[Git][security-tracker-team/security-tracker][master] Process NFUs
Neil Williams (@codehelp)
codehelp at debian.org
Thu Sep 16 08:20:58 BST 2021
Neil Williams pushed to branch master at Debian Security Tracker / security-tracker
Commits:
551e719a by Neil Williams at 2021-09-16T08:20:39+01:00
Process NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -54891,13 +54891,13 @@ CVE-2021-1976
CVE-2021-1975
RESERVED
CVE-2021-1974 (Possible buffer over read due to lack of alignment between map or unma ...)
- TODO: check
+ NOT-FOR-US: Snapdragon
CVE-2021-1973
RESERVED
CVE-2021-1972 (Possible buffer overflow due to improper validation of device types du ...)
NOT-FOR-US: Qualcomm components for Android
CVE-2021-1971 (Possible assertion due to lack of physical layer state validation in S ...)
- TODO: check
+ NOT-FOR-US: Snapdragon
CVE-2021-1970 (Possible out of bound read due to lack of length check of FT sub-eleme ...)
NOT-FOR-US: Snapdragon
CVE-2021-1969
@@ -54923,11 +54923,11 @@ CVE-2021-1960 (Improper handling of ASB-C broadcast packets with crafted opcode
CVE-2021-1959
RESERVED
CVE-2021-1958 (A race condition in fastrpc kernel driver for dynamic process creation ...)
- TODO: check
+ NOT-FOR-US: Snapdragon
CVE-2021-1957 (Improper Access Control when ACL link encryption is failed and ACL lin ...)
- TODO: check
+ NOT-FOR-US: Snapdragon
CVE-2021-1956 (Improper handling of ASB-U packet with L2CAP channel ID by slave host ...)
- TODO: check
+ NOT-FOR-US: Snapdragon
CVE-2021-1955 (Denial of service in SAP case due to improper handling of connections ...)
NOT-FOR-US: SAP
CVE-2021-1954 (Possible buffer over read due to improper validation of data pointer w ...)
@@ -82753,7 +82753,7 @@ CVE-2020-19158 (Cross Site Scripting (XSS) in S-CMS build 20191014 and earlier a
CVE-2020-19157 (Cross Site Scripting (CSS) in Wenku CMS v3.4 allows remote attackers t ...)
NOT-FOR-US: Wenku CMS
CVE-2020-19156 (Cross Site Scripting (XSS) in Ari Adminer v1 allows remote attackers t ...)
- TODO: check
+ NOT-FOR-US: Wordpress ari-adminer
CVE-2020-19155 (Improper Access Control in Jfinal CMS v4.7.1 and earlier allows remote ...)
NOT-FOR-US: Jfinal CMS
CVE-2020-19154 (Improper Access Control in Jfinal CMS v4.7.1 and earlier allows remote ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/551e719a8047b7c39d798237e2c4d0abc010314e
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/551e719a8047b7c39d798237e2c4d0abc010314e
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210916/595390f6/attachment.htm>
More information about the debian-security-tracker-commits
mailing list