[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed May 3 09:12:12 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ea8b81b5 by security tracker role at 2023-05-03T08:12:01+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,31 +1,31 @@
-CVE-2023-2468
+CVE-2023-2468 (Inappropriate implementation in PictureInPicture in Google Chrome prio ...)
 	- chromium 113.0.5672.63-1
 	[buster] - chromium <end-of-life> (see DSA 5046)
-CVE-2023-2467
+CVE-2023-2467 (Inappropriate implementation in Prompts in Google Chrome on Android pr ...)
 	- chromium 113.0.5672.63-1
 	[buster] - chromium <end-of-life> (see DSA 5046)
-CVE-2023-2466
+CVE-2023-2466 (Inappropriate implementation in Prompts in Google Chrome prior to 113. ...)
 	- chromium 113.0.5672.63-1
 	[buster] - chromium <end-of-life> (see DSA 5046)
-CVE-2023-2465
+CVE-2023-2465 (Inappropriate implementation in CORS in Google Chrome prior to 113.0.5 ...)
 	- chromium 113.0.5672.63-1
 	[buster] - chromium <end-of-life> (see DSA 5046)
-CVE-2023-2464
+CVE-2023-2464 (Inappropriate implementation in PictureInPicture in Google Chrome prio ...)
 	- chromium 113.0.5672.63-1
 	[buster] - chromium <end-of-life> (see DSA 5046)
-CVE-2023-2463
+CVE-2023-2463 (Inappropriate implementation in Full Screen Mode in Google Chrome on A ...)
 	- chromium 113.0.5672.63-1
 	[buster] - chromium <end-of-life> (see DSA 5046)
-CVE-2023-2462
+CVE-2023-2462 (Inappropriate implementation in Prompts in Google Chrome prior to 113. ...)
 	- chromium 113.0.5672.63-1
 	[buster] - chromium <end-of-life> (see DSA 5046)
-CVE-2023-2461
+CVE-2023-2461 (Use after free in OS Inputs in Google Chrome on ChromeOS prior to 113. ...)
 	- chromium 113.0.5672.63-1
 	[buster] - chromium <end-of-life> (see DSA 5046)
-CVE-2023-2460
+CVE-2023-2460 (Insufficient validation of untrusted input in Extensions in Google Chr ...)
 	- chromium 113.0.5672.63-1
 	[buster] - chromium <end-of-life> (see DSA 5046)
-CVE-2023-2459
+CVE-2023-2459 (Inappropriate implementation in Prompts in Google Chrome prior to 113. ...)
 	- chromium 113.0.5672.63-1
 	[buster] - chromium <end-of-life> (see DSA 5046)
 CVE-2023-32007 (** UNSUPPORTED WHEN ASSIGNED ** The Apache Spark UI offers the possibi ...)
@@ -4192,8 +4192,8 @@ CVE-2023-29841
 	RESERVED
 CVE-2023-29840
 	RESERVED
-CVE-2023-29839
-	RESERVED
+CVE-2023-29839 (A Stored Cross Site Scripting (XSS) vulnerability exists in multiple p ...)
+	TODO: check
 CVE-2023-29838
 	RESERVED
 CVE-2023-29837
@@ -9915,8 +9915,8 @@ CVE-2023-28072
 	RESERVED
 CVE-2023-28071
 	RESERVED
-CVE-2023-28070
-	RESERVED
+CVE-2023-28070 (Alienware Command Center Application, versions 5.5.43.0 and prior, con ...)
+	TODO: check
 CVE-2023-28069 (Dell Streaming Data Platform prior to 1.4 contains Open Redirect vulne ...)
 	NOT-FOR-US: Dell
 CVE-2023-28068
@@ -25881,8 +25881,8 @@ CVE-2023-22693
 	RESERVED
 CVE-2023-22692
 	RESERVED
-CVE-2023-22691
-	RESERVED
+CVE-2023-22691 (Cross-Site Request Forgery (CSRF) vulnerability in Tips and Tricks HQ, ...)
+	TODO: check
 CVE-2023-22690
 	RESERVED
 CVE-2023-22689
@@ -80228,8 +80228,8 @@ CVE-2022-30761
 	RESERVED
 CVE-2022-30760 (An Insecure Direct Object Reference (IDOR) issue in fn2Web in ihb eG F ...)
 	NOT-FOR-US: fn2Web
-CVE-2022-30759
-	RESERVED
+CVE-2022-30759 (In Nokia One-NDS (aka Network Directory Server) through 20.9, some Sud ...)
+	TODO: check
 CVE-2022-30708 (Webmin through 1.991, when the Authentic theme is used, allows remote  ...)
 	- webmin <removed>
 CVE-2022-1717 (The Custom Share Buttons with Floating Sidebar WordPress plugin before ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ea8b81b5cf436b984b160a929affb8fdff276efa

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ea8b81b5cf436b984b160a929affb8fdff276efa
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230503/8524cd2e/attachment.htm>


More information about the debian-security-tracker-commits mailing list