[Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Mon Jun 26 21:36:03 BST 2023
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
6f7a6940 by Salvatore Bonaccorso at 2023-06-26T22:35:35+02:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,13 +1,13 @@
CVE-2023-3398 (Denial of Service in GitHub repository jgraph/drawio prior to 18.1.3.)
- TODO: check
+ NOT-FOR-US: jgraph/drawio
CVE-2023-3113 (An unauthenticated XML external entity injection (XXE) vulnerability e ...)
TODO: check
CVE-2023-36631 (Lack of access control in wfc.exe in Malwarebytes Binisoft Windows Fir ...)
- TODO: check
+ NOT-FOR-US: Malwarebytes Binisoft Windows Firewall Control
CVE-2023-36301 (Talend Data Catalog before 8.0-20230221 contain a directory traversal ...)
- TODO: check
+ NOT-FOR-US: Talend Data Catalog
CVE-2023-36252 (An issue in Ateme Flamingo XL v.3.6.20 and XS v.3.6.5 allows a remote ...)
- TODO: check
+ NOT-FOR-US: Ateme Flamingo XL
CVE-2023-35933 (OPenFGA is an open source authorization/permission engine built for de ...)
TODO: check
CVE-2023-35930 (SpiceDB is an open source, Google Zanzibar-inspired, database system f ...)
@@ -23,11 +23,11 @@ CVE-2023-34420 (A valid, authenticated LXCA user with elevated privileges may be
CVE-2023-34418 (A valid, authenticated LXCA user may be able to gain unauthorized acce ...)
TODO: check
CVE-2023-33580 (Phpgurukul Student Study Center Management System V1.0 is vulnerable t ...)
- TODO: check
+ NOT-FOR-US: Phpgurukul Student Study Center Management System
CVE-2023-33404 (An Unrestricted Upload vulnerability, due to insufficient validation o ...)
TODO: check
CVE-2023-33176 (BigBlueButton is an open source virtual classroom designed to help tea ...)
- TODO: check
+ NOT-FOR-US: BigBlueButton
CVE-2023-2993 (A valid, authenticated user with limited privileges may be able to use ...)
TODO: check
CVE-2023-2992 (An unauthenticated denial of service vulnerability exists in the SMM v ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6f7a6940172fe60f097c16fca4c1c07fb0c3cf31
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6f7a6940172fe60f097c16fca4c1c07fb0c3cf31
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230626/0712f7c4/attachment.htm>
More information about the debian-security-tracker-commits
mailing list