[Git][security-tracker-team/security-tracker][master] 2 commits: Remove reference with only CVE request information

Salvatore Bonaccorso carnil at debian.org
Tue Mar 31 21:23:43 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
cfe8eda3 by Salvatore Bonaccorso at 2020-03-31T22:20:59+02:00
Remove reference with only CVE request information

- - - - -
a8effa00 by Salvatore Bonaccorso at 2020-03-31T22:23:03+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -10673,7 +10673,6 @@ CVE-2020-6817 [Regular expression denial of service]
 	- python-bleach 3.1.4-1 (bug #955388)
 	NOTE: https://github.com/mozilla/bleach/security/advisories/GHSA-vqhp-cxgc-6wmm
 	NOTE: https://bugzilla.mozilla.org/show_bug.cgi?id=1623633
-	NOTE: https://github.com/mozilla/bleach/issues/527
 	NOTE: https://github.com/mozilla/bleach/commit/d6018f2539d271963c3e7f54f36ef11900363c69
 	NOTE: https://github.com/mozilla/bleach/commit/6e74a5027b57055cdaeb040343d32934121392a7
 CVE-2020-6815 (Mozilla developers reported memory safety and script safety bugs prese ...)
@@ -16762,21 +16761,21 @@ CVE-2020-4244
 CVE-2020-4243
 	RESERVED
 CVE-2020-4242 (IBM Spectrum Scale and IBM Spectrum Protect Plus 10.1.0 through 10.1.5 ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2020-4241 (IBM Spectrum Scale and IBM Spectrum Protect Plus 10.1.0 through 10.1.5 ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2020-4240 (IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow a remote a ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2020-4239 (IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.17 could allow a remot ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2020-4238 (IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.17 is vulnerable to cr ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2020-4237 (IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.17 is vulnerable to cr ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2020-4236 (IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.17 could allow an auth ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2020-4235 (IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.17 is vulnerable to cr ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2020-4234
 	RESERVED
 CVE-2020-4233
@@ -16818,7 +16817,7 @@ CVE-2020-4216
 CVE-2020-4215
 	RESERVED
 CVE-2020-4214 (IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow a remote a ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2020-4213 (IBM Spectrum Protect Plus 10.1.0 and 10.1.5 could allow a remote attac ...)
 	NOT-FOR-US: IBM
 CVE-2020-4212 (IBM Spectrum Protect Plus 10.1.0 and 10.1.5 could allow a remote attac ...)
@@ -16830,11 +16829,11 @@ CVE-2020-4210 (IBM Spectrum Protect Plus 10.1.0 and 10.1.5 could allow a remote
 CVE-2020-4209
 	RESERVED
 CVE-2020-4208 (IBM Spectrum Protect Plus 10.1.0 through 10.1.5 contains hard-coded cr ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2020-4207 (IBM Watson IoT Message Gateway 2.0.0.x, 5.0.0.0, 5.0.0.1, and 5.0.0.2  ...)
 	NOT-FOR-US: IBM
 CVE-2020-4206 (IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow a remote a ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2020-4205 (IBM DataPower Gateway 2018.4.1.0 through 2018.4.1.8 could allow an aut ...)
 	NOT-FOR-US: IBM
 CVE-2020-4204 (IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/28dec9e5ebe71035a4411d173310eeebc70a3a1a...a8effa0061b4ded2c1175aa25ee502a30210d05d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/28dec9e5ebe71035a4411d173310eeebc70a3a1a...a8effa0061b4ded2c1175aa25ee502a30210d05d
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200331/e6629ce9/attachment.html>


More information about the debian-security-tracker-commits mailing list