[Git][security-tracker-team/security-tracker][master] Process several NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Dec 23 20:23:01 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0e31885f by Salvatore Bonaccorso at 2022-12-23T21:22:34+01:00
Process several NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -35,31 +35,31 @@ CVE-2022-4697 (The ProfilePress plugin for WordPress is vulnerable to Stored Cro
 CVE-2022-4696
 	RESERVED
 CVE-2022-4695 (Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memo ...)
-	TODO: check
+	NOT-FOR-US: usememos
 CVE-2022-4694 (Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memo ...)
-	TODO: check
+	NOT-FOR-US: usememos
 CVE-2022-4693
 	RESERVED
 CVE-2022-4692 (Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memo ...)
-	TODO: check
+	NOT-FOR-US: usememos
 CVE-2022-4691 (Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memo ...)
-	TODO: check
+	NOT-FOR-US: usememos
 CVE-2022-4690 (Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memo ...)
-	TODO: check
+	NOT-FOR-US: usememos
 CVE-2022-4689 (Improper Access Control in GitHub repository usememos/memos prior to 0 ...)
-	TODO: check
+	NOT-FOR-US: usememos
 CVE-2022-4688 (Improper Authorization in GitHub repository usememos/memos prior to 0. ...)
-	TODO: check
+	NOT-FOR-US: usememos
 CVE-2022-4687 (Incorrect Use of Privileged APIs in GitHub repository usememos/memos p ...)
-	TODO: check
+	NOT-FOR-US: usememos
 CVE-2022-4686 (Improper Authentication in GitHub repository usememos/memos prior to 0 ...)
-	TODO: check
+	NOT-FOR-US: usememos
 CVE-2022-4685 (Improper Access Control in GitHub repository usememos/memos prior to 0 ...)
-	TODO: check
+	NOT-FOR-US: usememos
 CVE-2022-4684 (Improper Access Control in GitHub repository usememos/memos prior to 0 ...)
-	TODO: check
+	NOT-FOR-US: usememos
 CVE-2022-4683 (Sensitive Cookie in HTTPS Session Without 'Secure' Attribute in GitHub ...)
-	TODO: check
+	NOT-FOR-US: usememos
 CVE-2022-4682
 	RESERVED
 CVE-2022-4681
@@ -1285,7 +1285,7 @@ CVE-2022-47526
 CVE-2022-47525
 	RESERVED
 CVE-2022-47524 (F-Secure SAFE Browser 19.1 before 19.2 for Android allows an IDN homog ...)
-	TODO: check
+	NOT-FOR-US: F-Secure SAFE Browser
 CVE-2022-47523
 	RESERVED
 CVE-2022-4607 (A vulnerability was found in 3D City Database OGC Web Feature Service  ...)
@@ -5106,9 +5106,9 @@ CVE-2022-46644
 CVE-2022-46643
 	RESERVED
 CVE-2022-46642 (D-Link DIR-846 A1_FW100A43 was discovered to contain a command injecti ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2022-46641 (D-Link DIR-846 A1_FW100A43 was discovered to contain a command injecti ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2022-46640
 	RESERVED
 CVE-2022-46639
@@ -5250,27 +5250,27 @@ CVE-2022-46572
 CVE-2022-46571
 	RESERVED
 CVE-2022-46570 (D-Link DIR-882 DIR882A1_FW130B06 was discovered to contain a stack ove ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2022-46569 (D-Link DIR-882 DIR882A1_FW130B06 was discovered to contain a stack ove ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2022-46568 (D-Link DIR-882 DIR882A1_FW130B06 was discovered to contain a stack ove ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2022-46567
 	RESERVED
 CVE-2022-46566 (D-Link DIR-882 DIR882A1_FW130B06 was discovered to contain a stack ove ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2022-46565
 	RESERVED
 CVE-2022-46564
 	RESERVED
 CVE-2022-46563 (D-Link DIR-882 DIR882A1_FW130B06 was discovered to contain a stack ove ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2022-46562 (D-Link DIR-882 DIR882A1_FW130B06 was discovered to contain a stack ove ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2022-46561 (D-Link DIR-882 DIR882A1_FW130B06 was discovered to contain a stack ove ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2022-46560 (D-Link DIR-882 DIR882A1_FW130B06 was discovered to contain a stack ove ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2022-46559
 	RESERVED
 CVE-2022-46558
@@ -6606,7 +6606,7 @@ CVE-2022-46173
 CVE-2022-46172
 	RESERVED
 CVE-2022-46171 (Tauri is a framework for building binaries for all major desktop platf ...)
