[Git][security-tracker-team/security-tracker][master] Process some NFUs

Neil Williams (@codehelp) codehelp at debian.org
Thu Mar 24 09:37:36 GMT 2022



Neil Williams pushed to branch master at Debian Security Tracker / security-tracker


Commits:
3f92ec4a by Neil Williams at 2022-03-24T09:37:09+00:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -68196,7 +68196,7 @@ CVE-2021-27791 (The function that is used to parse the Authentication header in
 CVE-2021-27790 (The command ipfilter in Brocade Fabric OS before Brocade Fabric OS v.9 ...)
 	NOT-FOR-US: Brocade Fabric OS
 CVE-2021-27789 (The Web application of Brocade Fabric OS before versions Brocade Fabri ...)
-	TODO: check
+	NOT-FOR-US: Brocade Fabric OS
 CVE-2021-27788
 	RESERVED
 CVE-2021-27787
@@ -96313,7 +96313,7 @@ CVE-2021-0959 (In jit_memory_region.cc, there is a possible bypass of memory res
 CVE-2021-0958 (In update of km_compat.cpp, there is a possible loss of potentially se ...)
 	NOT-FOR-US: Android
 CVE-2021-0957 (In NotificationStackScrollLayout of NotificationStackScrollLayout.java ...)
-	TODO: check
+	NOT-FOR-US: Android
 CVE-2021-0956 (In NfcTag::discoverTechnologies (activation) of NfcTag.cpp, there is a ...)
 	NOT-FOR-US: Android
 CVE-2021-0955 (In pf_write_buf of FuseDaemon.cpp, there is possible memory corruption ...)
@@ -104114,9 +104114,9 @@ CVE-2020-26010
 CVE-2020-26009
 	RESERVED
 CVE-2020-26008 (The PluginsUpload function in application/service/PluginsAdminService. ...)
-	TODO: check
+	NOT-FOR-US: ShopXO
 CVE-2020-26007 (An arbitrary file upload vulnerability in the upload payment plugin of ...)
-	TODO: check
+	NOT-FOR-US: ShopXO
 CVE-2020-26006 (Project Worlds Online Examination System 1.0 is affected by Cross Site ...)
 	NOT-FOR-US: Project Worlds Online Examination System
 CVE-2020-26005
@@ -107253,7 +107253,7 @@ CVE-2020-24774
 CVE-2020-24773
 	RESERVED
 CVE-2020-24772 (In Dreamacro Clash for Windows v0.11.4, an attacker could embed a mali ...)
-	TODO: check
+	NOT-FOR-US: Dreamacro Clash for Windows
 CVE-2020-24771
 	RESERVED
 CVE-2020-24770
@@ -117380,13 +117380,13 @@ CVE-2020-20098
 CVE-2020-20097
 	RESERVED
 CVE-2020-20096 (Whatsapp iOS 2.19.80 and prior and Android 2.19.222 and prior user int ...)
-	TODO: check
+	NOT-FOR-US: WhatsApp
 CVE-2020-20095 (iMessage (Messages app) iOS 12.4 and prior user interface does not pro ...)
-	TODO: check
+	NOT-FOR-US: Apple iMessage
 CVE-2020-20094 (Instagram iOS 106.0 and prior and Android 107.0.0.11 and prior user in ...)
-	TODO: check
+	NOT-FOR-US: Instagram
 CVE-2020-20093 (The Facebook Messenger app for iOS 227.0 and prior and Android 228.1.0 ...)
-	TODO: check
+	NOT-FOR-US: Facebook Messenger
 CVE-2020-20092 (File Upload vulnerability exists in ArticleCMS 1.0 via the image uploa ...)
 	NOT-FOR-US: ArticleCMS
 CVE-2020-20091



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3f92ec4aa0e27d545d0eed80154843a945a32c43

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3f92ec4aa0e27d545d0eed80154843a945a32c43
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220324/962c618f/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list