[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Nov 9 08:20:39 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
127b2e82 by Salvatore Bonaccorso at 2023-11-09T09:20:12+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,41 +1,41 @@
 CVE-2023-5079 (Lenovo LeCloud App improper input validation allows attackers to acces ...)
-	TODO: check
+	NOT-FOR-US: Lenovo
 CVE-2023-5078 (A vulnerability was reported in some ThinkPad BIOS that could allow a  ...)
-	TODO: check
+	NOT-FOR-US: Lenovo
 CVE-2023-5075 (A buffer overflow was reported in the FmpSipoCapsuleDriver driver in t ...)
-	TODO: check
+	NOT-FOR-US: Lenovo
 CVE-2023-4891 (A potential use-after-free vulnerability was reported in the Lenovo Vi ...)
-	TODO: check
+	NOT-FOR-US: Lenovo
 CVE-2023-4706 (A privilege escalation vulnerability was reported in Lenovo preloaded  ...)
-	TODO: check
+	NOT-FOR-US: Lenovo
 CVE-2023-4632 (An uncontrolled search path vulnerability was reported in Lenovo Syste ...)
 	TODO: check
 CVE-2023-4249 (Zavio CF7500, CF7300, CF7201, CF7501, CB3211, CB3212, CB5220,  CB6231, ...)
 	TODO: check
 CVE-2023-47613 (A CWE-23: Relative Path Traversal vulnerability exists in Telit Cinter ...)
-	TODO: check
+	NOT-FOR-US: Telit Cinterion
 CVE-2023-47489 (An issue in Combodo iTop v.3.1.0-2-11973 allows a local attacker to ex ...)
-	TODO: check
+	NOT-FOR-US: Combodo iTop
 CVE-2023-47488 (Cross Site Scripting vulnerability in Combodo iTop v.3.1.0-2-11973 all ...)
-	TODO: check
+	NOT-FOR-US: Combodo iTop
 CVE-2023-47114 (Fides is an open-source privacy engineering platform for managing the  ...)
-	TODO: check
+	NOT-FOR-US: Fides
 CVE-2023-47113 (BleachBit cleans files to free disk space and to maintain privacy. Ble ...)
-	TODO: check
+	NOT-FOR-US: BleachBit
 CVE-2023-47111 (ZITADEL provides identity infrastructure. ZITADEL provides administrat ...)
-	TODO: check
+	NOT-FOR-US: ZITADEL
 CVE-2023-47109 (PrestaShop blockreassurance adds an information block aimed at offerin ...)
-	TODO: check
+	NOT-FOR-US: PrestaShop blockreassurance
 CVE-2023-47008 (An issue in ASUS RT-AX57 v.3.0.0.4_386_52041 allows a remote attacker  ...)
-	TODO: check
+	NOT-FOR-US: ASUS
 CVE-2023-47007 (An issue in ASUS RT-AX57 v.3.0.0.4_386_52041 allows a remote attacker  ...)
-	TODO: check
+	NOT-FOR-US: ASUS
 CVE-2023-47006 (An issue in ASUS RT-AX57 v.3.0.0.4_386_52041 allows a remote attacker  ...)
-	TODO: check
+	NOT-FOR-US: ASUS
 CVE-2023-47005 (An issue in ASUS RT-AX57 v.3.0.0.4_386_52041 allows a remote attacker  ...)
-	TODO: check
+	NOT-FOR-US: ASUS
 CVE-2023-46492 (Cross Site Scripting vulnerability in MLDB.ai v.2017.04.17.0 allows a  ...)
-	TODO: check
+	NOT-FOR-US: MLDB.ai
 CVE-2023-46363 (jbig2enc v0.28 was discovered to contain a SEGV via jbig2_add_page in  ...)
 	TODO: check
 CVE-2023-46362 (jbig2enc v0.28 was discovered to contain a heap-use-after-free via jbi ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/127b2e826a7412248eed67d5f963957d96bbb88c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/127b2e826a7412248eed67d5f963957d96bbb88c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231109/dcc27274/attachment.htm>


More information about the debian-security-tracker-commits mailing list