[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Aug 17 09:56:19 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
8b8c9111 by Salvatore Bonaccorso at 2022-08-17T10:55:55+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -120,13 +120,13 @@ CVE-2022-2848
 CVE-2022-2847 (A vulnerability, which was classified as critical, has been found in S ...)
 	NOT-FOR-US: SourceCodester Guest Management System
 CVE-2022-2846 (A vulnerability classified as problematic was found in Calendar Event  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2022-2845
 	RESERVED
 CVE-2022-2844 (A vulnerability classified as problematic has been found in MotoPress  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2022-2843 (A vulnerability was found in MotoPress Timetable and Event Schedule. I ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2022-2842
 	RESERVED
 CVE-2022-2841
@@ -2361,11 +2361,11 @@ CVE-2022-2677 (A vulnerability was found in SourceCodester Apartment Visitor Man
 CVE-2022-2676 (A vulnerability was found in SourceCodester Electronic Medical Records ...)
 	NOT-FOR-US: SourceCodester Electronic Medical Records System
 CVE-2022-37439 (In Splunk Enterprise and Universal Forwarder versions in the following ...)
-	TODO: check
+	NOT-FOR-US: Splunk
 CVE-2022-37438 (In Splunk Enterprise versions in the following table, an authenticated ...)
-	TODO: check
+	NOT-FOR-US: Splunk
 CVE-2022-37437 (When using Ingest Actions to configure a destination that resides on A ...)
-	TODO: check
+	NOT-FOR-US: Splunk
 CVE-2022-37436
 	RESERVED
 CVE-2022-37435
@@ -2498,9 +2498,9 @@ CVE-2020-36570
 CVE-2022-2663
 	RESERVED
 CVE-2022-2662 (Sequi PortBloque S has a improper authentication issues which may allo ...)
-	TODO: check
+	NOT-FOR-US: Sequi PortBloque S
 CVE-2022-2661 (Sequi PortBloque S has an improper authorization vulnerability, which  ...)
-	TODO: check
+	NOT-FOR-US: Sequi PortBloque S
 CVE-2022-2660
 	RESERVED
 CVE-2022-2659
@@ -2594,7 +2594,7 @@ CVE-2022-2636 (Improper Input Validation in GitHub repository hestiacp/hestiacp
 CVE-2022-2635
 	RESERVED
 CVE-2022-37393 (Zimbra's sudo configuration permits the zimbra user to execute the zms ...)
-	TODO: check
+	NOT-FOR-US: Zimbra
 CVE-2022-2634 (An attacker may be able to execute malicious actions due to the lack o ...)
 	NOT-FOR-US: Digi ConnectPort X2D
 CVE-2022-37392



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8b8c911109f3c10cc40d9322369c41743d50b6b8

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8b8c911109f3c10cc40d9322369c41743d50b6b8
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220817/c88d6ece/attachment.htm>


More information about the debian-security-tracker-commits mailing list