[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Tue Jul 30 10:12:46 BST 2024



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
853a2b9e by Moritz Muehlenhoff at 2024-07-30T11:12:05+02:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,67 +1,67 @@
 CVE-2024-7252 (Comodo Internet Security Pro cmdagent Link Following Local Privilege E ...)
-	TODO: check
+	NOT-FOR-US: Comodo
 CVE-2024-7251 (Comodo Internet Security Pro cmdagent Link Following Local Privilege E ...)
-	TODO: check
+	NOT-FOR-US: Comodo
 CVE-2024-7250 (Comodo Internet Security Pro cmdagent Link Following Local Privilege E ...)
-	TODO: check
+	NOT-FOR-US: Comodo
 CVE-2024-7249 (Comodo Firewall Link Following Local Privilege Escalation Vulnerabilit ...)
-	TODO: check
+	NOT-FOR-US: Comodo
 CVE-2024-7248 (Comodo Internet Security Pro Directory Traversal Local Privilege Escal ...)
-	TODO: check
+	NOT-FOR-US: Comodo
 CVE-2024-7224 (A vulnerability was found in SourceCodester Lot Reservation Management ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester
 CVE-2024-7223 (A vulnerability has been found in SourceCodester Lot Reservation Manag ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester
 CVE-2024-7222 (A vulnerability, which was classified as critical, was found in Source ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester
 CVE-2024-7221 (A vulnerability, which was classified as critical, has been found in S ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester
 CVE-2024-7220 (A vulnerability classified as critical was found in SourceCodester Sch ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester
 CVE-2024-7219 (A vulnerability classified as critical has been found in SourceCodeste ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester
 CVE-2024-7218 (A vulnerability was found in SourceCodester School Log Management Syst ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester
 CVE-2024-7217 (A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been  ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-7216 (A vulnerability was found in TOTOLINK LR1200 9.3.1cu.2832. It has been ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-7215 (A vulnerability was found in TOTOLINK LR1200 9.3.1cu.2832 and classifi ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-7214 (A vulnerability has been found in TOTOLINK LR350 9.3.5u.6369_B20220309 ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-7213 (A vulnerability, which was classified as critical, was found in TOTOLI ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-7212 (A vulnerability, which was classified as critical, has been found in T ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-7100 (The Bold Page Builder plugin for WordPress is vulnerable to Stored Cro ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-6620 (Honeywell PC42t, PC42tp, and PC42d Printers, T10.19.020016 to T10.20.0 ...)
-	TODO: check
+	NOT-FOR-US: Honeywell
 CVE-2024-6536 (The Zephyr Project Manager WordPress plugin before 3.3.99 does not san ...)
-	TODO: check
+	NOT-FOR-US: Comodo Internet Security Pro
 CVE-2024-6230 (The \u067e\u0644\u0627\u06af\u06cc\u0646 \u067e\u0631\u062f\u0627\u062 ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-6226 (The WpStickyBar  WordPress plugin through 2.1.0 does not sanitise and  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-6224 (The Send email only on Reply to My Comment WordPress plugin through 1. ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-6223 (The Send email only on Reply to My Comment WordPress plugin through 1. ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-6021 (The Donation Block For PayPal WordPress plugin through 2.1.0 does not  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5975 (The CZ Loan Management WordPress plugin through 1.1 does not properly  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5809 (The WP Ajax Contact Form WordPress plugin through 2.2.2 does not sanit ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5808 (The WP Ajax Contact Form WordPress plugin through 2.2.2 does not have  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5807 (The Business Card WordPress plugin through 1.0.0 does not prevent high ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5765 (The WpStickyBar  WordPress plugin through 2.1.0 does not properly sani ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4096 (The Responsive Tabs WordPress plugin through 4.0.8 does not sanitise a ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-42231 (In the Linux kernel, the following vulnerability has been resolved:  b ...)
 	TODO: check
 CVE-2024-42230 (In the Linux kernel, the following vulnerability has been resolved:  p ...)
@@ -209,179 +209,179 @@ CVE-2024-42100 (In the Linux kernel, the following vulnerability has been resolv
 CVE-2024-42099 (In the Linux kernel, the following vulnerability has been resolved:  s ...)
