[Git][security-tracker-team/security-tracker][master] Process several NFUs

Salvatore Bonaccorso carnil at debian.org
Wed Nov 11 11:30:16 GMT 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
15ac6b63 by Salvatore Bonaccorso at 2020-11-11T12:29:32+01:00
Process several NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -25646,197 +25646,197 @@ CVE-2020-17076 (, aka 'Windows Update Orchestrator Service Elevation of Privileg
 CVE-2020-17075 (, aka 'Windows USO Core Worker Elevation of Privilege Vulnerability'. ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-17074 (, aka 'Windows Update Orchestrator Service Elevation of Privilege Vuln ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17073 (, aka 'Windows Update Orchestrator Service Elevation of Privilege Vuln ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17072
 	RESERVED
 CVE-2020-17071 (, aka 'Windows Delivery Optimization Information Disclosure Vulnerabil ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17070 (, aka 'Windows Update Medic Service Elevation of Privilege Vulnerabili ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17069 (, aka 'Windows NDIS Information Disclosure Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17068 (, aka 'Windows GDI+ Remote Code Execution Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17067 (, aka 'Microsoft Excel Security Feature Bypass Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17066 (, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17065 (, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17064 (, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17063 (, aka 'Microsoft Office Online Spoofing Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17062 (, aka 'Microsoft Office Access Connectivity Engine Remote Code Executi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17061 (, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17060 (, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is un ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17059
 	RESERVED
 CVE-2020-17058 (, aka 'Microsoft Browser Memory Corruption Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17057 (, aka 'Windows Win32k Elevation of Privilege Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17056 (, aka 'Windows Network File System Information Disclosure Vulnerabilit ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17055 (, aka 'Windows Remote Access Elevation of Privilege Vulnerability'. Th ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17054 (, aka 'Chakra Scripting Engine Memory Corruption Vulnerability'. This  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17053 (, aka 'Internet Explorer Memory Corruption Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17052 (, aka 'Scripting Engine Memory Corruption Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17051 (, aka 'Windows Network File System Remote Code Execution Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17050
 	RESERVED
 CVE-2020-17049 (, aka 'Kerberos Security Feature Bypass Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17048 (, aka 'Chakra Scripting Engine Memory Corruption Vulnerability'. This  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17047 (, aka 'Windows Network File System Denial of Service Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17046 (, aka 'Windows Error Reporting Denial of Service Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17045 (, aka 'Windows KernelStream Information Disclosure Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17044 (, aka 'Windows Remote Access Elevation of Privilege Vulnerability'. Th ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17043 (, aka 'Windows Remote Access Elevation of Privilege Vulnerability'. Th ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17042 (, aka 'Windows Print Spooler Remote Code Execution Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17041 (, aka 'Windows Print Configuration Elevation of Privilege Vulnerabilit ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17040 (, aka 'Windows Hyper-V Security Feature Bypass Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17039
 	RESERVED
 CVE-2020-17038 (, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is un ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17037 (, aka 'Windows WalletService Elevation of Privilege Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17036 (, aka 'Windows Function Discovery SSDP Provider Information Disclosure ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17035 (, aka 'Windows Kernel Elevation of Privilege Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17034 (, aka 'Windows Remote Access Elevation of Privilege Vulnerability'. Th ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17033 (, aka 'Windows Remote Access Elevation of Privilege Vulnerability'. Th ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17032 (, aka 'Windows Remote Access Elevation of Privilege Vulnerability'. Th ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17031 (, aka 'Windows Remote Access Elevation of Privilege Vulnerability'. Th ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17030 (, aka 'Windows MSCTF Server Information Disclosure Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17029 (, aka 'Windows Canonical Display Driver Information Disclosure Vulnera ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17028 (, aka 'Windows Remote Access Elevation of Privilege Vulnerability'. Th ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17027 (, aka 'Windows Remote Access Elevation of Privilege Vulnerability'. Th ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17026 (, aka 'Windows Remote Access Elevation of Privilege Vulnerability'. Th ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17025 (, aka 'Windows Remote Access Elevation of Privilege Vulnerability'. Th ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17024 (, aka 'Windows Client Side Rendering Print Provider Elevation of Privi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17023 (A remote code