[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Dec 27 20:49:37 GMT 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
8d1c593a by Salvatore Bonaccorso at 2024-12-27T21:48:56+01:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9,43 +9,43 @@ CVE-2024-56508 (LinkAce is a self-hosted archive to collect links of your favori
 CVE-2024-56507 (LinkAce is a self-hosted archive to collect links of your favorite web ...)
 	TODO: check
 CVE-2024-54454 (An issue was discovered in Kurmi Provisioning Suite before 7.9.0.35, 7 ...)
-	TODO: check
+	NOT-FOR-US: Kurmi Provisioning Suite
 CVE-2024-54453 (An issue was discovered in Kurmi Provisioning Suite before 7.9.0.35, 7 ...)
-	TODO: check
+	NOT-FOR-US: Kurmi Provisioning Suite
 CVE-2024-54452 (An issue was discovered in Kurmi Provisioning Suite before 7.9.0.35 an ...)
-	TODO: check
+	NOT-FOR-US: Kurmi Provisioning Suite
 CVE-2024-54451 (A cross-site scripting (XSS) vulnerability in the graphicCustomization ...)
-	TODO: check
+	NOT-FOR-US: Kurmi Provisioning Suite
 CVE-2024-54450 (An issue was discovered in Kurmi Provisioning Suite 7.9.0.33. If an X- ...)
-	TODO: check
+	NOT-FOR-US: Kurmi Provisioning Suite
 CVE-2024-53476 (A race condition vulnerability in SimplCommerce at commit 230310c8d7a0 ...)
-	TODO: check
+	NOT-FOR-US: SimplCommerce
 CVE-2024-50945 (An improper access control vulnerability exists in SimplCommerce at co ...)
-	TODO: check
+	NOT-FOR-US: SimplCommerce
 CVE-2024-50944 (Integer overflow vulnerability exists in SimplCommerce at commit 23031 ...)
-	TODO: check
+	NOT-FOR-US: SimplCommerce
 CVE-2024-3393 (A Denial of Service vulnerability in the DNS Security feature of Palo  ...)
-	TODO: check
+	NOT-FOR-US: Palo Alto Networks
 CVE-2024-39025 (Incorrect access control in the /users endpoint of Cpacker MemGPT v0.3 ...)
 	TODO: check
 CVE-2024-12991 (A vulnerability was found in Beijing Longda Jushang Technology DBShop\ ...)
-	TODO: check
+	NOT-FOR-US: Beijing Longda Jushang Technology
 CVE-2024-12990 (A vulnerability was found in ruifang-tech Rebuild 3.8.6. It has been c ...)
 	TODO: check
 CVE-2024-12989 (A vulnerability was found in WISI Tangram GT31 up to 20241214 and clas ...)
 	TODO: check
 CVE-2024-12988 (A vulnerability has been found in Netgear R6900P and R7000P 1.3.3.154  ...)
-	TODO: check
+	NOT-FOR-US: Netgear
 CVE-2024-12987 (A vulnerability, which was classified as critical, was found in DrayTe ...)
-	TODO: check
+	NOT-FOR-US: DrayTek
 CVE-2024-12986 (A vulnerability, which was classified as critical, has been found in D ...)
-	TODO: check
+	NOT-FOR-US: DrayTek
 CVE-2024-12985 (A vulnerability classified as critical was found in Overtek OT-E801G O ...)
 	TODO: check
 CVE-2024-12984 (A vulnerability classified as problematic has been found in Amcrest IP ...)
-	TODO: check
+	NOT-FOR-US: Amcrest
 CVE-2024-12856 (The Four-Faith router models F3x24 and F3x36 are affected by an operat ...)
-	TODO: check
+	NOT-FOR-US: Four-Faith router models
 CVE-2024-56675 (In the Linux kernel, the following vulnerability has been resolved:  b ...)
 	- linux 6.12.6-1
 	[bullseye] - linux <not-affected> (Vulnerable code not present)
@@ -374495,7 +374495,7 @@ CVE-2020-9255 (Huawei Honor 10 smartphones with versions earlier than 10.0.0.178
 CVE-2020-9254 (HUAWEI P30 Pro smartphones with versions earlier than 10.1.0.123(C432E ...)
