[Git][security-tracker-team/security-tracker][master] Process NFUs

Neil Williams (@codehelp) codehelp at debian.org
Thu Sep 16 08:20:58 BST 2021



Neil Williams pushed to branch master at Debian Security Tracker / security-tracker


Commits:
551e719a by Neil Williams at 2021-09-16T08:20:39+01:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -54891,13 +54891,13 @@ CVE-2021-1976
 CVE-2021-1975
 	RESERVED
 CVE-2021-1974 (Possible buffer over read due to lack of alignment between map or unma ...)
-	TODO: check
+	NOT-FOR-US: Snapdragon
 CVE-2021-1973
 	RESERVED
 CVE-2021-1972 (Possible buffer overflow due to improper validation of device types du ...)
 	NOT-FOR-US: Qualcomm components for Android
 CVE-2021-1971 (Possible assertion due to lack of physical layer state validation in S ...)
-	TODO: check
+	NOT-FOR-US: Snapdragon
 CVE-2021-1970 (Possible out of bound read due to lack of length check of FT sub-eleme ...)
 	NOT-FOR-US: Snapdragon
 CVE-2021-1969
@@ -54923,11 +54923,11 @@ CVE-2021-1960 (Improper handling of ASB-C broadcast packets with crafted opcode
 CVE-2021-1959
 	RESERVED
 CVE-2021-1958 (A race condition in fastrpc kernel driver for dynamic process creation ...)
-	TODO: check
+	NOT-FOR-US: Snapdragon
 CVE-2021-1957 (Improper Access Control when ACL link encryption is failed and ACL lin ...)
-	TODO: check
+	NOT-FOR-US: Snapdragon
 CVE-2021-1956 (Improper handling of ASB-U packet with L2CAP channel ID by slave host  ...)
-	TODO: check
+	NOT-FOR-US: Snapdragon
 CVE-2021-1955 (Denial of service in SAP case due to improper handling of connections  ...)
 	NOT-FOR-US: SAP
 CVE-2021-1954 (Possible buffer over read due to improper validation of data pointer w ...)
@@ -82753,7 +82753,7 @@ CVE-2020-19158 (Cross Site Scripting (XSS) in S-CMS build 20191014 and earlier a
 CVE-2020-19157 (Cross Site Scripting (CSS) in Wenku CMS v3.4 allows remote attackers t ...)
 	NOT-FOR-US: Wenku CMS
 CVE-2020-19156 (Cross Site Scripting (XSS) in Ari Adminer v1 allows remote attackers t ...)
-	TODO: check
+	NOT-FOR-US: Wordpress ari-adminer
 CVE-2020-19155 (Improper Access Control in Jfinal CMS v4.7.1 and earlier allows remote ...)
 	NOT-FOR-US: Jfinal CMS
 CVE-2020-19154 (Improper Access Control in Jfinal CMS v4.7.1 and earlier allows remote ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/551e719a8047b7c39d798237e2c4d0abc010314e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/551e719a8047b7c39d798237e2c4d0abc010314e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210916/595390f6/attachment.htm>


More information about the debian-security-tracker-commits mailing list