[Git][security-tracker-team/security-tracker][master] Process two NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Jan 3 08:39:46 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
c4ef0f6a by Salvatore Bonaccorso at 2022-01-03T09:35:39+01:00
Process two NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -66,7 +66,7 @@ CVE-2021-45960 (In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or mor
 	NOTE: https://github.com/libexpat/libexpat/issues/531
 	NOTE: https://github.com/libexpat/libexpat/pull/534
 CVE-2022-0079 (showdoc is vulnerable to Generation of Error Message Containing Sensit ...)
-	TODO: check
+	NOT-FOR-US: showdoc
 CVE-2022-0078
 	RESERVED
 CVE-2021-45959 (** DISPUTED ** {fmt} 7.1.0 through 8.0.1 has a stack-based buffer over ...)
@@ -54262,7 +54262,7 @@ CVE-2021-25983 (In Factor (App Framework & Headless CMS) forum plugin, versi
 CVE-2021-25982 (In Factor (App Framework & Headless CMS) forum plugin, versions 1. ...)
 	NOT-FOR-US: Factor (App Framework & Headless CMS)
 CVE-2021-25981 (In Talkyard, regular versions v0.2021.20 through v0.2021.33 and dev ve ...)
-	TODO: check
+	NOT-FOR-US: Talkyard
 CVE-2021-25980 (In Talkyard, versions v0.04.01 through v0.6.74-WIP-63220cb, v0.2020.22 ...)
 	NOT-FOR-US: Talkyard
 CVE-2021-25979 (Apostrophe CMS versions between 2.63.0 to 3.3.1 affected by an insuffi ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c4ef0f6a6857d19f88e0fb971c97f05436e65169

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c4ef0f6a6857d19f88e0fb971c97f05436e65169
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220103/669a7dbe/attachment.htm>


More information about the debian-security-tracker-commits mailing list