[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Nov 9 09:37:43 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
7f463269 by Salvatore Bonaccorso at 2022-11-09T10:36:38+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -12553,11 +12553,11 @@ CVE-2022-41262
 CVE-2022-41261
 	RESERVED
 CVE-2022-41260 (SAP Financial Consolidation - version 1010, does not sufficiently enco ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2022-41259 (SAP SQL Anywhere - version 17.0, allows an authenticated attacker to p ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2022-41258 (Due to insufficient input validation, SAP Financial Consolidation - ve ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2022-41257
 	RESERVED
 CVE-2022-41256
@@ -12668,31 +12668,31 @@ CVE-2022-41217
 CVE-2022-41216
 	RESERVED
 CVE-2022-41215 (SAP NetWeaver ABAP Server and ABAP Platform allows an unauthenticated  ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2022-41214 (Due to insufficient input validation, SAP NetWeaver Application Server ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2022-41213
 	RESERVED
 CVE-2022-41212 (Due to insufficient input validation, SAP NetWeaver Application Server ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2022-41211 (Due to lack of proper memory management, when a victim opens manipulat ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2022-41210 (SAP Customer Data Cloud (Gigya mobile app for Android) - version 7.4,  ...)
 	NOT-FOR-US: SAP
 CVE-2022-41209 (SAP Customer Data Cloud (Gigya mobile app for Android) - version 7.4,  ...)
 	NOT-FOR-US: SAP
 CVE-2022-41208 (Due to insufficient input validation, SAP Financial Consolidation - ve ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2022-41207 (SAP Biller Direct allows an unauthenticated attacker to craft a legiti ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2022-41206 (SAP BusinessObjects Business Intelligence platform (Analysis for OLAP) ...)
 	NOT-FOR-US: SAP
 CVE-2022-41205 (SAP GUI allows an authenticated attacker to execute scripts in the loc ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2022-41204 (An attacker can change the content of an SAP Commerce - versions 1905, ...)
 	NOT-FOR-US: SAP
 CVE-2022-41203 (In some workflow of SAP BusinessObjects BI Platform (Central Managemen ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2022-41202 (Due to lack of proper memory management, when a victim opens a manipul ...)
 	NOT-FOR-US: SAP
 CVE-2022-41201 (Due to lack of proper memory management, when a victim opens a manipul ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7f46326903c5b12a027af86e64ce9560f7865785

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7f46326903c5b12a027af86e64ce9560f7865785
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221109/d3ff85d7/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list