[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Apr 12 21:41:33 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e25df46a by Salvatore Bonaccorso at 2022-04-12T22:41:07+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -59,7 +59,7 @@ CVE-2022-1318
 CVE-2022-1317
 	RESERVED
 CVE-2022-1316 (ZeroTierOne for windows local privilege escalation because of incorrec ...)
-	TODO: check
+	NOT-FOR-US: ZeroTierOne
 CVE-2022-29063
 	RESERVED
 CVE-2022-29062
@@ -117,7 +117,7 @@ CVE-2022-29037
 CVE-2022-29036
 	RESERVED
 CVE-2022-29035 (In JetBrains Ktor Native before version 2.0.0 random values used for n ...)
-	TODO: check
+	NOT-FOR-US: JetBrains Ktor
 CVE-2022-29034
 	RESERVED
 CVE-2022-29033
@@ -193,7 +193,7 @@ CVE-2022-1304 [e2fsprogs: out-of-bounds read/write via crafted filesystem]
 CVE-2022-1303
 	RESERVED
 CVE-2022-1302 (In the MZ Automation LibIEC61850 in versions prior to 1.5.1 an unauthe ...)
-	TODO: check
+	NOT-FOR-US: MZ Automation LibIEC61850
 CVE-2022-1301
 	RESERVED
 CVE-2022-1300
@@ -738,21 +738,21 @@ CVE-2022-28781
 CVE-2022-28780
 	RESERVED
 CVE-2022-28779 (Uncontrolled search path element vulnerability in Samsung Android USB  ...)
-	TODO: check
+	NOT-FOR-US: Samsung
 CVE-2022-28778 (Improper access control vulnerability in Samsung Security Supporter pr ...)
-	TODO: check
+	NOT-FOR-US: Samsung
 CVE-2022-28777 (Improper access control vulnerability in Samsung Members prior to vers ...)
-	TODO: check
+	NOT-FOR-US: Samsung
 CVE-2022-28776 (Improper access control vulnerability in Galaxy Store prior to version ...)
-	TODO: check
+	NOT-FOR-US: Samsung
 CVE-2022-28775 (Improper access control vulnerability in Samsung Flow prior to version ...)
-	TODO: check
+	NOT-FOR-US: Samsung
 CVE-2022-28774
 	RESERVED
 CVE-2022-28773 (Due to an uncontrolled recursion in SAP Web Dispatcher and SAP Interne ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2022-28772 (By overlong input values an attacker may force overwrite of the intern ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2022-28771
 	RESERVED
 CVE-2022-28770 (Due to insufficient input validation, SAPUI5 library(vbm) - versions 7 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e25df46a5de07a52ca144435bb46e2741f668e7b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e25df46a5de07a52ca144435bb46e2741f668e7b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220412/735b8296/attachment.htm>


More information about the debian-security-tracker-commits mailing list