[Git][security-tracker-team/security-tracker][master] Process several NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Oct 20 21:24:34 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
92317375 by Salvatore Bonaccorso at 2021-10-20T22:24:07+02:00
Process several NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -15880,7 +15880,7 @@ CVE-2021-36514
 CVE-2021-36513 (An issue was discovered in function sofia_handle_sip_i_notify in sofia ...)
 	TODO: check
 CVE-2021-36512 (An issue was discovered in function scanallsubs in src/sbbs3/scansubs. ...)
-	TODO: check
+	NOT-FOR-US: Synchronet BBS
 CVE-2021-36511
 	RESERVED
 CVE-2021-36510
@@ -17888,37 +17888,37 @@ CVE-2021-35668
 CVE-2021-35667
 	RESERVED
 CVE-2021-35666 (Vulnerability in the Oracle HTTP Server product of Oracle Fusion Middl ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35665 (Vulnerability in the Hyperion Financial Reporting product of Oracle Hy ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35664
 	RESERVED
 CVE-2021-35663
 	RESERVED
 CVE-2021-35662 (Vulnerability in the Oracle Outside In Technology product of Oracle Fu ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35661 (Vulnerability in the Oracle Outside In Technology product of Oracle Fu ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35660 (Vulnerability in the Oracle Outside In Technology product of Oracle Fu ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35659 (Vulnerability in the Oracle Outside In Technology product of Oracle Fu ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35658 (Vulnerability in the Oracle Outside In Technology product of Oracle Fu ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35657 (Vulnerability in the Oracle Outside In Technology product of Oracle Fu ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35656 (Vulnerability in the Oracle Outside In Technology product of Oracle Fu ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35655 (Vulnerability in the Essbase Administration Services product of Oracle ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35654 (Vulnerability in the Essbase Administration Services product of Oracle ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35653 (Vulnerability in the Essbase Administration Services product of Oracle ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35652 (Vulnerability in the Essbase Administration Services product of Oracle ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35651 (Vulnerability in the Essbase Administration Services product of Oracle ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35650 (Vulnerability in the Oracle Secure Global Desktop product of Oracle Vi ...)
 	NOT-FOR-US: Oracle Secure Global Desktop
 CVE-2021-35649 (Vulnerability in the Oracle Secure Global Desktop product of Oracle Vi ...)
@@ -17981,15 +17981,15 @@ CVE-2021-35622 (Vulnerability in the MySQL Server product of Oracle MySQL (compo
 CVE-2021-35621 (Vulnerability in the MySQL Cluster product of Oracle MySQL (component: ...)
 	- mysql-8.0 <unfixed>
 CVE-2021-35620 (Vulnerability in the Oracle WebLogic Server product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35619 (Vulnerability in the Java VM component of Oracle Database Server. Supp ...)
 	TODO: check
 CVE-2021-35618 (Vulnerability in the MySQL Cluster product of Oracle MySQL (component: ...)
 	- mysql-8.0 <unfixed>
 CVE-2021-35617 (Vulnerability in the Oracle WebLogic Server product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35616 (Vulnerability in the Oracle Transportation Management product of Oracl ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35615
 	RESERVED
 CVE-2021-35614
@@ -17999,17 +17999,17 @@ CVE-2021-35613 (Vulnerability in the MySQL Cluster product of Oracle MySQL (comp
 CVE-2021-35612 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-8.0 <unfixed>
 CVE-2021-35611 (Vulnerability in the Oracle Sales Offline product of Oracle E-Business ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35610 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-8.0 <unfixed>
 CVE-2021-35609 (Vulnerability in the PeopleSoft Enterprise PeopleTools product of Orac ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35608 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-8.0 <unfixed>
 CVE-2021-35607 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-8.0 <unfixed>
 CVE-2021-35606 (Vulnerability in the PeopleSoft Enterprise CS Campus Community product ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35605
 	RESERVED
 CVE-2021-35604 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
@@ -18022,11 +18022,11 @@ CVE-2021-35603 (Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition
 CVE-2021-35602 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-8.0 <unfixed>
 CVE-2021-35601 (Vulnerability in the PeopleSoft Enterprise CS SA Integration Pack prod ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35600
 	RESERVED
 CVE-2021-35599 (Vulnerability in the Zero Downtime DB Migration to Cloud component of  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35598 (Vulnerability in the MySQL Cluster product of Oracle MySQL (component: ...)
 	- mysql-8.0 <unfixed>
 CVE-2021-35597 (Vulnerability in the MySQL Client product of Oracle MySQL (component:  ...)
@@ -18034,7 +18034,7 @@ CVE-2021-35597 (Vulnerability in the MySQL Client product of Oracle MySQL (compo
 CVE-2021-35596 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-8.0 <unfixed>
 CVE-2021-35595 (Vulnerability in the PeopleSoft Enterprise PeopleTools product of Orac ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35594 (Vulnerability in the MySQL Cluster product of Oracle MySQL (component: ...)
 	- mysql-8.0 <unfixed>
 CVE-2021-35593 (Vulnerability in the MySQL Cluster product of Oracle MySQL (component: ...)
@@ -18046,7 +18046,7 @@ CVE-2021-35591 (Vulnerability in the MySQL Server product of Oracle MySQL (compo
 CVE-2021-35590 (Vulnerability in the MySQL Cluster product of Oracle MySQL (component: ...)
 	- mysql-8.0 <unfixed>
 CVE-2021-35589 (Vulnerability in the Oracle Solaris product of Oracle Systems (compone ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35588 (Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition produc ...)
 	- openjdk-8 <unfixed>
 CVE-2021-35587
