[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Thu Jan 19 17:01:43 GMT 2023



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d494fba6 by Moritz Muehlenhoff at 2023-01-19T17:59:55+01:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -7639,7 +7639,7 @@ CVE-2023-21902
 CVE-2023-21901
 	RESERVED
 CVE-2023-21900 (Vulnerability in the Oracle Solaris product of Oracle Systems (compone ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21899 (Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualiza ...)
 	- virtualbox <unfixed> (bug #1029153)
 CVE-2023-21898 (Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualiza ...)
@@ -7651,19 +7651,19 @@ CVE-2023-21896
 CVE-2023-21895
 	RESERVED
 CVE-2023-21894 (Vulnerability in the Oracle Global Lifecycle Management NextGen OUI Fr ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21893 (Vulnerability in the Oracle Data Provider for .NET component of Oracle ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21892 (Vulnerability in the Oracle Business Intelligence Enterprise Edition p ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21891 (Vulnerability in the Oracle Business Intelligence Enterprise Edition p ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21890 (Vulnerability in the Oracle Communications Converged Application Serve ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21889 (Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualiza ...)
 	- virtualbox <unfixed> (bug #1029153)
 CVE-2023-21888 (Vulnerability in the Primavera Gateway product of Oracle Construction  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21887 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-8.0 <unfixed> (bug #1029151)
 CVE-2023-21886 (Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualiza ...)
@@ -7715,60 +7715,60 @@ CVE-2023-21864 (Vulnerability in the MySQL Server product of Oracle MySQL (compo
 CVE-2023-21863 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-8.0 <unfixed> (bug #1029151)
 CVE-2023-21862 (Vulnerability in the Oracle Web Services Manager product of Oracle Fus ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21861 (Vulnerability in the Oracle Business Intelligence Enterprise Edition p ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21860 (Vulnerability in the MySQL Cluster product of Oracle MySQL (component: ...)
 	NOT-FOR-US: MySQL Cluster
 CVE-2023-21859 (Vulnerability in the Oracle Access Manager product of Oracle Fusion Mi ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21858 (Vulnerability in the Oracle Collaborative Planning product of Oracle E ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21857 (Vulnerability in the Oracle HCM Common Architecture product of Oracle  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21856 (Vulnerability in the Oracle iSetup product of Oracle E-Business Suite  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21855 (Vulnerability in the Oracle Sales for Handhelds product of Oracle E-Bu ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21854 (Vulnerability in the Oracle Sales Offline product of Oracle E-Business ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21853 (Vulnerability in the Oracle Mobile Field Service product of Oracle E-B ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21852 (Vulnerability in the Oracle Learning Management product of Oracle E-Bu ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21851 (Vulnerability in the Oracle Marketing product of Oracle E-Business Sui ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21850 (Vulnerability in the Oracle Demantra Demand Management product of Orac ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21849 (Vulnerability in the Oracle Applications DBA product of Oracle E-Busin ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21848 (Vulnerability in the Oracle Communications Convergence product of Orac ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21847 (Vulnerability in the Oracle Web Applications Desktop Integrator produc ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21846 (Vulnerability in the Oracle BI Publisher product of Oracle Fusion Midd ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21845 (Vulnerability in the PeopleSoft Enterprise PeopleTools product of Orac ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21844 (Vulnerability in the PeopleSoft Enterprise PeopleTools product of Orac ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21843 (Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition ...)
 	- openjdk-8 <unfixed>
 	- openjdk-11 <unfixed>
 	- openjdk-17 <unfixed>
 	- openjdk-21 <unfixed>
 CVE-2023-21842 (Vulnerability in the Oracle WebLogic Server product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21841 (Vulnerability in the Oracle WebLogic Server product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21840 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-5.7 <removed>
 CVE-2023-21839 (Vulnerability in the Oracle WebLogic Server product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21838 (Vulnerability in the Oracle WebLogic Server product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21837 (Vulnerability in the Oracle WebLogic Server product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21836 (Vulnerability in the MySQL Server product of Oracle MySQL (component:  ...)
 	- mysql-8.0 <unfixed> (bug #1029151)
 CVE-2023-21835 (Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition ...)
@@ -7776,28 +7776,28 @@ CVE-2023-21835 (Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise E
 	- openjdk-17 <unfixed>
 	- openjdk-21 <unfixed>
 CVE-2023-21834 (Vulnerability in the Oracle Self-Service Human Resources product of Or ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21833
 	RESERVED
 CVE-2023-21832 (Vulnerability in the Oracle BI Publisher product of Oracle Fusion Midd ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21831 (Vulnerability in the PeopleSoft Enterprise CS Academic Advisement prod ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21830 (Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition ...)
 	- openjdk-8 <unfixed>
 	- openjdk-21 <unfixed>
 CVE-2023-21829 (Vulnerability in the Oracle Database RDBMS Security component of Oracl ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21828 (Vulnerability in the Oracle Hospitality Reporting and Analytics produc ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21827 (Vulnerability in the Oracle Database Data Redaction component of Oracl ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21826 (Vulnerability in the Oracle Hospitality Reporting and Analytics produc ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21825 (Vulnerability in the Oracle iSupplier Portal product of Oracle E-Busin ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2023-21824 (Vulnerability in the Oracle Communications BRM - Elastic Charging Engi ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2022-47522
 	RESERVED
 CVE-2022-47521 (An issue was discovered in the Linux kernel before 6.0.11. Missing val ...)
@@ -32963,7 +32963,7 @@ CVE-2022-39431
 CVE-2022-39430
 	RESERVED
 CVE-2022-39429 (Vulnerability in the Java VM component of Oracle Database Server. Supp ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2022-39428 (Vulnerability in the Oracle Web Applications Desktop Integrator produc ...)
 	NOT-FOR-US: Oracle
 CVE-2022-39427 (Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualiza ...)
@@ -33634,7 +33634,7 @@ CVE-2022-39197 (An XSS (Cross Site Scripting) vulnerability was found in HelpSys
 CVE-2022-39196 (Blackboard Learn 1.10.1 allows remote authenticated users to read unin ...)
 	NOT-FOR-US: Blackboard Learn
 CVE-2022-39195 (A cross-site scripting (XSS) vulnerability in the LISTSERV 17 web inte ...)
-	TODO: check
+	NOT-FOR-US: LISTSERV
 CVE-2022-39194 (An issue was discovered in the MediaWiki through 1.38.2. The community ...)
 	NOT-FOR-US: MediaWiki extension GrowthExperiments
 CVE-2022-39193



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d494fba680898c5bc1e5743b30dd4049f68a7425

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d494fba680898c5bc1e5743b30dd4049f68a7425
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230119/8ebfa9d2/attachment.htm>


More information about the debian-security-tracker-commits mailing list