[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Jun 30 21:23:51 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e32710f5 by Salvatore Bonaccorso at 2022-06-30T22:23:24+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -36684,11 +36684,11 @@ CVE-2022-22498
 CVE-2022-22497 (IBM Aspera Faspex 4.4.1 and 5.0.0 could allow unauthorized access due  ...)
 	NOT-FOR-US: IBM
 CVE-2022-22496 (While a user account for the IBM Spectrum Protect Server 8.1.0.000 thr ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-22495 (IBM i 7.3, 7.4, and 7.5 is vulnerable to SQL injection. A remote attac ...)
 	NOT-FOR-US: IBM
 CVE-2022-22494 (IBM Spectrum Protect Operations Center 8.1.0.000 through 8.1.14 could  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-22493
 	RESERVED
 CVE-2022-22492
@@ -36702,7 +36702,7 @@ CVE-2022-22489
 CVE-2022-22488
 	RESERVED
 CVE-2022-22487 (An IBM Spectrum Protect storage agent could allow a remote attacker to ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-22486
 	RESERVED
 CVE-2022-22485 (In some cases, an unsuccessful attempt to log into IBM Spectrum Protec ...)
@@ -36720,7 +36720,7 @@ CVE-2022-22480
 CVE-2022-22479 (IBM Spectrum Copy Data Management 2.2.0.0through 2.2.15.0 is vulnerabl ...)
 	NOT-FOR-US: IBM
 CVE-2022-22478 (IBM Spectrum Protect Client 8.1.0.0 through 8.1.14.0 stores user crede ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-22477
 	RESERVED
 CVE-2022-22476
@@ -36728,11 +36728,11 @@ CVE-2022-22476
 CVE-2022-22475 (IBM WebSphere Application Server Liberty and Open Liberty 17.0.0.3 thr ...)
 	NOT-FOR-US: IBM
 CVE-2022-22474 (IBM Spectrum Protect 8.1.0.0 through 8.1.14.0 dsmcad, dsmc, and dsmcsv ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-22473
 	RESERVED
 CVE-2022-22472 (IBM Spectrum Protect Plus Container Backup and Restore (10.1.5 through ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-22471
 	RESERVED
 CVE-2022-22470
@@ -61010,7 +61010,7 @@ CVE-2021-38956 (IBM Security Verify 10.0.0, 10.0.1.0, and 10.0.2.0 could disclos
 CVE-2021-38955 (IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a local user with elev ...)
 	NOT-FOR-US: IBM
 CVE-2021-38954 (IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.5 a ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-38953
 	RESERVED
 CVE-2021-38952 (IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scr ...)
@@ -61036,7 +61036,7 @@ CVE-2021-38943
 CVE-2021-38942
 	RESERVED
 CVE-2021-38941 (IBM CloudPak for Multicloud Monitoring 2.0 and 2.3 has a few container ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-38940
 	RESERVED
 CVE-2021-38939 (IBM QRadar SIEM 7.3, 7.4, and 7.5 stores potentially sensitive informa ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e32710f5be45c7688acff9be5cdf54d9392358a2

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e32710f5be45c7688acff9be5cdf54d9392358a2
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220630/d6751143/attachment.htm>


More information about the debian-security-tracker-commits mailing list