[Git][security-tracker-team/security-tracker][master] Process several more NFUs

Salvatore Bonaccorso carnil at debian.org
Wed Oct 21 21:39:55 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
c0b7ff7f by Salvatore Bonaccorso at 2020-10-21T22:39:31+02:00
Process several more NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -27237,7 +27237,7 @@ CVE-2020-14742 (Vulnerability in the Core RDBMS component of Oracle Database Ser
 CVE-2020-14741 (Vulnerability in the Database Filesystem component of Oracle Database  ...)
 	NOT-FOR-US: Oracle
 CVE-2020-14740 (Vulnerability in the SQL Developer Install component of Oracle Databas ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2020-14739
 	RESERVED
 CVE-2020-14738
@@ -27245,17 +27245,17 @@ CVE-2020-14738
 CVE-2020-14737
 	RESERVED
 CVE-2020-14736 (Vulnerability in the Database Vault component of Oracle Database Serve ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2020-14735 (Vulnerability in the Scheduler component of Oracle Database Server. Su ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2020-14734 (Vulnerability in the Oracle Text component of Oracle Database Server.  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2020-14733
 	RESERVED
 CVE-2020-14732 (Vulnerability in the Oracle Retail Customer Management and Segmentatio ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2020-14731 (Vulnerability in the Oracle Retail Customer Management and Segmentatio ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2020-14730
 	RESERVED
 CVE-2020-14729 (Vulnerability in SuiteCommerce Advanced (SCA) Sites component of Oracl ...)
@@ -49589,7 +49589,7 @@ CVE-2020-6650 (UPS companion software v1.05 & Prior is affected by ‘Ev
 CVE-2020-6649
 	RESERVED
 CVE-2020-6648 (A cleartext storage of sensitive information vulnerability in FortiOS  ...)
-	TODO: check
+	NOT-FOR-US: Fortiguard FortiOS
 CVE-2020-6647 (An improper neutralization of input vulnerability in the dashboard of  ...)
 	NOT-FOR-US: Fortiguard
 CVE-2020-6646 (An improper neutralization of input vulnerability in FortiWeb allows a ...)
@@ -58130,7 +58130,7 @@ CVE-2020-3601 (A vulnerability in the CLI of Cisco StarOS operating system for C
 CVE-2020-3600
 	RESERVED
 CVE-2020-3599 (A vulnerability in the web-based management interface of Cisco Adaptiv ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3598 (A vulnerability in the web-based management interface of Cisco Vision  ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3597 (A vulnerability in the configuration restore feature of Cisco Nexus Da ...)
@@ -58158,23 +58158,23 @@ CVE-2020-3587
 CVE-2020-3586
 	RESERVED
 CVE-2020-3585 (A vulnerability in the TLS handler of Cisco Adaptive Security Applianc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3584
 	RESERVED
 CVE-2020-3583 (Multiple vulnerabilities in the web services interface of Cisco Adapti ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3582 (Multiple vulnerabilities in the web services interface of Cisco Adapti ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3581 (Multiple vulnerabilities in the web services interface of Cisco Adapti ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3580 (Multiple vulnerabilities in the web services interface of Cisco Adapti ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3579
 	RESERVED
 CVE-2020-3578 (A vulnerability in the web services interface of Cisco Adaptive Securi ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3577 (A vulnerability in the ingress packet processing path of Cisco Firepow ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3576
 	RESERVED
 CVE-2020-3575
@@ -58184,9 +58184,9 @@ CVE-2020-3574
 CVE-2020-3573
 	RESERVED
 CVE-2020-3572 (A vulnerability in the SSL/TLS session handler of Cisco Adaptive Secur ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3571 (A vulnerability in the ICMP ingress packet processing of Cisco Firepow ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3570
 	RESERVED
 CVE-2020-3569 (Multiple vulnerabilities in the Distance Vector Multicast Routing Prot ...)
@@ -58198,39 +58198,39 @@ CVE-2020-3567 (A vulnerability in the management REST API of Cisco Industrial Ne
 CVE-2020-3566 (A vulnerability in the Distance Vector Multicast Routing Protocol (DVM ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3565 (A vulnerability in the TCP Intercept functionality of Cisco Firepower  ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3564 (A vulnerability in the FTP inspection engine of Cisco Adaptive Securit ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3563 (A vulnerability in the packet processing functionality of Cisco Firepo ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3562 (A vulnerability in the SSL/TLS inspection of Cisco Firepower Threat De ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3561 (A vulnerability in the Clientless SSL VPN (WebVPN) of Cisco Adaptive S ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3560 (A vulnerability in Cisco Aironet Access Points (APs) could allow an un ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3559 (A vulnerability in Cisco Aironet Access Point (AP) Software could allo ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3558 (A vulnerability in the web-based management interface of Cisco Firepow ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3557 (A vulnerability in the host input API daemon of Cisco Firepower Manage ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3556
 	RESERVED
 CVE-2020-3555 (A vulnerability in the SIP inspection process of Cisco Adaptive Securi ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3554 (A vulnerability in the TCP packet processing of Cisco Adaptive Securit ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3553 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3552 (A vulnerability in the Ethernet packet handling of Cisco Aironet Acces ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3551
 	RESERVED
 CVE-2020-3550 (A vulnerability in the sfmgr daemon of Cisco Firepower Management Cent ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3549 (A vulnerability in the sftunnel functionality of Cisco Firepower Manag ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3548
 	RESERVED
 CVE-2020-3547 (A vulnerability in the web-based management interface of Cisco AsyncOS ...)
