[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Sep 28 21:26:18 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b0c71e2f by Salvatore Bonaccorso at 2022-09-28T22:25:51+02:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -113,7 +113,7 @@ CVE-2022-38787
 CVE-2022-38786
 	RESERVED
 CVE-2022-3354 (A vulnerability has been found in Open5GS up to 2.4.10 and classified  ...)
-	TODO: check
+	NOT-FOR-US: Open5GS
 CVE-2022-3353
 	RESERVED
 CVE-2022-3352
@@ -123,9 +123,9 @@ CVE-2022-3351
 CVE-2022-3350
 	RESERVED
 CVE-2022-3349 (A vulnerability was found in Sony PS4 and PS5. It has been classified  ...)
-	TODO: check
+	NOT-FOR-US: Sony
 CVE-2022-3348 (Just like in the previous report, an attacker could steal the account  ...)
-	TODO: check
+	NOT-FOR-US: ToolJet
 CVE-2021-46841
 	RESERVED
 CVE-2022-41676
@@ -367,7 +367,7 @@ CVE-2022-3335
 CVE-2022-3334
 	RESERVED
 CVE-2022-3333 (A vulnerability, which was classified as problematic, was found in Zep ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2022-3332 (A vulnerability classified as critical has been found in SourceCodeste ...)
 	NOT-FOR-US: SourceCodester Food Ordering Management System
 CVE-2022-3331
@@ -969,7 +969,7 @@ CVE-2022-41344
 CVE-2022-40984
 	RESERVED
 CVE-2022-3299 (A vulnerability was found in Open5GS up to 2.4.10. It has been declare ...)
-	TODO: check
+	NOT-FOR-US: Open5GS
 CVE-2022-3298 (Allocation of Resources Without Limits or Throttling in GitHub reposit ...)
 	- rdiffweb <itp> (bug #969974)
 CVE-2022-41343 (registerFont in FontMetrics.php in Dompdf before 2.0.1 allows remote f ...)
@@ -1995,7 +1995,7 @@ CVE-2022-40931
 CVE-2022-40930
 	RESERVED
 CVE-2022-40929 (XXL-JOB 2.2.0 has a Command execution vulnerability in background task ...)
-	TODO: check
+	NOT-FOR-US: XXL-JOB
 CVE-2022-40928 (Online Leave Management System v1.0 is vulnerable to SQL Injection via ...)
 	NOT-FOR-US: Online Leave Management System
 CVE-2022-40927 (Online Leave Management System v1.0 is vulnerable to SQL Injection via ...)
@@ -2029,7 +2029,7 @@ CVE-2022-40914
 CVE-2022-40913
 	RESERVED
 CVE-2022-40912 (ETAP Lighting International NV ETAP Safety Manager 1.0.0.32 is vulnera ...)
-	TODO: check
+	NOT-FOR-US: ETAP Lighting International NV ETAP Safety Manager
 CVE-2022-40911
 	RESERVED
 CVE-2022-40910
@@ -3086,7 +3086,7 @@ CVE-2022-40488
 CVE-2022-40487
 	RESERVED
 CVE-2022-40486 (TP Link Archer AX10 V1 Firmware Version 1.3.1 Build 20220401 Rel. 5745 ...)
-	TODO: check
+	NOT-FOR-US: TP Link
 CVE-2022-40485 (Wedding Planner v1.0 was discovered to contain a SQL injection vulnera ...)
 	NOT-FOR-US: Wedding Planner
 CVE-2022-40484 (Wedding Planner v1.0 was discovered to contain a SQL injection vulnera ...)
@@ -4017,7 +4017,7 @@ CVE-2022-40085
 CVE-2022-40084
 	RESERVED
 CVE-2022-40083 (Labstack Echo v4.8.0 was discovered to contain an open redirect vulner ...)
-	TODO: check
+	NOT-FOR-US: Labstack Echo
 CVE-2022-40082 (Hertz v0.3.0 ws discovered to contain a path traversal vulnerability v ...)
 	TODO: check
 CVE-2022-40081
@@ -5779,11 +5779,11 @@ CVE-2022-39260
 CVE-2022-39259
 	RESERVED
 CVE-2022-39258 (mailcow is a mailserver suite. A vulnerability innversions prior to 20 ...)
-	TODO: check
+	NOT-FOR-US: mailcow
 CVE-2022-39257
 	RESERVED
 CVE-2022-39256 (Orckestra C1 CMS is a .NET based Web Content Management System. A vuln ...)
-	TODO: check
+	NOT-FOR-US: Orckestra C1 CMS
 CVE-2022-39255
 	RESERVED
 CVE-2022-39254



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b0c71e2fb5459b9267688cbd9adf59b9cca57ed6

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b0c71e2fb5459b9267688cbd9adf59b9cca57ed6
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220928/13a4ccd4/attachment.htm>


More information about the debian-security-tracker-commits mailing list