[Git][security-tracker-team/security-tracker][master] Process some NFUs

Neil Williams (@codehelp) codehelp at debian.org
Thu Aug 18 10:45:36 BST 2022



Neil Williams pushed to branch master at Debian Security Tracker / security-tracker


Commits:
7a8e3a15 by Neil Williams at 2022-08-18T10:45:19+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -7782,7 +7782,7 @@ CVE-2022-35301
 CVE-2022-35300
 	REJECTED
 CVE-2022-33939 (CENTUM VP / CS 3000 controller FCS (CP31, CP33, CP345, CP401, and CP45 ...)
-	TODO: check
+	NOT-FOR-US: Yokogawa CENTUM CS 3000
 CVE-2022-2346
 	RESERVED
 CVE-2022-2345 (Use After Free in GitHub repository vim/vim prior to 9.0.0046. ...)
@@ -8472,37 +8472,37 @@ CVE-2022-35015
 CVE-2022-35014
 	RESERVED
 CVE-2022-35013 (PNGDec commit 8abf6be was discovered to contain a FPE via SaveBMP at / ...)
-	TODO: check
+	NOT-FOR-US: bitbank2/PNGdec
 CVE-2022-35012 (PNGDec commit 8abf6be was discovered to contain a heap buffer overflow ...)
-	TODO: check
+	NOT-FOR-US: bitbank2/PNGdec
 CVE-2022-35011 (PNGDec commit 8abf6be was discovered to contain a global buffer overfl ...)
-	TODO: check
+	NOT-FOR-US: bitbank2/PNGdec
 CVE-2022-35010 (PNGDec commit 8abf6be was discovered to contain a heap buffer overflow ...)
-	TODO: check
+	NOT-FOR-US: bitbank2/PNGdec
 CVE-2022-35009 (PNGDec commit 8abf6be was discovered to contain a memory allocation pr ...)
-	TODO: check
+	NOT-FOR-US: bitbank2/PNGdec
 CVE-2022-35008 (PNGDec commit 8abf6be was discovered to contain a stack overflow via / ...)
-	TODO: check
+	NOT-FOR-US: bitbank2/PNGdec
 CVE-2022-35007 (PNGDec commit 8abf6be was discovered to contain a heap buffer overflow ...)
-	TODO: check
+	NOT-FOR-US: bitbank2/PNGdec
 CVE-2022-35006
 	RESERVED
 CVE-2022-35005
 	RESERVED
 CVE-2022-35004 (JPEGDEC commit be4843c was discovered to contain a FPE via TIFFSHORT a ...)
-	TODO: check
+	NOT-FOR-US: bitbank2/JPEGDEC
 CVE-2022-35003 (JPEGDEC commit be4843c was discovered to contain a global buffer overf ...)
-	TODO: check
+	NOT-FOR-US: bitbank2/JPEGDEC
 CVE-2022-35002 (JPEGDEC commit be4843c was discovered to contain a segmentation fault  ...)
-	TODO: check
+	NOT-FOR-US: bitbank2/JPEGDEC
 CVE-2022-35001
 	RESERVED
 CVE-2022-35000 (JPEGDEC commit be4843c was discovered to contain a segmentation fault  ...)
-	TODO: check
+	NOT-FOR-US: bitbank2/JPEGDEC
 CVE-2022-34999 (JPEGDEC commit be4843c was discovered to contain a FPE via DecodeJPEG  ...)
-	TODO: check
+	NOT-FOR-US: bitbank2/JPEGDEC
 CVE-2022-34998 (JPEGDEC commit be4843c was discovered to contain a global buffer overf ...)
-	TODO: check
+	NOT-FOR-US: bitbank2/JPEGDEC
 CVE-2022-34997
 	RESERVED
 CVE-2022-34996



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7a8e3a1511bd70d17015e218b114c6212a021388

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7a8e3a1511bd70d17015e218b114c6212a021388
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220818/c4aaa8ba/attachment.htm>


More information about the debian-security-tracker-commits mailing list