[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Mar 31 08:52:19 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1d87e11a by Salvatore Bonaccorso at 2022-03-31T09:50:20+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -11230,15 +11230,15 @@ CVE-2022-24137
 CVE-2022-24136
 	RESERVED
 CVE-2022-24135 (QingScan 1.3.0 is affected by Cross Site Scripting (XSS) vulnerability ...)
-	TODO: check
+	NOT-FOR-US: QingScan
 CVE-2022-24134
 	RESERVED
 CVE-2022-24133
 	RESERVED
 CVE-2022-24132 (phpshe V1.8 is affected by a denial of service (DoS) attack in the reg ...)
-	TODO: check
+	NOT-FOR-US: phpshe
 CVE-2022-24131 (DouPHP v1.6 Release 20220121 is affected by Cross Site Scripting (XSS) ...)
-	TODO: check
+	NOT-FOR-US: DouPHP
 CVE-2022-21170 (Improper check for certificate revocation in i-FILTER Ver.10.45R01 and ...)
 	NOT-FOR-US: i-FILTER
 CVE-2022-0419 (NULL Pointer Dereference in GitHub repository radareorg/radare2 prior  ...)
@@ -12331,9 +12331,9 @@ CVE-2022-23871 (Multiple cross-site scripting (XSS) vulnerabilities in the compo
 CVE-2022-23870
 	RESERVED
 CVE-2022-23869 (In RuoYi v4.7.2 through the WebUI, user test1 does not have permission ...)
-	TODO: check
+	NOT-FOR-US: RuoYi
 CVE-2022-23868 (RuoYi v4.7.2 contains a CSV injection vulnerability through ruoyi-admi ...)
-	TODO: check
+	NOT-FOR-US: RuoYi
 CVE-2022-23867
 	RESERVED
 CVE-2022-23866
@@ -12935,23 +12935,23 @@ CVE-2022-23803 (A stack-based buffer overflow vulnerability exists in the Gerber
 CVE-2022-23802
 	RESERVED
 CVE-2022-23801 (An issue was discovered in Joomla! 4.0.0 through 4.1.0. Possible XSS a ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2022-23800 (An issue was discovered in Joomla! 4.0.0 through 4.1.0. Inadequate con ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2022-23799 (An issue was discovered in Joomla! 4.0.0 through 4.1.0. Under specific ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2022-23798 (An issue was discovered in Joomla! 2.5.0 through 3.10.6 & 4.0.0 th ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2022-23797 (An issue was discovered in Joomla! 3.0.0 through 3.10.6 & 4.0.0 th ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2022-23796 (An issue was discovered in Joomla! 3.7.0 through 3.10.6. Lack of input ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2022-23795 (An issue was discovered in Joomla! 2.5.0 through 3.10.6 & 4.0.0 th ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2022-23794 (An issue was discovered in Joomla! 3.0.0 through 3.10.6 & 4.0.0 th ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2022-23793 (An issue was discovered in Joomla! 3.0.0 through 3.10.6 & 4.0.0 th ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2022-0326 (NULL Pointer Dereference in Homebrew mruby prior to 3.2. ...)
 	- mruby <not-affected> (Vulnerable code introduced later)
 	NOTE: Introduced by: https://github.com/mruby/mruby/commit/dccd66f9efecd0a974b735c62836fe566015cf37 (3.1.0-rc)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1d87e11a98ffdcb9cdaacd7db336f6a4519ea13b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1d87e11a98ffdcb9cdaacd7db336f6a4519ea13b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220331/4fc40938/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list