[Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sun Dec 31 08:44:00 GMT 2023
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
73a5c815 by Salvatore Bonaccorso at 2023-12-31T09:43:14+01:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,23 +1,23 @@
CVE-2023-52286 (Tencent tdsqlpcloud through 1.8.5 allows unauthenticated remote attack ...)
- TODO: check
+ NOT-FOR-US: Tencent tdsqlpcloud
CVE-2023-52284 (Bytecode Alliance wasm-micro-runtime (aka WebAssembly Micro Runtime or ...)
TODO: check
CVE-2023-52277 (Royal RoyalTSX before 6.0.2.1 allows attackers to cause a denial of se ...)
- TODO: check
+ NOT-FOR-US: Royal RoyalTSX
CVE-2023-52275 (Gallery3d on Tecno Camon X CA7 devices allows attackers to view hidden ...)
- TODO: check
+ NOT-FOR-US: Gallery3d on Tecno Camon X CA7 devices
CVE-2023-52269 (MDaemon SecurityGateway through 9.0.3 allows XSS via a crafted Message ...)
- TODO: check
+ NOT-FOR-US: MDaemon SecurityGateway
CVE-2023-52267 (ehttp 1.0.6 before 17405b9 has a simple_log.cpp _log out-of-bounds-rea ...)
- TODO: check
+ NOT-FOR-US: ehttp
CVE-2023-52266 (ehttp 1.0.6 before 17405b9 has an epoll_socket.cpp read_func use-after ...)
- TODO: check
+ NOT-FOR-US: ehttp
CVE-2023-52265 (IDURAR (aka idurar-erp-crm) through 2.0.1 allows stored XSS via a PATC ...)
- TODO: check
+ NOT-FOR-US: IDURAR (aka idurar-erp-crm)
CVE-2023-52264 (The beesblog (aka Bees Blog) component before 1.6.2 for thirty bees al ...)
- TODO: check
+ NOT-FOR-US: beesblog (aka Bees Blog) component for thirty bees
CVE-2021-46901 (examples/6lbr/apps/6lbr-webserver/httpd.c in CETIC-6LBR (aka 6lbr) 1.5 ...)
- TODO: check
+ NOT-FOR-US: CETIC-6LBR (aka 6lbr)
CVE-2021-46900 (Sympa before 6.2.62 relies on a cookie parameter for certain security ...)
TODO: check
CVE-2023-7192 [netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack()]
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/73a5c815f4ddcfbcc61c281bd362c5c550930775
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/73a5c815f4ddcfbcc61c281bd362c5c550930775
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231231/d6a3572c/attachment.htm>
More information about the debian-security-tracker-commits
mailing list