[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Feb 12 09:40:34 GMT 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e2d82dbd by Salvatore Bonaccorso at 2024-02-12T10:39:16+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -15,37 +15,37 @@ CVE-2024-25739 (create_empty_lvol in drivers/mtd/ubi/vtbl.c in the Linux kernel
 	NOTE: https://www.spinics.net/lists/kernel/msg5074816.html
 	NOTE: https://groups.google.com/g/syzkaller/c/Xl97YcQA4hg
 CVE-2024-25728 (ExpressVPN before 12.73.0 on Windows, when split tunneling is used, se ...)
-	TODO: check
+	NOT-FOR-US: ExpressVPN
 CVE-2024-25419 (flusity-CMS v2.33 was discovered to contain a Cross-Site Request Forge ...)
-	TODO: check
+	NOT-FOR-US: flusity-CMS
 CVE-2024-25418 (flusity-CMS v2.33 was discovered to contain a Cross-Site Request Forge ...)
-	TODO: check
+	NOT-FOR-US: flusity-CMS
 CVE-2024-25417 (flusity-CMS v2.33 was discovered to contain a Cross-Site Request Forge ...)
-	TODO: check
+	NOT-FOR-US: flusity-CMS
 CVE-2024-25100 (Deserialization of Untrusted Data vulnerability in WP Swings Coupon Re ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-24933 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-24932 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-24931 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-24930 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-24928 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-24927 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-24926 (Deserialization of Untrusted Data vulnerability in UnitedThemes Brookl ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-24889 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-24797 (Deserialization of Untrusted Data vulnerability in G5Theme ERE Recentl ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-24796 (Deserialization of Untrusted Data vulnerability in MagePeople Team Eve ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-23513 (Deserialization of Untrusted Data vulnerability in PropertyHive.This i ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-1433 (A vulnerability, which was classified as problematic, was found in KDE ...)
 	TODO: check
 CVE-2023-52429 (dm_table_create in drivers/md/dm-table.c in the Linux kernel through 6 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e2d82dbd20d3ecbb2943bbf1973d81bcb6ab716f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e2d82dbd20d3ecbb2943bbf1973d81bcb6ab716f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240212/7a2b32b0/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list