[Git][security-tracker-team/security-tracker][master] Process some NFUs

Neil Williams (@codehelp) codehelp at debian.org
Tue Jan 25 12:59:23 GMT 2022



Neil Williams pushed to branch master at Debian Security Tracker / security-tracker


Commits:
8ebcc643 by Neil Williams at 2022-01-25T12:59:08+00:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -66442,7 +66442,7 @@ CVE-2021-23596
 CVE-2021-23595
 	RESERVED
 CVE-2021-23594 (All versions of package realms-shim are vulnerable to Sandbox Bypass v ...)
-	TODO: check
+	NOT-FOR-US: realms-shim
 CVE-2021-23593
 	RESERVED
 CVE-2021-23592
@@ -66498,7 +66498,7 @@ CVE-2021-23568 (The package extend2 before 1.0.1 are vulnerable to Prototype Pol
 CVE-2021-23567 (The package colors after 1.4.0 are vulnerable to Denial of Service (Do ...)
 	TODO: check
 CVE-2021-23566 (The package nanoid before 3.1.31 are vulnerable to Information Exposur ...)
-	TODO: check
+	NOT-FOR-US: Node nanoid (NaN0-1D)
 CVE-2021-23565
 	RESERVED
 CVE-2021-23564
@@ -66508,7 +66508,7 @@ CVE-2021-23563
 CVE-2021-23562 (This affects the package plupload before 2.3.9. A file name containing ...)
 	NOT-FOR-US: Node plupload
 CVE-2021-23561 (All versions of package comb are vulnerable to Prototype Pollution via ...)
-	TODO: check
+	NOT-FOR-US: Node comb
 CVE-2021-23560
 	RESERVED
 CVE-2021-23559
@@ -66544,7 +66544,7 @@ CVE-2021-23545
 CVE-2021-23544
 	RESERVED
 CVE-2021-23543 (All versions of package realms-shim are vulnerable to Sandbox Bypass v ...)
-	TODO: check
+	NOT-FOR-US: realms-shim
 CVE-2021-23542
 	RESERVED
 CVE-2021-23541



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8ebcc643ac427cd3a841e76aff6a34a3907c38c1

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8ebcc643ac427cd3a841e76aff6a34a3907c38c1
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220125/a24607a0/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list