[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Apr 12 10:16:33 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
2d0c3ee0 by Salvatore Bonaccorso at 2023-04-12T11:16:08+02:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1952,7 +1952,7 @@ CVE-2023-29578
 CVE-2023-29577
 	RESERVED
 CVE-2023-29576 (Bento4 v1.6.0-639 was discovered to contain a segmentation violation v ...)
-	TODO: check
+	NOT-FOR-US: Bento4
 CVE-2023-29575
 	RESERVED
 CVE-2023-29574
@@ -4483,7 +4483,7 @@ CVE-2023-28810
 CVE-2023-28809
 	RESERVED
 CVE-2023-28808 (Some Hikvision Hybrid SAN/Cluster Storage products have an access cont ...)
-	TODO: check
+	NOT-FOR-US: Hikvision Hybrid SAN/Cluster Storage products
 CVE-2023-1615
 	RESERVED
 CVE-2023-1614
@@ -6241,49 +6241,49 @@ CVE-2023-28316
 CVE-2023-28315
 	RESERVED
 CVE-2023-28314 (Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerabilit ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28313 (Microsoft Dynamics 365 Customer Voice Cross-Site Scripting Vulnerabili ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28312 (Azure Machine Learning Information Disclosure Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28311 (Microsoft Word Remote Code Execution Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28310
 	RESERVED
 CVE-2023-28309 (Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerabilit ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28308 (Windows DNS Server Remote Code Execution Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28307 (Windows DNS Server Remote Code Execution Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28306 (Windows DNS Server Remote Code Execution Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28305 (Windows DNS Server Remote Code Execution Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28304 (Microsoft ODBC and OLE DB Remote Code Execution Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28303
 	RESERVED
 CVE-2023-28302 (Microsoft Message Queuing Denial of Service Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28301 (Microsoft Edge (Chromium-based) Tampering Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28300 (Azure Service Connector Security Feature Bypass Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28299 (Visual Studio Spoofing Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28298 (Windows Kernel Denial of Service Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28297 (Windows Remote Procedure Call Service (RPCSS) Elevation of Privilege V ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28296 (Visual Studio Remote Code Execution Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28295
 	RESERVED
 CVE-2023-28294
 	RESERVED
 CVE-2023-28293 (Windows Kernel Elevation of Privilege Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28292 (Raw Image Extension Remote Code Execution Vulnerability ...)
 	TODO: check
 CVE-2023-28291 (Raw Image Extension Remote Code Execution Vulnerability ...)
@@ -6293,15 +6293,15 @@ CVE-2023-28290
 CVE-2023-28289
 	RESERVED
 CVE-2023-28288 (Microsoft SharePoint Server Spoofing Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28287
 	RESERVED
 CVE-2023-28286
 	RESERVED
 CVE-2023-28285 (Microsoft Office Remote Code Execution Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28284 (Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28283
 	RESERVED
 CVE-2023-28282
@@ -6313,39 +6313,39 @@ CVE-2023-28280
 CVE-2023-28279
 	RESERVED
 CVE-2023-28278 (Windows DNS Server Remote Code Execution Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28277 (Windows DNS Server Information Disclosure Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28276 (Windows Group Policy Security Feature Bypass Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28275 (Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28274 (Windows Win32k Elevation of Privilege Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28273 (Windows Clip Service Elevation of Privilege Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28272 (Windows Kernel Elevation of Privilege Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28271 (Windows Kernel Memory Information Disclosure Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28270 (Windows Lock Screen Security Feature Bypass Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28269 (Windows Boot Manager Security Feature Bypass Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28268 (Netlogon RPC Elevation of Privilege Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28267 (Remote Desktop Protocol Client Information Disclosure Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28266 (Windows Common Log File System Driver Information Disclosure Vulnerabi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28265
 	RESERVED
 CVE-2023-28264
 	RESERVED
 CVE-2023-28263 (Visual Studio Information Disclosure Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28262 (Visual Studio Elevation of Privilege Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28261
 	RESERVED
 CVE-2023-28260 (.NET DLL Hijacking Remote Code Execution Vulnerability ...)
@@ -6357,23 +6357,23 @@ CVE-2023-28258
 CVE-2023-28257
 	RESERVED
 CVE-2023-28256 (Windows DNS Server Remote Code Execution Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28255 (Windows DNS Server Remote Code Execution Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28254 (Windows DNS Server Remote Code Execution Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28253 (Windows Kernel Information Disclosure Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28252 (Windows Common Log File System Driver Elevation of Privilege Vulnerabi ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28251
 	RESERVED
 CVE-2023-28250 (Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulner ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28249 (Windows Boot Manager Security Feature Bypass Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28248 (Windows Kernel Elevation of Privilege Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2023-28247 (Windows Network File System Information Disclosure Vulnerability ...)
 	TODO: check
 CVE-2023-28246 (Windows Registry Elevation of Privilege Vulnerability ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2d0c3ee04ac945f122ac8e692f26bdb0271127c7

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2d0c3ee04ac945f122ac8e692f26bdb0271127c7
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230412/3b8364e5/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list