 	TODO: check
 CVE-2024-40836 (A logic issue was addressed with improved checks. This issue is fixed  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40835 (A logic issue was addressed with improved checks. This issue is fixed  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40834 (This issue was addressed by adding an additional prompt for user conse ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40833 (A logic issue was addressed with improved checks. This issue is fixed  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40832 (The issue was addressed with improved checks. This issue is fixed in m ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40829 (The issue was addressed with improved checks. This issue is fixed in w ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40828 (The issue was addressed with improved checks. This issue is fixed in m ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40827 (The issue was addressed with improved checks. This issue is fixed in m ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40824 (This issue was addressed through improved state management. This issue ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40823 (The issue was addressed with improved checks. This issue is fixed in m ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40822 (This issue was addressed by restricting options offered on a locked de ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40821 (An access issue was addressed with additional sandbox restrictions. Th ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40818 (This issue was addressed by restricting options offered on a locked de ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40817 (The issue was addressed with improved UI handling. This issue is fixed ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40816 (An out-of-bounds read was addressed with improved input validation. Th ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40815 (A race condition was addressed with additional validation. This issue  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40814 (A downgrade issue was addressed with additional code-signing restricti ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40813 (A lock screen issue was addressed with improved state management. This ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40812 (A logic issue was addressed with improved checks. This issue is fixed  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40811 (The issue was addressed with improved checks. This issue is fixed in m ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40809 (A logic issue was addressed with improved checks. This issue is fixed  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40807 (A logic issue was addressed with improved checks. This issue is fixed  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40806 (An out-of-bounds read issue was addressed with improved input validati ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40805 (A permissions issue was addressed with additional restrictions. This i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40804 (The issue was addressed with improved checks. This issue is fixed in m ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40803 (A type confusion issue was addressed with improved checks. This issue  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40802 (The issue was addressed with improved checks. This issue is fixed in m ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40800 (An input validation issue was addressed with improved input validation ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40799 (An out-of-bounds read issue was addressed with improved input validati ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40798 (This issue was addressed with improved redaction of sensitive informat ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40796 (A privacy issue was addressed with improved private data redaction for ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40795 (This issue was addressed with improved data protection. This issue is  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40794 (This issue was addressed through improved state management. This issue ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40793 (This issue was addressed by removing the vulnerable code. This issue i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40789 (An out-of-bounds access issue was addressed with improved bounds check ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40788 (A type confusion issue was addressed with improved memory handling. Th ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40787 (This issue was addressed by adding an additional prompt for user conse ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40786 (This issue was addressed through improved state management. This issue ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40785 (This issue was addressed with improved checks. This issue is fixed in  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40784 (An integer overflow was addressed with improved input validation. This ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40783 (The issue was addressed with improved restriction of data container ac ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40782 (A use-after-free issue was addressed with improved memory management.  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40781 (The issue was addressed with improved checks. This issue is fixed in m ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40780 (An out-of-bounds read was addressed with improved bounds checking. Thi ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40779 (An out-of-bounds read was addressed with improved bounds checking. Thi ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40778 (An authentication issue was addressed with improved state management.  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40777 (An out-of-bounds access issue was addressed with improved bounds check ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40776 (A use-after-free issue was addressed with improved memory management.  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40775 (A downgrade issue was addressed with additional code-signing restricti ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40774 (A downgrade issue was addressed with additional code-signing restricti ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-40094 (GraphQL Java (aka graphql-java) before 21.5 does not properly consider ...)
 	TODO: check
 CVE-2024-3986 (The SportsPress  WordPress plugin before 2.7.22 does not sanitise and  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3669 (The Web Directory Free WordPress plugin before 1.7.2 does not sanitise ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3219 (There is a MEDIUM severity vulnerability affecting CPython.  The  \u20 ...)
 	TODO: check
 CVE-2024-3113 (The FormFlow: WhatsApp Social and Advanced Form Builder with Easy Lead ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-27888 (A permissions issue was addressed by removing vulnerable code and addi ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-27887 (A path handling issue was addressed with improved validation. This iss ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-27886 (A logic issue was addressed with improved restrictions. This issue is  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-27884 (This issue was addressed with a new entitlement. This issue is fixed i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-27883 (A permissions issue was addressed with additional restrictions. This i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-27882 (A permissions issue was addressed with additional restrictions. This i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-27881 (A privacy issue was addressed with improved private data redaction for ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-27878 (A buffer overflow issue was addressed with improved memory handling. T ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-27877 (The issue was addressed with improved memory handling. This issue is f ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-27873 (An out-of-bounds write issue was addressed with improved input validat ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-27872 (This issue was addressed with improved validation of symlinks. This is ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-27871 (A path handling issue was addressed with improved validation. This iss ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-27863 (An information disclosure issue was addressed with improved private da ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-27862 (A logic issue was addressed with improved state management. This issue ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-27853 (This issue was addressed with improved checks. This issue is fixed in  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-27826 (The issue was addressed with improved memory handling. This issue is f ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-27823 (A race condition was addressed with improved locking. This issue is fi ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-27809 (A privacy issue was addressed with improved private data redaction for ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-23261 (A logic issue was addressed with improved state management. This issue ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-1287 (The pmpro-member-directory WordPress plugin before 1.2.6 does not prev ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-1286 (The pmpro-membership-maps WordPress plugin before 0.7 does not prevent ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-52888 (In the Linux kernel, the following vulnerability has been resolved:  m ...)
 	TODO: check
 CVE-2023-42959 (A race condition was addressed with improved state handling. This issu ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2023-42958 (A permissions issue was addressed with additional restrictions. This i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2023-42957 (A permissions issue was addressed with additional restrictions. This i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2023-42949 (This issue was addressed with improved data protection. This issue is  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2023-42948 (This issue was addressed through improved state management. This issue ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2023-42943 (A privacy issue was addressed with improved private data redaction for ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2023-42925 (The issue was addressed with improved restriction of data container ac ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2023-42918 (A permissions issue was addressed with additional restrictions. This i ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2023-40398 (This issue was addressed with improved checks. This issue is fixed in  ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2023-40396 (The issue was addressed with improved memory handling. This issue is f ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-7200 (A vulnerability, which was classified as problematic, has been found i ...)
 	NOT-FOR-US: SourceCodester Complaints Report Management System
 CVE-2024-7199 (A vulnerability classified as critical was found in SourceCodester Com ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/853a2b9e029a65d0dd933a8cd1172ffd48913073

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/853a2b9e029a65d0dd933a8cd1172ffd48913073
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240730/52a789cc/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list