[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Nov 23 20:22:48 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
3ed550de by Salvatore Bonaccorso at 2021-11-23T21:22:24+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -4828,7 +4828,7 @@ CVE-2021-43021
 CVE-2021-43020
 	RESERVED
 CVE-2021-43019 (Adobe Creative Cloud version 5.5 (and earlier) are affected by a privi ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-43018
 	RESERVED
 CVE-2021-43017 (Adobe Creative Cloud version 5.5 (and earlier) are affected by an Appl ...)
@@ -13231,7 +13231,7 @@ CVE-2021-39978
 CVE-2021-39977
 	RESERVED
 CVE-2021-39976 (There is a privilege escalation vulnerability in CloudEngine 5800 V200 ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-39975
 	RESERVED
 CVE-2021-39974
@@ -20225,7 +20225,7 @@ CVE-2021-37104 (There is a server-side request forgery vulnerability in HUAWEI P
 CVE-2021-37103
 	RESERVED
 CVE-2021-37102 (There is a command injection vulnerability in CMA service module of Fu ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37101 (There is an improper authorization vulnerability in AIS-BW50-00 9.0.6. ...)
 	NOT-FOR-US: Huawei
 CVE-2021-37100
@@ -20357,73 +20357,73 @@ CVE-2021-37038
 CVE-2021-37037
 	RESERVED
 CVE-2021-37036 (There is an information leakage vulnerability in FusionCompute 6.5.1,  ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37035 (There is a Remote DoS vulnerability in Huawei Smartphone.Successful ex ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37034 (There is an Unstandardized field names in Huawei Smartphone.Successful ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37033 (There is an Injection attack vulnerability in Huawei Smartphone.Succes ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37032 (There is a Bypass vulnerability in Huawei Smartphone.Successful exploi ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37031 (There is a Remote DoS vulnerability in Huawei Smartphone.Successful ex ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37030 (There is an Improper permission vulnerability in Huawei Smartphone.Suc ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37029 (There is an Identity verification vulnerability in Huawei Smartphone.S ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37028 (There is a command injection vulnerability in the HG8045Q product. Whe ...)
 	NOT-FOR-US: Huawei
 CVE-2021-37027
 	RESERVED
 CVE-2021-37026 (There is a Improper Input Validation vulnerability in Huawei Smartphon ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37025 (There is a Improper Input Validation vulnerability in Huawei Smartphon ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37024 (There is a Improper Input Validation vulnerability in Huawei Smartphon ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37023 (There is a Improper Access Control vulnerability in Huawei Smartphone. ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37022 (There is a Heap-based Buffer Overflow vulnerability in Huawei Smartpho ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37021
 	RESERVED
 CVE-2021-37020
 	RESERVED
 CVE-2021-37019 (There is a Improper Input Validation vulnerability in Huawei Smartphon ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37018 (There is a Data Processing Errors vulnerability in Huawei Smartphone.S ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37017 (There is a Improper Input Validation vulnerability in Huawei Smartphon ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37016 (There is a Out-of-bounds Read vulnerability in Huawei Smartphone.Succe ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37015 (There is a Out-of-bounds Read vulnerability in Huawei Smartphone.Succe ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37014
 	RESERVED
 CVE-2021-37013 (There is a Improper Input Validation vulnerability in Huawei Smartphon ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37012 (There is a Data Processing Errors vulnerability in Huawei Smartphone.S ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37011
 	RESERVED
 CVE-2021-37010 (There is a Exposure of Sensitive Information to an Unauthorized Actor  ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37009 (There is a Configuration vulnerability in Huawei Smartphone.Successful ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37008 (There is a Improper Input Validation vulnerability in Huawei Smartphon ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37007 (There is a Out-of-bounds Read vulnerability in Huawei Smartphone.Succe ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37006 (There is a Improper Preservation of Permissions vulnerability in Huawe ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37005 (There is a Improper Input Validation vulnerability in Huawei Smartphon ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37004 (There is a Improper Input Validation vulnerability in Huawei Smartphon ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37003 (There is a Improper Input Validation vulnerability in Huawei Smartphon ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-37002 (There is a Memory out-of-bounds access vulnerability in Huawei Smartph ...)
 	NOT-FOR-US: Huawei
 CVE-2021-37001 (There is a Register tampering vulnerability in Huawei Smartphone.Succe ...)
@@ -25066,7 +25066,7 @@ CVE-2021-3610 [heap-based buffer overflow in ReadTIFFImage() in coders/tiff.c]
 CVE-2021-35053 (Possible system denial of service in case of arbitrary changing Firefo ...)
 	NOT-FOR-US: Kaspersky
 CVE-2021-35052 (A component in Kaspersky Password Manager could allow an attacker to e ...)
-	TODO: check
+	NOT-FOR-US: Kaspersky
 CVE-2021-35051
 	RESERVED
 CVE-2021-35050 (User credentials stored in a recoverable format within Fidelis Network ...)
@@ -56282,7 +56282,7 @@ CVE-2021-22412 (There is an Integer Overflow Vulnerability in Huawei Smartphone.
 CVE-2021-22411 (There is an out-of-bounds write vulnerability in some Huawei products. ...)
 	NOT-FOR-US: Huawei
 CVE-2021-22410 (There is a XSS injection vulnerability in iMaster NCE-Fabric V100R019C ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-22409 (There is a denial of service vulnerability in some versions of ManageO ...)
 	NOT-FOR-US: Huawei
 CVE-2021-22408
@@ -56390,7 +56390,7 @@ CVE-2021-22358 (There is an insufficient input validation vulnerability in Fusio
 CVE-2021-22357 (There is a denial of service vulnerability in Huawei products. A modul ...)
 	NOT-FOR-US: Huawei
 CVE-2021-22356 (There is a weak secure algorithm vulnerability in Huawei products. A w ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2021-22355
 	RESERVED
 CVE-2021-22354 (There is an Information Disclosure Vulnerability in Huawei Smartphone. ...)
@@ -62170,7 +62170,7 @@ CVE-2021-20603 (Improper Input Validation vulnerability in GOT2000 series GT21 m
 CVE-2021-20602 (Improper Handling of Exceptional Conditions vulnerability in GOT2000 s ...)
 	NOT-FOR-US: Mitsubishi
 CVE-2021-20601 (Improper input validation vulnerability in GOT2000 series GT27 model a ...)
-	TODO: check
+	NOT-FOR-US: Mitsubishi
 CVE-2021-20600 (Uncontrolled resource consumption in MELSEC iQ-R series C Controller M ...)
 	NOT-FOR-US: Mitsubishi
 CVE-2021-20599 (Authorization bypass through user-controlled key vulnerability in MELS ...)
@@ -86649,7 +86649,7 @@ CVE-2020-22721 (A File Upload Vulnerability in PNotes - Andrey Gruber PNotes.NET
 CVE-2020-22720
 	REJECTED
 CVE-2020-22719 (Shimo Document v2.0.1 contains a cross-site scripting (XSS) vulnerabil ...)
-	TODO: check
+	NOT-FOR-US: Shimo Document
 CVE-2020-22718
 	RESERVED
 CVE-2020-22717



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3ed550de687d62a958c9d612c1bbae13b842c737

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3ed550de687d62a958c9d612c1bbae13b842c737
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211123/ae014e00/attachment.htm>


More information about the debian-security-tracker-commits mailing list