[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Oct 21 22:29:01 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b6bdb66b by Salvatore Bonaccorso at 2022-10-21T23:28:38+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -461,9 +461,9 @@ CVE-2021-46846
 CVE-2020-36607
 	RESERVED
 CVE-2016-20017 (D-Link DSL-2750B devices before 1.05 allow remote unauthenticated comm ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2016-20016 (MVPower CCTV DVR models, including TV-7104HE 1.8.4 115215B9 and TV7108 ...)
-	TODO: check
+	NOT-FOR-US: MVPower CCTV DVR models
 CVE-2022-43435 (Jenkins 360 FireLine Plugin 1.7.2 and earlier programmatically disable ...)
 	NOT-FOR-US: Jenkins plugin
 CVE-2022-43434 (Jenkins NeuVector Vulnerability Scanner Plugin 1.20 and earlier progra ...)
@@ -535,7 +535,7 @@ CVE-2022-43402 (A sandbox bypass vulnerability involving various casts performed
 CVE-2022-43401 (A sandbox bypass vulnerability involving various casts performed impli ...)
 	NOT-FOR-US: Jenkins plugin
 CVE-2022-43400 (A vulnerability has been identified in Siveillance Video Mobile Server ...)
-	TODO: check
+	NOT-FOR-US: Siveillance Video Mobile Server V2022 R2
 CVE-2022-3596
 	RESERVED
 CVE-2022-3595 (A vulnerability was found in Linux Kernel. It has been rated as proble ...)
@@ -594,7 +594,7 @@ CVE-2022-3577 (An out-of-bounds memory write flaw was found in the Linux kernel&
 	[buster] - linux <not-affected> (Vulnerable code not present)
 	NOTE: https://git.kernel.org/linus/fc4ef9d5724973193bfa5ebed181dba6de3a56db (5.19-rc1)
 CVE-2022-3576 (A vulnerability regarding out-of-bounds read is found in the session p ...)
-	TODO: check
+	NOT-FOR-US: Synology DiskStation Manager (DSM)
 CVE-2022-43395
 	RESERVED
 CVE-2022-43394
@@ -1041,9 +1041,9 @@ CVE-2022-43187
 CVE-2022-43186
 	RESERVED
 CVE-2022-43185 (A stored cross-site scripting (XSS) vulnerability in the Configuration ...)
-	TODO: check
+	NOT-FOR-US: Rukovoditel
 CVE-2022-43184 (D-Link DIR878 1.30B08 Hotfix_04 was discovered to contain a command in ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2022-43183
 	RESERVED
 CVE-2022-43182



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b6bdb66be921643c6dcace17cb5b2761dac9650f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b6bdb66be921643c6dcace17cb5b2761dac9650f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221021/9c41c7e3/attachment.htm>


More information about the debian-security-tracker-commits mailing list