0 Gigabit Network Server 2.078.000 devices al ...)
+	TODO: check
+CVE-2020-15057 (TP-Link USB Network Server TL-PS310U devices before 2.079.000.t0210 al ...)
+	TODO: check
+CVE-2020-15056 (TP-Link USB Network Server TL-PS310U devices before 2.079.000.t0210 al ...)
+	TODO: check
+CVE-2020-15055 (TP-Link USB Network Server TL-PS310U devices before 2.079.000.t0210 al ...)
+	TODO: check
+CVE-2020-15054 (TP-Link USB Network Server TL-PS310U devices before 2.079.000.t0210 al ...)
+	TODO: check
 CVE-2020-15053 (An issue was discovered in Artica Proxy CE before 4.28.030.418. Reflec ...)
 	NOT-FOR-US: Artica Proxy
 CVE-2020-15052 (An issue was discovered in Artica Proxy CE before 4.28.030.418. SQL In ...)
@@ -30594,8 +30718,8 @@ CVE-2020-5414 (VMware Tanzu Application Service for VMs (2.7.x versions prior to
 	NOT-FOR-US: VMware
 CVE-2020-5413 (Spring Integration framework provides Kryo Codec implementations as an ...)
 	NOT-FOR-US: VMware
-CVE-2020-5412
-	RESERVED
+CVE-2020-5412 (Spring Cloud Netflix, versions 2.2.x prior to 2.2.4, versions 2.1.x pr ...)
+	TODO: check
 CVE-2020-5411 (When configured to enable default typing, Jackson contained a deserial ...)
 	TODO: check
 CVE-2020-5410 (Spring Cloud Config, versions 2.2.x prior to 2.2.3, versions 2.1.x pri ...)
@@ -82142,8 +82266,8 @@ CVE-2019-7007 (A directory traversal vulnerability has been found in the Avaya E
 	NOT-FOR-US: Avaya
 CVE-2019-7006 (Avaya one-X Communicator uses weak cryptographic algorithms in the cli ...)
 	NOT-FOR-US: Avaya
-CVE-2019-7005
-	RESERVED
+CVE-2019-7005 (A vulnerability was discovered in the web interface component of IP Of ...)
+	TODO: check
 CVE-2019-7004 (A Cross-Site Scripting (XSS) vulnerability in the WebUI component of I ...)
 	NOT-FOR-US: Avaya
 CVE-2019-7003 (A SQL injection vulnerability in the reporting component of Avaya Cont ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2f9fea383ebd4f642f2a84dad64faea0f665a7db

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2f9fea383ebd4f642f2a84dad64faea0f665a7db
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200808/d3c92b92/attachment.html>


More information about the debian-security-tracker-commits mailing list