[Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Fri Dec 2 08:38:27 GMT 2022
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
4fbe7725 by Moritz Muehlenhoff at 2022-12-02T09:38:04+01:00
NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -231,7 +231,7 @@ CVE-2022-4248 (A vulnerability, which was classified as critical, has been found
CVE-2022-4247 (A vulnerability classified as critical was found in Movie Ticket Booki ...)
NOT-FOR-US: Movie Ticket Booking System
CVE-2022-4246 (A vulnerability classified as problematic has been found in Kakao PotP ...)
- TODO: check
+ NOT-FOR-US: Kakao PotPlayer
CVE-2022-46361
RESERVED
CVE-2022-43485
@@ -309,7 +309,7 @@ CVE-2022-4226
CVE-2022-4225
RESERVED
CVE-2021-4242 (A vulnerability was found in Sapido BR270n, BRC76n, GR297 and RB1732 a ...)
- TODO: check
+ NOT-FOR-US: Sapido
CVE-2022-46344
RESERVED
CVE-2022-46343
@@ -826,15 +826,15 @@ CVE-2022-46158
CVE-2022-46157
RESERVED
CVE-2022-46156 (The Synthetic Monitoring Agent for Grafana's Synthetic Monitoring appl ...)
- TODO: check
+ NOT-FOR-US: Grafana Synthetic Monitoring
CVE-2022-46155 (Airtable.js is the JavaScript client for Airtable. Prior to version 0. ...)
- TODO: check
+ NOT-FOR-US: Airtable.js
CVE-2022-46154
RESERVED
CVE-2022-46153
RESERVED
CVE-2022-46152 (OP-TEE Trusted OS is the secure side implementation of OP-TEE project, ...)
- TODO: check
+ NOT-FOR-US: OP-TEE
CVE-2022-46151
RESERVED
CVE-2022-46150 (Discourse is an open-source discussion platform. Prior to version 2.8. ...)
@@ -846,7 +846,7 @@ CVE-2022-46149 (Cap'n Proto is a data interchange format and remote procedure ca
CVE-2022-46148 (Discourse is an open-source messaging platform. In versions 2.8.10 and ...)
NOT-FOR-US: Discourse
CVE-2022-46147 (Drag and Drop XBlock v2 implements a drag-and-drop style problem, wher ...)
- TODO: check
+ NOT-FOR-US: Drag and Drop XBlock
CVE-2022-46146 (Prometheus Exporter Toolkit is a utility package to build exporters. P ...)
- golang-github-prometheus-exporter-toolkit 0.8.2-1 (bug #1025127)
NOTE: https://www.openwall.com/lists/oss-security/2022/11/29/1
@@ -875,7 +875,7 @@ CVE-2022-4171
CVE-2022-4170
RESERVED
CVE-2022-4169 (The Theme and plugin translation for Polylang is vulnerable to authori ...)
- TODO: check
+ NOT-FOR-US: Polylang
CVE-2022-4168
RESERVED
CVE-2022-4167
@@ -1361,7 +1361,7 @@ CVE-2022-45923
CVE-2022-45922
RESERVED
CVE-2022-45921 (FusionAuth before 1.41.3 allows a file outside of the application root ...)
- TODO: check
+ NOT-FOR-US: FusionAuth
CVE-2022-45920
RESERVED
CVE-2022-45919 (An issue was discovered in the Linux kernel through 6.0.10. In drivers ...)
@@ -2224,7 +2224,7 @@ CVE-2022-45564
CVE-2022-45563
RESERVED
CVE-2022-45562 (Insecure permissions in Telos Alliance Omnia MPX Node v1.0.0 to v1.4.9 ...)
- TODO: check
+ NOT-FOR-US: Telos Alliance Omnia MPX Node
CVE-2022-45561
RESERVED
CVE-2022-45560
@@ -2384,7 +2384,7 @@ CVE-2022-45484
CVE-2022-4105 (A stored XSS in a kiwi Test Plan can run malicious javascript which co ...)
NOT-FOR-US: kiwi Test Plan
CVE-2022-4104 (A loop with an unreachable exit condition can be triggered by passing ...)
- TODO: check
+ NOT-FOR-US: Tenable
CVE-2022-4103
RESERVED
CVE-2022-4102
@@ -2650,7 +2650,7 @@ CVE-2022-4022 (The SVG Support plugin for WordPress defaults to insecure setting
CVE-2022-4021 (The Permalink Manager Lite plugin for WordPress is vulnerable to Cross ...)
NOT-FOR-US: Permalink Manager Lite plugin for WordPress
CVE-2022-4020 (Vulnerability in the HQSwSmiDxe DXE driver on some consumer Acer Noteb ...)
- TODO: check
+ NOT-FOR-US: Acer
CVE-2022-4019 (A denial-of-service vulnerability in the Mattermost Playbooks plugin a ...)
NOT-FOR-US: Mattermost plugin
CVE-2022-4018 (Missing Authentication for Critical Function in GitHub repository ikus ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4fbe77256bd5f39d02930a300b1fc2e234f8fd83
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4fbe77256bd5f39d02930a300b1fc2e234f8fd83
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221202/753a6c51/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list