[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Dec 23 11:29:11 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
245da953 by Salvatore Bonaccorso at 2022-12-23T12:28:37+01:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -7430,7 +7430,7 @@ CVE-2022-45800
 CVE-2022-45799
 	RESERVED
 CVE-2022-45798 (A link following vulnerability in the Damage Cleanup Engine component  ...)
-	TODO: check
+	NOT-FOR-US: Trend Micro
 CVE-2022-4123 (A flaw was found in Buildah. The local path and the lowest subdirector ...)
 	- golang-github-containers-buildah <unfixed> (unimportant)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2144989
@@ -12160,7 +12160,7 @@ CVE-2022-3807 (A vulnerability was found in Axiomatic Bento4. It has been rated
 CVE-2022-3806
 	RESERVED
 CVE-2022-3805 (The Jeg Elementor Kit plugin for WordPress is vulnerable to authorizat ...)
-	TODO: check
+	NOT-FOR-US: Jeg Elementor Kit plugin for WordPress
 CVE-2022-3804 (A vulnerability was found in eolinker apinto-dashboard. It has been cl ...)
 	NOT-FOR-US: eolinker apinto-dashboard
 CVE-2022-3803 (A vulnerability was found in eolinker apinto-dashboard and classified  ...)
@@ -12182,7 +12182,7 @@ CVE-2022-3796
 CVE-2022-3795
 	RESERVED
 CVE-2022-3794 (The Jeg Elementor Kit plugin for WordPress is vulnerable to authorizat ...)
-	TODO: check
+	NOT-FOR-US: Jeg Elementor Kit plugin for WordPress
 CVE-2022-3793 (An improper authorization issue in GitLab CE/EE affecting all versions ...)
 	- gitlab <unfixed>
 CVE-2022-3792
@@ -15541,11 +15541,11 @@ CVE-2022-43861
 CVE-2022-43860
 	RESERVED
 CVE-2022-43859 (IBM Navigator for i 7.3, 7.4, and 7.5 could allow an authenticated use ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-43858 (IBM Navigator for i 7.3, 7.4, and 7.5 could allow an authenticated use ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-43857 (IBM Navigator for i 7.3, 7.4 and 7.5 could allow an authenticated user ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-43856
 	RESERVED
 CVE-2022-43855
@@ -37411,7 +37411,7 @@ CVE-2022-35648 (Nautilus treadmills T616 S/N 100672PRO21140001 through 100672PRO
 CVE-2022-35647
 	RESERVED
 CVE-2022-35646 (IBM Security Verify Governance, Identity Manager 10.0.1 software compo ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-35645
 	RESERVED
 CVE-2022-35644
@@ -77382,17 +77382,17 @@ CVE-2022-22463 (IBM Security Access Manager Appliance 10.0.0.0, 10.0.1.0, 10.0.2
 CVE-2022-22462
 	RESERVED
 CVE-2022-22461 (IBM Security Verify Governance, Identity Manager 10.0.1 uses weaker th ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-22460 (IBM Security Verify Identity Manager 10.0 contains sensitive informati ...)
 	NOT-FOR-US: IBM
 CVE-2022-22459
 	RESERVED
 CVE-2022-22458 (IBM Security Verify Governance, Identity Manager 10.0.1 stores user cr ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-22457 (IBM Security Verify Governance, Identity Manager 10.0.1 stores sensiti ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-22456 (IBM Security Verify Governance, Identity Manager 10.0.1 is vulnerable  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-22455 (IBM Security Verify Governance Identity Manager 10.0 virtual appliance ...)
 	NOT-FOR-US: IBM
 CVE-2022-22454 (IBM InfoSphere Information Server 11.7 could allow a locally authentic ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/245da9530612f87c9d7b62f18a6a30e4596ef6d3

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/245da9530612f87c9d7b62f18a6a30e4596ef6d3
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221223/9ae5e5c1/attachment.htm>


More information about the debian-security-tracker-commits mailing list