[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Dec 6 08:36:10 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
8efc3863 by Salvatore Bonaccorso at 2021-12-06T09:35:36+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1601,15 +1601,15 @@ CVE-2021-44050 (CA Network Flow Analysis (NFA) 21.2.1 and earlier contain a SQL
 CVE-2021-44049
 	RESERVED
 CVE-2021-44048 (An out-of-bounds write vulnerability exists when reading a TIF file us ...)
-	TODO: check
+	NOT-FOR-US: Open Design Alliance (ODA) Drawings Explorer
 CVE-2021-44047 (A use-after-free vulnerability exists when reading a DWF/DWFX file usi ...)
-	TODO: check
+	NOT-FOR-US: Open Design Alliance Drawings SDK
 CVE-2021-44046 (An out-of-bounds write vulnerability exists when reading U3D files in  ...)
-	TODO: check
+	NOT-FOR-US: Open Design Alliance Drawings SDK
 CVE-2021-44045 (An out-of-bounds write vulnerability exists when reading a DGN file us ...)
-	TODO: check
+	NOT-FOR-US: Open Design Alliance Drawings SDK
 CVE-2021-44044 (An out-of-bounds write vulnerability exists when reading a JPG file us ...)
-	TODO: check
+	NOT-FOR-US: Open Design Alliance Drawings SDK
 CVE-2021-44043
 	RESERVED
 CVE-2021-44042
@@ -6031,29 +6031,29 @@ CVE-2021-43045
 CVE-2021-3913
 	RESERVED
 CVE-2021-43044 (An issue was discovered in Kaseya Unitrends Backup Appliance before 10 ...)
-	TODO: check
+	NOT-FOR-US: Kaseya
 CVE-2021-43043 (An issue was discovered in Kaseya Unitrends Backup Appliance before 10 ...)
-	TODO: check
+	NOT-FOR-US: Kaseya
 CVE-2021-43042 (An issue was discovered in Kaseya Unitrends Backup Appliance before 10 ...)
-	TODO: check
+	NOT-FOR-US: Kaseya
 CVE-2021-43041 (An issue was discovered in Kaseya Unitrends Backup Appliance before 10 ...)
-	TODO: check
+	NOT-FOR-US: Kaseya
 CVE-2021-43040 (An issue was discovered in Kaseya Unitrends Backup Appliance before 10 ...)
-	TODO: check
+	NOT-FOR-US: Kaseya
 CVE-2021-43039 (An issue was discovered in Kaseya Unitrends Backup Appliance before 10 ...)
-	TODO: check
+	NOT-FOR-US: Kaseya
 CVE-2021-43038 (An issue was discovered in Kaseya Unitrends Backup Appliance before 10 ...)
-	TODO: check
+	NOT-FOR-US: Kaseya
 CVE-2021-43037 (An issue was discovered in Kaseya Unitrends Backup Appliance before 10 ...)
-	TODO: check
+	NOT-FOR-US: Kaseya
 CVE-2021-43036 (An issue was discovered in Kaseya Unitrends Backup Appliance before 10 ...)
-	TODO: check
+	NOT-FOR-US: Kaseya
 CVE-2021-43035 (An issue was discovered in Kaseya Unitrends Backup Appliance before 10 ...)
-	TODO: check
+	NOT-FOR-US: Kaseya
 CVE-2021-43034 (An issue was discovered in Kaseya Unitrends Backup Appliance before 10 ...)
-	TODO: check
+	NOT-FOR-US: Kaseya
 CVE-2021-43033 (An issue was discovered in Kaseya Unitrends Backup Appliance before 10 ...)
-	TODO: check
+	NOT-FOR-US: Kaseya
 CVE-2021-3912 (OctoRPKI tries to load the entire contents of a repository in memory,  ...)
 	- cfrpki 1.4.0-1
 	NOTE: https://github.com/cloudflare/cfrpki/security/advisories/GHSA-g9wh-3vrx-r7hg
@@ -21185,7 +21185,7 @@ CVE-2021-37255
 CVE-2021-37254 (In M-Files Web product with versions before 20.10.9524.1 and 20.10.944 ...)
 	NOT-FOR-US: M-Files
 CVE-2021-37253 (M-Files Web before 20.10.9524.1 allows a denial of service via overlap ...)
-	TODO: check
+	NOT-FOR-US: M-Files Web
 CVE-2021-37252
 	RESERVED
 CVE-2021-37251



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8efc3863bc0947c7d6012bb52ce29b34818a2674

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8efc3863bc0947c7d6012bb52ce29b34818a2674
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211206/9229953b/attachment.htm>


More information about the debian-security-tracker-commits mailing list