[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff jmm at debian.org
Wed Jun 24 17:32:39 BST 2020



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
8189d58a by Moritz Muehlenhoff at 2020-06-24T18:32:18+02:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -30536,7 +30536,7 @@ CVE-2020-3370
 CVE-2020-3369
 	RESERVED
 CVE-2020-3368 (A vulnerability in the antispam protection mechanisms of Cisco AsyncOS ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3367
 	RESERVED
 CVE-2020-3366
@@ -30544,15 +30544,15 @@ CVE-2020-3366
 CVE-2020-3365
 	RESERVED
 CVE-2020-3364 (A vulnerability in the access control list (ACL) functionality of the  ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3363
 	RESERVED
 CVE-2020-3362 (A vulnerability in the CLI of Cisco Network Services Orchestrator (NSO ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3361 (A vulnerability in Cisco Webex Meetings and Cisco Webex Meetings Serve ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3360 (A vulnerability in the Web Access feature of Cisco IP Phones Series 78 ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3359
 	RESERVED
 CVE-2020-3358
@@ -30560,11 +30560,11 @@ CVE-2020-3358
 CVE-2020-3357
 	RESERVED
 CVE-2020-3356 (A vulnerability in the web-based management interface of Cisco Data Ce ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3355 (A vulnerability in the web-based management interface of Cisco Data Ce ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3354 (A vulnerability in the web-based management interface of Cisco Data Ce ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3353 (A vulnerability in the syslog processing engine of Cisco Identity Serv ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3352
@@ -30572,13 +30572,13 @@ CVE-2020-3352
 CVE-2020-3351
 	RESERVED
 CVE-2020-3350 (A vulnerability in the endpoint software of Cisco AMP for Endpoints an ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3349
 	RESERVED
 CVE-2020-3348
 	RESERVED
 CVE-2020-3347 (A vulnerability in Cisco Webex Meetings Desktop App for Windows could  ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3346
 	RESERVED
 CVE-2020-3345
@@ -30588,7 +30588,7 @@ CVE-2020-3344 (A vulnerability in Cisco AMP for Endpoints Linux Connector Softwa
 CVE-2020-3343 (A vulnerability in Cisco AMP for Endpoints Linux Connector Software an ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3342 (A vulnerability in the software update feature of Cisco Webex Meetings ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3341 (A vulnerability in the PDF archive parsing module in Clam AntiVirus (C ...)
 	{DLA-2215-1}
 	- clamav 0.102.3+dfsg-1
@@ -30602,9 +30602,9 @@ CVE-2020-3339 (A vulnerability in the web-based management interface of Cisco Pr
 CVE-2020-3338
 	RESERVED
 CVE-2020-3337 (A vulnerability in the web server of Cisco Umbrella could allow an una ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3336 (A vulnerability in the software upgrade process of Cisco TelePresence  ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3335 (A vulnerability in the key store of Cisco Application Services Engine  ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3334 (A vulnerability in the ARP packet processing of Cisco Adaptive Securit ...)
@@ -30688,27 +30688,27 @@ CVE-2020-3298 (A vulnerability in the Open Shortest Path First (OSPF) implementa
 CVE-2020-3297
 	RESERVED
 CVE-2020-3296 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3295 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3294 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3293 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3292 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3291 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3290 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3289 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3288 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3287 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3286 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3285 (A vulnerability in the Transport Layer Security version 1.3 (TLS 1.3)  ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3284
@@ -30722,17 +30722,17 @@ CVE-2020-3281 (A vulnerability in the audit logging component of Cisco Digital N
 CVE-2020-3280 (A vulnerability in the Java Remote Management Interface of Cisco Unifi ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3279 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3278 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3277 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3276 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3275 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3274 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3273 (A vulnerability in the 802.11 Generic Advertisement Service (GAS) fram ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3272 (A vulnerability in the DHCP server of Cisco Prime Network Registrar co ...)
@@ -30742,9 +30742,9 @@ CVE-2020-3271
 CVE-2020-3270
 	RESERVED
 CVE-2020-3269 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3268 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3267 (A vulnerability in the API subsystem of Cisco Unified Contact Center E ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3266 (A vulnerability in the CLI of Cisco SD-WAN Solution software could all ...)
