[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso carnil at debian.org
Fri Nov 13 07:03:40 GMT 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1a9d45ee by Salvatore Bonaccorso at 2020-11-13T08:03:06+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -4110,7 +4110,7 @@ CVE-2020-27483
 CVE-2020-27482
 	RESERVED
 CVE-2020-27481 (An unauthenticated SQL Injection vulnerability in Good Layers LMS Plug ...)
-	TODO: check
+	NOT-FOR-US: Good Layers LMS Plugin for WordPress
 CVE-2020-27480
 	RESERVED
 CVE-2020-27479
@@ -4300,9 +4300,9 @@ CVE-2020-27388 (Multiple Stored Cross Site Scripting (XSS) vulnerabilities exist
 CVE-2020-27387 (An unrestricted file upload issue in HorizontCMS through 1.0.0-beta al ...)
 	NOT-FOR-US: HorizontCMS
 CVE-2020-27386 (An unrestricted file upload issue in FlexDotnetCMS before v1.5.9 allow ...)
-	TODO: check
+	NOT-FOR-US: FlexDotnetCMS
 CVE-2020-27385 (Incorrect Access Control in the FileEditor (/Admin/Views/FileEditor/)  ...)
-	TODO: check
+	NOT-FOR-US: FlexDotnetCMS
 CVE-2020-27384
 	RESERVED
 CVE-2020-27383
@@ -5510,11 +5510,11 @@ CVE-2020-26807 (SAP ERP Client for E-Bilanz, version - 1.0, installation sets In
 CVE-2020-26806
 	RESERVED
 CVE-2020-26805 (In Sentrifugo 3.2, admin can edit employee's informations via this end ...)
-	TODO: check
+	NOT-FOR-US: Sentrifugo
 CVE-2020-26804 (In Sentrifugo 3.2, users can share an announcement under "Organization ...)
-	TODO: check
+	NOT-FOR-US: Sentrifugo
 CVE-2020-26803 (In Sentrifugo 3.2, users can upload an image under "Assets -> Add"  ...)
-	TODO: check
+	NOT-FOR-US: Sentrifugo
 CVE-2020-26802 (forma.lms 2.3.0.2 is affected by Cross Site Request Forgery (CSRF) in  ...)
 	NOT-FOR-US: forma.lms
 CVE-2020-26801
@@ -10520,7 +10520,7 @@ CVE-2020-24575
 CVE-2020-24574 (The client (aka GalaxyClientService.exe) in GOG GALAXY through 2.0.20  ...)
 	NOT-FOR-US: GOG Galaxy client
 CVE-2020-24573 (BAB TECHNOLOGIE GmbH eibPort V3 prior to 3.8.3 devices allow denial of ...)
-	TODO: check
+	NOT-FOR-US: BAB TECHNOLOGIE GmbH eibPort
 CVE-2020-24572 (An issue was discovered in includes/webconsole.php in RaspAP 2.5. With ...)
 	NOT-FOR-US: RaspAP
 CVE-2020-24571 (NexusQA NexusDB before 4.50.23 allows the reading of files via ../ dir ...)
@@ -10633,7 +10633,7 @@ CVE-2020-24527
 CVE-2020-24526
 	RESERVED
 CVE-2020-24525 (Insecure inherited permissions in firmware update tool for some Intel( ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-24524
 	RESERVED
 CVE-2020-24523
@@ -10777,11 +10777,11 @@ CVE-2020-24458
 CVE-2020-24457 (Logic error in BIOS firmware for 8th, 9th and 10th Generation Intel(R) ...)
 	NOT-FOR-US: Intel
 CVE-2020-24456 (Incorrect default permissions in the Intel(R) Board ID Tool version v. ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-24455
 	RESERVED
 CVE-2020-24454 (Improper Restriction of XML External Entity Reference in subsystem for ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-24453
 	RESERVED
 CVE-2020-24452
@@ -10803,11 +10803,11 @@ CVE-2020-24445
 CVE-2020-24444
 	RESERVED
 CVE-2020-24443 (Adobe Connect version 11.0 (and earlier) is affected by a reflected Cr ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2020-24442 (Adobe Connect version 11.0 (and earlier) is affected by a reflected Cr ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2020-24441 (Adobe Acrobat Reader for Android version 20.6.2 (and earlier) does not ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2020-24440
 	RESERVED
 CVE-2020-24439 (Acrobat Reader DC for macOS versions 2020.012.20048 (and earlier), 202 ...)
