[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Apr 29 20:15:19 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
da701d71 by Salvatore Bonaccorso at 2023-04-29T21:14:56+02:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1383,7 +1383,7 @@ CVE-2023-30859
 CVE-2023-30858 (The Denosaurs emoji package provides emojis for dinosaurs. Starting in ...)
 	NOT-FOR-US: Denosaurs emoji package
 CVE-2023-30857 (@aedart/support is the support package for Ion, a monorepo for JavaScr ...)
-	TODO: check
+	NOT-FOR-US: support package for Ion
 CVE-2023-30856 (eDEX-UI is a science fiction terminal emulator. Versions 2.2.8 and pri ...)
 	NOT-FOR-US: eDEX-UI
 CVE-2023-30855
@@ -1391,7 +1391,7 @@ CVE-2023-30855
 CVE-2023-30854 (AVideo is an open source video platform. Prior to version 12.4, an OS  ...)
 	NOT-FOR-US: AVideo
 CVE-2023-30853 (Gradle Build Action allows users to execute a Gradle Build in their Gi ...)
-	TODO: check
+	NOT-FOR-US: Gradle Build Action
 CVE-2023-30852 (Pimcore is an open source data and experience management platform. Pri ...)
 	NOT-FOR-US: Pimcore
 CVE-2023-30851
@@ -1628,7 +1628,7 @@ CVE-2023-2131 (Versions of INEA ME RTU firmware prior to 3.36 are vulnerable to
 CVE-2023-2130 (A vulnerability classified as critical has been found in SourceCodeste ...)
 	NOT-FOR-US: SourceCodester Purchase Order Management System
 CVE-2023-30792 (Anchor tag hrefs in Lexical prior to v0.10.0 would render javascript:  ...)
-	TODO: check
+	NOT-FOR-US: Facebook lexical text editor
 CVE-2023-30791
 	RESERVED
 CVE-2023-30790
@@ -4978,7 +4978,7 @@ CVE-2023-29473 (webservice in Atos Unify OpenScape 4000 Platform and OpenScape 4
 CVE-2023-29472
 	RESERVED
 CVE-2023-29471 (Lightbend Alpakka Kafka before 5.0.0 logs its configuration as debug i ...)
-	TODO: check
+	NOT-FOR-US: Lightbend Alpakka Kafka
 CVE-2023-29470
 	RESERVED
 CVE-2023-29469 (An issue was discovered in libxml2 before 2.10.4. When hashing empty d ...)
@@ -8268,7 +8268,7 @@ CVE-2023-28489 (A vulnerability has been identified in CP-8031 MASTER MODULE (Al
 CVE-2023-1478 (The Hummingbird WordPress plugin before 3.4.2 does not validate the ge ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2023-1477 (Improper Authentication vulnerability in HYPR Keycloak Authenticator E ...)
-	TODO: check
+	NOT-FOR-US: HYPR Keycloak Authenticator Extension
 CVE-2023-1476
 	RESERVED
 	NOT-FOR-US: RedHat specific incomplete Linux kpatch incomplete fix for CVE-2022-41222



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/da701d71b544e497f4092f3c570cdaa2b5163abf

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/da701d71b544e497f4092f3c570cdaa2b5163abf
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230429/f88dfd0c/attachment.htm>


More information about the debian-security-tracker-commits mailing list