@@ -18056,17 +18056,17 @@ CVE-2021-35586 (Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition
 	- openjdk-11 11.0.13+8-1
 	- openjdk-8 <unfixed>
 CVE-2021-35585 (Vulnerability in the Oracle Incentive Compensation product of Oracle E ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35584 (Vulnerability in the MySQL Cluster product of Oracle MySQL (component: ...)
 	- mysql-8.0 <unfixed>
 CVE-2021-35583 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-8.0 <not-affected> (Windows-specific)
 CVE-2021-35582 (Vulnerability in the Oracle Applications Manager product of Oracle E-B ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35581 (Vulnerability in the Oracle Applications Manager product of Oracle E-B ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35580 (Vulnerability in the Oracle Applications Manager product of Oracle E-B ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35579
 	RESERVED
 CVE-2021-35578 (Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition produc ...)
@@ -18076,29 +18076,29 @@ CVE-2021-35578 (Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition
 CVE-2021-35577 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-8.0 <unfixed>
 CVE-2021-35576 (Vulnerability in the Oracle Database Enterprise Edition Unified Audit  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35575 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-8.0 <unfixed>
 CVE-2021-35574 (Vulnerability in the Oracle Outside In Technology product of Oracle Fu ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35573 (Vulnerability in the Oracle Outside In Technology product of Oracle Fu ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35572 (Vulnerability in the Oracle Outside In Technology product of Oracle Fu ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35571 (Vulnerability in the PeopleSoft Enterprise CS Academic Advisement prod ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35570 (Vulnerability in the Oracle Mobile Field Service product of Oracle E-B ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35569 (Vulnerability in the Oracle Applications Manager product of Oracle E-B ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35568 (Vulnerability in the PeopleSoft Enterprise PeopleTools product of Orac ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35567 (Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition produc ...)
 	- openjdk-17 <unfixed>
 	- openjdk-11 11.0.13+8-1
 	- openjdk-8 <unfixed>
 CVE-2021-35566 (Vulnerability in the Oracle Applications Manager product of Oracle E-B ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35565 (Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition produc ...)
 	- openjdk-11 11.0.13+8-1
 	- openjdk-8 <unfixed>
@@ -18107,9 +18107,9 @@ CVE-2021-35564 (Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition
 	- openjdk-11 11.0.13+8-1
 	- openjdk-8 <unfixed>
 CVE-2021-35563 (Vulnerability in the Oracle Shipping Execution product of Oracle E-Bus ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35562 (Vulnerability in the Oracle Universal Work Queue product of Oracle E-B ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35561 (Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition produc ...)
 	- openjdk-17 <unfixed>
 	- openjdk-11 11.0.13+8-1
@@ -18121,9 +18121,9 @@ CVE-2021-35559 (Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition
 	- openjdk-11 11.0.13+8-1
 	- openjdk-8 <unfixed>
 CVE-2021-35558 (Vulnerability in the Core RDBMS component of Oracle Database Server. S ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35557 (Vulnerability in the Core RDBMS component of Oracle Database Server. S ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35556 (Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition produc ...)
 	- openjdk-17 <unfixed>
 	- openjdk-11 11.0.13+8-1
@@ -18131,18 +18131,18 @@ CVE-2021-35556 (Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition
 CVE-2021-35555
 	RESERVED
 CVE-2021-35554 (Vulnerability in the Oracle Trade Management product of Oracle E-Busin ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35553 (Vulnerability in the PeopleSoft Enterprise CS Student Records product  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35552 (Vulnerability in the Oracle WebLogic Server product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35551 (Vulnerability in the RDBMS Security component of Oracle Database Serve ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35550 (Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition produc ...)
 	- openjdk-11 11.0.13+8-1
 	- openjdk-8 <unfixed>
 CVE-2021-35549 (Vulnerability in the Oracle Solaris product of Oracle Systems (compone ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35548
 	RESERVED
 CVE-2021-35547
@@ -18154,21 +18154,21 @@ CVE-2021-35545 (Vulnerability in the Oracle VM VirtualBox product of Oracle Virt
 CVE-2021-35544
 	RESERVED
 CVE-2021-35543 (Vulnerability in the PeopleSoft Enterprise CC Common Application Objec ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35542 (Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualiza ...)
 	- virtualbox 6.1.28-dfsg-1
 CVE-2021-35541 (Vulnerability in the PeopleSoft Enterprise SCM product of Oracle Peopl ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35540 (Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualiza ...)
 	- virtualbox 6.1.28-dfsg-1
 CVE-2021-35539 (Vulnerability in the Oracle Solaris product of Oracle Systems (compone ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35538 (Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualiza ...)
 	- virtualbox <not-affected> (Windows-specific)
 CVE-2021-35537 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-8.0 <unfixed>
 CVE-2021-35536 (Vulnerability in the Oracle Deal Management product of Oracle E-Busine ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2021-35535
 	RESERVED
 CVE-2021-35534



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/923173753be46435e3e828eaf322a772b9ef8421

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/923173753be46435e3e828eaf322a772b9ef8421
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211020/6f9cd82a/attachment.htm>


More information about the debian-security-tracker-commits mailing list