@@ -34184,9 +34184,9 @@ CVE-2020-13773
 CVE-2020-13772
 	RESERVED
 CVE-2020-13771 (Various components in Ivanti Endpoint Manager through 2020.1.1 rely on ...)
-	TODO: check
+	NOT-FOR-US: Ivanti
 CVE-2020-13770 (Several services are accessing named pipes in Ivanti Endpoint Manager  ...)
-	TODO: check
+	NOT-FOR-US: Ivanti
 CVE-2020-13769
 	RESERVED
 CVE-2020-13768 (In MiniShare before 1.4.2, there is a stack-based buffer overflow via  ...)
@@ -37797,13 +37797,13 @@ CVE-2020-12358
 CVE-2020-12357
 	RESERVED
 CVE-2020-12356 (Out-of-bounds read in subsystem in Intel(R) AMT versions before 11.8.8 ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12355 (Authentication bypass by capture-replay in RPMB protocol message authe ...)
 	TODO: check
 CVE-2020-12354 (Incorrect default permissions in Windows(R) installer in Intel(R) AMT  ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12353 (Improper permissions in the Intel(R) Data Center Manager Console befor ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12352
 	RESERVED
 	{DSA-4774-1 DLA-2420-1 DLA-2417-1}
@@ -37819,17 +37819,17 @@ CVE-2020-12351
 	NOTE: https://github.com/google/security-research/security/advisories/GHSA-h637-c88j-47wq
 	NOTE: Fixed by: https://git.kernel.org/linus/f19425641cb2572a33cb074d5e30283720bd4d22
 CVE-2020-12350 (Improper access control in the Intel(R) XTU before version 6.5.1.360 m ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12349 (Improper input validation in the Intel(R) Data Center Manager Console  ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12348
 	RESERVED
 CVE-2020-12347 (Improper input validation in the Intel(R) Data Center Manager Console  ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12346 (Improper permissions in the installer for the Intel(R) Battery Life Di ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12345 (Improper permissions in the installer for the Intel(R) Data Center Man ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12344
 	RESERVED
 CVE-2020-12343
@@ -37845,41 +37845,41 @@ CVE-2020-12339
 CVE-2020-12338
 	RESERVED
 CVE-2020-12337 (Improper buffer restrictions in firmware for some Intel(R) NUCs may al ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12336 (Insecure default variable initialization in firmware for some Intel(R) ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12335 (Improper permissions in the installer for the Intel(R) Processor Ident ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12334 (Improper permissions in the installer for the Intel(R) Advisor tools b ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12333 (Insufficiently protected credentials in the Intel(R) QAT for Linux bef ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12332 (Improper permissions in the installer for the Intel(R) HID Event Filte ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12331 (Improper access controls in Intel Unite(R) Cloud Service client before ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12330 (Improper permissions in the installer for the Intel(R) Falcon 8+ UAS A ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12329 (Uncontrolled search path in the Intel(R) VTune(TM) Profiler before ver ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12328 (Protection mechanism failure in some Intel(R) Thunderbolt(TM) DCH driv ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12327 (Insecure default variable initialization in some Intel(R) Thunderbolt( ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12326 (Improper initialization in some Intel(R) Thunderbolt(TM) DCH drivers f ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12325 (Improper buffer restrictions in some Intel(R) Thunderbolt(TM) DCH driv ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12324 (Protection mechanism failure in some Intel(R) Thunderbolt(TM) DCH driv ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12323 (Improper input validation in the Intel(R) ADAS IE before version ADAS_ ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12322 (Improper input validation in some Intel(R) Wireless Bluetooth(R) produ ...)
 	TODO: check
 CVE-2020-12321 (Improper buffer restriction in some Intel(R) Wireless Bluetooth(R) pro ...)
