[Git][security-tracker-team/security-tracker][master] Process more NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Nov 11 10:34:27 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
48c48fa4 by Salvatore Bonaccorso at 2021-11-11T11:34:00+01:00
Process more NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -8440,11 +8440,11 @@ CVE-2021-40875 (Improper Access Control in Gurock TestRail versions < 7.2.0.3
 CVE-2021-40874
 	RESERVED
 CVE-2021-40873 (An issue was discovered in Softing Industrial Automation OPC UA C++ SD ...)
-	TODO: check
+	NOT-FOR-US: Softing Industrial Automation
 CVE-2021-40872 (An issue was discovered in Softing Industrial Automation uaToolkit Emb ...)
-	TODO: check
+	NOT-FOR-US: Softing Industrial Automation
 CVE-2021-40871 (An issue was discovered in Softing Industrial Automation OPC UA C++ SD ...)
-	TODO: check
+	NOT-FOR-US: Softing Industrial Automation
 CVE-2021-40870 (An issue was discovered in Aviatrix Controller 6.x before 6.5-1804.192 ...)
 	NOT-FOR-US: Aviatrix Controller
 CVE-2021-40869
@@ -23440,7 +23440,7 @@ CVE-2021-34600
 CVE-2021-34599
 	RESERVED
 CVE-2021-34598 (In Phoenix Contact FL MGUARD 1102 and 1105 in Versions 1.4.0, 1.4.1 an ...)
-	TODO: check
+	NOT-FOR-US: Phoenix
 CVE-2021-34597 (Improper Input Validation vulnerability in PC Worx Automation Suite of ...)
 	NOT-FOR-US: Phoenix Contact
 CVE-2021-34596 (A crafted request may cause a read access to an uninitialized pointer  ...)
@@ -23472,7 +23472,7 @@ CVE-2021-34584 (Crafted web server requests can be utilised to read partial stac
 CVE-2021-34583 (Crafted web server requests may cause a heap-based buffer overflow and ...)
 	NOT-FOR-US: CODESYS
 CVE-2021-34582 (In Phoenix Contact FL MGUARD 1102 and 1105 in Versions 1.4.0, 1.4.1 an ...)
-	TODO: check
+	NOT-FOR-US: Phoenix
 CVE-2021-34581 (Missing Release of Resource after Effective Lifetime vulnerability in  ...)
 	NOT-FOR-US: WAGO
 CVE-2021-34580 (In mymbCONNECT24, mbCONNECT24 <= 2.9.0 an unauthenticated user can  ...)
@@ -29873,11 +29873,11 @@ CVE-2021-32025
 CVE-2021-32024
 	RESERVED
 CVE-2021-32023 (An elevation of privilege vulnerability in the message broker of Black ...)
-	TODO: check
+	NOT-FOR-US: BlackBerry
 CVE-2021-32022 (A low privileged delete vulnerability using CEF RPC server of BlackBer ...)
-	TODO: check
+	NOT-FOR-US: BlackBerry
 CVE-2021-32021 (A denial of service vulnerability in the message broker of BlackBerry  ...)
-	TODO: check
+	NOT-FOR-US: BlackBerry
 CVE-2021-32020 (The kernel in Amazon Web Services FreeRTOS before 10.4.3 has insuffici ...)
 	NOT-FOR-US: kernel in Amazon Web Services FreeRTOS
 CVE-2021-32019 (There is missing input validation of host names displayed in OpenWrt b ...)
@@ -30353,7 +30353,7 @@ CVE-2021-31855 (KDE Messagelib through 5.17.0 reveals cleartext of encrypted mes
 CVE-2021-31854
 	RESERVED
 CVE-2021-31853 (DLL Search Order Hijacking Vulnerability in McAfee Drive Encryption (M ...)
-	TODO: check
+	NOT-FOR-US: McAfee
 CVE-2021-31852
 	RESERVED
 CVE-2021-31851



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/48c48fa49fbf534e684419134fac893b3a92e808

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/48c48fa49fbf534e684419134fac893b3a92e808
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211111/c9d45ffd/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list