[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Jul 25 11:22:43 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0b5f97f3 by Salvatore Bonaccorso at 2024-07-25T12:22:10+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,7 +1,7 @@
 CVE-2024-7091 (An issue was discovered in GitLab CE/EE affecting all versions startin ...)
 	- gitlab <unfixed>
 CVE-2024-7081 (A vulnerability was found in itsourcecode Tailoring Management System  ...)
-	TODO: check
+	NOT-FOR-US: itsourcecode Tailoring Management System
 CVE-2024-7060 (An information disclosure vulnerability in GitLab CE/EE in project/gro ...)
 	- gitlab <unfixed>
 CVE-2024-7057 (An information disclosure vulnerability in GitLab CE/EE affecting all  ...)
@@ -9,35 +9,35 @@ CVE-2024-7057 (An information disclosure vulnerability in GitLab CE/EE affecting
 CVE-2024-7047 (A cross site scripting vulnerability exists in GitLab CE/EE affecting  ...)
 	- gitlab <unfixed>
 CVE-2024-6972 (In affected versions of Octopus Server under certain circumstances it  ...)
-	TODO: check
+	NOT-FOR-US: Octopus Server
 CVE-2024-5067 (An issue was discovered in GitLab EE affecting all versions starting f ...)
 	- gitlab <not-affected> (Vulnerable code not present; present only in experimental version)
 CVE-2024-4811 (In affected versions of Octopus Server under certain conditions, a use ...)
-	TODO: check
+	NOT-FOR-US: Octopus Server
 CVE-2024-41707 (An issue was discovered in Archer Platform 6 before 2024.06. Authentic ...)
-	TODO: check
+	NOT-FOR-US: Archer Platform
 CVE-2024-41706 (A stored XSS issue was discovered in Archer Platform 6 before version  ...)
-	TODO: check
+	NOT-FOR-US: Archer Platform
 CVE-2024-41705 (A stored XSS issue was discovered in Archer Platform 6.8 before 2024.0 ...)
-	TODO: check
+	NOT-FOR-US: Archer Platform
 CVE-2024-41466 (Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer  ...)
-	TODO: check
+	NOT-FOR-US: Tenda
 CVE-2024-41465 (Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer  ...)
-	TODO: check
+	NOT-FOR-US: Tenda
 CVE-2024-41464 (Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer  ...)
-	TODO: check
+	NOT-FOR-US: Tenda
 CVE-2024-41463 (Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer  ...)
-	TODO: check
+	NOT-FOR-US: Tenda
 CVE-2024-41462 (Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer  ...)
-	TODO: check
+	NOT-FOR-US: Tenda
 CVE-2024-41461 (Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer  ...)
-	TODO: check
+	NOT-FOR-US: Tenda
 CVE-2024-41460 (Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer  ...)
-	TODO: check
+	NOT-FOR-US: Tenda
 CVE-2024-41459 (Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer  ...)
-	TODO: check
+	NOT-FOR-US: Tenda
 CVE-2024-41136 (An authenticated command injection vulnerability exists in the HPE Aru ...)
-	TODO: check
+	NOT-FOR-US: HPE Aruba Networking EdgeConnect SD-WAN gateways
 CVE-2024-0231 (A resource misdirection vulnerability in GitLab CE/EE versions 12.0 pr ...)
 	TODO: check
 CVE-2024-41091



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0b5f97f3f038b013b420863856ccdcb5c2a6825c

-- 
This project does not include diff previews in email notifications.
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0b5f97f3f038b013b420863856ccdcb5c2a6825c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240725/f5038ee1/attachment.htm>


More information about the debian-security-tracker-commits mailing list