[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff jmm at debian.org
Wed Jul 15 12:10:44 BST 2020



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e7ac9279 by Moritz Muehlenhoff at 2020-07-15T13:10:27+02:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -21568,9 +21568,9 @@ CVE-2020-7595 (xmlStringLenDecodeEntities in parser.c in libxml2 2.9.10 has an i
 CVE-2020-7594 (MultiTech Conduit MTCDT-LVW2-24XX 1.4.17-ocea-13592 devices allow remo ...)
 	NOT-FOR-US: MultiTech Conduit MTCDT-LVW2-24XX devices
 CVE-2020-7593 (A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS varian ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2020-7592 (A vulnerability has been identified in SIMATIC HMI Basic Panels 1st Ge ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2020-7591
 	RESERVED
 CVE-2020-7590
@@ -21578,31 +21578,31 @@ CVE-2020-7590
 CVE-2020-7589 (A vulnerability has been identified in LOGO!8 BM (incl. SIPLUS variant ...)
 	NOT-FOR-US: Siemens
 CVE-2020-7588 (A vulnerability has been identified in Opcenter Execution Discrete (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2020-7587 (A vulnerability has been identified in Opcenter Execution Discrete (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2020-7586 (A vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier  ...)
 	NOT-FOR-US: Siemens
 CVE-2020-7585 (A vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier  ...)
 	NOT-FOR-US: Siemens
 CVE-2020-7584 (A vulnerability has been identified in SIMATIC S7-200 SMART CPU family ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2020-7583
 	RESERVED
 CVE-2020-7582
 	RESERVED
 CVE-2020-7581 (A vulnerability has been identified in Opcenter Execution Discrete (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2020-7580 (A vulnerability has been identified in SIMATIC Automation Tool (All ve ...)
 	NOT-FOR-US: Siemens
 CVE-2020-7579 (A vulnerability has been identified in Spectrum Power™ 5 (All ve ...)
 	NOT-FOR-US: Siemens
 CVE-2020-7578 (A vulnerability has been identified in Camstar Enterprise Platform (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2020-7577 (A vulnerability has been identified in Camstar Enterprise Platform (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2020-7576 (A vulnerability has been identified in Camstar Enterprise Platform (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2020-7575 (A vulnerability has been identified in Climatix POL908 (BACnet/IP modu ...)
 	NOT-FOR-US: Climatix
 CVE-2020-7574 (A vulnerability has been identified in Climatix POL908 (BACnet/IP modu ...)
@@ -21728,7 +21728,7 @@ CVE-2020-7515
 CVE-2020-7514
 	RESERVED
 CVE-2020-7513 (A CWE-312: Cleartext Storage of Sensitive Information vulnerability ex ...)
-	TODO: check
+	NOT-FOR-US: Schneider
 CVE-2020-7512 (A CWE-1103: Use of Platform-Dependent Third Party Components with vuln ...)
 	NOT-FOR-US: Easergy T300
 CVE-2020-7511 (A CWE-327: Use of a Broken or Risky Cryptographic Algorithm vulnerabil ...)
@@ -26946,9 +26946,9 @@ CVE-2020-5376
 CVE-2020-5375
 	RESERVED
 CVE-2020-5374 (Dell EMC OpenManage Integration for Microsoft System Center (OMIMSSC)  ...)
-	TODO: check
+	NOT-FOR-US: EMC
 CVE-2020-5373 (Dell EMC OpenManage Integration for Microsoft System Center (OMIMSSC)  ...)
-	TODO: check
+	NOT-FOR-US: EMC
 CVE-2020-5372 (Dell EMC PowerStore versions prior to 1.0.1.0.5.002 contain a vulnerab ...)
 	NOT-FOR-US: EMC
 CVE-2020-5371 (Dell EMC Isilon OneFS versions 8.2.2 and earlier and Dell EMC PowerSca ...)
@@ -27285,7 +27285,7 @@ CVE-2020-5247 (In Puma (RubyGem) before 4.3.2 and before 3.12.3, if an applicati
 	NOTE: https://github.com/puma/puma/commit/1b17e85a06183cd169b41ca719928c26d44a6e03 (3.12.3)
 	NOTE: https://github.com/puma/puma/commit/694feafcd4fdcea786a0730701dad933f7547bea (4.3.2)
 CVE-2020-5246 (Traccar GPS Tracking System before version 4.9 has a LDAP injection vu ...)
-	TODO: check
+	NOT-FOR-US: Traccar GPS Tracking System
 CVE-2020-5245 (Dropwizard-Validation before 1.3.19, and 2.0.2 may allow arbitrary cod ...)
