[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff jmm at debian.org
Thu Oct 8 16:04:14 BST 2020



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f8dd2a5b by Moritz Muehlenhoff at 2020-10-08T17:03:35+02:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -36223,8 +36223,10 @@ CVE-2020-11175
 	RESERVED
 CVE-2020-11174
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-11173
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-11172
 	RESERVED
 CVE-2020-11171
@@ -36233,6 +36235,7 @@ CVE-2020-11170
 	RESERVED
 CVE-2020-11169
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-11168
 	RESERVED
 CVE-2020-11167
@@ -36243,10 +36246,12 @@ CVE-2020-11165
 	RESERVED
 CVE-2020-11164
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-11163
 	RESERVED
 CVE-2020-11162
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-11161
 	RESERVED
 CVE-2020-11160
@@ -36257,12 +36262,16 @@ CVE-2020-11158 (u'Null pointer dereference in HP OfficeJet Pro 8210 jbig2 filter
 	NOT-FOR-US: Qualcomm
 CVE-2020-11157
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-11156
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-11155
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-11154
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-11153
 	RESERVED
 CVE-2020-11152
@@ -36289,6 +36298,7 @@ CVE-2020-11142
 	RESERVED
 CVE-2020-11141
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-11140
 	RESERVED
 CVE-2020-11139
@@ -36321,6 +36331,7 @@ CVE-2020-11126
 	RESERVED
 CVE-2020-11125
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-11124 (u'Possible use-after-free while accessing diag client map table since  ...)
 	NOT-FOR-US: Snapdragon
 CVE-2020-11123
@@ -55930,8 +55941,10 @@ CVE-2020-3705
 	RESERVED
 CVE-2020-3704
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-3703
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-3702 (u'Specifically timed and handcrafted traffic can cause internal errors ...)
 	NOT-FOR-US: Snapdragon
 CVE-2020-3701 (Use after free issue while processing error notification from camx dri ...)
@@ -55954,10 +55967,12 @@ CVE-2020-3693
 	RESERVED
 CVE-2020-3692
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-3691
 	RESERVED
 CVE-2020-3690
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-3689
 	RESERVED
 CVE-2020-3688 (Possible buffer overflow while parsing mp4 clip with corrupted sample  ...)
@@ -55970,6 +55985,7 @@ CVE-2020-3685
 	RESERVED
 CVE-2020-3684
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-3683
 	RESERVED
 CVE-2020-3682
@@ -55982,6 +55998,7 @@ CVE-2020-3679 (u'During execution after Address Space Layout Randomization is tu
 	NOT-FOR-US: Snapdragon
 CVE-2020-3678
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-3677
 	RESERVED
 CVE-2020-3676 (Possible memory corruption in perfservice due to improper validation a ...)
@@ -55992,12 +56009,14 @@ CVE-2020-3674 (Information can leak into userspace due to improper transfer of d
 	NOT-FOR-US: Snapdragon
 CVE-2020-3673
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-3672
 	RESERVED
 CVE-2020-3671 (Use-after-free issue could occur due to dangling pointer when generati ...)
 	NOT-FOR-US: Snapdragon
 CVE-2020-3670
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-3669 (u'Buffer Overflow issue in WLAN tcp ip verification due to usage of ou ...)
 	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-3668 (u'Buffer overflow while parsing PMF enabled MCBC frames due to frame l ...)
@@ -56024,12 +56043,14 @@ CVE-2020-3658 (Possible null-pointer dereference can occur while parsing mp4 cli
 	NOT-FOR-US: Snapdragon
 CVE-2020-3657
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-3656 (Out of bound access can happen in MHI command process due to lack of c ...)
 	NOT-FOR-US: Snapdragon
 CVE-2020-3655
 	RESERVED
 CVE-2020-3654
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-3653 (Possible buffer over-read in windows wlan driver function due to lack  ...)
 	NOT-FOR-US: Snapdragon
 CVE-2020-3652 (Possible buffer over-read issue in windows x86 wlan driver function wh ...)
@@ -56062,6 +56083,7 @@ CVE-2020-3639
 	RESERVED
 CVE-2020-3638
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-3637
 	RESERVED
 CVE-2020-3636 (u'Out of bound writes happen when accessing usage_table header entry b ...)
@@ -67566,34 +67588,45 @@ CVE-2020-0423