 	NOT-FOR-US: Huawei
 CVE-2020-9253 (There is a stack overflow vulnerability in some Huawei smart phone. An ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-9252 (HUAWEI Mate 20 versions earlier than 10.1.0.160(C00E160R3P8), HUAWEI M ...)
 	NOT-FOR-US: Huawei
 CVE-2020-9251 (HUAWEI Mate 20 smartphones with versions earlier than 10.1.0.160(C00E1 ...)
@@ -374529,7 +374529,7 @@ CVE-2020-9238 (Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have a
 CVE-2020-9237 (Huawei smartphone Taurus-AL00B with versions earlier than 10.1.0.126(C ...)
 	NOT-FOR-US: Huawei
 CVE-2020-9236 (There is an improper interface design vulnerability in Huawei product. ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-9235 (Huawei smartphones HONOR 20 PRO Versions earlier than 10.1.0.230(C432E ...)
 	NOT-FOR-US: Huawei
 CVE-2020-9234
@@ -374557,7 +374557,7 @@ CVE-2020-9224
 CVE-2020-9223 (There is a denial of service vulnerability in some Huawei smartphones. ...)
 	NOT-FOR-US: Huawei
 CVE-2020-9222 (There is a privilege escalation vulnerability in Huawei FusionCompute  ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-9221
 	RESERVED
 CVE-2020-9220
@@ -374579,9 +374579,9 @@ CVE-2020-9213 (There is a denial of service vulnerability in some huawei product
 CVE-2020-9212 (There is a vulnerability in some version of USG9500 that the device im ...)
 	NOT-FOR-US: Huawei
 CVE-2020-9211 (There is an out-of-bound read and write vulnerability in Huawei smartp ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-9210 (There is an insufficient integrity vulnerability in Huawei products. A ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-9209 (There is a privilege escalation vulnerability in SMC2.0 product. Some  ...)
 	NOT-FOR-US: Huawei
 CVE-2020-9208 (There is an information leak vulnerability in iManager NetEco 6000 ver ...)
@@ -374823,25 +374823,25 @@ CVE-2020-9091 (Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have a
 CVE-2020-9090 (FusionAccess version 6.5.1 has an improper authorization vulnerability ...)
 	NOT-FOR-US: Huawei
 CVE-2020-9089 (There is an information vulnerability in Huawei smartphones. A functio ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-9088
 	RESERVED
 CVE-2020-9087 (Taurus-AL00A version 10.0.0.1(C00E1R1P1) has an out-of-bounds read vul ...)
 	NOT-FOR-US: Huawei
 CVE-2020-9086 (There is a buffer error vulnerability in some Huawei product. An unaut ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-9085 (There is a NULL pointer dereference vulnerability in some Huawei produ ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-9084 (Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have a use- ...)
 	NOT-FOR-US: Taurus-AN00B
 CVE-2020-9083 (HUAWEI Mate 20 smart phones with Versions earlier than 10.1.0.163(C00E ...)
 	NOT-FOR-US: Huawei
 CVE-2020-9082 (There is an information disclosure vulnerability in several smartphone ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-9081 (There is an improper authorization vulnerability in some Huawei smartp ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-9080 (There is an improper privilege management vulnerability in Huawei smar ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-9079 (FusionSphere OpenStack 8.0.0 have a protection mechanism failure vulne ...)
 	NOT-FOR-US: Huawei
 CVE-2020-9078 (FusionCompute 8.0.0 have local privilege escalation vulnerability. A l ...)
@@ -394532,9 +394532,9 @@ CVE-2020-1821
 CVE-2020-1820
 	RESERVED
 CVE-2020-1819 (There are multiple out of bounds (OOB) read vulnerabilities in the imp ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-1818 (There are multiple out of bounds (OOB) read vulnerabilities in the imp ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2020-1817 (Huawei PCManager with versions earlier than 10.0.1.36 has a privilege  ...)
 	NOT-FOR-US: Huawei
 CVE-2020-1816 (Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C0 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8d1c593a2bd312612f29c076009546b148243ac2

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8d1c593a2bd312612f29c076009546b148243ac2
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241227/87375503/attachment.htm>


More information about the debian-security-tracker-commits mailing list