[Git][security-tracker-team/security-tracker][master] Process some new NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Aug 14 13:52:27 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d4406311 by Salvatore Bonaccorso at 2021-08-14T14:51:51+02:00
Process some new NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -141,7 +141,7 @@ CVE-2021-38625
 CVE-2021-38624
 	RESERVED
 CVE-2021-38623 (The deferred_image_processing (aka Deferred image processing) extensio ...)
-	TODO: check
+	NOT-FOR-US: deferred_image_processing (aka Deferred image processing) extension for TYPO3
 CVE-2021-38622
 	RESERVED
 CVE-2021-38621 (The remove API in v1/controller/cloudStorage/alibabaCloud/remove/index ...)
@@ -2252,7 +2252,7 @@ CVE-2021-37707
 CVE-2021-37706
 	RESERVED
 CVE-2021-37705 (OneFuzz is an open source self-hosted Fuzzing-As-A-Service platform. S ...)
-	TODO: check
+	NOT-FOR-US: OneFuzz
 CVE-2021-37704 (PhpFastCache is a high-performance backend cache system (packagist pac ...)
 	TODO: check
 CVE-2021-37703 (Discourse is an open-source platform for community discussion. In Disc ...)
@@ -40206,9 +40206,9 @@ CVE-2021-21832
 CVE-2021-21831 (A use-after-free vulnerability exists in the JavaScript engine of Foxi ...)
 	NOT-FOR-US: Foxit
 CVE-2021-21830 (A heap-based buffer overflow vulnerability exists in the XML Decompres ...)
-	TODO: check
+	NOT-FOR-US: Xmill (AT&T Labs)
 CVE-2021-21829 (A heap-based buffer overflow vulnerability exists in the XML Decompres ...)
-	TODO: check
+	NOT-FOR-US: Xmill (AT&T Labs)
 CVE-2021-21828
 	RESERVED
 CVE-2021-21827
@@ -40236,13 +40236,13 @@ CVE-2021-21817 (An information disclosure vulnerability exists in the Zebra IP R
 CVE-2021-21816 (An information disclosure vulnerability exists in the Syslog functiona ...)
 	NOT-FOR-US: D-LINK
 CVE-2021-21815 (A stack-based buffer overflow vulnerability exists in the command-line ...)
-	TODO: check
+	NOT-FOR-US: Xmill (AT&T Labs)
 CVE-2021-21814 (Within the function HandleFileArg the argument filepattern is under co ...)
 	TODO: check
 CVE-2021-21813 (Within the function HandleFileArg the argument filepattern is under co ...)
-	TODO: check
+	NOT-FOR-US: Xmill (AT&T Labs)
 CVE-2021-21812 (A stack-based buffer overflow vulnerability exists in the command-line ...)
-	TODO: check
+	NOT-FOR-US: Xmill (AT&T Labs)
 CVE-2021-21811
 	RESERVED
 CVE-2021-21810
@@ -72370,11 +72370,11 @@ CVE-2020-21068
 CVE-2020-21067
 	RESERVED
 CVE-2020-21066 (An issue was discovered in Bento4 v1.5.1.0. There is a heap-buffer-ove ...)
-	TODO: check
+	NOT-FOR-US: Bento4
 CVE-2020-21065
 	RESERVED
 CVE-2020-21064 (A buffer-overflow vulnerability in the AP4_RtpAtom::AP4_RtpAtom functi ...)
-	TODO: check
+	NOT-FOR-US: Bento4
 CVE-2020-21063
 	RESERVED
 CVE-2020-21062



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d44063119e78c666b664521a4aeda66c8722e56f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d44063119e78c666b664521a4aeda66c8722e56f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210814/56fa14e0/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list