[Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Mon Jun 13 21:30:50 BST 2022
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
e5f3ceba by Salvatore Bonaccorso at 2022-06-13T22:30:23+02:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -19,9 +19,9 @@ CVE-2022-33179
CVE-2022-33178
RESERVED
CVE-2022-33175 (Power Distribution Units running on Powertek firmware (multiple brands ...)
- TODO: check
+ NOT-FOR-US: Powertek
CVE-2022-33174 (Power Distribution Units running on Powertek firmware (multiple brands ...)
- TODO: check
+ NOT-FOR-US: Powertek
CVE-2022-33173
RESERVED
CVE-2022-33172
@@ -415,15 +415,15 @@ CVE-2022-2068
CVE-2022-2067 (SQL Injection in GitHub repository francoisjacquet/rosariosis prior to ...)
TODO: check
CVE-2022-2066 (Cross-site Scripting (XSS) - Reflected in GitHub repository neorazorx/ ...)
- TODO: check
+ NOT-FOR-US: neorazorx/facturascripts
CVE-2022-2065 (Cross-site Scripting (XSS) - Stored in GitHub repository neorazorx/fac ...)
- TODO: check
+ NOT-FOR-US: neorazorx/facturascripts
CVE-2022-2064 (Insufficient Session Expiration in GitHub repository nocodb/nocodb pri ...)
- TODO: check
+ NOT-FOR-US: nocodb
CVE-2022-2063 (Improper Privilege Management in GitHub repository nocodb/nocodb prior ...)
- TODO: check
+ NOT-FOR-US: nocodb
CVE-2022-2062 (Exposure of Sensitive Information to an Unauthorized Actor in GitHub r ...)
- TODO: check
+ NOT-FOR-US: nocodb
CVE-2022-2061 (Heap-based Buffer Overflow in GitHub repository hpjansson/chafa prior ...)
TODO: check
CVE-2022-2060 (Cross-site Scripting (XSS) - Stored in GitHub repository dolibarr/doli ...)
@@ -933,11 +933,11 @@ CVE-2022-2040
CVE-2021-46819
RESERVED
CVE-2021-46818 (Adobe Media Encoder version 15.4 (and earlier) are affected by a memor ...)
- TODO: check
+ NOT-FOR-US: Adobe
CVE-2021-46817 (Adobe Media Encoder version 15.4 (and earlier) are affected by a memor ...)
- TODO: check
+ NOT-FOR-US: Adobe
CVE-2021-46816 (Adobe Premiere Pro version 15.4 (and earlier) are affected by a memory ...)
- TODO: check
+ NOT-FOR-US: Adobe
CVE-2022-32769
RESERVED
CVE-2022-32768
@@ -1705,13 +1705,13 @@ CVE-2022-1995
CVE-2022-1994
RESERVED
CVE-2017-20045 (A vulnerability was found in Navetti PricePoint 4.6.0.0. It has been d ...)
- TODO: check
+ NOT-FOR-US: Navetti PricePoint
CVE-2017-20044 (A vulnerability was found in Navetti PricePoint 4.6.0.0. It has been c ...)
- TODO: check
+ NOT-FOR-US: Navetti PricePoint
CVE-2017-20043 (A vulnerability was found in Navetti PricePoint 4.6.0.0 and classified ...)
- TODO: check
+ NOT-FOR-US: Navetti PricePoint
CVE-2017-20042 (A vulnerability has been found in Navetti PricePoint 4.6.0.0 and class ...)
- TODO: check
+ NOT-FOR-US: Navetti PricePoint
CVE-2017-20041 (A vulnerability was found in Ucweb UC Browser 11.2.5.932. It has been ...)
TODO: check
CVE-2022-32452
@@ -2301,7 +2301,7 @@ CVE-2022-29926
CVE-2022-29512
RESERVED
CVE-2022-1985 (The Download Manager Plugin for WordPress is vulnerable to reflected C ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2022-1984
RESERVED
CVE-2022-1983
@@ -2587,7 +2587,7 @@ CVE-2022-29519
CVE-2022-1962
RESERVED
CVE-2022-1961 (The Google Tag Manager for WordPress (GTM4WP) plugin is vulnerable to ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2022-1960
RESERVED
CVE-2022-1959
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e5f3cebabc7913ed630f552946c01a3ede02bf3c
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e5f3cebabc7913ed630f552946c01a3ede02bf3c
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220613/6964baa6/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list