 	TODO: check
 CVE-2020-12320 (Uncontrolled search path in Intel(R) SCS Add-on for Microsoft* SCCM be ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12319 (Insufficient control flow management in some Intel(R) PROSet/Wireless  ...)
 	TODO: check
 CVE-2020-12318 (Protection mechanism failure in some Intel(R) PROSet/Wireless WiFi pro ...)
@@ -37887,33 +37887,33 @@ CVE-2020-12318 (Protection mechanism failure in some Intel(R) PROSet/Wireless Wi
 CVE-2020-12317 (Improper buffer restriction in some Intel(R) PROSet/Wireless WiFi prod ...)
 	TODO: check
 CVE-2020-12316 (Insufficiently protected credentials in the Intel(R) EMA before versio ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12315 (Path traversal in the Intel(R) EMA before version 1.3.3 may allow an u ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12314 (Improper input validation in some Intel(R) PROSet/Wireless WiFi produc ...)
 	TODO: check
 CVE-2020-12313
 	RESERVED
 CVE-2020-12312 (Improper buffer restrictions in the Intel(R) Stratix(R) 10 FPGA firmwa ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12311 (Insufficient control flow managementin firmware in some Intel(R) Clien ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12310 (Insufficient control flow managementin firmware in some Intel(R) Clien ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12309 (Insufficiently protected credentialsin subsystem in some Intel(R) Clie ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12308 (Improper access control for the Intel(R) Computing Improvement Program ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12307 (Improper permissions in some Intel(R) High Definition Audio drivers be ...)
 	TODO: check
 CVE-2020-12306 (Incorrect default permissions in the Intel(R) RealSense(TM) D400 Serie ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12305
 	RESERVED
 CVE-2020-12304 (Improper access control in Installer for Intel(R) DAL SDK before versi ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12303 (Use after free in DAL subsystem for Intel(R) CSME versions before 11.8 ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12302 (Improper permissions in the Intel(R) Driver & Support Assistant be ...)
 	NOT-FOR-US: Intel
 CVE-2020-12301 (Improper initialization in BIOS firmware for Intel(R) Server Board Fam ...)
@@ -37925,7 +37925,7 @@ CVE-2020-12299 (Improper input validation in BIOS firmware for Intel(R) Server B
 CVE-2020-12298
 	RESERVED
 CVE-2020-12297 (Improper access control in Installer for Intel(R) CSME Driver for Wind ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-12296
 	RESERVED
 CVE-2020-12295
@@ -47444,7 +47444,7 @@ CVE-2020-9130
 CVE-2020-9129
 	RESERVED
 CVE-2020-9128 (FusionCompute versions 8.0.0 have an insecure encryption algorithm vul ...)
-	TODO: check
+	NOT-FOR-US: Uawei FusionCompute
 CVE-2020-9127
 	RESERVED
 CVE-2020-9126
@@ -48335,53 +48335,53 @@ CVE-2020-8769
 CVE-2020-8768 (An issue was discovered on Phoenix Contact Emalytics Controller ILC 20 ...)
 	NOT-FOR-US: PHOENIX CONTACT Emalytics Controller ILC 2050 BI(L)
 CVE-2020-8767 (Uncaught exception in the Intel(R) 50GbE IP Core for Intel(R) Quartus  ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8766 (Improper conditions check in the Intel(R) SGX DCAP software before ver ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8765
 	RESERVED
 CVE-2020-8764 (Improper access control in BIOS firmware for some Intel(R) Processors  ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8763 (Improper permissions in the installer for the Intel(R) RealSense(TM) D ...)
 	NOT-FOR-US: Intel
 CVE-2020-8762
 	RESERVED
 CVE-2020-8761 (Inadequate encryption strength in subsystem for Intel(R) CSME versions ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8760 (Integer overflow in subsystem for Intel(R) AMT versions before 11.8.80 ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8759 (Improper access control in the installer for Intel(R) SSD DCT versions ...)
 	NOT-FOR-US: Intel
 CVE-2020-8758 (Improper buffer restrictions in network subsystem in provisioned Intel ...)