 	NOT-FOR-US: Dropwizard-Validation
 CVE-2020-5244 (In BuddyPress before 5.1.2, requests to a certain REST API endpoint ca ...)
@@ -30359,9 +30359,9 @@ CVE-2020-3976
 CVE-2020-3975
 	RESERVED
 CVE-2020-3974 (VMware Fusion (11.x before 11.5.5), VMware Remote Console for Mac (11. ...)
-	TODO: check
+	NOT-FOR-US: VMware
 CVE-2020-3973 (The VeloCloud Orchestrator does not apply correct input validation whi ...)
-	TODO: check
+	NOT-FOR-US: VMware
 CVE-2020-3972 (VMware Tools for macOS (11.x.x and prior before 11.1.1) contains a den ...)
 	NOT-FOR-US: VMware
 CVE-2020-3971 (VMware ESXi (6.7 before ESXi670-201904101-SG and 6.5 before ESXi650-20 ...)
@@ -32913,7 +32913,7 @@ CVE-2020-3284
 CVE-2020-3283 (A vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Secu ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3282 (A vulnerability in the web-based management interface of Cisco Unified ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3281 (A vulnerability in the audit logging component of Cisco Digital Networ ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3280 (A vulnerability in the Java Remote Management Interface of Cisco Unifi ...)
@@ -36084,15 +36084,15 @@ CVE-2020-2036
 CVE-2020-2035
 	RESERVED
 CVE-2020-2034 (An OS Command Injection vulnerability in the PAN-OS GlobalProtect port ...)
-	TODO: check
+	NOT-FOR-US: Palo Alto Networks
 CVE-2020-2033 (When the pre-logon feature is enabled, a missing certification validat ...)
 	NOT-FOR-US: Palo Alto Networks
 CVE-2020-2032 (A race condition vulnerability Palo Alto Networks GlobalProtect app on ...)
 	NOT-FOR-US: Palo Alto Networks
 CVE-2020-2031 (An integer underflow vulnerability in the dnsproxyd component of the P ...)
-	TODO: check
+	NOT-FOR-US: Palo Alto Networks
 CVE-2020-2030 (An OS Command Injection vulnerability in the PAN-OS management interfa ...)
-	TODO: check
+	NOT-FOR-US: Palo Alto Networks
 CVE-2020-2029 (An OS Command Injection vulnerability in the PAN-OS web management int ...)
 	NOT-FOR-US: Palo Alto Networks
 CVE-2020-2028 (An OS Command Injection vulnerability in PAN-OS management server allo ...)
@@ -36196,7 +36196,7 @@ CVE-2020-1983 (A use after free vulnerability in ip_reass() in ip_input.c of lib
 	NOTE: qemu 1:4.1-2 switched to system libslirp, marking that version as fixed
 	NOTE: slirp4netns 1.0.1-1 switched to system libslirp, marking that version as fixed.
 CVE-2020-1982 (Certain communication between PAN-OS and cloud-delivered services inad ...)
-	TODO: check
+	NOT-FOR-US: PAN-OS
 CVE-2020-1981 (A predictable temporary filename vulnerability in PAN-OS allows local  ...)
 	NOT-FOR-US: PAN-OS
 CVE-2020-1980 (A shell command injection vulnerability in the PAN-OS CLI allows a loc ...)
@@ -36951,13 +36951,13 @@ CVE-2020-1841 (Huawei CloudLink Board version 20.0.0; DP300 version V500R002C00;
 CVE-2020-1840 (HUAWEI Mate 20 smart phones with versions earlier than 10.0.0.175(C00E ...)
 	NOT-FOR-US: Huawei
 CVE-2020-1839 (HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-1838 (HUAWEI Mate 30 Pro with versions earlier than 10.1.0.150(C00E136R5P3)  ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-1837 (ChangXiang 8 Plus with versions earlier than 9.1.0.136(C00E121R1P6T8)  ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-1836 (HUAWEI P30 with versions earlier than 10.1.0.160(C00E160R2P11) and HUA ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-1835 (HUAWEI Mate 30 with versions earlier than 10.1.0.126(C00E125R5P3) have ...)
 	NOT-FOR-US: Huawei
 CVE-2020-1834 (HUAWEI P30 and HUAWEI P30 Pro with versions earlier than 10.1.0.135(C0 ...)
@@ -37172,11 +37172,11 @@ CVE-2019-19419
 CVE-2019-19418
 	RESERVED
 CVE-2019-19417 (The SIP module of some Huawei products have a denial of service (DoS)  ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2019-19416 (The SIP module of some Huawei products have a denial of service (DoS)  ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2019-19415 (The SIP module of some Huawei products have a denial of service (DoS)  ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2019-19414 (There is an integer overflow vulnerability in LDAP server of some Huaw ...)
