[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Jul 12 21:13:47 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
c90bbab9 by Salvatore Bonaccorso at 2021-07-12T22:13:25+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -16129,7 +16129,7 @@ CVE-2021-29824
 CVE-2021-29823
 	RESERVED
 CVE-2021-29822 (IBM Tivoli Netcool/OMNIbus_GUI 8.1.0 is vulnerable to cross-site scrip ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29821
 	RESERVED
 CVE-2021-29820
@@ -16163,11 +16163,11 @@ CVE-2021-29807
 CVE-2021-29806
 	RESERVED
 CVE-2021-29805 (IBM Tivoli Netcool/OMNIbus_GUI 8.1.0 is vulnerable to stored cross-sit ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29804 (IBM Tivoli Netcool/OMNIbus_GUI 8.1.0 is vulnerable to stored cross-sit ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29803 (IBM Tivoli Netcool/OMNIbus_GUI 8.1.0 is vulnerable to stored cross-sit ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29802
 	RESERVED
 CVE-2021-29801
@@ -16185,11 +16185,11 @@ CVE-2021-29796
 CVE-2021-29795
 	RESERVED
 CVE-2021-29794 (IBM Tivoli Netcool/Impact 7.1.0.20 and 7.1.0.21 uses an insecure SSH s ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29793
 	RESERVED
 CVE-2021-29792 (IBM Event Streams 10.0, 10.1, 10.2, and 10.3 could allow a user the CA ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29791
 	RESERVED
 CVE-2021-29790
@@ -35520,13 +35520,13 @@ CVE-2021-21593
 CVE-2021-21592
 	RESERVED
 CVE-2021-21591 (Dell EMC Unity, Unity XT, and UnityVSA versions prior to 5.1.0.0.5.394 ...)
-	TODO: check
+	NOT-FOR-US: EMC
 CVE-2021-21590 (Dell EMC Unity, Unity XT, and UnityVSA versions prior to 5.1.0.0.5.394 ...)
-	TODO: check
+	NOT-FOR-US: EMC
 CVE-2021-21589 (Dell EMC Unity, Unity XT, and UnityVSA versions prior to 5.1.0.0.5.394 ...)
-	TODO: check
+	NOT-FOR-US: EMC
 CVE-2021-21588 (Dell EMC PowerFlex, v3.5.x contain a Cross-Site WebSocket Hijacking Vu ...)
-	TODO: check
+	NOT-FOR-US: EMC
 CVE-2021-21587
 	RESERVED
 CVE-2021-21586
@@ -39759,7 +39759,7 @@ CVE-2021-20416 (IBM Guardium Data Encryption (GDE) 3.0.0.3 and 4.0.0.4 could all
 CVE-2021-20415 (IBM Guardium Data Encryption (GDE) 4.0.0.4 uses an inadequate account  ...)
 	NOT-FOR-US: IBM
 CVE-2021-20414 (IBM Guardium Data Encryption (GDE) 3.0.0.2 could allow a user to bruce ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-20413 (IBM Guardium Data Encryption (GDE) 4.0.0.4 could allow a remote attack ...)
 	NOT-FOR-US: IBM
 CVE-2021-20412 (IBM Security Verify Information Queue 1.0.6 and 1.0.7 contains hard-co ...)
@@ -108323,7 +108323,7 @@ CVE-2020-4940
 CVE-2020-4939
 	RESERVED
 CVE-2020-4938 (IBM MQ Appliance 9.1 and 9.2 is vulnerable to cross-site request forge ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2020-4937 (IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.0.3.2 u ...)
 	NOT-FOR-US: IBM
 CVE-2020-4936



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c90bbab919caa9a7f2fc708d9064767c4b7b3386

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c90bbab919caa9a7f2fc708d9064767c4b7b3386
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210712/a37e1061/attachment.htm>


More information about the debian-security-tracker-commits mailing list