 	NOT-FOR-US: Intel
 CVE-2020-8757 (Out-of-bounds read in subsystem for Intel(R) AMT versions before 11.8. ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8756 (Improper input validation in subsystem for Intel(R) CSME versions befo ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8755 (Race condition in subsystem for Intel(R) CSME versions before 12.0.70  ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8754 (Out-of-bounds read in subsystem for Intel(R) AMT, Intel(R) ISM version ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8753 (Out-of-bounds read in DHCP subsystem for Intel(R) AMT, Intel(R) ISM ve ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8752 (Out-of-bounds write in IPv6 subsystem for Intel(R) AMT, Intel(R) ISM v ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8751 (Insufficient control flow management in subsystem for Intel(R) CSME ve ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8750 (Use after free in Kernel Mode Driver for Intel(R) TXE versions before  ...)
 	TODO: check
 CVE-2020-8749 (Out-of-bounds read in subsystem for Intel(R) AMT versions before 11.8. ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8748
 	RESERVED
 CVE-2020-8747 (Out-of-bounds read in subsystem for Intel(R) AMT versions before 11.8. ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8746 (Integer overflow in subsystem for Intel(R) AMT versions before 11.8.80 ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8745 (Insufficient control flow management in subsystem for Intel(R) CSME ve ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8744 (Improper initialization in subsystem for Intel(R) CSME versions before ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8743 (Improper permissions in the installer for the Intel(R) Mailbox Interfa ...)
 	NOT-FOR-US: Intel
 CVE-2020-8742 (Improper input validation in the firmware for Intel(R) NUCs may allow  ...)
@@ -48389,13 +48389,13 @@ CVE-2020-8742 (Improper input validation in the firmware for Intel(R) NUCs may a
 CVE-2020-8741
 	RESERVED
 CVE-2020-8740 (Out of bounds write in Intel BIOS platform sample code for some Intel( ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8739 (Use of potentially dangerous function in Intel BIOS platform sample co ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8738 (Improper conditions check in Intel BIOS platform sample code for some  ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8737 (Improper buffer restrictions in the Intel(R) Stratix(R) 10 FPGA firmwa ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8736 (Improper access control in subsystem for the Intel(R) Computing Improv ...)
 	NOT-FOR-US: Intel
 CVE-2020-8735
@@ -48460,7 +48460,7 @@ CVE-2020-8707 (Buffer overflow in daemon for some Intel(R) Server Boards, Server
 CVE-2020-8706 (Buffer overflow in a daemon for some Intel(R) Server Boards, Server Sy ...)
 	NOT-FOR-US: Intel
 CVE-2020-8705 (Insecure default initialization of resource in Intel(R) Boot Guard in  ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8704
 	RESERVED
 CVE-2020-8703
@@ -48523,9 +48523,9 @@ CVE-2020-8679 (Out-of-bounds write in Kernel Mode Driver for some Intel(R) Graph
 CVE-2020-8678
 	RESERVED
 CVE-2020-8677 (Improper access control in the Intel(R) Visual Compute Accelerator 2,  ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8676 (Improper access control in the Intel(R) Visual Compute Accelerator 2,  ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8675 (Insufficient control flow management in firmware build and signing too ...)
 	NOT-FOR-US: Intel
 CVE-2020-8674 (Out-of-bounds read in DHCPv6 subsystem in Intel(R) AMT and Intel(R)ISM ...)
@@ -48539,7 +48539,7 @@ CVE-2020-8671 (Insufficient control flow management in BIOS firmware 8th, 9th Ge
 CVE-2020-8670
 	RESERVED
 CVE-2020-8669 (Improper input validation in the Intel(R) Data Center Manager Console  ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-8668
 	RESERVED
 CVE-2014-10400 (The session.lua library in CGILua 5.0.x uses sequential session IDs, w ...)
@@ -51553,7 +51553,7 @@ CVE-2020-7474 (A CWE-427: Uncontrolled Search Path Element vulnerability exists
 CVE-2020-7473 (In certain situations, all versions of Citrix ShareFile StorageZones ( ...)
 	NOT-FOR-US: Citrix
 CVE-2020-7472 (An authorization bypass and PHP local-file-include vulnerability in th ...)