@@ -58262,7 +58262,7 @@ CVE-2020-3535 (A vulnerability in the loading mechanism of specific DLLs in the
 CVE-2020-3534
 	RESERVED
 CVE-2020-3533 (A vulnerability in the Simple Network Management Protocol (SNMP) input ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3532
 	RESERVED
 CVE-2020-3531
@@ -58270,9 +58270,9 @@ CVE-2020-3531
 CVE-2020-3530 (A vulnerability in task group assignment for a specific CLI command in ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3529 (A vulnerability in the SSL VPN negotiation process for Cisco Adaptive  ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3528 (A vulnerability in the OSPF Version 2 (OSPFv2) implementation of Cisco ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3527 (A vulnerability in the Polaris kernel of Cisco Catalyst 9200 Series Sw ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3526 (A vulnerability in the Common Open Policy Service (COPS) engine of Cis ...)
@@ -58298,9 +58298,9 @@ CVE-2020-3517 (A vulnerability in the Cisco Fabric Services component of Cisco F
 CVE-2020-3516 (A vulnerability in the web server authentication of Cisco IOS XE Softw ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3515 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3514 (A vulnerability in the multi-instance feature of Cisco Firepower Threa ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3513 (Multiple vulnerabilities in the initialization routines that are execu ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3512 (A vulnerability in the PROFINET handler for Link Layer Discovery Proto ...)
@@ -58330,7 +58330,7 @@ CVE-2020-3501 (Multiple vulnerabilities in the user interface of Cisco Webex Mee
 CVE-2020-3500 (A vulnerability in the IPv6 implementation of Cisco StarOS could allow ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3499 (A vulnerability in the licensing service of Cisco Firepower Management ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3498 (A vulnerability in Cisco Jabber software could allow an authenticated, ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3497 (Multiple vulnerabilities in the Control and Provisioning of Wireless A ...)
@@ -58413,15 +58413,15 @@ CVE-2020-3461 (A vulnerability in the web-based management interface of Cisco Da
 CVE-2020-3460 (A vulnerability in the web-based management interface of Cisco Data Ce ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3459 (A vulnerability in the CLI of Cisco FXOS Software could allow an authe ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3458 (Multiple vulnerabilities in the secure boot process of Cisco Adaptive  ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3457 (A vulnerability in the CLI of Cisco FXOS Software could allow an authe ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3456 (A vulnerability in the Cisco Firepower Chassis Manager (FCM) of Cisco  ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3455 (A vulnerability in the secure boot process of Cisco FXOS Software coul ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3454 (A vulnerability in the Call Home feature of Cisco NX-OS Software could ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3453 (Multiple vulnerabilities in the web-based management interface of Cisc ...)
@@ -58459,7 +58459,7 @@ CVE-2020-3438
 CVE-2020-3437 (A vulnerability in the web-based management interface of Cisco SD-WAN  ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3436 (A vulnerability in the web services interface of Cisco Adaptive Securi ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3435 (A vulnerability in the interprocess communication (IPC) channel of Cis ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3434 (A vulnerability in the interprocess communication (IPC) channel of Cis ...)
@@ -58511,7 +58511,7 @@ CVE-2020-3412 (A vulnerability in the scheduled meeting template feature of Cisc
 CVE-2020-3411 (A vulnerability in Cisco DNA Center software could allow an unauthenti ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3410 (A vulnerability in the Common Access Card (CAC) authentication feature ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3409 (A vulnerability in the PROFINET feature of Cisco IOS Software and Cisc ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3408 (A vulnerability in the Split DNS feature of Cisco IOS Software and Cis ...)
@@ -58585,7 +58585,7 @@ CVE-2020-3375 (A vulnerability in Cisco SD-WAN Solution Software could allow an
 CVE-2020-3374 (A vulnerability in the web-based management interface of Cisco SD-WAN  ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3373 (A vulnerability in the IP fragment-handling implementation of Cisco Ad ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3372 (A vulnerability in the web-based management interface of Cisco SD-WAN  ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3371
@@ -58627,7 +58627,7 @@ CVE-2020-3354 (A vulnerability in the web-based management interface of Cisco Da
 CVE-2020-3353 (A vulnerability in the syslog processing engine of Cisco Identity Serv ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3352 (A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Sof ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3351 (A vulnerability in Cisco SD-WAN Solution Software could allow an unaut ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3350 (A vulnerability in the endpoint software of Cisco AMP for Endpoints an ...)
@@ -58709,7 +58709,7 @@ CVE-2020-3319 (A vulnerability in Cisco Webex Network Recording Player and Cisco
 CVE-2020-3318 (Multiple vulnerabilities in Cisco Firepower Management Center (FMC) So ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3317 (A vulnerability in the ssl_inspection component of Cisco Firepower Thr ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3316
 	RESERVED
 CVE-2020-3315 (Multiple Cisco products are affected by a vulnerability in the Snort d ...)
@@ -58735,7 +58735,7 @@ CVE-2020-3306 (A vulnerability in the DHCP module of Cisco Adaptive Security App
 CVE-2020-3305 (A vulnerability in the implementation of the Border Gateway Protocol ( ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3304 (A vulnerability in the web interface of Cisco Adaptive Security Applia ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2020-3303 (A vulnerability in the Internet Key Exchange version 1 (IKEv1) feature ...)
 	NOT-FOR-US: Cisco
 CVE-2020-3302 (A vulnerability in the web UI of Cisco Firepower Management Center (FM ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c0b7ff7f9b26673f68222383d2ee121eb9a8626d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c0b7ff7f9b26673f68222383d2ee121eb9a8626d
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201021/d9b55008/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list