[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Sep 28 13:02:16 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
550dd94c by Salvatore Bonaccorso at 2022-09-28T14:01:36+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -73,7 +73,7 @@ CVE-2022-41606
 CVE-2022-41605
 	RESERVED
 CVE-2022-41604 (Check Point ZoneAlarm Extreme Security before 15.8.211.19229 allows lo ...)
-	TODO: check
+	NOT-FOR-US: Check Point ZoneAlarm Extreme Security
 CVE-2022-41603
 	RESERVED
 CVE-2022-41602
@@ -139,9 +139,9 @@ CVE-2022-41573
 CVE-2022-41572
 	RESERVED
 CVE-2022-41571 (An issue was discovered in EyesOfNetwork (EON) through 5.3.11. Local f ...)
-	TODO: check
+	NOT-FOR-US: EyesOfNetwork (EON)
 CVE-2022-41570 (An issue was discovered in EyesOfNetwork (EON) through 5.3.11. Unauthe ...)
-	TODO: check
+	NOT-FOR-US: EyesOfNetwork (EON)
 CVE-2022-41569
 	RESERVED
 CVE-2022-41315
@@ -239,7 +239,7 @@ CVE-2022-3334
 CVE-2022-3333 (A vulnerability, which was classified as problematic, was found in Zep ...)
 	TODO: check
 CVE-2022-3332 (A vulnerability classified as critical has been found in SourceCodeste ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Food Ordering Management System
 CVE-2022-3331
 	RESERVED
 CVE-2022-3330
@@ -311,7 +311,7 @@ CVE-2022-3325
 CVE-2022-3324 (Stack-based Buffer Overflow in GitHub repository vim/vim prior to 9.0. ...)
 	TODO: check
 CVE-2022-3323 (An SQL injection vulnerability in Advantech iView 5.7.04.6469. The spe ...)
-	TODO: check
+	NOT-FOR-US: Advantech iView
 CVE-2022-41557
 	RESERVED
 CVE-2022-41556 [handle RDHUP when collecting chunked body]
@@ -1949,9 +1949,9 @@ CVE-2022-40880
 CVE-2022-40879
 	RESERVED
 CVE-2022-40878 (In Exam Reviewer Management System 1.0, an authenticated attacker can  ...)
-	TODO: check
+	NOT-FOR-US: Exam Reviewer Management System
 CVE-2022-40877 (Exam Reviewer Management System 1.0 is vulnerable to SQL Injection via ...)
-	TODO: check
+	NOT-FOR-US: Exam Reviewer Management System
 CVE-2022-40876
 	RESERVED
 CVE-2022-40875
@@ -2917,7 +2917,7 @@ CVE-2022-40499
 CVE-2022-40498
 	RESERVED
 CVE-2022-40497 (Wazuh v3.6.1 - v3.13.5, v4.0.0 - v4.2.7, and v4.3.0 - v4.3.7 were disc ...)
-	TODO: check
+	NOT-FOR-US: Wazuh
 CVE-2022-40496
 	RESERVED
 CVE-2022-40495
@@ -3208,11 +3208,11 @@ CVE-2022-40356
 CVE-2022-40355
 	RESERVED
 CVE-2022-40354 (Online Tours & Travels Management System v1.0 was discovered to co ...)
-	TODO: check
+	NOT-FOR-US: Online Tours & Travels Management System
 CVE-2022-40353 (Online Tours & Travels Management System v1.0 was discovered to co ...)
-	TODO: check
+	NOT-FOR-US: Online Tours & Travels Management System
 CVE-2022-40352 (Online Tours & Travels Management System v1.0 was discovered to co ...)
-	TODO: check
+	NOT-FOR-US: Online Tours & Travels Management System
 CVE-2022-40351
 	RESERVED
 CVE-2022-40350
@@ -3305,11 +3305,11 @@ CVE-2022-40309
 CVE-2022-40308
 	RESERVED
 CVE-2022-40199 (Directory traversal vulnerability in EC-CUBE 3 series (EC-CUBE 3.0.0 t ...)
-	TODO: check
+	NOT-FOR-US: EC-CUBE
 CVE-2022-38975 (DOM-based cross-site scripting vulnerability in EC-CUBE 4 series (EC-C ...)
-	TODO: check
+	NOT-FOR-US: EC-CUBE
 CVE-2022-37346 (EC-CUBE plugin 'Product Image Bulk Upload Plugin' 1.0.0 and 4.1.0 cont ...)
-	TODO: check
+	NOT-FOR-US: EC-CUBE
 CVE-2022-3172
 	RESERVED
 	- kubernetes <unfixed>



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/550dd94c2430de2528e3d4624524b7fb0a24dde5

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/550dd94c2430de2528e3d4624524b7fb0a24dde5
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220928/e2976c4e/attachment.htm>


More information about the debian-security-tracker-commits mailing list