[Git][security-tracker-team/security-tracker][master] cleanup rejects, OpenAnolis Linux issues will be reassigned by the kernel CNA

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed May 29 09:22:53 BST 2024



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f0480754 by Moritz Muehlenhoff at 2024-05-29T10:21:49+02:00
cleanup rejects, OpenAnolis Linux issues will be reassigned by the kernel CNA

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -7155,7 +7155,6 @@ CVE-2024-4840 (An flaw was found in the OpenStack Platform (RHOSP) director, a t
 	NOT-FOR-US: Red Hat OpenStack Platform
 CVE-2024-4810
 	REJECTED
-	TODO: check
 CVE-2024-4712 (An arbitrary file creation vulnerability exists in PaperCut NG/MF that ...)
 	NOT-FOR-US: PaperCut NG/MF
 CVE-2024-4445 (The WP Compress \u2013 Image Optimizer [All-In-One] plugin for WordPre ...)
@@ -17361,18 +17360,8 @@ CVE-2024-3651 [potential DoS via resource consumption via specially crafted inpu
 	NOTE: Fixed by: https://github.com/kjd/idna/commit/5beb28b9dd77912c0dd656d8b0fdba3eb80222e7 (v3.7)
 CVE-2024-24863
 	REJECTED
-	- linux <unfixed>
-	NOTE: https://git.kernel.org/linus/a1f95aede6285dba6dd036d907196f35ae3a11ea (6.10-rc1)
-	NOTE: https://bugzilla.openanolis.cn/show_bug.cgi?id=8750
 CVE-2024-24862
 	REJECTED
-	- linux 6.8.9-1
-	[bookworm] - linux <not-affected> (Vulnerable code not present)
-	[bullseye] - linux <not-affected> (Vulnerable code not present)
-	[buster] - linux <not-affected> (Vulnerable code not present)
-	NOTE: https://git.kernel.org/linus/1f886a7bfb3faf4c1021e73f045538008ce7634e (6.9-rc3)
-	NOTE: https://bugzilla.openanolis.cn/show_bug.cgi?id=8748
-	NOTE: Duplicate of CVE-2024-35883.
 CVE-2024-3740 (A vulnerability, which was classified as critical, has been found in c ...)
 	NOT-FOR-US: cym1102 nginxWebUI
 CVE-2024-3739 (A vulnerability classified as critical was found in cym1102 nginxWebUI ...)
@@ -156257,7 +156246,6 @@ CVE-2022-1971 (The NextCellent Gallery WordPress plugin through 1.9.35 does not
 	NOT-FOR-US: WordPress plugin
 CVE-2022-1970
 	REJECTED
-	NOT-FOR-US: Keycloak
 CVE-2022-1969 (The Mobile browser color select plugin for WordPress is vulnerable to  ...)
 	NOT-FOR-US: Mobile browser color select plugin for WordPress
 CVE-2022-1968 (Use After Free in GitHub repository vim/vim prior to 8.2.)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f048075425b407102fd967de378d4ea6078f29aa

-- 
This project does not include diff previews in email notifications.
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f048075425b407102fd967de378d4ea6078f29aa
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240529/e5506ce8/attachment.htm>


More information about the debian-security-tracker-commits mailing list