[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso carnil at debian.org
Tue Sep 1 21:14:24 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4756f2f9 by Salvatore Bonaccorso at 2020-09-01T22:13:29+02:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1041,13 +1041,13 @@ CVE-2020-24561
 CVE-2020-24560
 	RESERVED
 CVE-2020-24559 (A vulnerability in Trend Micro Apex One on macOS may allow an attacker ...)
-	TODO: check
+	NOT-FOR-US: Trend Micro
 CVE-2020-24558 (A vulnerability in an Trend Micro Apex One dll may allow an attacker t ...)
-	TODO: check
+	NOT-FOR-US: Trend Micro
 CVE-2020-24557 (A vulnerability in Trend Micro Apex One on Microsoft Windows may allow ...)
-	TODO: check
+	NOT-FOR-US: Trend Micro
 CVE-2020-24556 (A vulnerability in Trend Micro Apex One and OfficeScan XG SP1 on Micro ...)
-	TODO: check
+	NOT-FOR-US: Trend Micro
 CVE-2020-24614 (Fossil before 2.10.2, 2.11.x before 2.11.2, and 2.12.x before 2.12.1 a ...)
 	- fossil 1:2.12.1-1
 	[buster] - fossil <no-dsa> (Minor issue)
@@ -40139,7 +40139,7 @@ CVE-2020-8025 (A Incorrect Execution-Assigned Permissions vulnerability in the p
 CVE-2020-8024 (A Incorrect Default Permissions vulnerability in the packaging of hyla ...)
 	- hylafax <not-affected> (SuSE-specific packaging issue)
 CVE-2020-8023 (A acceptance of Extraneous Untrusted Data With Trusted Data vulnerabil ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2020-8022 (A Incorrect Default Permissions vulnerability in the packaging of tomc ...)
 	NOT-FOR-US: SAP
 CVE-2020-8021 (a Improper Access Control vulnerability in of Open Build Service allow ...)
@@ -332521,17 +332521,17 @@ CVE-2012-3342 (Unspecified vulnerability in the Java Runtime Environment (JRE) c
 	- openjdk-6 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
 	- openjdk-7 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
 CVE-2012-3341 (IBM InfoSphere Guardium 7.0, 8.0, 8.01, and 8.2 is vulnerable to cross ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2012-3340 (IBM InfoSphere Guardium 8.0, 8.01, and 8.2 is vulnerable to XML extern ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2012-3339
 	RESERVED
 CVE-2012-3338 (IBM InfoSphere Guardium 8.0, 8.01, and 8.2 could allow a remote attack ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2012-3337 (IBM InfoSphere Guardium 8.0, 8.01, and 8.2 could allow a remote attack ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2012-3336 (IBM InfoSphere Guardium 8.0, 8.01, and 8.2 is vulnerable to SQL inject ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2012-3335
 	RESERVED
 CVE-2012-3334 (Stack-based buffer overflow in IBM Informix Dynamic Server (IDS) 11.50 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4756f2f9f417335617bef521b89e834d5ddb1650

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4756f2f9f417335617bef521b89e834d5ddb1650
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200901/19d93ac5/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list