[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Sep 2 09:27:21 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
16f8f631 by Salvatore Bonaccorso at 2022-09-02T10:26:57+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -6553,7 +6553,7 @@ CVE-2022-36775
 CVE-2022-36774
 	RESERVED
 CVE-2022-36773 (IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to an XM ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-36772
 	RESERVED
 CVE-2022-36771
@@ -12845,7 +12845,7 @@ CVE-2022-34381
 CVE-2022-34380 (Dell CloudLink 7.1.3 and all earlier versions contain an Authenticatio ...)
 	TODO: check
 CVE-2022-34379 (Dell EMC CloudLink 7.1.2 and all prior versions contain an Authenticat ...)
-	TODO: check
+	NOT-FOR-US: EMC
 CVE-2022-34378
 	RESERVED
 CVE-2022-34377
@@ -23081,7 +23081,7 @@ CVE-2022-30616 (IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 could
 CVE-2022-30615
 	RESERVED
 CVE-2022-30614 (IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to a den ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-30613
 	RESERVED
 CVE-2022-30612
@@ -73014,7 +73014,7 @@ CVE-2021-39047 (IBM Planning Analytics 2.0 and IBM Cognos Analytics 11.2.1, 11.2
 CVE-2021-39046 (IBM Business Automation Workflow 18.0, 19.0, 20.0, and 21.0 and IBM Bu ...)
 	NOT-FOR-US: IBM
 CVE-2021-39045 (IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could allow a local at ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-39044 (IBM Financial Transaction Manager 3.2.4 is vulnerable to cross-site re ...)
 	NOT-FOR-US: IBM
 CVE-2021-39043 (IBM Jazz Team Server 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 is vulnerab ...)
@@ -73086,7 +73086,7 @@ CVE-2021-39011
 CVE-2021-39010
 	RESERVED
 CVE-2021-39009 (IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 stores user credential ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-39008
 	RESERVED
 CVE-2021-39007
@@ -96596,7 +96596,7 @@ CVE-2021-29825 (IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server
 CVE-2021-29824 (IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 is vulnerable to privi ...)
 	NOT-FOR-US: IBM
 CVE-2021-29823 (IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29822 (IBM Tivoli Netcool/OMNIbus_GUI 8.1.0 is vulnerable to cross-site scrip ...)
 	NOT-FOR-US: IBM
 CVE-2021-29821 (IBM Jazz for Service Management and IBM Tivoli Netcool/OMNIbus_GUI 8.1 ...)
@@ -120951,7 +120951,7 @@ CVE-2021-20470 (IBM Cognos Analytics 11.1.7 and 11.2.0 does not require that use
 CVE-2021-20469
 	RESERVED
 CVE-2021-20468 (IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-20467
 	RESERVED
 CVE-2021-20466
@@ -192099,7 +192099,7 @@ CVE-2020-4303 (IBM WebSphere Application Server - Liberty 17.0.0.3 through 20.0.
 CVE-2020-4302 (IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to ex ...)
 	NOT-FOR-US: IBM
 CVE-2020-4301 (IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2020-4300 (IBM Cognos Analytics 11.0 and 11.1 is vulnerable to an XML External En ...)
 	NOT-FOR-US: IBM
 CVE-2020-4299 (IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.0.3.1 c ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/16f8f631110f1bc6edac6f1c611037691049353f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/16f8f631110f1bc6edac6f1c611037691049353f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220902/1307b43c/attachment.htm>


More information about the debian-security-tracker-commits mailing list