[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Jul 26 21:13:40 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
64d871e9 by Salvatore Bonaccorso at 2021-07-26T22:13:12+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -18333,7 +18333,7 @@ CVE-2021-29786
 CVE-2021-29785
 	RESERVED
 CVE-2021-29784 (IBM i2 Analyze 4.3.0, 4.3.1, and 4.3.2 could allow a remote attacker t ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29783
 	RESERVED
 CVE-2021-29782
@@ -18361,15 +18361,15 @@ CVE-2021-29772
 CVE-2021-29771
 	RESERVED
 CVE-2021-29770 (IBM i2 Analyst's Notebook Premium (IBM i2 Analyze 4.3.0, 4.3.1, and 4. ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29769 (IBM i2 Analyst's Notebook Premium (IBM i2 Analyze 4.3.0, 4.3.1, and 4. ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29768
 	RESERVED
 CVE-2021-29767 (IBM i2 Analyst's Notebook Premium 9.2.0, 9.2.1, and 9.2.2 could allow  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29766 (IBM i2 Analyst's Notebook Premium (IBM i2 Analyze 4.3.0, 4.3.1, and 4. ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29765
 	RESERVED
 CVE-2021-29764
@@ -41654,7 +41654,7 @@ CVE-2021-20562
 CVE-2021-20561
 	RESERVED
 CVE-2021-20560 (IBM Sterling Connect:Direct Browser User Interface 1.4.1.1 and 1.5.0.2 ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-20559 (IBM Control Desk 7.6.1.2 and 7.6.1.3 is vulnerable to cross-site scrip ...)
 	NOT-FOR-US: IBM
 CVE-2021-20558
@@ -41912,9 +41912,9 @@ CVE-2021-20433
 CVE-2021-20432 (IBM Spectrum Protect Plus 10.1.0 through 10.1.7 uses Cross-Origin Reso ...)
 	NOT-FOR-US: IBM
 CVE-2021-20431 (IBM i2 Analyst's Notebook Premium 9.2.0, 9.2.1, and 9.2.2 does not inv ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-20430 (IBM i2 Analyst's Notebook Premium (IBM i2 Analyze 4.3.0, 4.3.1, and 4. ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-20429 (IBM QRadar User Behavior Analytics 1.0.0 through 4.1.0 could disclose  ...)
 	NOT-FOR-US: IBM
 CVE-2021-20428 (IBM Security Guardium 11.2 could allow a remote attacker to obtain sen ...)
@@ -42100,7 +42100,7 @@ CVE-2021-20339
 CVE-2021-20338 (IBM Jazz Foundation and IBM Engineering products are vulnerable to cro ...)
 	NOT-FOR-US: IBM
 CVE-2021-20337 (IBM QRadar SIEM 7.3.0 to 7.3.3 Patch 8 and 7.4.0 to 7.4.3 GA uses weak ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-20336 (IBM Tivoli Netcool/OMNIbus_GUI 8.1.0 is vulnerable to stored cross-sit ...)
 	NOT-FOR-US: IBM
 CVE-2021-20335 (For MongoDB Ops Manager <= 4.2.24 with multiple OM application serv ...)
@@ -111264,7 +111264,7 @@ CVE-2020-4625 (IBM Cloud Pak for Security 1.3.0.1(CP4S) could allow a remote att
 CVE-2020-4624 (IBM Cloud Pak for Security 1.3.0.1 (CP4S) uses weaker than expected cr ...)
 	NOT-FOR-US: IBM
 CVE-2020-4623 (IBM i2 iBase 8.9.13 could allow a local authenticated attacker to exec ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2020-4622 (IBM Data Risk Manager (iDNA) 2.0.6 contains hard-coded credentials, su ...)
 	NOT-FOR-US: IBM
 CVE-2020-4621 (IBM Data Risk Manager (iDNA) 2.0.6 could allow an authenticated user t ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/64d871e96d2d4342a52d466f810328c84ae04ebc

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/64d871e96d2d4342a52d466f810328c84ae04ebc
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210726/54149e27/attachment.htm>


More information about the debian-security-tracker-commits mailing list