@@ -30754,7 +30754,7 @@ CVE-2020-3265 (A vulnerability in Cisco SD-WAN Solution software could allow an
 CVE-2020-3264 (A vulnerability in Cisco SD-WAN Solution software could allow an authe ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3263 (A vulnerability in Cisco Webex Meetings Desktop App could allow an una ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3262 (A vulnerability in the Control and Provisioning of Wireless Access Poi ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3261 (A vulnerability in the web-based management interface of Cisco Mobilit ...)
@@ -30790,15 +30790,15 @@ CVE-2020-3247 (Multiple vulnerabilities in the REST API of Cisco UCS Director an
 CVE-2020-3246 (A vulnerability in the web server of Cisco Umbrella could allow an una ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3245 (A vulnerability in the web application of Cisco Smart Software Manager ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3244 (A vulnerability in the Enhanced Charging Service (ECS) functionality o ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3243 (Multiple vulnerabilities in the REST API of Cisco UCS Director and Cis ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3242 (A vulnerability in the REST API of Cisco UCS Director could allow an a ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3241 (A vulnerability in the orchestration tasks of Cisco UCS Director could ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3240 (Multiple vulnerabilities in the REST API of Cisco UCS Director and Cis ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3239 (Multiple vulnerabilities in the REST API of Cisco UCS Director and Cis ...)
@@ -30808,7 +30808,7 @@ CVE-2020-3238 (A vulnerability in the Cisco Application Framework component of t
 CVE-2020-3237 (A vulnerability in the Cisco Application Framework component of the Ci ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3236 (A vulnerability in the CLI of Cisco Enterprise NFV Infrastructure Soft ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3235 (A vulnerability in the Simple Network Management Protocol (SNMP) subsy ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3234 (A vulnerability in the virtual console authentication of Cisco IOS Sof ...)
@@ -34752,9 +34752,9 @@ CVE-2020-1837
 CVE-2020-1836
 	RESERVED
 CVE-2020-1835 (HUAWEI Mate 30 with versions earlier than 10.1.0.126(C00E125R5P3) have ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-1834 (HUAWEI P30 and HUAWEI P30 Pro with versions earlier than 10.1.0.135(C0 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-1833 (Honor 9X smartphones with versions earlier than 9.1.1.172(C00E170R8P1) ...)
 	NOT-FOR-US: Huawei
 CVE-2020-1832 (E6878-370 products with versions of 10.0.3.1(H557SP27C233) and 10.0.3. ...)
@@ -47189,7 +47189,7 @@ CVE-2019-16247 (Delta DCISoft 1.21 has a User Mode Write AV starting at CommLib!
 CVE-2019-16246 (Intesync Solismed 3.3sp1 allows Local File Inclusion (LFI), a differen ...)
 	NOT-FOR-US: Intesync Solismed
 CVE-2019-16245 (OMERO before 5.6.1 makes the details of each user available to all use ...)
-	TODO: check
+	NOT-FOR-US: OMERO
 CVE-2019-16244
 	RESERVED
 CVE-2019-16243 (On TCL Alcatel Cingular Flip 2 B9HUAH1 devices, there is an undocument ...)
@@ -50598,7 +50598,7 @@ CVE-2018-20975 (Fat Free CRM before 0.18.1 has XSS in the tags_helper in app/hel
 CVE-2019-15124 (In the MobileFrontend extension for MediaWiki, XSS exists within the e ...)
 	NOT-FOR-US: MobileFrontend extension for MediaWiki
 CVE-2019-15123 (The Branding Module in Viki Vera 4.9.1.26180 allows an authenticated u ...)
-	TODO: check
+	NOT-FOR-US: Viki Vera
 CVE-2019-15122
 	RESERVED
 CVE-2019-15121



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8189d58a15f069ba9d7a77e380b9a0871603c76f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8189d58a15f069ba9d7a77e380b9a0871603c76f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200624/24adef78/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list