[Git][security-tracker-team/security-tracker][master] Process 2 NFUs

Neil Williams (@codehelp) codehelp at debian.org
Wed Sep 1 11:24:31 BST 2021



Neil Williams pushed to branch master at Debian Security Tracker / security-tracker


Commits:
2f82409e by Neil Williams at 2021-09-01T11:24:00+01:00
Process 2 NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -77585,7 +77585,9 @@ CVE-2020-20492
 CVE-2020-20491
 	RESERVED
 CVE-2020-20490 (A heap buffer-overflow in the client_example1.c component of libiec_ic ...)
-	TODO: check
+	NOT-FOR-US: libiec_iccp_mod
+	NOTE: https://github.com/fcovatti/libiec_iccp_mod
+	NOTE: IEC 61850
 CVE-2020-20489
 	RESERVED
 CVE-2020-20488
@@ -79175,7 +79177,8 @@ CVE-2020-19706
 CVE-2020-19705 (thinkphp-zcms as of 20190715 allows SQL injection via index.php?m=home ...)
 	NOT-FOR-US: thinkphp-zcms
 CVE-2020-19704 (A stored cross-site scripting (XSS) vulnerability via ResourceControll ...)
-	TODO: check
+	NOT-FOR-US: Spring Boot admin
+	NOTE: https://github.com/sail-y/spring-boot-admin
 CVE-2020-19703 (A cross-site scripting (XSS) vulnerability in the referer parameter of ...)
 	NOT-FOR-US: Dzzoffice
 CVE-2020-19702



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2f82409ee1ae58623bc1b8f11b643739a2cb65a8

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2f82409ee1ae58623bc1b8f11b643739a2cb65a8
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210901/9e4c790a/attachment.htm>


More information about the debian-security-tracker-commits mailing list