[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jan 11 21:22:43 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
fea5d93d by Salvatore Bonaccorso at 2023-01-11T22:22:13+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -553,19 +553,19 @@ CVE-2018-25074 (A vulnerability was found in Prestaul skeemas and classified as
 CVE-2018-25073 (A vulnerability has been found in Newcomer1989 TSN-Ranksystem up to 1. ...)
 	NOT-FOR-US: Newcomer1989 TSN-Ranksystem
 CVE-2017-20168 (A vulnerability was found in jfm-so piWallet. It has been rated as cri ...)
-	TODO: check
+	NOT-FOR-US: jfm-so piWallet
 CVE-2015-10039 (A vulnerability was found in dobos domino. It has been rated as critic ...)
-	TODO: check
+	NOT-FOR-US: dobos domino
 CVE-2015-10038 (A vulnerability was found in nym3r0s pplv2. It has been declared as cr ...)
-	TODO: check
+	NOT-FOR-US: nym3r0s pplv2
 CVE-2014-125076 (A vulnerability was found in NoxxieNl Criminals. It has been classifie ...)
-	TODO: check
+	NOT-FOR-US: NoxxieNl Criminals
 CVE-2014-125075 (A vulnerability was found in gmail-servlet and classified as critical. ...)
-	TODO: check
+	NOT-FOR-US: gmail-servlet
 CVE-2014-125074 (A vulnerability was found in Nayshlok Voyager. It has been declared as ...)
-	TODO: check
+	NOT-FOR-US: Nayshlok Voyager
 CVE-2013-10010 (A vulnerability classified as problematic has been found in zerochplus ...)
-	TODO: check
+	NOT-FOR-US: zerochplus
 CVE-2023-23088
 	RESERVED
 CVE-2023-23087
@@ -825,9 +825,9 @@ CVE-2023-22961
 CVE-2023-22960
 	RESERVED
 CVE-2023-22959 (WebChess through 0.9.0 and 1.0.0.rc2 allows SQL injection: mainmenu.ph ...)
-	TODO: check
+	NOT-FOR-US: WebChess
 CVE-2023-22958 (The Syracom Secure Login plugin before 3.1.1.0 for Jira may allow spoo ...)
-	TODO: check
+	NOT-FOR-US: Syracom Secure Login plugin
 CVE-2023-22957
 	RESERVED
 CVE-2023-22956
@@ -839,7 +839,7 @@ CVE-2023-22954
 CVE-2023-22953
 	RESERVED
 CVE-2023-22952 (In SugarCRM before 12.0. Hotfix 91155, a crafted request can inject cu ...)
-	TODO: check
+	NOT-FOR-US: SugarCRM
 CVE-2023-22951
 	RESERVED
 CVE-2023-22950
@@ -853,7 +853,7 @@ CVE-2023-22947 (** DISPUTED ** Insecure folder permissions in the Windows instal
 CVE-2023-22946
 	RESERVED
 CVE-2023-22945 (In the GrowthExperiments extension for MediaWiki through 1.39, the gro ...)
-	TODO: check
+	NOT-FOR-US: GrowthExperiments extension for MediaWiki
 CVE-2023-22944
 	RESERVED
 CVE-2023-22943
@@ -1007,13 +1007,13 @@ CVE-2023-0165
 CVE-2023-0164
 	RESERVED
 CVE-2022-48253 (nhttpd in Nostromo before 2.1 is vulnerable to a path traversal that m ...)
-	TODO: check
+	NOT-FOR-US: Nostromo webserver
 CVE-2022-48252 (The jokob-sk/Pi.Alert fork (before 22.12.20) of Pi.Alert allows Remote ...)
-	TODO: check
+	NOT-FOR-US: jokob-sk/Pi.Alert
 CVE-2015-10037 (A vulnerability, which was classified as critical, was found in ACI_Es ...)
-	TODO: check
+	NOT-FOR-US: ACI_Escola
 CVE-2015-10036 (A vulnerability was found in kylebebak dronfelipe. It has been declare ...)
-	TODO: check
+	NOT-FOR-US: kylebebak dronfelipe
