[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Oct 28 09:31:36 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5d1e6f86 by Salvatore Bonaccorso at 2023-10-28T10:30:56+02:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,33 +1,33 @@
 CVE-2023-5834 (HashiCorp Vagrant's Windows installer targeted a custom location with  ...)
-	TODO: check
+	NOT-FOR-US: HashiCorp Vagrant's Windows installer
 CVE-2023-5830 (A vulnerability classified as critical has been found in ColumbiaSoft  ...)
-	TODO: check
+	NOT-FOR-US: ColumbiaSoft Document Locator
 CVE-2023-46587 (Buffer Overflow vulnerability in XnView Classic v.2.51.5 allows a loca ...)
-	TODO: check
+	NOT-FOR-US: XnView
 CVE-2023-46570 (An out-of-bounds read in radare2 v.5.8.9 and before exists in the prin ...)
 	TODO: check
 CVE-2023-46569 (An out-of-bounds read in radare2 v.5.8.9 and before exists in the prin ...)
 	TODO: check
 CVE-2023-46510 (An issue in ZIONCOM (Hong Kong) Technology Limited A7000R v.4.1cu.4154 ...)
-	TODO: check
+	NOT-FOR-US: ZIONCOM (Hong Kong) Technology Limited A7000R
 CVE-2023-46509 (An issue in Contec SolarView Compact v.6.0 and before allows an attack ...)
-	TODO: check
+	NOT-FOR-US: Contec SolarView Compact
 CVE-2023-46490 (SQL Injection vulnerability in Cacti v1.2.25 allows a remote attacker  ...)
 	TODO: check
 CVE-2023-46468 (An issue in juzawebCMS v.3.4 and before allows a remote attacker to ex ...)
-	TODO: check
+	NOT-FOR-US: juzawebCMS
 CVE-2023-46467 (Cross Site Scripting vulnerability in juzawebCMS v.3.4 and before allo ...)
-	TODO: check
+	NOT-FOR-US: juzawebCMS
 CVE-2023-46215 (Insertion of Sensitive Information into Log File vulnerability in Apac ...)
-	TODO: check
+	NOT-FOR-US: Apache Airflow Celery provider
 CVE-2023-46211 (Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability i ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-46209 (Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in G5Theme  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-46208 (Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Stylemix ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-46200 (Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Step ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-44480 (Leave Management System Project v1.0 is vulnerable to multiple Authent ...)
 	TODO: check
 CVE-2023-43322 (ZPE Systems, Inc Nodegrid OS v5.0.0 to v5.0.17, v5.2.0 to v5.2.19, v5. ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5d1e6f864b1f7f4b282cd0ff73c42a57a284bca1

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5d1e6f864b1f7f4b282cd0ff73c42a57a284bca1
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231028/74e045d2/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list