[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Oct 27 21:30:37 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
38395848 by Salvatore Bonaccorso at 2021-10-27T22:30:08+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -33218,7 +33218,7 @@ CVE-2021-29870
 CVE-2021-29869
 	RESERVED
 CVE-2021-29868 (IBM i2 iBase 8.9.13 and 9.0.0 could allow a local attacker to obtain s ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29867
 	RESERVED
 CVE-2021-29866
@@ -33266,7 +33266,7 @@ CVE-2021-29846
 CVE-2021-29845
 	RESERVED
 CVE-2021-29844 (IBM Jazz Team Server products is vulnerable to server-side request for ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29843
 	RESERVED
 CVE-2021-29842 (IBM WebSphere Application Server 7.0, 8.0, 8.5, 9.0 and Liberty 17.0.0 ...)
@@ -33382,7 +33382,7 @@ CVE-2021-29788
 CVE-2021-29787
 	RESERVED
 CVE-2021-29786 (IBM Jazz Team Server products stores user credentials in clear text wh ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29785
 	RESERVED
 CVE-2021-29784 (IBM i2 Analyze 4.3.0, 4.3.1, and 4.3.2 could allow a remote attacker t ...)
@@ -33406,7 +33406,7 @@ CVE-2021-29776
 CVE-2021-29775 (IBM Business Automation Workflow 19.0.03 and 20.0 and IBM Cloud Pak fo ...)
 	NOT-FOR-US: IBM
 CVE-2021-29774 (IBM Jazz Team Server products could allow an authenticated user to obt ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29773 (IBM Security Guardium 10.6 and 11.3 could allow a remote authenticated ...)
 	NOT-FOR-US: IBM
 CVE-2021-29772 (IBM API Connect 5.0.0.0 through 5.0.8.11 could allow a user to potenti ...)
@@ -33528,7 +33528,7 @@ CVE-2021-29715 (IBM API Connect 5.0.0.0 through 5.0.8.11 could alllow a remote u
 CVE-2021-29714 (IBM Content Navigator 3.0.CD could allow a malicious user to cause a d ...)
 	NOT-FOR-US: IBM
 CVE-2021-29713 (IBM Jazz Team Server products are vulnerable to cross-site scripting.  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29712 (IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scr ...)
 	NOT-FOR-US: IBM
 CVE-2021-29711 (IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 6.2.7.8 , 6.2.7.9, 7.0.3. ...)
@@ -33608,7 +33608,7 @@ CVE-2021-29675
 CVE-2021-29674
 	RESERVED
 CVE-2021-29673 (IBM Jazz Team Server products are vulnerable to cross-site scripting.  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29672 (IBM Spectrum Protect Client 8.1.0.0-8 through 1.11.0 is vulnerable to  ...)
 	NOT-FOR-US: IBM
 CVE-2021-29671 (IBM Spectrum Scale 5.1.0.1 could allow a local attacker to bypass the  ...)
@@ -57172,7 +57172,7 @@ CVE-2021-20528 (IBM Control Center 6.2.0.0 is vulnerable to cross-site scripting
 CVE-2021-20527 (IBM Resilient SOAR V38.0 could allow a privileged user to create creat ...)
 	NOT-FOR-US: IBM
 CVE-2021-20526 (IBM Planning Analytics 2.0 could allow a remote attacker to obtain sen ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-20525
 	RESERVED
 CVE-2021-20524 (IBM Security Verify Access Docker 10.0.0 is vulnerable to cross-site s ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/38395848acf258176e5be1f38b1e4cbff83fe53f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/38395848acf258176e5be1f38b1e4cbff83fe53f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211027/0357761c/attachment.htm>


More information about the debian-security-tracker-commits mailing list