 	NOT-FOR-US: Huawei
 CVE-2019-19413 (There is an integer overflow vulnerability in LDAP client of some Huaw ...)
@@ -38252,7 +38252,7 @@ CVE-2019-19163 (A Vulnerability in the firmware of COMMAX WallPad(CDP-1020MB) al
 CVE-2019-19162 (A use-after-free vulnerability in the TOBESOFT XPLATFORM versions 9.1  ...)
 	NOT-FOR-US: TOBESOFT XPLATFORM
 CVE-2019-19161 (CyMiInstaller322 ActiveX which runs MIPLATFORM downloads files require ...)
-	TODO: check
+	NOT-FOR-US: CyMiInstaller322
 CVE-2019-19160 (Reportexpress ProPlus contains a vulnerability that could allow an arb ...)
 	NOT-FOR-US: Reportexpress ProPlus
 CVE-2019-19159
@@ -39770,7 +39770,7 @@ CVE-2020-1483
 CVE-2020-1482
 	RESERVED
 CVE-2020-1481 (A remote code execution vulnerability exists in the ESLint extension f ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1480
 	RESERVED
 CVE-2020-1479
@@ -39794,183 +39794,183 @@ CVE-2020-1471
 CVE-2020-1470
 	RESERVED
 CVE-2020-1469 (A denial of service vulnerability exists when the .NET implementation  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1468 (An information disclosure vulnerability exists when the Windows GDI co ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1467
 	RESERVED
 CVE-2020-1466
 	RESERVED
 CVE-2020-1465 (An elevation of privilege vulnerability exists in Microsoft OneDrive t ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1464
 	RESERVED
 CVE-2020-1463 (An elevation of privilege vulnerability exists in the way that the Sha ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1462 (An information disclosure vulnerability exists when Skype for Business ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1461 (An elevation of privilege vulnerability exists when the MpSigStub.exe  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1460
 	RESERVED
 CVE-2020-1459
 	RESERVED
 CVE-2020-1458 (A remote code execution vulnerability exists when Microsoft Office imp ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1457
 	RESERVED
 CVE-2020-1456 (A cross-site-scripting (XSS) vulnerability exists when Microsoft Share ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1455
 	RESERVED
 CVE-2020-1454 (This vulnerability is caused when SharePoint Server does not properly  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1453
 	RESERVED
 CVE-2020-1452
 	RESERVED
 CVE-2020-1451 (A cross-site-scripting (XSS) vulnerability exists when Microsoft Share ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1450 (A cross-site-scripting (XSS) vulnerability exists when Microsoft Share ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1449 (A remote code execution vulnerability exists in Microsoft Project soft ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1448 (A remote code execution vulnerability exists in Microsoft Word softwar ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1447 (A remote code execution vulnerability exists in Microsoft Word softwar ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1446 (A remote code execution vulnerability exists in Microsoft Word softwar ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1445 (An information disclosure vulnerability exists when Microsoft Office i ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1444 (A remote code execution vulnerability exists in the way Microsoft Shar ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1443 (A spoofing vulnerability exists when Microsoft SharePoint Server does  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1442 (A spoofing vulnerability exists when an Office Web Apps server does no ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1441
 	RESERVED
 CVE-2020-1440
 	RESERVED
 CVE-2020-1439 (A remote code execution vulnerability exists in PerformancePoint Servi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1438 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1437 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1436 (A remote code execution vulnerability exists when the Windows font lib ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1435 (A remote code execution vulnerability exists in the way that the Windo ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1434 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1433 (An information disclosure vulnerability exists when Microsoft Edge PDF ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1432 (An information disclosure vulnerability exists when Skype for Business ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1431 (An elevation of privilege vulnerability exists when the Windows AppX D ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1430 (An elevation of privilege vulnerability exists when the Windows UPnP D ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1429 (An elevation of privilege vulnerability exists when Windows Error Repo ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1428 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1427 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1426 (An information disclosure vulnerability exists when the Windows kernel ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1425
 	RESERVED
 CVE-2020-1424 (An elevation of privilege vulnerability exists when the Windows Update ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1423 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1422 (An elevation of privilege vulnerability exists when the Windows Runtim ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1421 (A remote code execution vulnerability exists in Microsoft Windows that ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1420 (An information disclosure vulnerability exists when Windows Error Repo ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1419 (An information disclosure vulnerability exists when the Windows kernel ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1418 (An elevation of privilege vulnerability exists when the Windows Diagno ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1417
 	RESERVED
 CVE-2020-1416 (An elevation of privilege vulnerability exists in Visual Studio and Vi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1415 (An elevation of privilege vulnerability exists when the Windows Runtim ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1414 (An elevation of privilege vulnerability exists when the Windows Runtim ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1413 (An elevation of privilege vulnerability exists when the Windows Runtim ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1412 (A remote code execution vulnerability exists in the way that Microsoft ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1411 (An elevation of privilege vulnerability exists when the Windows kernel ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1410 (A remote code execution vulnerability exists when Windows Address Book ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1409 (A remote code execution vulnerability exists in the way that DirectWri ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1408 (A remote code execution vulnerability exists when the Windows font lib ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1407 (A remote code execution