[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Jun 17 13:37:16 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
c1db9494 by Salvatore Bonaccorso at 2023-06-17T14:36:39+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,5 +1,5 @@
 CVE-2023-3295 (The Unlimited Elements For Elementor (Free Widgets, Addons, Templates) ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-35790 (An issue was discovered in dec_patch_dictionary.cc in libjxl before 0. ...)
 	TODO: check
 CVE-2023-35789 (An issue was discovered in the C AMQP client library (aka rabbitmq-c)  ...)
@@ -11,7 +11,7 @@ CVE-2023-35789 (An issue was discovered in the C AMQP client library (aka rabbit
 CVE-2023-34459 (OpenZeppelin Contracts is a library for smart contract development. St ...)
 	TODO: check
 CVE-2023-33438 (A stored Cross-site scripting (XSS) vulnerability in Wolters Kluwer Te ...)
-	TODO: check
+	NOT-FOR-US: Wolters Kluwer TeamMate+
 CVE-2023-3294 (Cross-site Scripting (XSS) - DOM in GitHub repository saleor/react-sto ...)
 	TODO: check
 CVE-2023-3293 (Cross-site Scripting (XSS) - Stored in GitHub repository salesagility/ ...)
@@ -23,9 +23,9 @@ CVE-2023-35788 (An issue was discovered in fl_set_geneve_opt in net/sched/cls_fl
 CVE-2023-35784 (A double free or use after free could occur after SSL_clear in OpenBSD ...)
 	TODO: check
 CVE-2023-35783 (The ke_search (aka Faceted Search) extension before 4.0.3, 4.1.x throu ...)
-	TODO: check
+	NOT-FOR-US: Typo3 extension
 CVE-2023-35782 (The ipandlanguageredirect extension before 5.1.2 for TYPO3 allows SQL  ...)
-	TODO: check
+	NOT-FOR-US: Typo3 extension
 CVE-2023-34832 (TP-Link Archer AX10(EU)_V1.2_230220 was discovered to contain a buffer ...)
 	NOT-FOR-US: TP-Link
 CVE-2023-34795 (xlsxio v0.1.2 to v0.2.34 was discovered to contain a free of uninitial ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c1db94940869d20b6b8fa1035d72216154ba17e2

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c1db94940869d20b6b8fa1035d72216154ba17e2
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230617/ab3556c8/attachment.htm>


More information about the debian-security-tracker-commits mailing list