-	TODO: check
+	NOT-FOR-US: Tauri
 CVE-2022-46170 (CodeIgniter is a PHP full-stack web framework. When an application use ...)
 	- codeigniter <itp> (bug #471583)
 CVE-2022-46169 (Cacti is an open source platform which provides a robust and extensibl ...)
@@ -7738,37 +7738,37 @@ CVE-2022-45723
 CVE-2022-45722
 	RESERVED
 CVE-2022-45721 (IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overf ...)
-	TODO: check
+	NOT-FOR-US: IP-COM M50
 CVE-2022-45720 (IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple buffe ...)
-	TODO: check
+	NOT-FOR-US: IP-COM M50
 CVE-2022-45719 (IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overf ...)
-	TODO: check
+	NOT-FOR-US: IP-COM M50
 CVE-2022-45718 (IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overf ...)
-	TODO: check
+	NOT-FOR-US: IP-COM M50
 CVE-2022-45717 (IP-COM M50 V15.11.0.33(10768) was discovered to contain a command inje ...)
-	TODO: check
+	NOT-FOR-US: IP-COM M50
 CVE-2022-45716 (IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overf ...)
-	TODO: check
+	NOT-FOR-US: IP-COM M50
 CVE-2022-45715 (IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple buffe ...)
-	TODO: check
+	NOT-FOR-US: IP-COM M50
 CVE-2022-45714 (IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overf ...)
-	TODO: check
+	NOT-FOR-US: IP-COM M50
 CVE-2022-45713
 	RESERVED
 CVE-2022-45712 (IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overf ...)
-	TODO: check
+	NOT-FOR-US: IP-COM M50
 CVE-2022-45711 (IP-COM M50 V15.11.0.33(10768) was discovered to contain a command inje ...)
-	TODO: check
+	NOT-FOR-US: IP-COM M50
 CVE-2022-45710 (IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple buffe ...)
-	TODO: check
+	NOT-FOR-US: IP-COM M50
 CVE-2022-45709 (IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple comma ...)
-	TODO: check
+	NOT-FOR-US: IP-COM M50
 CVE-2022-45708 (IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overf ...)
-	TODO: check
+	NOT-FOR-US: IP-COM M50
 CVE-2022-45707 (IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overf ...)
-	TODO: check
+	NOT-FOR-US: IP-COM M50
 CVE-2022-45706 (IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overf ...)
-	TODO: check
+	NOT-FOR-US: IP-COM M50
 CVE-2022-45705
 	RESERVED
 CVE-2022-45704
@@ -12240,7 +12240,7 @@ CVE-2022-44569
 CVE-2022-44568
 	RESERVED
 CVE-2022-44567 (A command injection vulnerability exists in Rocket.Chat-Desktop <3. ...)
-	TODO: check
+	NOT-FOR-US: Rocket.Chat-Desktop
 CVE-2022-44566
 	RESERVED
 CVE-2022-44565 (An improper access validation vulnerability exists in airMAX AC <8. ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0e31885f32c4dc5107e4352db9ac5a9f1eda1770

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0e31885f32c4dc5107e4352db9ac5a9f1eda1770
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221223/d507b80f/attachment.htm>


More information about the debian-security-tracker-commits mailing list