[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Feb 29 20:32:29 GMT 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1be2c4d6 by Salvatore Bonaccorso at 2024-02-29T21:30:57+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,43 +1,43 @@
 CVE-2024-2009 (A vulnerability was found in Nway Pro 9. It has been rated as problema ...)
-	TODO: check
+	NOT-FOR-US: Nway Pro
 CVE-2024-2007 (A vulnerability was found in OpenBMB XAgent 1.0.0. It has been declare ...)
-	TODO: check
+	NOT-FOR-US: OpenBMB XAgent
 CVE-2024-2001 (A Cross-Site Scripting vulnerability in Cockpit CMS affecting version  ...)
-	TODO: check
+	NOT-FOR-US: Cockpit CMS
 CVE-2024-27906 (Apache Airflow, versions before 2.8.2, has a vulnerability that allows ...)
 	TODO: check
 CVE-2024-27662 (D-Link DIR-823G A1V1.0.2B05 was discovered to contain a Null-pointer d ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2024-27661 (D-Link DIR-823G A1V1.0.2B05 was discovered to contain Null-pointer der ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2024-27660 (D-Link DIR-823G A1V1.0.2B05 was discovered to contain a Null-pointer d ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2024-27659 (D-Link DIR-823G A1V1.0.2B05 was discovered to contain Null-pointer der ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2024-27658 (D-Link DIR-823G A1V1.0.2B05 was discovered to contain Null-pointer der ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2024-27657 (D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflo ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2024-27656 (D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflo ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2024-27655 (D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflo ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2024-27094 (OpenZeppelin Contracts is a library for secure smart contract developm ...)
-	TODO: check
+	NOT-FOR-US: OpenZeppelin Contracts
 CVE-2024-26548 (An issue in vivotek Network Camera v.FD8166A-VVTK-0204j allows a remot ...)
-	TODO: check
+	NOT-FOR-US: vivotek Network Camera
 CVE-2024-25811 (An access control issue in Dreamer CMS v4.0.1 allows attackers to down ...)
-	TODO: check
+	NOT-FOR-US: Dreamer CMS
 CVE-2024-25180 (An issue discovered in pdfmake 0.2.9 allows remote attackers to run ar ...)
-	TODO: check
+	NOT-FOR-US: pdfmake
 CVE-2024-24818 (EspoCRM is an Open Source Customer Relationship Management software. A ...)
-	TODO: check
+	NOT-FOR-US: EspoCRM
 CVE-2024-24246 (Heap Buffer Overflow vulnerability in qpdf 11.9.0 allows attackers to  ...)
 	TODO: check
 CVE-2024-24110 (SQL Injection vulnerability in crmeb_java before v1.3.4 allows attacke ...)
-	TODO: check
+	NOT-FOR-US: crmeb_java
 CVE-2024-20765 (Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are aff ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2024-1953 (Mattermost versions 8.1.x before 8.1.9, 9.2.x before 9.2.5, 9.3.0, and ...)
 	TODO: check
 CVE-2024-1952 (Mattermost version 8.1.x before 8.1.9 fails to sanitize data associate ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1be2c4d6c31bd854c3d83824dd61d263f14a7942

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1be2c4d6c31bd854c3d83824dd61d263f14a7942
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240229/8b798930/attachment.htm>


More information about the debian-security-tracker-commits mailing list