[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Aug 3 10:27:25 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
459da6f0 by Salvatore Bonaccorso at 2022-08-03T11:26:44+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -3568,7 +3568,7 @@ CVE-2022-35927
 CVE-2022-35926
 	RESERVED
 CVE-2022-35925 (BookWyrm is a social network for tracking reading. Versions prior to 0 ...)
-	TODO: check
+	NOT-FOR-US: BookWyrm
 CVE-2022-35924 (NextAuth.js is a complete open source authentication solution for Next ...)
 	TODO: check
 CVE-2022-35923 (v8n is a javascript validation library. Versions of v8n prior to 1.5.1 ...)
@@ -5270,7 +5270,7 @@ CVE-2022-35225 (SAP NetWeaver Enterprise Portal - versions 7.10, 7.11, 7.20, 7.3
 CVE-2022-35224 (SAP Enterprise Portal - versions 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7 ...)
 	NOT-FOR-US: SAP
 CVE-2022-35223 (EasyUse MailHunter Ultimate’s cookie deserialization function ha ...)
-	TODO: check
+	NOT-FOR-US: EasyUse MailHunter Ultimate
 CVE-2022-35222 (HiCOS Citizen verification component has a stack-based buffer overflow ...)
 	NOT-FOR-US: HiCOS Citizen verification component
 CVE-2022-35221 (Teamplus Pro community discussion has an ‘allocation of resource ...)
@@ -5278,9 +5278,9 @@ CVE-2022-35221 (Teamplus Pro community discussion has an ‘allocation of re
 CVE-2022-35220 (Teamplus Pro community discussion function has an ‘allocation of ...)
 	NOT-FOR-US: Teamplus Pro community discussion
 CVE-2022-35219 (The NHI card’s web service component has a stack-based buffer ov ...)
-	TODO: check
+	NOT-FOR-US: The NHI card
 CVE-2022-35218 (The NHI card’s web service component has a heap-based buffer ove ...)
-	TODO: check
+	NOT-FOR-US: The NHI card
 CVE-2022-35217 (The NHI card’s web service component has a stack-based buffer ov ...)
 	NOT-FOR-US: NHI card
 CVE-2022-35216
@@ -5884,7 +5884,7 @@ CVE-2022-34939
 CVE-2022-34938
 	RESERVED
 CVE-2022-34937 (Yuba u5cms v8.3.5 was discovered to contain a Cross-Site Request Forge ...)
-	TODO: check
+	NOT-FOR-US: Yuba u5cms
 CVE-2022-34936
 	RESERVED
 CVE-2022-34935
@@ -5902,7 +5902,7 @@ CVE-2022-34930
 CVE-2022-34929
 	RESERVED
 CVE-2022-34928 (JFinal CMS v5.1.0 was discovered to contain a SQL injection vulnerabil ...)
-	TODO: check
+	NOT-FOR-US: JFinal CMS
 CVE-2022-34927 (MilkyTracker v1.03.00 was discovered to contain a stack overflow via t ...)
 	TODO: check
 CVE-2022-34926
@@ -5910,7 +5910,7 @@ CVE-2022-34926
 CVE-2022-34925
 	RESERVED
 CVE-2022-34924 (Lanling OA Landray Office Automation (OA) internal patch number #13338 ...)
-	TODO: check
+	NOT-FOR-US: Lanling OA Landray Office Automation
 CVE-2022-34923
 	RESERVED
 CVE-2022-34922



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/459da6f0c16a4535e3e0a6db48c0a01f730add5c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/459da6f0c16a4535e3e0a6db48c0a01f730add5c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220803/dc16bc66/attachment.htm>


More information about the debian-security-tracker-commits mailing list