[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso carnil at debian.org
Wed Dec 9 08:45:32 GMT 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0d57d9d9 by Salvatore Bonaccorso at 2020-12-09T09:45:14+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -752,9 +752,9 @@ CVE-2020-29542
 CVE-2020-29541
 	RESERVED
 CVE-2020-29540 (API calls in the Translation API feature in Systran Pure Neural Server ...)
-	TODO: check
+	NOT-FOR-US: Systran Pure Neural Server
 CVE-2020-29539 (A Cross-Site Scripting (XSS) issue in WebUI Translation in Systran Pur ...)
-	TODO: check
+	NOT-FOR-US: Systran Pure Neural Server
 CVE-2020-29538
 	RESERVED
 CVE-2020-29537
@@ -2248,7 +2248,7 @@ CVE-2020-28948 (Archive_Tar through 1.4.10 allows an unserialization attack beca
 CVE-2020-28947 (In MISP 2.4.134, XSS exists in the template element index view because ...)
 	NOT-FOR-US: MISP
 CVE-2020-28946 (An improper webserver configuration on Plum IK-401 devices with firmwa ...)
-	TODO: check
+	NOT-FOR-US: Plum IK-401 devices
 CVE-2020-28945
 	RESERVED
 CVE-2020-28944
@@ -11534,7 +11534,7 @@ CVE-2020-26257
 CVE-2020-26256 (Fast-csv is an npm package for parsing and formatting CSVs or any othe ...)
 	TODO: check
 CVE-2020-26255 (Kirby is a CMS. In Kirby CMS (getkirby/cms) before version 3.4.5, and  ...)
-	TODO: check
+	NOT-FOR-US: Kirby CMS
 CVE-2020-26254 (omniauth-apple is the OmniAuth strategy for "Sign In with Apple" (Ruby ...)
 	TODO: check
 CVE-2020-26253 (Kirby is a CMS. In Kirby CMS (getkirby/cms) before version 3.3.6, and  ...)
@@ -12224,7 +12224,7 @@ CVE-2020-25957
 CVE-2020-25956
 	RESERVED
 CVE-2020-25955 (SourceCodester Student Management System Project in PHP version 1.0 is ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Student Management System Project
 CVE-2020-25954
 	RESERVED
 CVE-2020-25953
@@ -12356,7 +12356,7 @@ CVE-2020-25891
 CVE-2020-25890 (The web application of Kyocera printer (ECOSYS M2640IDW) is affected b ...)
 	NOT-FOR-US: Kyocera printer
 CVE-2020-25889 (Online Bus Booking System Project Using PHP/MySQL version 1.0 has SQL  ...)
-	TODO: check
+	NOT-FOR-US: Online Bus Booking System Project Using PHP/MySQL
 CVE-2020-25888
 	RESERVED
 CVE-2020-25887
@@ -50165,7 +50165,7 @@ CVE-2020-10148
 CVE-2020-10147
 	RESERVED
 CVE-2020-10146 (The Microsoft Teams online service contains a stored cross-site script ...)
-	TODO: check
+	NOT-FOR-US: Microsoft Teams
 CVE-2020-10145
 	RESERVED
 CVE-2020-10144



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0d57d9d95d58efcba0d37c4293f1db1f17934536

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0d57d9d95d58efcba0d37c4293f1db1f17934536
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201209/92921c88/attachment.html>


More information about the debian-security-tracker-commits mailing list