[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso carnil at debian.org
Thu Oct 22 09:49:41 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
25b380e1 by Salvatore Bonaccorso at 2020-10-22T10:49:21+02:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -6947,21 +6947,21 @@ CVE-2020-24427
 CVE-2020-24426
 	RESERVED
 CVE-2020-24425 (Dreamweaver version 20.2 (and earlier) is affected by an uncontrolled  ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2020-24424 (Adobe Premiere Pro version 14.4 (and earlier) is affected by an uncont ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2020-24423 (Adobe Media Encoder version 14.4 (and earlier) for Windows is affected ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2020-24422 (Adobe Creative Cloud Desktop Application version 5.2 (and earlier) and ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2020-24421 (Adobe InDesign version 15.1.2 (and earlier) is affected by a memory co ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2020-24420 (Adobe Photoshop for Windows version 21.2.1 (and earlier) is affected b ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2020-24419 (Adobe After Effects version 17.1.1 (and earlier) for Windows is affect ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2020-24418 (Adobe After Effects version 17.1.1 (and earlier) is affected by an out ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2020-24417
 	RESERVED
 CVE-2020-24416 (Marketo Sales Insight plugin version 1.4355 (and earlier) is affected  ...)
@@ -20988,7 +20988,7 @@ CVE-2020-17456 (SEOWON INTECH SLC-130 And SLR-120S devices allow Remote Code Exe
 CVE-2020-17455
 	RESERVED
 CVE-2020-17454 (WSO2 API Manager 3.1.0 and earlier has reflected XSS on the "publisher ...)
-	TODO: check
+	NOT-FOR-US: WSO2 API Manager
 CVE-2020-17453
 	RESERVED
 CVE-2020-17452 (flatCore before 1.5.7 allows upload and execution of a .php file by an ...)
@@ -21203,7 +21203,7 @@ CVE-2020-17357
 CVE-2020-17356
 	RESERVED
 CVE-2020-17355 (Arista EOS before 4.21.12M, 4.22.x before 4.22.7M, 4.23.x before 4.23. ...)
-	TODO: check
+	NOT-FOR-US: Arista
 CVE-2020-17354
 	RESERVED
 CVE-2020-17353 (scm/define-stencil-commands.scm in LilyPond through 2.20.0, and 2.21.x ...)
@@ -26116,7 +26116,7 @@ CVE-2020-15246
 CVE-2020-15245 (In Sylius before versions 1.6.9, 1.7.9 and 1.8.3, the user may registe ...)
 	NOT-FOR-US: Sylius
 CVE-2020-15244 (In Magento (rubygems openmage/magento-lts package) before versions 19. ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2020-15243 (Affected versions of Smartstore have a missing WebApi Authentication a ...)
 	NOT-FOR-US: Smartstore
 CVE-2020-15242 (Next.js versions >=9.5.0 and <9.5.4 are vulnerable to an Open Re ...)
@@ -42024,13 +42024,13 @@ CVE-2020-9752 (Naver Cloud Explorer before 2.2.2.11 allows the attacker can move
 CVE-2020-9751 (Naver Cloud Explorer before 2.2.2.11 allows the system to download an  ...)
 	NOT-FOR-US: Naver Cloud Explorer
 CVE-2020-9750 (Adobe Animate version 20.5 (and earlier) is affected by an out-of-boun ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2020-9749 (Adobe Animate version 20.5 (and earlier) is affected by an out-of-boun ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2020-9748 (Adobe Animate version 20.5 (and earlier) is affected by a stack overfl ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2020-9747 (Adobe Animate version 20.5 (and earlier) is affected by a double free  ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2020-9746 (Adobe Flash Player version 32.0.0.433 (and earlier) are affected by an ...)
 	NOT-FOR-US: Adobe Flash Plugin
 CVE-2020-9745 (Adobe Media Encoder version 14.3.2 (and earlier versions) has an out-o ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/25b380e16da49b937ac3f5e2d0e26fc7c4c257f7

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/25b380e16da49b937ac3f5e2d0e26fc7c4c257f7
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201022/76d1e17e/attachment.html>


More information about the debian-security-tracker-commits mailing list