[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Nov 15 20:29:25 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
2cfa6a03 by Salvatore Bonaccorso at 2023-11-15T21:28:01+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -35,11 +35,11 @@ CVE-2023-47636 (The Pimcore Admin Classic Bundle provides a Backend UI for Pimco
 CVE-2023-41699 (URL Redirection to Untrusted Site ('Open Redirect') vulnerability in P ...)
 	NOT-FOR-US: Payara
 CVE-2023-34982 (This external control vulnerability, if exploited, could allow a local ...)
-	TODO: check
+	NOT-FOR-US: AVEVA
 CVE-2023-34062 (In Reactor Netty HTTP Server, versions 1.1.x prior to 1.1.13 and versi ...)
 	TODO: check
 CVE-2023-33873 (This privilege escalation vulnerability, if exploited, cloud allow a l ...)
-	TODO: check
+	NOT-FOR-US: AVEVA
 CVE-2023-6133 (The Forminator plugin for WordPress is vulnerable to arbitrary file up ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2023-6032 (A CWE-22: Improper Limitation of a Pathname to a Restricted Directory  ...)
@@ -27628,7 +27628,7 @@ CVE-2023-30956 (A security defect was identified in Foundry Comments that enable
 CVE-2023-30955 (A security defect was identified in Foundry workspace-server that enab ...)
 	NOT-FOR-US: Palantir
 CVE-2023-30954 (The Gotham video-application-server service contained a race condition ...)
-	TODO: check
+	NOT-FOR-US: Gotham video-application-server service
 CVE-2023-30953
 	RESERVED
 CVE-2023-30952 (A security defect was discovered in Foundry Issues that enabled users  ...)
@@ -53025,7 +53025,7 @@ CVE-2023-22820
 CVE-2023-22819
 	RESERVED
 CVE-2023-22818 (Multiple DLL Search Order Hijack vulnerabilities were addressed in the ...)
-	TODO: check
+	NOT-FOR-US: SanDisk Security Installer for Windows
 CVE-2023-22817
 	RESERVED
 CVE-2023-22816 (A post-authentication remote command injection vulnerability in a CGI  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2cfa6a03f32c874722d120fa2c0b4fe416dcac47

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2cfa6a03f32c874722d120fa2c0b4fe416dcac47
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231115/a560021c/attachment.htm>


More information about the debian-security-tracker-commits mailing list