[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Sat Mar 11 18:40:42 GMT 2023



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
32b3df89 by Moritz Muehlenhoff at 2023-03-11T19:40:13+01:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -20766,6 +20766,7 @@ CVE-2022-4453 (The 3D FlipBook WordPress plugin through 1.13.2 does not validate
 	NOT-FOR-US: WordPress plugin
 CVE-2022-4452
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2022-4451 (The Social Sharing WordPress plugin before 3.3.45 does not validate an ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2022-4450 (The function PEM_read_bio_ex() reads a PEM file from a BIO and parses  ...)
@@ -29447,36 +29448,50 @@ CVE-2023-20967
 	RESERVED
 CVE-2023-20966
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20965
 	RESERVED
 CVE-2023-20964
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20963
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20962
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20961
 	RESERVED
 CVE-2023-20960
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20959
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20958
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20957
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20956
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20955
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20954
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20953
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20952
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20951
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20950
 	RESERVED
 CVE-2023-20949 (In s2mpg11_pmic_probe of s2mpg11-regulator.c, there is a possible out  ...)
@@ -29485,6 +29500,7 @@ CVE-2023-20948 (In dropFramesUntilIframe of AAVCAssembler.cpp, there is a possib
 	NOT-FOR-US: Android
 CVE-2023-20947
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20946 (In onStart of BluetoothSwitchPreferenceController.java, there is a pos ...)
 	NOT-FOR-US: Android
 CVE-2023-20945 (In phNciNfc_MfCreateXchgDataHdr of phNxpExtns_MifareStd.cpp, there is  ...)
@@ -29511,6 +29527,7 @@ CVE-2023-20937 (In several functions of the Android Linux kernel, there is a pos
 	NOTE: https://source.android.com/docs/security/bulletin/2023-02-01
 CVE-2023-20936
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20935
 	RESERVED
 CVE-2023-20934 (In resolveAttributionSource of ServiceUtilities.cpp, there is a possib ...)
@@ -29521,10 +29538,12 @@ CVE-2023-20932 (In onCreatePreferences of EditInfoFragment.java, there is a poss
 	NOT-FOR-US: Android
 CVE-2023-20931
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20930
 	RESERVED
 CVE-2023-20929
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20928 (In binder_vma_close of binder.c, there is a possible use after free du ...)
 	- linux 5.19.6-1
 	[bullseye] - linux 5.10.158-1
@@ -29536,6 +29555,7 @@ CVE-2023-20927 (In permissions of AndroidManifest.xml, there is a possible way t
 	NOT-FOR-US: Android
 CVE-2023-20926
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20925 (In setUclampMinLocked of PowerSessionManager.cpp, there is a possible  ...)
 	NOT-FOR-US: Android
 CVE-2023-20924 (In (TBD) of (TBD), there is a possible way to bypass the lockscreen du ...)
@@ -29555,6 +29575,7 @@ CVE-2023-20918
 	NOT-FOR-US: Android
 CVE-2023-20917
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20916 (In getMainActivityLaunchIntent of LauncherAppsService.java, there is a ...)
 	NOT-FOR-US: Android
 CVE-2023-20915 (In addOrReplacePhoneAccount of PhoneAccountRegistrar.java, there is a  ...)
@@ -29567,8 +29588,10 @@ CVE-2023-20912 (In onActivityResult of AvatarPickerActivity.java, there is a pos
 	NOT-FOR-US: Android
 CVE-2023-20911
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20910
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20909
 	RESERVED
 CVE-2023-20908 (In several functions of SettingsState.java, there is a possible system ...)
@@ -29577,6 +29600,7 @@ CVE-2023-20907
 	RESERVED
 CVE-2023-20906
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2023-20905 (In Mfc_Transceive of phNxpExtns_MifareStd.cpp, there is a possible out ...)
 	NOT-FOR-US: Android
 CVE-2023-20904 (In getTrampolineIntent of SettingsActivity.java, there is a possible l ...)
@@ -110259,6 +110283,7 @@ CVE-2022-20500 (In loadFromXml of ShortcutPackage.java, there is a possible cras
 	NOT-FOR-US: Android
 CVE-2022-20499
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2022-20498 (In fdt_path_offset_namelen of fdt_ro.c, there is a possible out of bou ...)
 	NOT-FOR-US: Android
 CVE-2022-20497 (In updatePublicMode of NotificationLockscreenUserManagerImpl.java, the ...)
@@ -110323,6 +110348,7 @@ CVE-2022-20468 (In BNEP_ConnectResp of bnep_api.cc, there is a possible out of b
 	NOT-FOR-US: Android
 CVE-2022-20467
 	RESERVED
+	NOT-FOR-US: Android
 CVE-2022-20466 (In applyKeyguardFlags of NotificationShadeWindowControllerImpl.java, t ...)
 	NOT-FOR-US: Android
 CVE-2022-20465 (In dismiss and related functions of KeyguardHostViewController.java an ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/32b3df89612591797d2f03d3dc0b3a3226e4d3b5

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/32b3df89612591797d2f03d3dc0b3a3226e4d3b5
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230311/7d63de0e/attachment.htm>


More information about the debian-security-tracker-commits mailing list