 	RESERVED
 CVE-2020-0422
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0421
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0420
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0419
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0418
 	RESERVED
 CVE-2020-0417
 	RESERVED
 CVE-2020-0416
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0415
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0414
 	RESERVED
+	NOT-FOR-US: Android Media Framework
 CVE-2020-0413
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0412
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0411
 	RESERVED
+	NOT-FOR-US: Android Media Framework
 CVE-2020-0410
 	RESERVED
 CVE-2020-0409
 	RESERVED
 CVE-2020-0408
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0407 (In various functions in fscrypt_ice.c and related files in some implem ...)
 	NOT-FOR-US: Android kernel
 CVE-2020-0406 (In libmpeg2dec, there is a possible out of bounds write due to a missi ...)
@@ -67614,10 +67647,12 @@ CVE-2020-0401 (In setInstallerPackageName of PackageManagerService.java, there i
 	NOT-FOR-US: Android
 CVE-2020-0400
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0399 (In showLimitedSimFunctionWarningNotification of NotificationMgr.java,  ...)
 	NOT-FOR-US: Android
 CVE-2020-0398
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0397 (In getNotificationBuilder of CarrierServiceStateTracker.java, there is ...)
 	NOT-FOR-US: Android
 CVE-2020-0396 (In various places in Telephony, there is a possible permission bypass  ...)
@@ -67658,10 +67693,13 @@ CVE-2020-0379 (In the Bluetooth service, there is a possible spoofing attack due
 	NOT-FOR-US: Android
 CVE-2020-0378
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0377
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0376
 	RESERVED
+	NOT-FOR-US: MediaTek components for Android
 CVE-2020-0375 (In Telephony, there is a possible permission bypass due to a missing p ...)
 	NOT-FOR-US: Android
 CVE-2020-0374 (In NFC, there is a possible permission bypass due to an unsafe Pending ...)
@@ -67672,6 +67710,7 @@ CVE-2020-0372 (In ActivityManager, there is a possible access to protected data
 	NOT-FOR-US: Android
 CVE-2020-0371
 	RESERVED
+	NOT-FOR-US: MediaTek components for Android
 CVE-2020-0370 (In libAACdec, there is a possible out of bounds read due to missing bo ...)
 	NOT-FOR-US: Android Media Framework
 CVE-2020-0369 (In libavb, there is a possible out of bounds write due to an integer o ...)
@@ -67680,6 +67719,7 @@ CVE-2020-0368
 	RESERVED
 CVE-2020-0367
 	RESERVED
+	NOT-FOR-US: MediaTek components for Android
 CVE-2020-0366 (In PackageInstaller, there is a possible permissions bypass due to a t ...)
 	NOT-FOR-US: Android
 CVE-2020-0365 (In netd, there is a possible out of bounds read due to a missing bound ...)
@@ -67736,6 +67776,7 @@ CVE-2020-0340 (In libcodec2_soft_mp3dec, there is a possible information disclos
 	NOT-FOR-US: Android Media Framework
 CVE-2020-0339
 	RESERVED
+	NOT-FOR-US: MediaTek components for Android
 CVE-2020-0338 (In AccountManager, there is a possible bypass of a permissions check d ...)
 	NOT-FOR-US: Android
 CVE-2020-0337 (In MediaProvider, there is a possible bypass of a permissions check du ...)
@@ -67856,6 +67897,7 @@ CVE-2020-0284 (In Telephony, there is a possible permission bypass due to a miss
 	NOT-FOR-US: Android
 CVE-2020-0283
 	RESERVED
+	NOT-FOR-US: MediaTek components for Android
 CVE-2020-0282 (In NFC, there is a possible out of bounds read due to a missing bounds ...)
 	NOT-FOR-US: Android
 CVE-2020-0281 (In NFC, there is a possible out of bounds read due to a missing bounds ...)
@@ -67930,6 +67972,7 @@ CVE-2020-0247 (In Threshold::getHistogram of ImageProcessHelper.java, there is a
 	NOT-FOR-US: Android
 CVE-2020-0246
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2020-0245 (In DecodeFrameCombinedMode of combined_decode.cpp, there is a possible ...)
 	NOT-FOR-US: Android Media framework
 CVE-2020-0244



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f8dd2a5b8d708b48915fad984e26306a88decfb1

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f8dd2a5b8d708b48915fad984e26306a88decfb1
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201008/dfbe8985/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list