[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Apr 11 21:52:56 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
7905b86f by Salvatore Bonaccorso at 2024-04-11T22:52:19+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -63,41 +63,41 @@ CVE-2024-29454 (An issue discovered in packages or nodes in ROS2 Humble Hawksbil
 CVE-2024-25852 (Linksys RE7000 v2.0.9, v2.0.11, and v2.0.15 have a command execution v ...)
 	NOT-FOR-US: Linksys
 CVE-2024-22722 (Server Side Template Injection (SSTI) vulnerability in Form Tools 3.1. ...)
-	TODO: check
+	NOT-FOR-US: Form Tools
 CVE-2024-22721 (Cross Site Request Forgery (CSRF) vulnerability in Form Tools 3.1.1 al ...)
-	TODO: check
+	NOT-FOR-US: Form Tools
 CVE-2024-22719 (SQL Injection vulnerability in Form Tools 3.1.1 allows attackers to ru ...)
-	TODO: check
+	NOT-FOR-US: Form Tools
 CVE-2024-22718 (Cross Site Scripting (XSS) vulnerability in Form Tools 3.1.1 allows at ...)
-	TODO: check
+	NOT-FOR-US: Form Tools
 CVE-2024-22717 (Cross Site Scripting (XSS) vulnerability in Form Tools 3.1.1 allows at ...)
-	TODO: check
+	NOT-FOR-US: Form Tools
 CVE-2024-20798 (Illustrator versions 28.3, 27.9.2 and earlier are affected by an out-o ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2024-20797 (Animate versions 23.0.4, 24.0.1 and earlier are affected by an out-of- ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2024-20796 (Animate versions 23.0.4, 24.0.1 and earlier are affected by an out-of- ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2024-20795 (Animate versions 23.0.4, 24.0.1 and earlier are affected by an Integer ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2024-20794 (Animate versions 23.0.4, 24.0.1 and earlier are affected by a NULL Poi ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2024-20771 (Bridge versions 13.0.6, 14.0.2 and earlier are affected by an out-of-b ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2024-0881 (The Post Grid, Form Maker, Popup Maker, WooCommerce Blocks, Post Block ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-5394 (Server receiving a malformed message that where the GCL message hostna ...)
-	TODO: check
+	NOT-FOR-US: Honeywell
 CVE-2023-5393 (Server receiving a malformed message that causes a disconnect to a hos ...)
-	TODO: check
+	NOT-FOR-US: Honeywell
 CVE-2023-5392 (C300 information leak due to an analysis feature which allows extracti ...)
-	TODO: check
+	NOT-FOR-US: Honeywell
 CVE-2023-50949 (IBM QRadar SIEM 7.5 could allow an unauthorized user to perform unauth ...)
 	NOT-FOR-US: IBM
 CVE-2023-32295 (Missing Authorization vulnerability in Alex Tselegidis Easy!Appointmen ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-32228 (A firmware bug which may lead to misinterpretation of data in the AMC2 ...)
-	TODO: check
+	NOT-FOR-US: Bosch
 CVE-2024-3092
 	- gitlab <unfixed>
 CVE-2024-2279



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7905b86f94116e26ad9407c0605b211a3cacc508

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7905b86f94116e26ad9407c0605b211a3cacc508
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240411/ba79471b/attachment.htm>


More information about the debian-security-tracker-commits mailing list