[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Feb 4 21:05:38 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
7c7ffc1e by Salvatore Bonaccorso at 2023-02-04T22:05:11+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -11,11 +11,11 @@ CVE-2023-0677 (Cross-site Scripting (XSS) - Reflected in GitHub repository phpip
 CVE-2023-0676 (Cross-site Scripting (XSS) - Reflected in GitHub repository phpipam/ph ...)
 	- phpipam <itp> (bug #731713)
 CVE-2023-0675 (A vulnerability, which was classified as critical, was found in Calend ...)
-	TODO: check
+	NOT-FOR-US: Calendar Event Management System
 CVE-2023-0674 (A vulnerability, which was classified as problematic, has been found i ...)
-	TODO: check
+	NOT-FOR-US: XXL-JOB
 CVE-2023-0673 (A vulnerability classified as critical was found in SourceCodester Onl ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Online Eyewear Shop
 CVE-2017-20176
 	RESERVED
 CVE-2017-20175
@@ -69,7 +69,7 @@ CVE-2023-0665
 CVE-2023-0664
 	RESERVED
 CVE-2023-0663 (A vulnerability was found in Calendar Event Management System 2.3.0. I ...)
-	TODO: check
+	NOT-FOR-US: Calendar Event Management System
 CVE-2022-48311
 	RESERVED
 CVE-2023-25173
@@ -143,7 +143,7 @@ CVE-2023-25140
 CVE-2023-0662
 	RESERVED
 CVE-2023-0661 (Improper access control in Devolutions Server allows an authenticated  ...)
-	TODO: check
+	NOT-FOR-US: Devolutions
 CVE-2023-0660
 	RESERVED
 CVE-2023-0659 (A vulnerability was found in BDCOM 1704-WGL 2.0.6314. It has been clas ...)
@@ -162,7 +162,7 @@ CVE-2023-25138
 CVE-2023-25137
 	RESERVED
 CVE-2023-25135 (vBulletin before 5.6.9 PL1 allows an unauthenticated remote attacker t ...)
-	TODO: check
+	NOT-FOR-US: vBulletin
 CVE-2023-25134
 	RESERVED
 CVE-2023-25133
@@ -278,7 +278,7 @@ CVE-2023-24018
 CVE-2023-22653
 	RESERVED
 CVE-2023-0658 (A vulnerability, which was classified as critical, was found in Multil ...)
-	TODO: check
+	NOT-FOR-US: Multilaser RE057 and RE170
 CVE-2022-48308
 	RESERVED
 CVE-2022-48307
@@ -288,19 +288,19 @@ CVE-2022-48306
 CVE-2019-25101 (A vulnerability classified as critical has been found in OnShift Turbo ...)
 	TODO: check
 CVE-2018-25080 (A vulnerability, which was classified as problematic, has been found i ...)
-	TODO: check
+	NOT-FOR-US: MobileDetect
 CVE-2018-25079 (A vulnerability was found in Segmentio is-url up to 1.2.2. It has been ...)
 	TODO: check
 CVE-2015-10072 (A vulnerability classified as problematic was found in NREL api-umbrel ...)
 	TODO: check
 CVE-2013-10018 (A vulnerability was found in fanzila WebFinance 0.5. It has been decla ...)
-	TODO: check
+	NOT-FOR-US: fanzila WebFinance
 CVE-2013-10017 (A vulnerability was found in fanzila WebFinance 0.5. It has been class ...)
-	TODO: check
+	NOT-FOR-US: fanzila WebFinance
 CVE-2013-10016 (A vulnerability was found in fanzila WebFinance 0.5 and classified as  ...)
-	TODO: check
+	NOT-FOR-US: fanzila WebFinance
 CVE-2013-10015 (A vulnerability has been found in fanzila WebFinance 0.5 and classifie ...)
-	TODO: check
+	NOT-FOR-US: fanzila WebFinance
 CVE-2023-25068
 	RESERVED
 CVE-2023-25067



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7c7ffc1e2d8102106c4e99fed0a86affffa3c07f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7c7ffc1e2d8102106c4e99fed0a86affffa3c07f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230204/48e09676/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list