-	TODO: check
+	NOT-FOR-US: SugarCRM
 CVE-2019-20390 (A Cross-Site Request Forgery (CSRF) vulnerability was discovered in Su ...)
 	NOT-FOR-US: Subrion CMS
 CVE-2019-20389 (An XSS issue was identified on the Subrion CMS 4.2.1 /panel/configurat ...)
@@ -51858,11 +51858,11 @@ CVE-2020-7335
 CVE-2020-7334 (Improper privilege assignment vulnerability in the installer McAfee Ap ...)
 	NOT-FOR-US: McAfee
 CVE-2020-7333 (Cross site scripting vulnerability in the firewall ePO extension of Mc ...)
-	TODO: check
+	NOT-FOR-US: McAfee
 CVE-2020-7332 (Cross Site Request Forgery vulnerability in the firewall ePO extension ...)
-	TODO: check
+	NOT-FOR-US: McAfee
 CVE-2020-7331 (Unquoted service executable path in McAfee Endpoint Security (ENS) pri ...)
-	TODO: check
+	NOT-FOR-US: McAfee
 CVE-2020-7330 (Privilege Escalation vulnerability in McAfee Total Protection (MTP) tr ...)
 	NOT-FOR-US: McAfee
 CVE-2020-7329 (Server-side request forgery vulnerability in the ePO extension in McAf ...)
@@ -71947,21 +71947,21 @@ CVE-2020-0593 (Improper buffer restrictions in BIOS firmware for some Intel(R) P
 CVE-2020-0592 (Out of bounds write in BIOS firmware for some Intel(R) Processors may  ...)
 	TODO: check
 CVE-2020-0591 (Improper buffer restrictions in BIOS firmware for some Intel(R) Proces ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-0590 (Improper input validation in BIOS firmware for some Intel(R) Processor ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-0589
 	RESERVED
 CVE-2020-0588 (Improper conditions check in BIOS firmware for some Intel(R) Processor ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-0587 (Improper conditions check in BIOS firmware for some Intel(R) Processor ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-0586 (Improper initialization in subsystem for Intel(R) SPS versions before  ...)
 	NOT-FOR-US: Intel
 CVE-2020-0585
 	RESERVED
 CVE-2020-0584 (Buffer overflow in firmware for Intel(R) SSD DC P4800X and P4801X Seri ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-0583 (Improper access control in the subsystem for Intel(R) Smart Sound Tech ...)
 	NOT-FOR-US: Intel
 CVE-2020-0582
@@ -71979,13 +71979,13 @@ CVE-2020-0577 (Insufficient control flow for Intel(R) Modular Server MFS2600KISP
 CVE-2020-0576 (Buffer overflow in Intel(R) Modular Server MFS2600KISPP Compute Module ...)
 	NOT-FOR-US: Intel
 CVE-2020-0575 (Improper buffer restrictions in the Intel(R) Unite Client for Windows* ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-0574 (Improper configuration in block design for Intel(R) MAX(R) 10 FPGA all ...)
 	NOT-FOR-US: Intel
 CVE-2020-0573 (Out of bounds read in the Intel CSI2 Host Controller driver may allow  ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-0572 (Improper input validation in the firmware for Intel(R) Server Board S2 ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2020-0571 (Improper conditions check in BIOS firmware for 8th Generation Intel(R) ...)
 	NOT-FOR-US: Intel
 CVE-2020-0570 (Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5 ...)
@@ -96037,7 +96037,7 @@ CVE-2019-11123 (Insufficient session validation in system firmware for Intel(R)
 CVE-2019-11122
 	RESERVED
 CVE-2019-11121 (Improper file permissions in the installer for the Intel(R) Media SDK  ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2019-11120 (Insufficient path checking in the installer for Intel(R) Active System ...)
 	NOT-FOR-US: Intel
 CVE-2019-11119 (Insufficient session validation in the service API for Intel(R) RWC3 v ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1a9d45eea884278c2b5de6a32d611a499a05634e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1a9d45eea884278c2b5de6a32d611a499a05634e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201113/233e473b/attachment.html>


More information about the debian-security-tracker-commits mailing list