[Git][security-tracker-team/security-tracker][master] Process some more NFUs

Salvatore Bonaccorso carnil at debian.org
Mon Aug 10 21:35:49 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
dc24464c by Salvatore Bonaccorso at 2020-08-10T22:35:21+02:00
Process some more NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -11078,15 +11078,15 @@ CVE-2020-12784 (cPanel before 86.0.14 allows remote attackers to trigger a bandw
 CVE-2020-12782 (Openfind MailGates contains a Command Injection flaw, when receiving e ...)
 	NOT-FOR-US: Openfind MailGates
 CVE-2020-12781 (Combodo iTop contains a cross-site request forgery (CSRF) vulnerabilit ...)
-	TODO: check
+	NOT-FOR-US: Combodo iTop
 CVE-2020-12780 (A security misconfiguration exists in Combodo iTop, which can expose s ...)
-	TODO: check
+	NOT-FOR-US: Combodo iTop
 CVE-2020-12779 (Combodo iTop contains a stored Cross-site Scripting vulnerability, whi ...)
-	TODO: check
+	NOT-FOR-US: Combodo iTop
 CVE-2020-12778 (Combodo iTop does not validate inputted parameters, attackers can inje ...)
-	TODO: check
+	NOT-FOR-US: Combodo iTop
 CVE-2020-12777 (A function in Combodo iTop contains a vulnerability of Broken Access C ...)
-	TODO: check
+	NOT-FOR-US: Combodo iTop
 CVE-2020-12776
 	RESERVED
 CVE-2020-12775
@@ -20807,15 +20807,15 @@ CVE-2020-9531 (An issue was discovered on Xiaomi MIUI V11.0.5.0.QFAEUXM devices.
 CVE-2020-9530 (An issue was discovered on Xiaomi MIUI V11.0.5.0.QFAEUXM devices. The  ...)
 	NOT-FOR-US: Xiaomi
 CVE-2020-9529 (Firmware developed by Shenzhen Hichip Vision Technology (V6 through V2 ...)
-	TODO: check
+	NOT-FOR-US: Firmware developed by Shenzhen Hichip Vision Technology
 CVE-2020-9528 (Firmware developed by Shenzhen Hichip Vision Technology (V6 through V2 ...)
-	TODO: check
+	NOT-FOR-US: Firmware developed by Shenzhen Hichip Vision Technology
 CVE-2020-9527 (Firmware developed by Shenzhen Hichip Vision Technology (V6 through V2 ...)
-	TODO: check
+	NOT-FOR-US: Firmware developed by Shenzhen Hichip Vision Technology
 CVE-2020-9526 (CS2 Network P2P through 3.x, as used in millions of Internet of Things ...)
-	TODO: check
+	NOT-FOR-US: CS2 Network P2P
 CVE-2020-9525 (CS2 Network P2P through 3.x, as used in millions of Internet of Things ...)
-	TODO: check
+	NOT-FOR-US: CS2 Network P2P
 CVE-2020-9524 (Cross Site scripting vulnerability on Micro Focus Enterprise Server an ...)
 	NOT-FOR-US: Micro Focus
 CVE-2020-9523 (Insufficiently protected credentials vulnerability on Micro Focus ente ...)
@@ -21575,7 +21575,7 @@ CVE-2020-9245
 CVE-2020-9244
 	RESERVED
 CVE-2020-9243 (HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-9242
 	RESERVED
 CVE-2020-9241
@@ -29230,7 +29230,7 @@ CVE-2020-6147
 CVE-2020-6146
 	RESERVED
 CVE-2020-6145 (An SQL injection vulnerability exists in the frappe.desk.reportview.ge ...)
-	TODO: check
+	NOT-FOR-US: ERPNext
 CVE-2020-6144
 	RESERVED
 CVE-2020-6143



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dc24464c98ed0f5b03890a3ffbb0da063fe9f5a8

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dc24464c98ed0f5b03890a3ffbb0da063fe9f5a8
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200810/64c80edd/attachment.html>


More information about the debian-security-tracker-commits mailing list