[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jun 2 21:26:37 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
601364f1 by Salvatore Bonaccorso at 2021-06-02T22:25:53+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -23146,7 +23146,7 @@ CVE-2021-24014
 CVE-2021-24013
 	RESERVED
 CVE-2021-24012 (An improper following of a certificate's chain of trust vulnerability  ...)
-	TODO: check
+	NOT-FOR-US: FortiGate
 CVE-2021-24011 (A privilege escalation vulnerability in FortiNAC version below 8.8.2 m ...)
 	NOT-FOR-US: Fortiguard
 CVE-2021-24010
@@ -23583,11 +23583,11 @@ CVE-2021-3127 (NATS Server 2.x before 2.2.0 and JWT library before 2.0.1 have In
 CVE-2021-3126
 	RESERVED
 CVE-2021-23896 (Cleartext Transmission of Sensitive Information vulnerability in the a ...)
-	TODO: check
+	NOT-FOR-US: McAfee
 CVE-2021-23895 (Deserialization of untrusted data vulnerability in McAfee Database Sec ...)
-	TODO: check
+	NOT-FOR-US: McAfee
 CVE-2021-23894 (Deserialization of untrusted data vulnerability in McAfee Database Sec ...)
-	TODO: check
+	NOT-FOR-US: McAfee
 CVE-2021-23893
 	RESERVED
 CVE-2021-23892 (By exploiting a time of check to time of use (TOCTOU) race condition d ...)
@@ -45842,7 +45842,7 @@ CVE-2020-27379
 CVE-2020-27378
 	RESERVED
 CVE-2020-27377 (A cross-site scripting (XSS) vulnerability was discovered in the Admin ...)
-	TODO: check
+	NOT-FOR-US: CMS Made Simple
 CVE-2020-27376
 	RESERVED
 CVE-2020-27375
@@ -50737,7 +50737,7 @@ CVE-2020-25364
 CVE-2020-25363
 	RESERVED
 CVE-2020-25362 (The id paramater in Online Shopping Alphaware 1.0 has been discovered  ...)
-	TODO: check
+	NOT-FOR-US: Online Shopping Alphaware
 CVE-2020-25361
 	RESERVED
 CVE-2020-25360
@@ -51918,7 +51918,7 @@ CVE-2020-24864
 CVE-2020-24863 (A memory corruption vulnerability was found in the kernel function ker ...)
 	NOT-FOR-US: FreeBSD and MidnightBSD
 CVE-2020-24862 (The catID parameter in Pharmacy Medical Store and Sale Point v1.0 has  ...)
-	TODO: check
+	NOT-FOR-US: Pharmacy Medical Store and Sale Point
 CVE-2020-25016 (A safety violation was discovered in the rgb crate before 0.8.20 for R ...)
 	- rust-rgb <unfixed> (bug #969213)
 	[bullseye] - rust-rgb <no-dsa> (Minor issue)
@@ -96412,7 +96412,7 @@ CVE-2020-6643 (An improper neutralization of input vulnerability in the URL Desc
 CVE-2020-6642
 	RESERVED
 CVE-2020-6641 (Two authorization bypass through user-controlled key vulnerabilities i ...)
-	TODO: check
+	NOT-FOR-US: FortiGuard
 CVE-2020-6640 (An improper neutralization of input vulnerability in the Admin Profile ...)
 	NOT-FOR-US: Fortiguard
 CVE-2020-6639



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/601364f11f4b95027281a6dd964ad35c76aa8e49

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/601364f11f4b95027281a6dd964ad35c76aa8e49
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210602/ddc39526/attachment.htm>


More information about the debian-security-tracker-commits mailing list