[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Feb 14 20:48:27 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0f8f1abe by Salvatore Bonaccorso at 2023-02-14T21:47:44+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -7,13 +7,13 @@ CVE-2023-0832
 CVE-2023-0831
 	RESERVED
 CVE-2023-0830 (A vulnerability classified as critical has been found in EasyNAS 1.1.0 ...)
-	TODO: check
+	NOT-FOR-US: EasyNAS
 CVE-2023-0829
 	RESERVED
 CVE-2023-0828
 	RESERVED
 CVE-2023-0827 (Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimco ...)
-	TODO: check
+	NOT-FOR-US: pimcore
 CVE-2023-0826
 	RESERVED
 CVE-2023-0825
@@ -1788,7 +1788,7 @@ CVE-2023-25142
 CVE-2023-25141 (Apache Sling JCR Base < 3.1.12 has a critical injection vulnerabili ...)
 	NOT-FOR-US: Apache sling-org-apache-sling-jcr-base
 CVE-2023-25140 (A vulnerability has been identified in Parasolid V34.0 (All versions & ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-0662
 	RESERVED
 CVE-2023-0661 (Improper access control in Devolutions Server allows an authenticated  ...)
@@ -2179,43 +2179,43 @@ CVE-2023-24999
 CVE-2023-24998
 	RESERVED
 CVE-2023-24996 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24995 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24994 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24993 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24992 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24991 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24990 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24989 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24988 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24987 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24986 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24985 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24984 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24983 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24982 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24981 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24980 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24979 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24978 (A vulnerability has been identified in Tecnomatix Plant Simulation (Al ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-0619 (The Kraken.io Image Optimizer plugin for WordPress is vulnerable to au ...)
 	NOT-FOR-US: Kraken.io Image Optimizer plugin for WordPress
 CVE-2023-0618 (A vulnerability was found in TRENDnet TEW-652BRP 3.04B01. It has been  ...)
@@ -3232,7 +3232,7 @@ CVE-2023-24583
 CVE-2023-24582
 	RESERVED
 CVE-2023-24581 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-22365
 	RESERVED
 CVE-2023-22299
@@ -3362,41 +3362,41 @@ CVE-2023-24568
 CVE-2023-24567
 	RESERVED
 CVE-2023-24566 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24565 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24564 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24563 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24562 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24561 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24560 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24559 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24558 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24557 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24556 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24555 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24554 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24553 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24552 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24551 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24550 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24549 (A vulnerability has been identified in Solid Edge SE2022 (All versions ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24548
 	RESERVED
 CVE-2023-24547
@@ -3461,7 +3461,7 @@ CVE-2018-25078 (man-db before 2.8.5 on Gentoo allows local users (with access to
 CVE-2023-24530 (SAP BusinessObjects Business Intelligence Platform (CMC) - versions 42 ...)
 	NOT-FOR-US: SAP
 CVE-2023-24529 (Due to lack of proper input validation, BSP application (CRM_BSP_FRAME ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2023-24528 (SAP Fiori apps for Travel Management in SAP ERP (My Travel Requests) - ...)
 	NOT-FOR-US: SAP
 CVE-2023-24527
@@ -3626,7 +3626,7 @@ CVE-2023-24484
 CVE-2023-24483
 	RESERVED
 CVE-2023-24482 (A vulnerability has been identified in COMOS V10.2 (All versions), COM ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2023-24477
 	RESERVED
 CVE-2023-24471
@@ -3889,7 +3889,7 @@ CVE-2023-24384
 CVE-2023-24383
 	RESERVED
 CVE-2023-24382 (Cross-Site Request Forgery (CSRF) vulnerability in Photon WP Material  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-24381
 	RESERVED
 CVE-2023-24380
@@ -3899,7 +3899,7 @@ CVE-2023-24379
 CVE-2023-24378
 	RESERVED
 CVE-2023-24377 (Cross-Site Request Forgery (CSRF) vulnerability in Ecwid Ecommerce Ecw ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-24376
 	RESERVED
 CVE-2023-24375



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0f8f1abe7bed2d2740f737d15442f7f8f7e2dbcd

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0f8f1abe7bed2d2740f737d15442f7f8f7e2dbcd
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230214/97f5db7e/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list