[Git][security-tracker-team/security-tracker][master] Process more NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Jun 25 22:46:58 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
afd0401d by Salvatore Bonaccorso at 2021-06-25T23:46:32+02:00
Process more NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -4372,29 +4372,29 @@ CVE-2021-33541 (Phoenix Contact Classic Line Controllers ILC1x0 and ILC1x1 in al
 CVE-2021-33540 (In certain devices of the Phoenix Contact AXL F BK and IL BK product f ...)
 	TODO: check
 CVE-2021-33539 (In Weidmueller Industrial WLAN devices in multiple versions an exploit ...)
-	TODO: check
+	NOT-FOR-US: Weidmueller Industrial WLAN devices
 CVE-2021-33538 (In Weidmueller Industrial WLAN devices in multiple versions an exploit ...)
-	TODO: check
+	NOT-FOR-US: Weidmueller Industrial WLAN devices
 CVE-2021-33537 (In Weidmueller Industrial WLAN devices in multiple versions an exploit ...)
-	TODO: check
+	NOT-FOR-US: Weidmueller Industrial WLAN devices
 CVE-2021-33536 (In Weidmueller Industrial WLAN devices in multiple versions an exploit ...)
-	TODO: check
+	NOT-FOR-US: Weidmueller Industrial WLAN devices
 CVE-2021-33535 (In Weidmueller Industrial WLAN devices in multiple versions an exploit ...)
-	TODO: check
+	NOT-FOR-US: Weidmueller Industrial WLAN devices
 CVE-2021-33534 (In Weidmueller Industrial WLAN devices in multiple versions an exploit ...)
-	TODO: check
+	NOT-FOR-US: Weidmueller Industrial WLAN devices
 CVE-2021-33533 (In Weidmueller Industrial WLAN devices in multiple versions an exploit ...)
-	TODO: check
+	NOT-FOR-US: Weidmueller Industrial WLAN devices
 CVE-2021-33532 (In Weidmueller Industrial WLAN devices in multiple versions an exploit ...)
-	TODO: check
+	NOT-FOR-US: Weidmueller Industrial WLAN devices
 CVE-2021-33531 (In Weidmueller Industrial WLAN devices in multiple versions an exploit ...)
-	TODO: check
+	NOT-FOR-US: Weidmueller Industrial WLAN devices
 CVE-2021-33530 (In Weidmueller Industrial WLAN devices in multiple versions an exploit ...)
-	TODO: check
+	NOT-FOR-US: Weidmueller Industrial WLAN devices
 CVE-2021-33529 (In Weidmueller Industrial WLAN devices in multiple versions the usage  ...)
-	TODO: check
+	NOT-FOR-US: Weidmueller Industrial WLAN devices
 CVE-2021-33528 (In Weidmueller Industrial WLAN devices in multiple versions an exploit ...)
-	TODO: check
+	NOT-FOR-US: Weidmueller Industrial WLAN devices
 CVE-2021-33527
 	RESERVED
 CVE-2021-33526
@@ -15471,7 +15471,7 @@ CVE-2021-28960
 CVE-2021-28959 (Zoho ManageEngine Eventlog Analyzer through 12147 is vulnerable to una ...)
 	NOT-FOR-US: Zoho ManageEngine
 CVE-2021-28958 (Zoho ManageEngine ADSelfService Plus through 6101 is vulnerable to una ...)
-	TODO: check
+	NOT-FOR-US: Zoho ManageEngine
 CVE-2021-28956 (** UNSUPPORTED WHEN ASSIGNED ** The unofficial vscode-sass-lint (aka S ...)
 	NOT-FOR-US: vscode-sass-lint
 CVE-2021-28955 (git-bug before 0.7.2 has an Uncontrolled Search Path Element. It will  ...)
@@ -20028,13 +20028,13 @@ CVE-2021-27045
 CVE-2021-27044
 	RESERVED
 CVE-2021-27043 (An Arbitrary Address Write issue in the Autodesk DWG application can a ...)
-	TODO: check
+	NOT-FOR-US: Autodesk
 CVE-2021-27042 (A maliciously crafted DWG file can be used to write beyond the allocat ...)
-	TODO: check
+	NOT-FOR-US: Autodesk
 CVE-2021-27041 (A maliciously crafted DWG file can be used to write beyond the allocat ...)
-	TODO: check
+	NOT-FOR-US: Autodesk
 CVE-2021-27040 (A maliciously crafted DWG file can be forced to read beyond allocated  ...)
-	TODO: check
+	NOT-FOR-US: Autodesk
 CVE-2021-27039
 	RESERVED
 CVE-2021-27038
@@ -21997,7 +21997,7 @@ CVE-2021-3316
 CVE-2021-3315 (In JetBrains TeamCity before 2020.2.2, stored XSS on a tests page was  ...)
 	NOT-FOR-US: JetBrains
 CVE-2021-3314 (** UNSUPPORTED WHEN ASSIGNED ** Oracle GlassFish Server 3.1.2.18 and b ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-3313 (Plone CMS until version 5.2.4 has a stored Cross-Site Scripting (XSS)  ...)
 	NOT-FOR-US: Plone
 CVE-2021-3312



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/afd0401d357fd5291b01b1e5ca50f1a546c6bff0

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/afd0401d357fd5291b01b1e5ca50f1a546c6bff0
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210625/b0dd11cb/attachment.htm>


More information about the debian-security-tracker-commits mailing list