[Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Thu Dec 21 20:24:52 GMT 2023
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
64dd9b6a by Salvatore Bonaccorso at 2023-12-21T21:24:21+01:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,31 +1,31 @@
CVE-2023-7047 (Inadequate validation of permissions when employing remote tools and ...)
- TODO: check
+ NOT-FOR-US: Devolutions
CVE-2023-7042 (A null pointer dereference vulnerability was found in ath10k_wmi_tlv_o ...)
TODO: check
CVE-2023-7041 (A vulnerability, which was classified as critical, has been found in c ...)
- TODO: check
+ NOT-FOR-US: codelyfe Stupid Simple CMS
CVE-2023-7040 (A vulnerability classified as problematic was found in codelyfe Stupid ...)
- TODO: check
+ NOT-FOR-US: codelyfe Stupid Simple CMS
CVE-2023-7039 (A vulnerability classified as critical has been found in Beijing Baich ...)
- TODO: check
+ NOT-FOR-US: Beijing Baichuo S210
CVE-2023-7038 (A vulnerability was found in automad up to 1.10.9. It has been rated a ...)
- TODO: check
+ NOT-FOR-US: automad
CVE-2023-7037 (A vulnerability was found in automad up to 1.10.9. It has been declare ...)
- TODO: check
+ NOT-FOR-US: automad
CVE-2023-7036 (A vulnerability was found in automad up to 1.10.9. It has been classif ...)
- TODO: check
+ NOT-FOR-US: automad
CVE-2023-7035 (A vulnerability was found in automad up to 1.10.9 and classified as pr ...)
- TODO: check
+ NOT-FOR-US: automad
CVE-2023-6546 (A race condition was found in the GSM 0710 tty multiplexor in the Linu ...)
TODO: check
CVE-2023-6145 (Improper Neutralization of Special Elements used in an SQL Command ('S ...)
- TODO: check
+ NOT-FOR-US: Istanbul Soft Informatics and Consultancy Limited Company Softomi Advanced C2C Marketplace Software
CVE-2023-6122 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
- TODO: check
+ NOT-FOR-US: Istanbul Soft Informatics and Consultancy Limited Company Softomi Software
CVE-2023-5989 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
- TODO: check
+ NOT-FOR-US: LioXERP
CVE-2023-5988 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
- TODO: check
+ NOT-FOR-US: LioXERP
CVE-2023-5594 (Improper validation of the server\u2019s certificate chain in secure t ...)
TODO: check
CVE-2023-51655 (In JetBrains IntelliJ IDEA before 2023.3.2 code execution was possible ...)
@@ -33,43 +33,43 @@ CVE-2023-51655 (In JetBrains IntelliJ IDEA before 2023.3.2 code execution was po
CVE-2023-51442 (Navidrome is an open source web-based music collection server and stre ...)
TODO: check
CVE-2023-51052 (S-CMS v5.0 was discovered to contain a SQL injection vulnerability via ...)
- TODO: check
+ NOT-FOR-US: S-CMS
CVE-2023-51051 (S-CMS v5.0 was discovered to contain a SQL injection vulnerability via ...)
- TODO: check
+ NOT-FOR-US: S-CMS
CVE-2023-51050 (S-CMS v5.0 was discovered to contain a SQL injection vulnerability via ...)
- TODO: check
+ NOT-FOR-US: S-CMS
CVE-2023-51049 (S-CMS v5.0 was discovered to contain a SQL injection vulnerability via ...)
- TODO: check
+ NOT-FOR-US: S-CMS
CVE-2023-51048 (S-CMS v5.0 was discovered to contain a SQL injection vulnerability via ...)
- TODO: check
+ NOT-FOR-US: S-CMS
CVE-2023-50834 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-50833 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-50832 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-50831 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-50830 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-50829 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-50828 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-50827 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-50826 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-50825 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-50824 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-50823 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-50822 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-50732 (XWiki Platform is a generic wiki platform offering runtime services fo ...)
- TODO: check
+ NOT-FOR-US: XWiki
CVE-2023-50724 (Resque (pronounced like "rescue") is a Redis-backed library for creati ...)
TODO: check
CVE-2023-50481 (An issue was discovered in blinksocks version 3.3.8, allows remote att ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/64dd9b6a8bfe7bc92cf850a8c6bcdce93f99cceb
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/64dd9b6a8bfe7bc92cf850a8c6bcdce93f99cceb
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231221/240b9435/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list