[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso carnil at debian.org
Fri Oct 23 21:35:26 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
c2178ce5 by Salvatore Bonaccorso at 2020-10-23T22:35:02+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -5162,7 +5162,7 @@ CVE-2020-25485
 CVE-2020-25484
 	RESERVED
 CVE-2020-25483 (An arbitrary command execution vulnerability exists in the fopen() fun ...)
-	TODO: check
+	NOT-FOR-US: UCMS
 CVE-2020-25482
 	RESERVED
 CVE-2020-25481
@@ -5196,7 +5196,7 @@ CVE-2020-25468
 CVE-2020-25467
 	RESERVED
 CVE-2020-25466 (A SSRF vulnerability exists in the downloadimage interface of CRMEB 3. ...)
-	TODO: check
+	NOT-FOR-US: CRMEB
 CVE-2020-25465
 	RESERVED
 CVE-2020-25464
@@ -6570,9 +6570,9 @@ CVE-2020-24850
 CVE-2020-24849
 	RESERVED
 CVE-2020-24848 (FruityWifi through 2.4 has an unsafe Sudo configuration [(ALL : ALL) N ...)
-	TODO: check
+	NOT-FOR-US: FruityWifi
 CVE-2020-24847 (A Cross-Site Request Forgery (CSRF) vulnerability is identified in Fru ...)
-	TODO: check
+	NOT-FOR-US: FruityWifi
 CVE-2020-24846
 	RESERVED
 CVE-2020-24845
@@ -52017,7 +52017,7 @@ CVE-2020-5992
 CVE-2020-5991
 	RESERVED
 CVE-2020-5990 (NVIDIA GeForce Experience, all versions prior to 3.20.5.70, contains a ...)
-	TODO: check
+	NOT-FOR-US: NVIDIA GeForce Experience
 CVE-2020-5989 (NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin ...)
 	NOT-FOR-US: NVIDIA Virtual GPU Manager
 CVE-2020-5988 (NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin ...)
@@ -52041,9 +52041,9 @@ CVE-2020-5980 (NVIDIA Windows GPU Display Driver, all versions, contains a vulne
 CVE-2020-5979 (NVIDIA Windows GPU Display Driver, all versions, contains a vulnerabil ...)
 	NOT-FOR-US: NVIDIA Windows GPU Display Driver
 CVE-2020-5978 (NVIDIA GeForce Experience, all versions prior to 3.20.5.70, contains a ...)
-	TODO: check
+	NOT-FOR-US: NVIDIA GeForce Experience
 CVE-2020-5977 (NVIDIA GeForce Experience, all versions prior to 3.20.5.70, contains a ...)
-	TODO: check
+	NOT-FOR-US: NVIDIA GeForce Experience
 CVE-2020-5976 (NVIDIA GeForce NOW, versions prior to 2.0.23 (Windows, macOS) and vers ...)
 	NOT-FOR-US: NVIDIA GeForce NOW
 CVE-2020-5975 (NVIDIA GeForce NOW, versions prior to 2.0.23 on Windows and macOS, con ...)
@@ -56756,9 +56756,9 @@ CVE-2020-4000
 CVE-2020-3999
 	RESERVED
 CVE-2020-3998 (VMware Horizon Client for Windows (5.x prior to 5.5.0) contains an inf ...)
-	TODO: check
+	NOT-FOR-US: VMware
 CVE-2020-3997 (VMware Horizon Server (7.x prior to 7.10.3 or 7.13.0) contains a Cross ...)
-	TODO: check
+	NOT-FOR-US: VMware
 CVE-2020-3996 (Velero (prior to 1.4.3 and 1.5.2) in some instances doesn’t prop ...)
 	NOT-FOR-US: Velero
 CVE-2020-3995 (In VMware ESXi (6.7 before ESXi670-201908101-SG, 6.5 before ESXi650-20 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c2178ce565a8ef0da23b0f24b1ebb8ca1ea9943b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c2178ce565a8ef0da23b0f24b1ebb8ca1ea9943b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20201023/ce5fb329/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list