vulnerability exists when the Windows Jet Data ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1406 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1405 (An elevation of privilege vulnerability exists when Windows Mobile Dev ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1404 (An elevation of privilege vulnerability exists when the Windows Runtim ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1403 (A remote code execution vulnerability exists in the way that the VBScr ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1402 (An elevation of privilege vulnerability exists when the Windows Active ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1401 (A remote code execution vulnerability exists when the Windows Jet Data ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1400 (A remote code execution vulnerability exists when the Windows Jet Data ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1399 (An elevation of privilege vulnerability exists when the Windows Runtim ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1398 (An elevation of privilege vulnerability exists when Windows Lockscreen ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1397 (An information disclosure vulnerability exists in Windows when the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1396 (An elevation of privilege vulnerability exists when Windows improperly ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1395 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1394 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1393 (An elevation of privilege vulnerability exists when the Windows Diagno ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1392 (An elevation of privilege vulnerability exists when the Windows Delive ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1391 (An information disclosure vulnerability exists when the Windows Agent  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1390 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1389 (An information disclosure vulnerability exists when the Windows kernel ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1388 (An elevation of privilege vulnerability exists in the way that the psm ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1387 (An elevation of privilege vulnerability exists in the way the Windows  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1386 (An information vulnerability exists when Windows Connected User Experi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1385 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1384 (An elevation of privilege vulnerability exists when the Windows Crypto ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1383
 	RESERVED
 CVE-2020-1382 (An elevation of privilege vulnerability exists when the Windows Graphi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1381 (An elevation of privilege vulnerability exists when the Windows Graphi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1380
 	RESERVED
 CVE-2020-1379
@@ -39982,73 +39982,73 @@ CVE-2020-1377
 CVE-2020-1376
 	RESERVED
 CVE-2020-1375 (An elevation of privilege vulnerability exists when Windows improperly ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1374 (A remote code execution vulnerability exists in the Windows Remote Des ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1373 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1372 (An elevation of privilege vulnerability exists when Windows Mobile Dev ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1371 (An elevation of privilege vulnerability exists when the Windows Event  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1370 (An elevation of privilege vulnerability exists when the Windows Runtim ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1369 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1368 (An elevation of privilege vulnerability exists in the way that the Cre ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1367 (An information disclosure vulnerability exists when the Windows kernel ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1366 (An elevation of privilege vulnerability exists when the Windows Print  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1365 (An elevation of privilege vulnerability exists when the Windows Event  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1364 (A denial of service vulnerability exists in the way that the WalletSer ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1363 (An elevation of privilege vulnerability exists when the Windows Picker ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1362 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1361 (An information disclosure vulnerability exists in the way that the Wal ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1360 (An elevation of privilege vulnerability exists when the Windows Profil ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1359 (An elevation of privilege vulnerability exists when the Windows Crypto ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1358 (An information disclosure vulnerability exists when the Windows Resour ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1357 (An elevation of privilege vulnerability exists when the Windows System ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1356 (An elevation of privilege vulnerability exists when the Windows iSCSI  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1355 (A remote code execution vulnerability exists when the Windows Font Dri ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1354 (An elevation of privilege vulnerability exists when the Windows UPnP D ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1353 (An elevation of privilege vulnerability exists when the Windows Runtim ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1352 (An elevation of privilege vulnerability exists when the Windows USO Co ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1351 (An information disclosure vulnerability exists when the Windows Graphi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1350 (A remote code execution vulnerability exists in Windows Domain Name Sy ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1349 (A remote code execution vulnerability exists in Microsoft Outlook soft ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1348 (An information disclosure vulnerability exists when the Windows GDI co ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-1347 (An elevation of privilege vulnerability exists when the Windows Storag ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1346 (An elevation of privilege vulnerability exists when the Windows Module ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1345
 	RESERVED
 CVE-2020-1344 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1343 (An information disclosure vulnerability exists in Visual Studio Code L ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-1342 (An information disclosure vulnerability exists when Microsoft Office s ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1341
 	RESERVED
 CVE-2020-1340 (A spoofing vulnerability exists when the NuGetGallery does not properl ...)
