[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Thu Oct 7 15:36:53 BST 2021



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
41af7394 by Moritz Muehlenhoff at 2021-10-07T16:36:30+02:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -39,7 +39,7 @@ CVE-2021-42042 (An issue was discovered in SpecialEditGrowthConfig in the Growth
 CVE-2021-42041 (An issue was discovered in CentralAuth in MediaWiki through 1.36.2. Th ...)
 	NOT-FOR-US: CentralAuth MediaWiki extension
 CVE-2021-42040 (An issue was discovered in MediaWiki through 1.36.2. A parser function ...)
-	TODO: check
+	NOT-FOR-US: Loops MediaWiki extension
 CVE-2021-3865
 	RESERVED
 CVE-2022-20011
@@ -28250,10 +28250,12 @@ CVE-2021-30313
 	RESERVED
 CVE-2021-30312
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-30311
 	RESERVED
 CVE-2021-30310
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-30309
 	RESERVED
 CVE-2021-30308
@@ -28262,14 +28264,17 @@ CVE-2021-30307
 	RESERVED
 CVE-2021-30306
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-30305
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-30304
 	RESERVED
 CVE-2021-30303
 	RESERVED
 CVE-2021-30302
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-30301
 	RESERVED
 CVE-2021-30300
@@ -28280,6 +28285,7 @@ CVE-2021-30298
 	RESERVED
 CVE-2021-30297
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-30296
 	RESERVED
 CVE-2021-30295 (Possible heap overflow due to improper validation of local variable wh ...)
@@ -28290,14 +28296,17 @@ CVE-2021-30293
 	RESERVED
 CVE-2021-30292
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-30291
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-30290 (Possible null pointer dereference due to race condition between timeli ...)
 	NOT-FOR-US: Snapdragon
 CVE-2021-30289
 	RESERVED
 CVE-2021-30288
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-30287
 	RESERVED
 CVE-2021-30286
@@ -28358,10 +28367,13 @@ CVE-2021-30259
 	RESERVED
 CVE-2021-30258
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-30257
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-30256
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-30255
 	RESERVED
 CVE-2021-30254
@@ -34933,6 +34945,7 @@ CVE-2021-27667
 	RESERVED
 CVE-2021-27666
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2021-27665
 	RESERVED
 CVE-2021-27664
@@ -57148,10 +57161,13 @@ CVE-2020-29652 (A nil pointer dereference in the golang.org/x/crypto/ssh compone
 	NOTE: Introduced in: https://github.com/golang/crypto/commit/cbcb750295291b33242907a04be40e80801d0cfc (2019-05-10)
 CVE-2021-1985
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-1984
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-1983
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-1982
 	RESERVED
 CVE-2021-1981
@@ -57201,6 +57217,7 @@ CVE-2021-1960 (Improper handling of ASB-C broadcast packets with crafted opcode
 	NOT-FOR-US: Snapdragon
 CVE-2021-1959
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-1958 (A race condition in fastrpc kernel driver for dynamic process creation ...)
 	NOT-FOR-US: Snapdragon
 CVE-2021-1957 (Improper Access Control when ACL link encryption is failed and ACL lin ...)
@@ -57221,6 +57238,7 @@ CVE-2021-1950
 	RESERVED
 CVE-2021-1949
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-1948 (Possible out of bound read due to lack of length check of data while p ...)
 	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-1947 (Use-after-free vulnerability in kernel graphics driver because of stor ...)
@@ -57247,6 +57265,7 @@ CVE-2021-1937 (Reachable assertion is possible while processing peer association
 	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-1936
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-1935 (Possible null pointer dereference due to lack of validation check for  ...)
 	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-1934 (Possible memory corruption due to improper check when application load ...)
@@ -57255,6 +57274,7 @@ CVE-2021-1933 (UE assertion is possible due to improper validation of invite mes
 	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-1932
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-1931 (Possible buffer overflow due to improper validation of buffer length w ...)
 	NOT-FOR-US: Snapdragon
 CVE-2021-1930 (Possible out of bounds read due to incorrect validation of incoming bu ...)
@@ -57285,6 +57305,7 @@ CVE-2021-1918
 	RESERVED
 CVE-2021-1917
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-1916 (Possible buffer underflow due to lack of check for negative indices va ...)
 	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-1915 (Buffer overflow can occur due to improper validation of NDP applicatio ...)
@@ -57293,6 +57314,7 @@ CVE-2021-1914 (Loop with unreachable exit condition may occur due to improper ha
 	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-1913
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-1912
 	RESERVED
 CVE-2021-1911
@@ -62637,6 +62659,7 @@ CVE-2021-0871
 	RESERVED
 CVE-2021-0870
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2021-0869 (In GetTimeStampAndPkt of DumpstateDevice.cpp, there is a possible out  ...)
 	NOT-FOR-US: Android
 CVE-2021-0868
@@ -62961,18 +62984,23 @@ CVE-2021-0709
 	RESERVED
 CVE-2021-0708
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2021-0707
 	RESERVED
 CVE-2021-0706
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2021-0705
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2021-0704
 	RESERVED
 CVE-2021-0703
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2021-0702
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2021-0701
 	RESERVED
 CVE-2021-0700
@@ -63074,8 +63102,10 @@ CVE-2021-0653
 	RESERVED
 CVE-2021-0652
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2021-0651
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2021-0650
 	RESERVED
 CVE-2021-0649
@@ -63092,6 +63122,7 @@ CVE-2021-0644 (In conditionallyRemoveIdentifiers of SubscriptionController.java,
 	NOT-FOR-US: Android
 CVE-2021-0643
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2021-0642 (In onResume of VoicemailSettingsFragment.java, there is a possible way ...)
 	NOT-FOR-US: Android
 CVE-2021-0641 (In getAvailableSubscriptionInfoList of SubscriptionController.java, th ...)
@@ -63419,6 +63450,7 @@ CVE-2021-0484 (In readVector of IMediaPlayer.cpp, there is a possible read of un
 	NOT-FOR-US: Android media framework
 CVE-2021-0483
 	RESERVED
+	NOT-FOR-US: Android media framework
 CVE-2021-0482 (In BinderDiedCallback of MediaCodec.cpp, there is a possible memory co ...)
 	NOT-FOR-US: Android media framework
 CVE-2021-0481 (In onActivityResult of EditUserPhotoController.java, there is a possib ...)
@@ -105917,6 +105949,7 @@ CVE-2020-11304 (Possible out of bound read in DRM due to improper buffer length
 	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-11303
 	RESERVED
+	NOT-FOR-US: Qualcomm components for Android
 CVE-2020-11302
 	RESERVED
 CVE-2020-11301 (Improper authentication of un-encrypted plaintext Wi-Fi frames in an e ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/41af73941d85ab22215a713794c2149aae8276bc

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/41af73941d85ab22215a713794c2149aae8276bc
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211007/082966ea/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list