[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Feb 29 08:49:01 GMT 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1d697971 by Salvatore Bonaccorso at 2024-02-29T09:48:29+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -141,9 +141,9 @@ CVE-2023-45859 (In Hazelcast through 4.1.10, 4.2 through 4.2.8, 5.0 through 5.0.
 CVE-2023-43769 (An issue was discovered in Couchbase Server through 7.1.4 before 7.1.5 ...)
 	TODO: check
 CVE-2023-38372 (An unauthorized attacker who has obtained an IBM Watson IoT Platform 1 ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2023-38367 (IBM Cloud Pak Foundational Services Identity Provider (idP) API (IBM C ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2023-52484 (In the Linux kernel, the following vulnerability has been resolved:  i ...)
 	- linux 6.5.6-1
 	[bookworm] - linux 6.1.64-1
@@ -59716,7 +59716,7 @@ CVE-2023-27547
 CVE-2023-27546
 	RESERVED
 CVE-2023-27545 (IBM Watson CloudPak for Data Data Stores information disclosure 4.6.0  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2023-27544
 	RESERVED
 CVE-2023-27543
@@ -64136,17 +64136,17 @@ CVE-2023-25928 (IBM InfoSphere Information Server 11.7 is vulnerable to cross-si
 CVE-2023-25927 (IBM Security Verify Access 10.0.0, 10.0.1, 10.0.2, 10.0.3, 10.0.4, and ...)
 	NOT-FOR-US: IBM
 CVE-2023-25926 (IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2023-25925 (IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2023-25924 (IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and  ...)
 	NOT-FOR-US: IBM
 CVE-2023-25923 (IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and  ...)
 	NOT-FOR-US: IBM
 CVE-2023-25922 (IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2023-25921 (IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2023-25920
 	RESERVED
 CVE-2023-25919
@@ -180381,7 +180381,7 @@ CVE-2021-39092
 CVE-2021-39091
 	RESERVED
 CVE-2021-39090 (IBM Cloud Pak for Security (CP4S) 1.10.0.0 through 1.10.6.0 could allo ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-39089 (IBM Cloud Pak for Security (CP4S) 1.10.0.0 through 1.10.6.0 could allo ...)
 	NOT-FOR-US: IBM
 CVE-2021-39088 (IBM QRadar SIEM 7.3, 7.4, and 7.5 is vulnerable to local privilege esc ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1d6979714a4190b468a14c7f384c6e97390818b7

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1d6979714a4190b468a14c7f384c6e97390818b7
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240229/c1572e5b/attachment.htm>


More information about the debian-security-tracker-commits mailing list