[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff jmm at debian.org
Wed Nov 4 20:00:46 GMT 2020



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b31f44a4 by Moritz Muehlenhoff at 2020-11-04T21:00:27+01:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -64558,9 +64558,9 @@ CVE-2020-1911 (A type confusion vulnerability when resolving properties of JavaS
 CVE-2020-1910
 	RESERVED
 CVE-2020-1909 (A use-after-free in a logging library in WhatsApp for iOS prior to v2. ...)
-	TODO: check
+	NOT-FOR-US: WhatsApp
 CVE-2020-1908 (Improper authorization of the Screen Lock feature in WhatsApp and What ...)
-	TODO: check
+	NOT-FOR-US: WhatsApp
 CVE-2020-1907 (A stack overflow in WhatsApp for Android prior to v2.20.196.16, WhatsA ...)
 	NOT-FOR-US: WhatsApp
 CVE-2020-1906 (A buffer overflow in WhatsApp for Android prior to v2.20.130 and Whats ...)
@@ -71161,12 +71161,14 @@ CVE-2020-0455
 	RESERVED
 CVE-2020-0454
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0453
 	RESERVED
 CVE-2020-0452
 	RESERVED
 CVE-2020-0451
 	RESERVED
+	NOT-FOR-US: Android Media Framework
 CVE-2020-0450
 	RESERVED
 CVE-2020-0449
@@ -71183,16 +71185,21 @@ CVE-2020-0444
 	RESERVED
 CVE-2020-0443
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0442
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0441
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0440
 	RESERVED
 CVE-2020-0439
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0438
 	RESERVED
+	NOT-FOR-US: Android Media Framework
 CVE-2020-0437
 	RESERVED
 CVE-2020-0436
@@ -71252,6 +71259,7 @@ CVE-2020-0419 (In generateInfo of PackageInstallerSession.java, there is a possi
 	NOT-FOR-US: Android
 CVE-2020-0418
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0417
 	RESERVED
 CVE-2020-0416 (In multiple settings screens, there are possible tapjacking attacks du ...)
@@ -71270,6 +71278,7 @@ CVE-2020-0410 (In setNotification of SapServer.java, there is a possible permiss
 	NOT-FOR-US: Android
 CVE-2020-0409
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0408 (In remove of String16.cpp, there is a possible out of bounds write due ...)
 	NOT-FOR-US: Android
 CVE-2020-0407 (In various functions in fscrypt_ice.c and related files in some implem ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b31f44a44076a61530d22b8f0f19a718c60c8dbb

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b31f44a44076a61530d22b8f0f19a718c60c8dbb
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201104/81c73004/attachment.html>


More information about the debian-security-tracker-commits mailing list