[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Aug 15 21:55:10 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f6068327 by Salvatore Bonaccorso at 2023-08-15T22:54:37+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,7 +1,7 @@
 CVE-2023-4371 (A vulnerability was found in phpRecDB 1.3.1. It has been rated as prob ...)
-	TODO: check
+	NOT-FOR-US: phpRecDB
 CVE-2023-4369 (Insufficient data validation in Systems Extensions in Google Chrome on ...)
-	TODO: check
+	NOT-FOR-US: Systems Extensions in Google Chrome on ChromeOS
 CVE-2023-4368 (Insufficient policy enforcement in Extensions API in Google Chrome pri ...)
 	- chromium <unfixed>
 	[buster] - chromium <end-of-life> (see DSA 5046)
@@ -63,55 +63,55 @@ CVE-2023-4349 (Use after free in Device Trust Connectors in Google Chrome prior
 	- chromium <unfixed>
 	[buster] - chromium <end-of-life> (see DSA 5046)
 CVE-2023-4345 (Broadcom RAID Controller web interface is vulnerable client-side contr ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4344 (Broadcom RAID Controller web interface is vulnerable to insufficient r ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4343 (Broadcom RAID Controller web interface is vulnerable due to exposure o ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4342 (Broadcom RAID Controller web interface is vulnerable due to insecure d ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4341 (Broadcom RAID Controller is vulnerable to Privilege escalation to root ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4340 (Broadcom RAID Controller is vulnerable to Privilege escalation by taki ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller
 CVE-2023-4339 (Broadcom RAID Controller web interface is vulnerable to exposure of pr ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4338 (Broadcom RAID Controller web interface is vulnerable due to insecure d ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4337 (Broadcom RAID Controller web interface is vulnerable to improper sessi ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4336 (Broadcom RAID Controller web interface is vulnerable due to insecure d ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4335 (Broadcom RAID Controller Web server (nginx) is serving private server- ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4334 (Broadcom RAID Controller Web server (nginx) is serving private files w ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4333 (Broadcom RAID Controller web interface is vulnerable  to exposure of s ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4332 (Broadcom RAID Controller web interface is vulnerable due to Improper p ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4331 (Broadcom RAID Controller web interface is vulnerable has an insecure d ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4330 (Broadcom RAID Controller web interface is vulnerable Denial of Service ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4329 (Broadcom RAID Controller web interface is vulnerable due to insecure d ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4328 (Broadcom RAID Controller web interface is vulnerable  to exposure of s ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4327 (Broadcom RAID Controller web interface is vulnerable to exposure of se ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4326 (Broadcom RAID Controller web interface is vulnerable has an insecure d ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4325 (Broadcom RAID Controller web interface is vulnerable due to usage of L ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4324 (Broadcom RAID Controller web interface is vulnerable due to insecure d ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-4323 (Broadcom RAID Controller web interface is vulnerable to improper sessi ...)
-	TODO: check
+	NOT-FOR-US: Broadcom RAID Controller web interface
 CVE-2023-40028 (Ghost is an open source content management system. Versions prior to 5 ...)
-	TODO: check
+	NOT-FOR-US: Ghost CMS
 CVE-2023-40027 (Keystone is an open source headless CMS for Node.js \u2014 built with  ...)
-	TODO: check
+	NOT-FOR-US: Keystone CMS
 CVE-2023-39843 (Missing encryption in the RFID tag of Suleve 5-in-1 Smart Door Lock v1 ...)
 	TODO: check
 CVE-2023-39842 (Missing encryption in the RFID tag of Digoo DG-HAMB Smart Home Securit ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f6068327b608445f069a3aa8cf1766f6bade321b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f6068327b608445f069a3aa8cf1766f6bade321b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230815/56cc7112/attachment.htm>


More information about the debian-security-tracker-commits mailing list