@@ -40060,19 +40060,19 @@ CVE-2020-1338
 CVE-2020-1337
 	RESERVED
 CVE-2020-1336 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1335
 	RESERVED
 CVE-2020-1334 (An elevation of privilege vulnerability exists when the Windows Runtim ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-1333 (An elevation of privilege vulnerability exists when Group Policy Servi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1332
 	RESERVED
 CVE-2020-1331 (A spoofing vulnerability exists when System Center Operations Manager  ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-1330 (An information disclosure vulnerability exists when Windows Mobile Dev ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1329 (A spoofing vulnerability exists when Microsoft Bing Search for Android ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-1328
@@ -40080,7 +40080,7 @@ CVE-2020-1328
 CVE-2020-1327 (A spoofing vulnerability exists in Microsoft Azure DevOps Server when  ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-1326 (A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Se ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1325
 	RESERVED
 CVE-2020-1324 (An elevation of privilege (user to user) vulnerability exists in Windo ...)
@@ -40198,7 +40198,7 @@ CVE-2020-1269 (An elevation of privilege vulnerability exists when the Windows k
 CVE-2020-1268 (An information disclosure vulnerability exists when a Windows service  ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-1267 (This security update corrects a denial of service in the Local Securit ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1266 (An elevation of privilege vulnerability exists when the Windows kernel ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-1265 (An elevation of privilege vulnerability exists when the Windows Runtim ...)
@@ -40234,7 +40234,7 @@ CVE-2020-1251 (An elevation of privilege vulnerability exists in Windows when th
 CVE-2020-1250
 	RESERVED
 CVE-2020-1249 (An elevation of privilege vulnerability exists when the Windows Runtim ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1248 (A remote code execution vulnerability exists in the way that the Windo ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-1247 (An elevation of privilege vulnerability exists in Windows when the Win ...)
@@ -40252,7 +40252,7 @@ CVE-2020-1242 (An information disclosure vulnerability exists in the way that Mi
 CVE-2020-1241 (A security feature bypass vulnerability exists when Windows Kernel fai ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-1240 (A remote code execution vulnerability exists in Microsoft Excel softwa ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1239 (A memory corruption vulnerability exists when Windows Media Foundation ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-1238 (A memory corruption vulnerability exists when Windows Media Foundation ...)
@@ -40562,7 +40562,7 @@ CVE-2020-1087 (An elevation of privilege vulnerability exists in the way that th
 CVE-2020-1086 (An elevation of privilege vulnerability exists when the Windows Runtim ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-1085 (An elevation of privilege vulnerability exists in the way that the Win ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1084 (A Denial Of Service vulnerability exists when Connected User Experienc ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-1083
@@ -40646,13 +40646,13 @@ CVE-2020-1045
 CVE-2020-1044
 	RESERVED
 CVE-2020-1043 (A remote code execution vulnerability exists when Hyper-V RemoteFX vGP ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1042 (A remote code execution vulnerability exists when Hyper-V RemoteFX vGP ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1041 (A remote code execution vulnerability exists when Hyper-V RemoteFX vGP ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1040 (A remote code execution vulnerability exists when Hyper-V RemoteFX vGP ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1039
 	RESERVED
 CVE-2020-1038
@@ -40660,7 +40660,7 @@ CVE-2020-1038
 CVE-2020-1037 (A remote code execution vulnerability exists in the way that the Chakr ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-1036 (A remote code execution vulnerability exists when Hyper-V RemoteFX vGP ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1035 (A remote code execution vulnerability exists in the way that the VBScr ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-1034
@@ -40668,7 +40668,7 @@ CVE-2020-1034
 CVE-2020-1033
 	RESERVED
 CVE-2020-1032 (A remote code execution vulnerability exists when Hyper-V RemoteFX vGP ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1031
 	RESERVED
 CVE-2020-1030
@@ -40682,7 +40682,7 @@ CVE-2020-1027 (An elevation of privilege vulnerability exists in the way that th
 CVE-2020-1026 (A Security Feature Bypass vulnerability exists in the MSR JavaScript C ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-1025 (An elevation of privilege vulnerability exists when Microsoft SharePoi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-1024 (A remote code execution vulnerability exists in Microsoft SharePoint w ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-1023 (A remote code execution vulnerability exists in Microsoft SharePoint w ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e7ac927957563010e6b3d9e295c69e8d6dc7bf17

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e7ac927957563010e6b3d9e295c69e8d6dc7bf17
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200715/7ca16fac/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list