[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Thu Apr 21 12:22:33 BST 2022



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
02b48569 by Moritz Muehlenhoff at 2022-04-21T13:18:37+02:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -23,7 +23,7 @@ CVE-2022-29549
 CVE-2022-29548 (A reflected XSS issue exists in the Management Console of several WSO2 ...)
 	NOT-FOR-US: WSO2
 CVE-2022-29547 (The CreateRedirect extension before 2022-04-14 for MediaWiki does not  ...)
-	TODO: check
+	NOT-FOR-US: CreateRedirect MediaWiki extension
 CVE-2022-29546
 	RESERVED
 CVE-2022-29545
@@ -1230,7 +1230,7 @@ CVE-2022-29074
 CVE-2022-29073
 	RESERVED
 CVE-2022-29072 (** DISPUTED ** 7-Zip through 21.07 on Windows allows privilege escalat ...)
-	TODO: check
+	NOT-FOR-US: 7-Zip on Windows
 CVE-2022-29071
 	RESERVED
 CVE-2022-29070
@@ -6891,7 +6891,7 @@ CVE-2022-27044 (libsixel 1.8.6 is affected by Buffer Overflow in libsixel/src/qu
 	NOTE: https://github.com/libsixel/libsixel/pull/26
 	NOTE: Fixed by: https://github.com/libsixel/libsixel/commit/dc96cdc27fb53e8595af67aaf68001033c808e42 (v1.10.0)
 CVE-2022-27043 (Yearning versions 2.3.1 and 2.3.2 Interstellar GA and 2.3.4 - 2.3.6 Ne ...)
-	TODO: check
+	NOT-FOR-US: Yearning
 CVE-2022-27042
 	RESERVED
 CVE-2022-27041 (Due to lack of protection, parameter student_id in OpenSIS Classic 8.0 ...)
@@ -7172,7 +7172,7 @@ CVE-2022-26926
 CVE-2022-26925
 	RESERVED
 CVE-2022-26924 (YARP Denial of Service Vulnerability. ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2022-26923
 	RESERVED
 CVE-2022-26922



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/02b4856910cbd88d9db3e72a66ae85817f93396e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/02b4856910cbd88d9db3e72a66ae85817f93396e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220421/e3e30214/attachment.htm>


More information about the debian-security-tracker-commits mailing list