[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Fri Dec 2 08:38:27 GMT 2022



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4fbe7725 by Moritz Muehlenhoff at 2022-12-02T09:38:04+01:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -231,7 +231,7 @@ CVE-2022-4248 (A vulnerability, which was classified as critical, has been found
 CVE-2022-4247 (A vulnerability classified as critical was found in Movie Ticket Booki ...)
 	NOT-FOR-US: Movie Ticket Booking System
 CVE-2022-4246 (A vulnerability classified as problematic has been found in Kakao PotP ...)
-	TODO: check
+	NOT-FOR-US: Kakao PotPlayer
 CVE-2022-46361
 	RESERVED
 CVE-2022-43485
@@ -309,7 +309,7 @@ CVE-2022-4226
 CVE-2022-4225
 	RESERVED
 CVE-2021-4242 (A vulnerability was found in Sapido BR270n, BRC76n, GR297 and RB1732 a ...)
-	TODO: check
+	NOT-FOR-US: Sapido
 CVE-2022-46344
 	RESERVED
 CVE-2022-46343
@@ -826,15 +826,15 @@ CVE-2022-46158
 CVE-2022-46157
 	RESERVED
 CVE-2022-46156 (The Synthetic Monitoring Agent for Grafana's Synthetic Monitoring appl ...)
-	TODO: check
+	NOT-FOR-US: Grafana Synthetic Monitoring
 CVE-2022-46155 (Airtable.js is the JavaScript client for Airtable. Prior to version 0. ...)
-	TODO: check
+	NOT-FOR-US: Airtable.js
 CVE-2022-46154
 	RESERVED
 CVE-2022-46153
 	RESERVED
 CVE-2022-46152 (OP-TEE Trusted OS is the secure side implementation of OP-TEE project, ...)
-	TODO: check
+	NOT-FOR-US: OP-TEE
 CVE-2022-46151
 	RESERVED
 CVE-2022-46150 (Discourse is an open-source discussion platform. Prior to version 2.8. ...)
@@ -846,7 +846,7 @@ CVE-2022-46149 (Cap'n Proto is a data interchange format and remote procedure ca
 CVE-2022-46148 (Discourse is an open-source messaging platform. In versions 2.8.10 and ...)
 	NOT-FOR-US: Discourse
 CVE-2022-46147 (Drag and Drop XBlock v2 implements a drag-and-drop style problem, wher ...)
-	TODO: check
+	NOT-FOR-US: Drag and Drop XBlock
 CVE-2022-46146 (Prometheus Exporter Toolkit is a utility package to build exporters. P ...)
 	- golang-github-prometheus-exporter-toolkit 0.8.2-1 (bug #1025127)
 	NOTE: https://www.openwall.com/lists/oss-security/2022/11/29/1
@@ -875,7 +875,7 @@ CVE-2022-4171
 CVE-2022-4170
 	RESERVED
 CVE-2022-4169 (The Theme and plugin translation for Polylang is vulnerable to authori ...)
-	TODO: check
+	NOT-FOR-US: Polylang
 CVE-2022-4168
 	RESERVED
 CVE-2022-4167
@@ -1361,7 +1361,7 @@ CVE-2022-45923
 CVE-2022-45922
 	RESERVED
 CVE-2022-45921 (FusionAuth before 1.41.3 allows a file outside of the application root ...)
-	TODO: check
+	NOT-FOR-US: FusionAuth
 CVE-2022-45920
 	RESERVED
 CVE-2022-45919 (An issue was discovered in the Linux kernel through 6.0.10. In drivers ...)
@@ -2224,7 +2224,7 @@ CVE-2022-45564
 CVE-2022-45563
 	RESERVED
 CVE-2022-45562 (Insecure permissions in Telos Alliance Omnia MPX Node v1.0.0 to v1.4.9 ...)
-	TODO: check
+	NOT-FOR-US: Telos Alliance Omnia MPX Node
 CVE-2022-45561
 	RESERVED
 CVE-2022-45560
@@ -2384,7 +2384,7 @@ CVE-2022-45484
 CVE-2022-4105 (A stored XSS in a kiwi Test Plan can run malicious javascript which co ...)
 	NOT-FOR-US: kiwi Test Plan
 CVE-2022-4104 (A loop with an unreachable exit condition can be triggered by passing  ...)
-	TODO: check
+	NOT-FOR-US: Tenable
 CVE-2022-4103
 	RESERVED
 CVE-2022-4102
@@ -2650,7 +2650,7 @@ CVE-2022-4022 (The SVG Support plugin for WordPress defaults to insecure setting
 CVE-2022-4021 (The Permalink Manager Lite plugin for WordPress is vulnerable to Cross ...)
 	NOT-FOR-US: Permalink Manager Lite plugin for WordPress
 CVE-2022-4020 (Vulnerability in the HQSwSmiDxe DXE driver on some consumer Acer Noteb ...)
-	TODO: check
+	NOT-FOR-US: Acer
 CVE-2022-4019 (A denial-of-service vulnerability in the Mattermost Playbooks plugin a ...)
 	NOT-FOR-US: Mattermost plugin
 CVE-2022-4018 (Missing Authentication for Critical Function in GitHub repository ikus ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4fbe77256bd5f39d02930a300b1fc2e234f8fd83

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4fbe77256bd5f39d02930a300b1fc2e234f8fd83
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221202/753a6c51/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list