[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Dec 19 08:19:01 GMT 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ba825dbc by Salvatore Bonaccorso at 2024-12-19T09:18:38+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -55,7 +55,7 @@ CVE-2024-39804 (A library injection vulnerability exists in Microsoft PowerPoint
 CVE-2024-37649 (Insecure Permissions vulnerability in SecureSTATION v.2.5.5.3116-S50-S ...)
 	TODO: check
 CVE-2024-35141 (IBM Security Verify Access Docker 10.0.0 through 10.0.6 could allow a  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2024-12686 (A vulnerability has been discovered in Privileged Remote Access (PRA)  ...)
 	TODO: check
 CVE-2024-12560 (The Button Block \u2013 Get fully customizable & multi-functional butt ...)
@@ -135427,7 +135427,7 @@ CVE-2023-30445 (IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server
 CVE-2023-30444 (IBM Watson Machine Learning on Cloud Pak for Data 4.0 and 4.5 is vulne ...)
 	NOT-FOR-US: IBM
 CVE-2023-30443 (IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5 ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2023-30442 (IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 ...)
 	NOT-FOR-US: IBM
 CVE-2023-30441 (IBM Runtime Environment, Java Technology Edition IBMJCEPlus and JSSE 8 ...)
@@ -205505,7 +205505,7 @@ CVE-2022-33956
 CVE-2022-33955 (IBM CICS TX 11.1 could allow allow an attacker with physical access to ...)
 	NOT-FOR-US: IBM
 CVE-2022-33954 (IBM Robotic Process Automation 21.0.1, 21.0.2, and 21.0.3 could allow  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-33953 (IBM Robotic Process Automation 21.0.1 and 21.0.2 could allow a user wi ...)
 	NOT-FOR-US: IBM
 CVE-2022-33952
@@ -265442,7 +265442,7 @@ CVE-2021-39083
 CVE-2021-39082 (IBM UrbanCode Deploy (UCD) 7.1.1.2 uses weaker than expected cryptogra ...)
 	NOT-FOR-US: IBM
 CVE-2021-39081 (IBM Cognos Analytics Mobile for Android 1.1.14 uses weaker than expect ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-39080 (Due to weak obfuscation, IBM Cognos Analytics Mobile for Android appli ...)
 	NOT-FOR-US: IBM
 CVE-2021-39079 (IBM Cognos Analytics Mobile for Android applications prior to version  ...)
@@ -289372,7 +289372,7 @@ CVE-2021-29829
 CVE-2021-29828
 	RESERVED
 CVE-2021-29827 (IBM InfoSphere Information Server 11.7 could allow a remote attacker t ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-29826
 	RESERVED
 CVE-2021-29825 (IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) coul ...)
@@ -313679,7 +313679,7 @@ CVE-2021-20555
 CVE-2021-20554 (IBM Sterling Order Management 9.4, 9.5, and 10.0 is vulnerable to cros ...)
 	NOT-FOR-US: IBM
 CVE-2021-20553 (IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.1.1.0 i ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-20552 (IBM Sterling File Gateway 6.0.0.0 through 6.1.1.0 could allow a remote ...)
 	NOT-FOR-US: IBM
 CVE-2021-20551 (IBM Jazz Team Server 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 allows web  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ba825dbc00215bbd20095c0d55bd47c89e056def

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ba825dbc00215bbd20095c0d55bd47c89e056def
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241219/6a676f3e/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list