[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Dec 1 08:14:02 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e60e686b by Salvatore Bonaccorso at 2021-12-01T09:13:39+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -523,7 +523,7 @@ CVE-2021-4028 [use-after-free in RDMA listen()]
 CVE-2021-4027
 	RESERVED
 CVE-2021-4026 (bookstack is vulnerable to Improper Access Control ...)
-	TODO: check
+	NOT-FOR-US: bookstack
 CVE-2021-4025
 	RESERVED
 CVE-2021-44235
@@ -3785,11 +3785,11 @@ CVE-2021-43362
 CVE-2021-43361
 	RESERVED
 CVE-2021-43360 (Sunnet eHRD e-mail delivery task schedule’s serialization functi ...)
-	TODO: check
+	NOT-FOR-US: Sunnet eHRD
 CVE-2021-43359 (Sunnet eHRD has broken access control vulnerability, which allows a re ...)
-	TODO: check
+	NOT-FOR-US: Sunnet eHRD
 CVE-2021-43358 (Sunnet eHRD has inadequate filtering for special characters in URLs, w ...)
-	TODO: check
+	NOT-FOR-US: Sunnet eHRD
 CVE-2021-3928 (vim is vulnerable to Stack-based Buffer Overflow ...)
 	- vim <unfixed>
 	[stretch] - vim <no-dsa> (Minor issue)
@@ -22834,15 +22834,15 @@ CVE-2021-36332 (Dell EMC CloudLink 7.1 and all prior versions contain a HTML and
 CVE-2021-36331
 	RESERVED
 CVE-2021-36330 (Dell EMC Streaming Data Platform versions before 1.3 contain an Insuff ...)
-	TODO: check
+	NOT-FOR-US: Dell EMC Streaming Data Platform
 CVE-2021-36329 (Dell EMC Streaming Data Platform versions before 1.3 contain an Indire ...)
-	TODO: check
+	NOT-FOR-US: Dell EMC Streaming Data Platform
 CVE-2021-36328 (Dell EMC Streaming Data Platform versions before 1.3 contain a SQL Inj ...)
-	TODO: check
+	NOT-FOR-US: Dell EMC Streaming Data Platform
 CVE-2021-36327 (Dell EMC Streaming Data Platform versions before 1.3 contain a Server  ...)
-	TODO: check
+	NOT-FOR-US: Dell EMC Streaming Data Platform
 CVE-2021-36326 (Dell EMC Streaming Data Platform, versions prior to 1.3 contain an SSL ...)
-	TODO: check
+	NOT-FOR-US: Dell EMC Streaming Data Platform
 CVE-2021-36325 (Dell BIOS contains an improper input validation vulnerability. A local ...)
 	NOT-FOR-US: Dell
 CVE-2021-36324 (Dell BIOS contains an improper input validation vulnerability. A local ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e60e686b02f2225d0e09a48d1113939c8bd9e425

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e60e686b02f2225d0e09a48d1113939c8bd9e425
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211201/a876d48d/attachment.htm>


More information about the debian-security-tracker-commits mailing list