[Git][security-tracker-team/security-tracker][master] Process some NFUs
Neil Williams (@codehelp)
codehelp at debian.org
Mon Mar 14 09:34:34 GMT 2022
Neil Williams pushed to branch master at Debian Security Tracker / security-tracker
Commits:
21da9de3 by Neil Williams at 2022-03-14T09:34:08+00:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -4640,7 +4640,7 @@ CVE-2022-25316
CVE-2022-25312 (An XML external entity (XXE) injection vulnerability was discovered in ...)
NOT-FOR-US: Apache Any23
CVE-2022-21132 (Directory traversal vulnerability in pfSense-pkg-WireGuard pfSense-pkg ...)
- TODO: check
+ NOT-FOR-US: pfSense
CVE-2022-0676 (Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prio ...)
- radare2 <unfixed>
NOTE: https://huntr.dev/bounties/5ad814a1-5dd3-43f4-869b-33b8dab78485
@@ -13181,7 +13181,7 @@ CVE-2022-22797
CVE-2022-22796
RESERVED
CVE-2022-22795 (Signiant - Manager+Agents XML External Entity (XXE) - Extract internal ...)
- TODO: check
+ NOT-FOR-US: Signiant Manager+Agents
CVE-2022-22794 (Cybonet - PineApp Mail Relay Unauthenticated Sql Injection. Attacker c ...)
NOT-FOR-US: Cybonet
CVE-2022-22793 (Cybonet - PineApp Mail Relay Local File Inclusion. Attacker can send a ...)
@@ -32266,7 +32266,7 @@ CVE-2021-41235
CVE-2021-41234
RESERVED
CVE-2021-41233 (Nextcloud text is a collaborative document editing using Markdown buil ...)
- TODO: check
+ NOT-FOR-US: Nextcloud text app
CVE-2021-41232 (Thunderdome is an open source agile planning poker tool in the theme o ...)
NOT-FOR-US: Thunderdome
CVE-2021-41231
@@ -32412,9 +32412,9 @@ CVE-2021-41182 (jQuery-UI is the official jQuery user interface library. Prior t
NOTE: https://www.drupal.org/sa-core-2022-002
NOTE: https://www.znuny.org/en/advisories/zsa-2022-01
CVE-2021-41181 (Nextcloud talk is a self hosting messaging service. In versions prior ...)
- TODO: check
+ NOT-FOR-US: Nextcloud talk android app
CVE-2021-41180 (Nextcloud talk is a self hosting messaging service. In versions prior ...)
- TODO: check
+ NOT-FOR-US: Nextcloud talk app
CVE-2021-41179 (Nextcloud is an open-source, self-hosted productivity platform. Prior ...)
- nextcloud-server <itp> (bug #941708)
CVE-2021-41178 (Nextcloud is an open-source, self-hosted productivity platform. Prior ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/21da9de3da02aad006f1c9a97c5535a3d6090ea7
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/21da9de3da02aad006f1c9a97c5535a3d6090ea7
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220314/187f0438/attachment.htm>
More information about the debian-security-tracker-commits
mailing list