[Git][security-tracker-team/security-tracker][master] Process some NFUs

Neil Williams (@codehelp) codehelp at debian.org
Fri May 13 10:54:23 BST 2022



Neil Williams pushed to branch master at Debian Security Tracker / security-tracker


Commits:
84093418 by Neil Williams at 2022-05-13T10:53:49+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -3928,17 +3928,17 @@ CVE-2022-29309
 CVE-2022-29308
 	RESERVED
 CVE-2022-29307 (IonizeCMS v1.0.8.1 was discovered to contain a command injection vulne ...)
-	TODO: check
+	NOT-FOR-US: Ionize CMS
 CVE-2022-29306 (IonizeCMS v1.0.8.1 was discovered to contain a SQL injection vulnerabi ...)
-	TODO: check
+	NOT-FOR-US: Ionize CMS
 CVE-2022-29305
 	RESERVED
 CVE-2022-29304
 	RESERVED
 CVE-2022-29303 (SolarView Compact ver.6.00 was discovered to contain a command injecti ...)
-	TODO: check
+	NOT-FOR-US: SolarView Compact
 CVE-2022-29302 (SolarView Compact ver.6.00 was discovered to contain a local file disc ...)
-	TODO: check
+	NOT-FOR-US: SolarView Compact
 CVE-2022-29301
 	RESERVED
 CVE-2022-29300
@@ -3946,7 +3946,7 @@ CVE-2022-29300
 CVE-2022-29299
 	RESERVED
 CVE-2022-29298 (SolarView Compact ver.6.00 allows attackers to access sensitive files  ...)
-	TODO: check
+	NOT-FOR-US: SolarView Compact
 CVE-2022-29297
 	RESERVED
 CVE-2022-29296
@@ -5128,9 +5128,9 @@ CVE-2022-28875
 CVE-2022-28874
 	RESERVED
 CVE-2022-28873 (A vulnerability affecting F-Secure SAFE browser was discovered. An att ...)
-	TODO: check
+	NOT-FOR-US: F-Secure
 CVE-2022-28872 (A vulnerability affecting F-Secure SAFE browser was discovered. A mali ...)
-	TODO: check
+	NOT-FOR-US: F-Secure
 CVE-2022-28871 (A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atl ...)
 	NOT-FOR-US: F-Secure
 CVE-2022-28870 (A vulnerability affecting F-Secure SAFE browser was discovered. A mali ...)
@@ -5234,9 +5234,9 @@ CVE-2022-28821
 CVE-2022-28820 (ACS Commons version 5.1.x (and earlier) suffers from a Reflected Cross ...)
 	NOT-FOR-US: Adobe
 CVE-2022-28819 (Adobe Character Animator versions 4.4.2 (and earlier) and 22.3 (and ea ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2022-28818 (ColdFusion versions CF2021U3 (and earlier) and CF2018U13 are affected  ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2022-28817
 	RESERVED
 CVE-2022-28816
@@ -9735,7 +9735,7 @@ CVE-2022-1019 (Automated Logic's WebCtrl Server Version 6.1 'Help' index pages a
 CVE-2022-1018 (When opening a malicious solution file provided by an attacker, the ap ...)
 	NOT-FOR-US: Rockwell Automation
 CVE-2022-27172 (A hard-coded password vulnerability exists in the console infactory fu ...)
-	TODO: check
+	NOT-FOR-US: InHand Networks InRouter302
 CVE-2022-1017
 	RESERVED
 CVE-2022-1016
@@ -10223,7 +10223,7 @@ CVE-2022-27135 (xpdf 4.03 has heap buffer overflow in the function readXRefTable
 	- xpdf <not-affected> (Debian uses poppler, which is not affected)
 	NOTE: https://forum.xpdfreader.com/viewtopic.php?f=3&t=42232
 CVE-2022-27134 (EOSIO batdappboomx v327c04cf has an Access-control vulnerability in th ...)
-	TODO: check
+	NOT-FOR-US: EOSIO/eos
 CVE-2022-27133 (zbzcms v1.0 was discovered to contain an arbitrary file deletion vulne ...)
 	NOT-FOR-US: zbzcms
 CVE-2022-27132



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/84093418df0351b4ab15650105d908b2d4ea01c2

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/84093418df0351b4ab15650105d908b2d4ea01c2
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220513/544484b5/attachment.htm>


More information about the debian-security-tracker-commits mailing list