[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Apr 16 20:24:03 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9c1f149d by Salvatore Bonaccorso at 2022-04-16T21:23:39+02:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -231,7 +231,7 @@ CVE-2022-29289
 CVE-2022-29288
 	RESERVED
 CVE-2022-29287 (Kentico CMS before 13.0.66 has an Insecure Direct Object Reference vul ...)
-	TODO: check
+	NOT-FOR-US: Kentico CMS
 CVE-2022-29286
 	RESERVED
 CVE-2022-29285
@@ -1013,7 +1013,7 @@ CVE-2022-29022
 CVE-2022-29021
 	RESERVED
 CVE-2022-29020 (ForestBlog through 2022-02-16 allows admin/profile/save userAvatar XSS ...)
-	TODO: check
+	NOT-FOR-US: ForestBlog
 CVE-2022-29019
 	RESERVED
 CVE-2022-29018
@@ -5249,19 +5249,19 @@ CVE-2022-27429
 CVE-2022-27428
 	RESERVED
 CVE-2022-27427 (A zero-code remote code injection vulnerability via configuration.php  ...)
-	TODO: check
+	NOT-FOR-US: Chamilo LMS
 CVE-2022-27426 (A Server-Side Request Forgery (SSRF) in Chamilo LMS v1.11.13 allows at ...)
-	TODO: check
+	NOT-FOR-US: Chamilo LMS
 CVE-2022-27425 (Chamilo LMS v1.11.13 was discovered to contain a cross-site scripting  ...)
-	TODO: check
+	NOT-FOR-US: Chamilo LMS
 CVE-2022-27424
 	RESERVED
 CVE-2022-27423 (Chamilo LMS v1.11.13 was discovered to contain a SQL injection vulnera ...)
-	TODO: check
+	NOT-FOR-US: Chamilo LMS
 CVE-2022-27422 (A reflected cross-site scripting (XSS) vulnerability in Chamilo LMS v1 ...)
-	TODO: check
+	NOT-FOR-US: Chamilo LMS
 CVE-2022-27421 (Chamilo LMS v1.11.13 lacks validation on the user modification form, a ...)
-	TODO: check
+	NOT-FOR-US: Chamilo LMS
 CVE-2022-27420
 	RESERVED
 CVE-2022-27419 (rtl_433 21.12 was discovered to contain a stack overflow in the functi ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9c1f149d99c05249c5de14c4a1c2bf521c4215ff

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9c1f149d99c05249c5de14c4a1c2bf521c4215ff
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220416/c4932844/attachment.htm>


More information about the debian-security-tracker-commits mailing list