[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Sep 1 21:22:39 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
59589489 by Salvatore Bonaccorso at 2021-09-01T22:20:46+02:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -7214,7 +7214,7 @@ CVE-2021-37153 (ForgeRock Access Management (AM) before 7.0.2, when configured w
 CVE-2021-37152 (Multiple XSS issues exist in Sonatype Nexus Repository Manager 3 befor ...)
 	NOT-FOR-US: Sonatype
 CVE-2021-37151 (CyberArk Identity 21.5.131, when handling an invalid authentication at ...)
-	TODO: check
+	NOT-FOR-US: CyberArk Identity
 CVE-2021-3657
 	RESERVED
 CVE-2021-37159 (hso_free_net_device in drivers/net/usb/hso.c in the Linux kernel throu ...)
@@ -9792,125 +9792,125 @@ CVE-2021-3631 [insecure sVirt label generation]
 	NOTE: https://gitlab.com/libvirt/libvirt/-/issues/153
 	NOTE: Fixed by: https://gitlab.com/libvirt/libvirt/-/commit/15073504dbb624d3f6c911e85557019d3620fdb2 (v7.5.0)
 CVE-2021-36079 (Adobe Bridge version 11.1 (and earlier) is affected by an out-of-bound ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36078 (Adobe Bridge version 11.1 (and earlier) is affected by a memory corrup ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36077 (Adobe Bridge version 11.1 (and earlier) is affected by a memory corrup ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36076 (Adobe Bridge version 11.1 (and earlier) is affected by a memory corrup ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36075 (Adobe Bridge version 11.1 (and earlier) is affected by a Buffer Overfl ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36074 (Adobe Bridge versions 11.1 (and earlier) are affected by an out-of-bou ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36073 (Adobe Bridge version 11.1 (and earlier) is affected by a heap-based bu ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36072 (Adobe Bridge versions 11.1 (and earlier) are affected by an out-of-bou ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36071 (Adobe Bridge versions 11.1 (and earlier) are affected by an out-of-bou ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36070 (Adobe Media Encoder version 15.1 (and earlier) is affected by an impro ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36069 (Adobe Bridge version 11.1 (and earlier) is affected by a memory corrup ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36068 (Adobe Bridge version 11.1 (and earlier) is affected by a memory corrup ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36067 (Adobe Bridge version 11.1 (and earlier) is affected by a memory corrup ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36066 (Adobe Photoshop versions 21.2.10 (and earlier) and 22.4.3 (and earlier ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36065 (Adobe Photoshop versions 21.2.10 (and earlier) and 22.4.3 (and earlier ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36064 (XMP Toolkit version 2020.1 (and earlier) is affected by a Buffer Under ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36063 (Adobe Connect version 11.2.2 (and earlier) is affected by a Reflected  ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36062 (Adobe Connect version 11.2.2 (and earlier) is affected by a Reflected  ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36061 (Adobe Connect version 11.2.2 (and earlier) is affected by a secure des ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36060
 	RESERVED
 CVE-2021-36059 (Adobe Bridge version 11.1 (and earlier) is affected by a memory corrup ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36058 (XMP Toolkit SDK version 2020.1 (and earlier) is affected by an Integer ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36057 (XMP Toolkit SDK version 2020.1 (and earlier) is affected by a write-wh ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36056 (XMP Toolkit SDK version 2020.1 (and earlier) is affected by a buffer o ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36055 (XMP Toolkit SDK versions 2020.1 (and earlier) are affected by a use-af ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36054 (XMP Toolkit SDK version 2020.1 (and earlier) is affected by a buffer o ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36053 (XMP Toolkit SDK versions 2020.1 (and earlier) are affected by an out-o ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36052 (XMP Toolkit version 2020.1 (and earlier) is affected by a memory corru ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36051
 	RESERVED
 CVE-2021-36050 (XMP Toolkit SDK version 2020.1 (and earlier) is affected by a buffer o ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36049 (Adobe Bridge version 11.1 (and earlier) is affected by a memory corrup ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36048 (XMP Toolkit SDK version 2020.1 (and earlier) is affected by an Imprope ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36047 (XMP Toolkit SDK version 2020.1 (and earlier) is affected by an Imprope ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36046 (XMP Toolkit version 2020.1 (and earlier) is affected by a memory corru ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36045 (XMP Toolkit SDK versions 2020.1 (and earlier) are affected by an out-o ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36044 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36043 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36042 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36041 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36040 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36039 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36038 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36037 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36036
 	RESERVED
 CVE-2021-36035 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36034 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36033 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36032 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36031 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36030 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36029 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36028 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36027 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36026 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36025 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36024 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36023
 	RESERVED
 CVE-2021-36022 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36021
 	RESERVED
 CVE-2021-36020 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36019
 	RESERVED
 CVE-2021-36018
@@ -9926,7 +9926,7 @@ CVE-2021-36014 (Adobe Media Encoder version 15.2 (and earlier) is affected by an
 CVE-2021-36013 (Adobe Media Encoder version 15.2 (and earlier) is affected by an Out-o ...)
 	NOT-FOR-US: Adobe
 CVE-2021-36012 (Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier)  ...)
-	TODO: check
+	NOT-FOR-US: Magento
 CVE-2021-36011 (Adobe Illustrator version 25.2.3 (and earlier) is affected by a potent ...)
 	NOT-FOR-US: Adobe
 CVE-2021-36010 (Adobe Illustrator version 25.2.3 (and earlier) is affected by an out-o ...)
@@ -9946,7 +9946,7 @@ CVE-2021-36004 (Adobe InDesign version 16.0 (and earlier) is affected by an Out-
 CVE-2021-36003
 	RESERVED
 CVE-2021-36002 (Adobe Captivate version 11.5.5 (and earlier) is affected by an Creatio ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2021-36001 (Adobe Character Animator version 4.2 (and earlier) is affected by an o ...)
 	NOT-FOR-US: Adobe
 CVE-2021-36000 (Adobe Character Animator version 4.2 (and earlier) is affected by a me ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/59589489ca62ba2acd2f4d3d1d6c959f86143067

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/59589489ca62ba2acd2f4d3d1d6c959f86143067
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210901/93413230/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list