[Git][security-tracker-team/security-tracker][master] Process some NFUs

Neil Williams (@codehelp) codehelp at debian.org
Mon Mar 14 09:34:34 GMT 2022



Neil Williams pushed to branch master at Debian Security Tracker / security-tracker


Commits:
21da9de3 by Neil Williams at 2022-03-14T09:34:08+00:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -4640,7 +4640,7 @@ CVE-2022-25316
 CVE-2022-25312 (An XML external entity (XXE) injection vulnerability was discovered in ...)
 	NOT-FOR-US: Apache Any23
 CVE-2022-21132 (Directory traversal vulnerability in pfSense-pkg-WireGuard pfSense-pkg ...)
-	TODO: check
+	NOT-FOR-US: pfSense
 CVE-2022-0676 (Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prio ...)
 	- radare2 <unfixed>
 	NOTE: https://huntr.dev/bounties/5ad814a1-5dd3-43f4-869b-33b8dab78485
@@ -13181,7 +13181,7 @@ CVE-2022-22797
 CVE-2022-22796
 	RESERVED
 CVE-2022-22795 (Signiant - Manager+Agents XML External Entity (XXE) - Extract internal ...)
-	TODO: check
+	NOT-FOR-US: Signiant Manager+Agents
 CVE-2022-22794 (Cybonet - PineApp Mail Relay Unauthenticated Sql Injection. Attacker c ...)
 	NOT-FOR-US: Cybonet
 CVE-2022-22793 (Cybonet - PineApp Mail Relay Local File Inclusion. Attacker can send a ...)
@@ -32266,7 +32266,7 @@ CVE-2021-41235
 CVE-2021-41234
 	RESERVED
 CVE-2021-41233 (Nextcloud text is a collaborative document editing using Markdown buil ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud text app
 CVE-2021-41232 (Thunderdome is an open source agile planning poker tool in the theme o ...)
 	NOT-FOR-US: Thunderdome
 CVE-2021-41231
@@ -32412,9 +32412,9 @@ CVE-2021-41182 (jQuery-UI is the official jQuery user interface library. Prior t
 	NOTE: https://www.drupal.org/sa-core-2022-002
 	NOTE: https://www.znuny.org/en/advisories/zsa-2022-01
 CVE-2021-41181 (Nextcloud talk is a self hosting messaging service. In versions prior  ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud talk android app
 CVE-2021-41180 (Nextcloud talk is a self hosting messaging service. In versions prior  ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud talk app
 CVE-2021-41179 (Nextcloud is an open-source, self-hosted productivity platform. Prior  ...)
 	- nextcloud-server <itp> (bug #941708)
 CVE-2021-41178 (Nextcloud is an open-source, self-hosted productivity platform. Prior  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/21da9de3da02aad006f1c9a97c5535a3d6090ea7

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/21da9de3da02aad006f1c9a97c5535a3d6090ea7
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220314/187f0438/attachment.htm>


More information about the debian-security-tracker-commits mailing list