[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Thu Jan 12 14:57:07 GMT 2023



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
607598cf by Moritz Muehlenhoff at 2023-01-12T15:56:42+01:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1279,11 +1279,11 @@ CVE-2023-22913
 CVE-2023-22912
 	RESERVED
 CVE-2023-22911 (An issue was discovered in MediaWiki before 1.35.9, 1.36.x through 1.3 ...)
-	TODO: check
+	NOT-FOR-US: MediaWiki extension Widgets
 CVE-2023-22910
 	RESERVED
 CVE-2023-22909 (An issue was discovered in MediaWiki before 1.35.9, 1.36.x through 1.3 ...)
-	TODO: check
+	NOT-FOR-US: MediaWiki extension MobileFrontend
 CVE-2023-22908
 	RESERVED
 CVE-2023-0210
@@ -2158,7 +2158,7 @@ CVE-2015-10017 (A vulnerability has been found in HPI-Information-Systems ProLOD
 CVE-2015-10016 (A vulnerability, which was classified as critical, has been found in j ...)
 	NOT-FOR-US: jeff-kelley opensim-utils
 CVE-2014-125051 (A vulnerability was found in himiklab yii2-jqgrid-widget up to 1.0.7.  ...)
-	TODO: check
+	NOT-FOR-US: himiklab yii2-jqgrid-widget
 CVE-2014-125050 (A vulnerability was found in ScottTZhang voter-js and classified as cr ...)
 	NOT-FOR-US: ScottTZhang voter-js
 CVE-2014-125049 (** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified  ...)
@@ -2309,7 +2309,7 @@ CVE-2021-4304 (A vulnerability was found in eprintsug ulcc-core. It has been dec
 CVE-2021-4303 (A vulnerability, which was classified as problematic, has been found i ...)
 	NOT-FOR-US: shannah Xataface
 CVE-2020-36641 (A vulnerability classified as problematic was found in gturri aXMLRPC  ...)
-	TODO: check
+	NOT-FOR-US: gturri aXMLRPC
 CVE-2020-36640 (A vulnerability, which was classified as problematic, was found in bon ...)
 	NOT-FOR-US: bonitasoft bonita-connector-webservice
 CVE-2019-25098 (A vulnerability was found in soerennb eXtplorer up to 2.1.12. It has b ...)
@@ -2321,7 +2321,7 @@ CVE-2019-25096 (A vulnerability has been found in soerennb eXtplorer up to 2.1.1
 CVE-2019-25095 (A vulnerability, which was classified as problematic, was found in kak ...)
 	NOT-FOR-US: kakwa LdapCherry
 CVE-2018-25065 (A vulnerability was found in Wikimedia mediawiki-extensions-I18nTags a ...)
-	TODO: check
+	NOT-FOR-US: MediaWiki extension I18nTags
 CVE-2018-25064 (A vulnerability was found in OSM Lab show-me-the-way. It has been rate ...)
 	NOT-FOR-US: OSM Lab show-me-the-way
 CVE-2017-20162 (A vulnerability, which was classified as problematic, has been found i ...)
@@ -2329,7 +2329,7 @@ CVE-2017-20162 (A vulnerability, which was classified as problematic, has been f
 CVE-2016-15010 (** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as problema ...)
 	NOT-FOR-US: University of Cambridge django-ucamlookup
 CVE-2016-15009 (A vulnerability classified as problematic has been found in OpenACS bu ...)
-	TODO: check
+	NOT-FOR-US: OpenACS bug-tracker
 CVE-2015-10015 (A vulnerability, which was classified as critical, has been found in g ...)
 	NOT-FOR-US: glidernet ogn-live
 CVE-2015-10014 (A vulnerability classified as critical has been found in arekk uke. Th ...)
@@ -2965,7 +2965,7 @@ CVE-2023-22489
 CVE-2023-22488
 	RESERVED
 CVE-2023-22487 (Flarum is a forum software for building communities. Using the mention ...)
-	TODO: check
+	NOT-FOR-US: Flarum
 CVE-2023-22486
 	RESERVED
 CVE-2023-22485
@@ -2981,11 +2981,11 @@ CVE-2023-22481
 CVE-2023-22480
 	RESERVED
 CVE-2023-22479 (KubePi is a modern Kubernetes panel. A session fixation attack allows  ...)
-	TODO: check
+	NOT-FOR-US: KubePi
 CVE-2023-22478
 	RESERVED
 CVE-2023-22477 (Mercurius is a GraphQL adapter for Fastify. Any users of Mercurius unt ...)
-	TODO: check
+	NOT-FOR-US: Mercurius
 CVE-2023-22476
 	RESERVED
 CVE-2023-0027
@@ -3094,15 +3094,15 @@ CVE-2023-22475 (Canarytokens is an open source tool which helps track activity a
 CVE-2023-22474
 	RESERVED
 CVE-2023-22473 (Talk-Android enables users to have video & audio calls through Nex ...)
-	TODO: check
+	NOT-FOR-US: Talk-Android
 CVE-2023-22472 (Deck is a kanban style organization tool aimed at personal planning an ...)
-	TODO: check
+	NOT-FOR-US: Deck
 CVE-2023-22471
 	RESERVED
 CVE-2023-22470
 	RESERVED
 CVE-2023-22469 (Deck is a kanban style organization tool aimed at personal planning an ...)
-	TODO: check
+	NOT-FOR-US: Deck
 CVE-2023-22468
 	RESERVED
 CVE-2023-22467 (Luxon is a library for working with dates and times in JavaScript. On  ...)
@@ -3744,7 +3744,7 @@ CVE-2023-22324
 CVE-2023-22322
 	RESERVED
 CVE-2023-22320 (OpenAM Web Policy Agent (OpenAM Consortium Edition) provided by OpenAM ...)
-	TODO: check
+	NOT-FOR-US: OpenAM Web Policy Agent (different from src:openam)
 CVE-2023-22316
 	RESERVED
 CVE-2023-22304



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/607598cf08fd149277384df986ad2272fab6e402

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/607598cf08fd149277384df986ad2272fab6e402
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230112/9100a378/attachment.htm>


More information about the debian-security-tracker-commits mailing list