execution vulnerability exists in Visual Studio Code whe ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-17022 (A remote code execution vulnerability exists in the way that Microsoft ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-17021 (, aka 'Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulne ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17020 (, aka 'Microsoft Word Security Feature Bypass Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17019 (, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17018 (, aka 'Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulne ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17017 (, aka 'Microsoft SharePoint Information Disclosure Vulnerability'. Thi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17016 (, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is un ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17015 (, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is un ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17014 (, aka 'Windows Print Spooler Elevation of Privilege Vulnerability'. Th ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17013 (, aka 'Win32k Information Disclosure Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17012 (, aka 'Windows Bind Filter Driver Elevation of Privilege Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17011 (, aka 'Windows Port Class Library Elevation of Privilege Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17010 (, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is un ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17009
 	RESERVED
 CVE-2020-17008
 	RESERVED
 CVE-2020-17007 (, aka 'Windows Error Reporting Elevation of Privilege Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17006 (, aka 'Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulne ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17005 (, aka 'Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulne ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17004 (, aka 'Windows Graphics Component Information Disclosure Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17003 (A remote code execution vulnerability exists when the Base3D rendering ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-17002
 	RESERVED
 CVE-2020-17001 (, aka 'Windows Print Spooler Elevation of Privilege Vulnerability'. Th ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-17000 (, aka 'Remote Desktop Protocol Client Information Disclosure Vulnerabi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16999 (, aka 'Windows WalletService Information Disclosure Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16998 (, aka 'DirectX Elevation of Privilege Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16997 (, aka 'Remote Desktop Protocol Server Information Disclosure Vulnerabi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16996
 	RESERVED
 CVE-2020-16995 (An elevation of privilege vulnerability exists in Network Watcher Agen ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-16994 (, aka 'Azure Sphere Unsigned Code Execution Vulnerability'. This CVE I ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16993 (, aka 'Azure Sphere Elevation of Privilege Vulnerability'. This CVE ID ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16992 (, aka 'Azure Sphere Elevation of Privilege Vulnerability'. This CVE ID ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16991 (, aka 'Azure Sphere Unsigned Code Execution Vulnerability'. This CVE I ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16990 (, aka 'Azure Sphere Information Disclosure Vulnerability'. This CVE ID ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16989 (, aka 'Azure Sphere Elevation of Privilege Vulnerability'. This CVE ID ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16988 (, aka 'Azure Sphere Elevation of Privilege Vulnerability'. This CVE ID ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16987 (, aka 'Azure Sphere Unsigned Code Execution Vulnerability'. This CVE I ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16986 (, aka 'Azure Sphere Denial of Service Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16985 (, aka 'Azure Sphere Information Disclosure Vulnerability'. This CVE ID ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16984 (, aka 'Azure Sphere Unsigned Code Execution Vulnerability'. This CVE I ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16983 (, aka 'Azure Sphere Tampering Vulnerability'. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16982 (, aka 'Azure Sphere Unsigned Code Execution Vulnerability'. This CVE I ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16981 (, aka 'Azure Sphere Elevation of Privilege Vulnerability'. This CVE ID ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16980 (An elevation of privilege vulnerability exists when the Windows iSCSI  ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-16979 (, aka 'Microsoft SharePoint Information Disclosure Vulnerability'. Thi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16978 (A cross site scripting vulnerability exists when Microsoft Dynamics 36 ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-16977 (A remote code execution vulnerability exists in Visual Studio Code whe ...)
@@ -25854,7 +25854,7 @@ CVE-2020-16972 (An elevation of privilege vulnerability exists when the Windows
 CVE-2020-16971
 	RESERVED
 CVE-2020-16970 (, aka 'Azure Sphere Unsigned Code Execution Vulnerability'. This CVE I ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2020-16969 (An information disclosure vulnerability exists in how Microsoft Exchan ...)
 	NOT-FOR-US: Microsoft
 CVE-2020-16968 (A remote code execution vulnerability exists when the Windows Camera C ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/15ac6b63e993131ec101ee0db7bc6246d78343cd

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/15ac6b63e993131ec101ee0db7bc6246d78343cd
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201111/704d68e2/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list