[Git][security-tracker-team/security-tracker][master] Process more NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Aug 11 09:21:09 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
63ffb15b by Salvatore Bonaccorso at 2021-08-11T10:20:47+02:00
Process more NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -99,7 +99,7 @@ CVE-2021-38492
 CVE-2021-38491
 	RESERVED
 CVE-2021-38490 (Altova MobileTogether Server before 7.3 SP1 allows XML exponential ent ...)
-	TODO: check
+	NOT-FOR-US: Altova MobileTogether Server
 CVE-2021-38489
 	RESERVED
 CVE-2021-38488
@@ -2497,7 +2497,7 @@ CVE-2021-37427
 CVE-2021-37426
 	RESERVED
 CVE-2021-37425 (Altova MobileTogether Server before 7.3 SP1 allows XXE attacks, such a ...)
-	TODO: check
+	NOT-FOR-US: Altova MobileTogether Server
 CVE-2021-37424
 	RESERVED
 CVE-2021-37423
@@ -11009,11 +11009,11 @@ CVE-2021-33710 (A vulnerability has been identified in Teamcenter Active Workspa
 CVE-2021-33709 (A vulnerability has been identified in Teamcenter Active Workspace V4  ...)
 	NOT-FOR-US: Siemens
 CVE-2021-33708 (Due to insufficient input validation in Kyma, authenticated users can  ...)
-	TODO: check
+	NOT-FOR-US: Kyma
 CVE-2021-33707 (SAP NetWeaver Knowledge Management allows remote attackers to redirect ...)
 	NOT-FOR-US: SAP
 CVE-2021-33706 (Due to improper input validation in InfraBox, logs can be modified by  ...)
-	TODO: check
+	NOT-FOR-US: InfraBox
 CVE-2021-33705
 	RESERVED
 CVE-2021-33704
@@ -21927,7 +21927,7 @@ CVE-2021-29402
 CVE-2021-29401
 	RESERVED
 CVE-2021-29400 (A cross-site request forgery (CSRF) vulnerability in the My SMTP Conta ...)
-	TODO: check
+	NOT-FOR-US: My SMTP Contact plugin for GetSimple CMS
 CVE-2021-29399 (XMB is vulnerable to cross-site scripting (XSS) due to inadequate filt ...)
 	NOT-FOR-US: XMB
 CVE-2021-29398
@@ -22147,11 +22147,11 @@ CVE-2021-29298 (Improper Input Validation in Emerson GE Automation Proficy Machi
 CVE-2021-29297 (Buffer Overflow in Emerson GE Automation Proficy Machine Edition v8.0  ...)
 	NOT-FOR-US: Emerson GE Automation Proficy Machine Edition
 CVE-2021-29296 (** UNSUPPORTED WHEN ASSIGNED **Null Pointer Dereference vulnerability  ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2021-29295 (** UNSUPPORTED WHEN ASSIGNED **Null Pointer Dereference vulnerability  ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2021-29294 (** UNSUPPORTED WHEN ASSIGNED ** Null Pointer Dereference vulnerability ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2021-29293
 	RESERVED
 CVE-2021-29292
@@ -23235,9 +23235,9 @@ CVE-2021-28848 (Mintty before 3.4.5 allows remote servers to cause a denial of s
 CVE-2021-28847 (MobaXterm before 21.0 allows remote servers to cause a denial of servi ...)
 	NOT-FOR-US: MobaXterm
 CVE-2021-28846 (A Format String vulnerablity exists in TRENDnet TEW-755AP 1.11B03, TEW ...)
-	TODO: check
+	NOT-FOR-US: TRENDnet
 CVE-2021-28845 (Null Pointer Dereference vulnerability exists in TRENDnet TEW-755AP 1. ...)
-	TODO: check
+	NOT-FOR-US: TRENDnet
 CVE-2021-28844 (Null Pointer Dereference vulnerability exists in TRENDnet TEW-755AP 1. ...)
 	NOT-FOR-US: TRENDnet
 CVE-2021-28843 (Null Pointer Dereference vulnerability exists in TRENDnet TEW-755AP 1. ...)
@@ -46002,7 +46002,7 @@ CVE-2021-20034
 CVE-2021-20033
 	RESERVED
 CVE-2021-20032 (SonicWall Analytics 2.5 On-Prem is vulnerable to Java Debug Wire Proto ...)
-	TODO: check
+	NOT-FOR-US: SonicWall
 CVE-2021-20031
 	RESERVED
 CVE-2021-20030



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/63ffb15b2172bbdb6fdabf224d5feeae0cff5dc3

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/63ffb15b2172bbdb6fdabf224d5feeae0cff5dc3
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210811/e26cb93b/attachment.htm>


More information about the debian-security-tracker-commits mailing list