[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jul 14 21:31:12 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e93a755c by Salvatore Bonaccorso at 2021-07-14T22:29:27+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -6851,33 +6851,33 @@ CVE-2021-33691
 CVE-2021-33690
 	RESERVED
 CVE-2021-33689 (When user with insufficient privileges tries to access any application ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2021-33688
 	RESERVED
 CVE-2021-33687 (SAP NetWeaver AS JAVA (Enterprise Portal), versions - 7.10, 7.20, 7.30 ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2021-33686
 	RESERVED
 CVE-2021-33685
 	RESERVED
 CVE-2021-33684 (SAP NetWeaver AS ABAP and ABAP Platform, versions - KRNL32NUC 7.21, 7. ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2021-33683 (SAP Web Dispatcher and Internet Communication Manager (ICM), versions  ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2021-33682 (SAP Lumira Server version 2.4 does not sufficiently encode user contro ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2021-33681 (SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open ma ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2021-33680 (SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open ma ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2021-33679
 	RESERVED
 CVE-2021-33678 (A function module of SAP NetWeaver AS ABAP (Reconciliation Framework), ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2021-33677 (SAP NetWeaver ABAP Server and ABAP Platform, versions - 700, 702, 730, ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2021-33676 (A missing authority check in SAP CRM, versions - 700, 701, 702, 712, 7 ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2021-33675
 	RESERVED
 CVE-2021-33674
@@ -6887,15 +6887,15 @@ CVE-2021-33673
 CVE-2021-33672
 	RESERVED
 CVE-2021-33671 (SAP NetWeaver Guided Procedures (Administration Workset), versions - 7 ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2021-33670 (SAP NetWeaver AS for Java (Http Service Monitoring Filter), versions - ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2021-33669 (Under certain conditions, SAP Mobile SDK Certificate Provider allows a ...)
 	NOT-FOR-US: SAP
 CVE-2021-33668 (Due to improper input sanitization, specially crafted LDAP queries can ...)
 	NOT-FOR-US: SAP
 CVE-2021-33667 (Under certain conditions, SAP Business Objects Web Intelligence (BI La ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2021-33666 (When SAP Commerce Cloud version 100, hosts a JavaScript storefront, it ...)
 	NOT-FOR-US: SAP
 CVE-2021-33665 (SAP NetWeaver Application Server ABAP (Applications based on SAP GUI f ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e93a755cd4e748cbebd403e8d8ecb76a5791a8de

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e93a755cd4e748cbebd403e8d8ecb76a5791a8de
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210714/0e68bd2d/attachment.htm>


More information about the debian-security-tracker-commits mailing list