[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu May 23 21:34:20 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
7487454e by Salvatore Bonaccorso at 2024-05-23T22:33:44+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,5 +1,5 @@
 CVE-2024-5264 (Network Transfer with AES KHT in Thales Luna EFT 2.1 and above allows  ...)
-	TODO: check
+	NOT-FOR-US: Thales Luna EFT
 CVE-2024-5258 (An authorization vulnerability exists within GitLab from versions 16.1 ...)
 	TODO: check
 CVE-2024-5202 (Arbitrary File Readin OpenText Dimensions RM allowsauthenticated users ...)
@@ -11,17 +11,17 @@ CVE-2024-5168 (Improper access control vulnerability in Prodys' Quantum Audio co
 CVE-2024-5165 (In Eclipse Ditto versions 3.0.0 to 3.5.5, the user input of several in ...)
 	TODO: check
 CVE-2024-5143 (A user with device administrative privileges can change existing SMTP  ...)
-	TODO: check
+	NOT-FOR-US: HP
 CVE-2024-5085 (The Hash Form \u2013 Drag & Drop Form Builder plugin for WordPress is  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5084 (The Hash Form \u2013 Drag & Drop Form Builder plugin for WordPress is  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4779 (The Unlimited Elements For Elementor (Free Widgets, Addons, Templates) ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4575 (The LayerSlider plugin for WordPress is vulnerable to Stored Cross-Sit ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4471 (The 140+ Widgets | Best Addons For Elementor \u2013 FREE for WordPress ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4378 (The Premium Addons for Elementor plugin for WordPress is vulnerable to ...)
 	TODO: check
 CVE-2024-4365 (The Advanced iFrame plugin for WordPress is vulnerable to Stored Cross ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7487454e30ef95a97c527d8cc49ecb61d5ebced6

-- 
This project does not include diff previews in email notifications.
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7487454e30ef95a97c527d8cc49ecb61d5ebced6
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240523/016c112c/attachment.htm>


More information about the debian-security-tracker-commits mailing list