 CVE-2012-10004 (A vulnerability was found in backdrop-contrib Basic Cart. It has been  ...)
 	TODO: check
 CVE-2023-22924
@@ -1098,9 +1098,9 @@ CVE-2023-0145
 CVE-2017-20167
 	RESERVED
 CVE-2016-15017 (A vulnerability has been found in fabarea media_upload and classified  ...)
-	TODO: check
+	NOT-FOR-US: fabarea media_upload
 CVE-2014-125073 (A vulnerability was found in mapoor voteapp. It has been rated as crit ...)
-	TODO: check
+	NOT-FOR-US: mapoor voteapp
 CVE-2023-XXXX [kodi: VideoPlayerCodec: Stop dividing by zero]
 	- kodi 2:20.0~rc2+dfsg-2
 	[bullseye] - kodi <no-dsa> (Minor issue)
@@ -2075,7 +2075,7 @@ CVE-2021-4303 (A vulnerability, which was classified as problematic, has been fo
 CVE-2020-36641 (A vulnerability classified as problematic was found in gturri aXMLRPC  ...)
 	TODO: check
 CVE-2020-36640 (A vulnerability, which was classified as problematic, was found in bon ...)
-	TODO: check
+	NOT-FOR-US: bonitasoft bonita-connector-webservice
 CVE-2019-25098 (A vulnerability was found in soerennb eXtplorer up to 2.1.12. It has b ...)
 	- extplorer <removed>
 CVE-2019-25097 (A vulnerability was found in soerennb eXtplorer up to 2.1.12 and class ...)
@@ -2089,23 +2089,23 @@ CVE-2018-25065 (A vulnerability was found in Wikimedia mediawiki-extensions-I18n
 CVE-2018-25064 (A vulnerability was found in OSM Lab show-me-the-way. It has been rate ...)
 	NOT-FOR-US: OSM Lab show-me-the-way
 CVE-2017-20162 (A vulnerability, which was classified as problematic, has been found i ...)
-	TODO: check
+	NOT-FOR-US: vercel ms
 CVE-2016-15010 (** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as problema ...)
-	TODO: check
+	NOT-FOR-US: University of Cambridge django-ucamlookup
 CVE-2016-15009 (A vulnerability classified as problematic has been found in OpenACS bu ...)
 	TODO: check
 CVE-2015-10015 (A vulnerability, which was classified as critical, has been found in g ...)
-	TODO: check
+	NOT-FOR-US: glidernet ogn-live
 CVE-2015-10014 (A vulnerability classified as critical has been found in arekk uke. Th ...)
-	TODO: check
+	NOT-FOR-US: arekk uke
 CVE-2015-10013 (A vulnerability was found in WebDevStudios taxonomy-switcher Plugin up ...)
-	TODO: check
+	NOT-FOR-US: WebDevStudios taxonomy-switcher Plugin
 CVE-2014-125041 (A vulnerability classified as critical was found in Miccighel PR-CWT.  ...)
-	TODO: check
+	NOT-FOR-US: Miccighel PR-CWT
 CVE-2014-125040 (A vulnerability was found in stevejagodzinski DevNewsAggregator. It ha ...)
-	TODO: check
+	NOT-FOR-US: stevejagodzinski DevNewsAggregator
 CVE-2007-10001 (A vulnerability classified as problematic has been found in web-cyradm ...)
-	TODO: check
+	NOT-FOR-US: web-cyradm
 CVE-2023-22632
 	RESERVED
 CVE-2023-22631



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fea5d93dc6de8dad132b02ba0d342314d7ccbf19

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fea5d93dc6de8dad132b02ba0d342314d7ccbf19
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230111/7133f28c/attachment.htm>


More information about the debian-security-tracker-commits mailing list