[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Mon Nov 4 09:05:04 GMT 2024



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
917ab235 by Moritz Muehlenhoff at 2024-11-04T10:04:39+01:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,85 +1,87 @@
+CVE-2024-23590
+	NOT-FOR-US: Apache Kylin (different from Kylin desktop environment)
 CVE-2024-48342
 	REJECTED
 CVE-2024-20124 (In vdec, there is a possible out of bounds read due to improper struct ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20123 (In vdec, there is a possible out of bounds read due to improper struct ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20122 (In vdec, there is a possible out of bounds read due to improper struct ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20121 (In KeyInstall, there is a possible out of bounds write due to a missin ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20120 (In KeyInstall, there is a possible out of bounds write due to a missin ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20119 (In mms, there is a possible out of bounds write due to an incorrect bo ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20118 (In mms, there is a possible out of bounds write due to an incorrect bo ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20117 (In vdec, there is a possible out of bounds read due to improper struct ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20115 (In ccu, there is a possible out of bounds write due to a missing bound ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20114 (In ccu, there is a possible out of bounds write due to a missing bound ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20113 (In ccu, there is a possible out of bounds write due to a missing bound ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20112 (In isp, there is a possible out of bounds read due to a missing bounds ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20111 (In ccu, there is a possible out of bounds write due to a missing bound ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20110 (In ccu, there is a possible out of bounds write due to a missing bound ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20109 (In ccu, there is a possible out of bounds write due to a missing bound ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20108 (In atci, there is a possible out of bounds write due to a missing boun ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20107 (In da, there is a possible out of bounds read due to a missing bounds  ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20106 (In m4u, there is a possible out of bounds write due to a missing bound ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-20104 (In da, there is a possible out of bounds write due to a missing bounds ...)
-	TODO: check
+	NOT-FOR-US: MediaTek
 CVE-2024-10761 (A vulnerability was found in Umbraco CMS 12.3.6. It has been classifie ...)
-	TODO: check
+	NOT-FOR-US: Umbraco CMS
 CVE-2024-10760 (A vulnerability was found in code-projects University Event Management ...)
-	TODO: check
+	NOT-FOR-US: code-projects University Event Management System
 CVE-2024-10759 (A vulnerability has been found in itsourcecode Farm Management System  ...)
-	TODO: check
+	NOT-FOR-US: itsourcecode Farm Management System
 CVE-2024-10758 (A vulnerability, which was classified as critical, was found in code-p ...)
-	TODO: check
+	NOT-FOR-US: code-projects/anirbandutta9 Content Management System and News-Buzz
 CVE-2024-10757 (A vulnerability, which was classified as problematic, has been found i ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2024-10756 (A vulnerability classified as problematic was found in PHPGurukul Onli ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2024-10755 (A vulnerability classified as problematic has been found in PHPGurukul ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2024-10754 (A vulnerability was found in PHPGurukul Online Shopping Portal 2.0. It ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2024-10753 (A vulnerability was found in PHPGurukul Online Shopping Portal 2.0. It ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2024-10752 (A vulnerability was found in Codezips Pet Shop Management System 1.0.  ...)
-	TODO: check
+	NOT-FOR-US: Codezips Pet Shop Management System
 CVE-2024-10751 (A vulnerability was found in Codezips ISP Management System 1.0 and cl ...)
-	TODO: check
+	NOT-FOR-US: Codezips ISP Management System
 CVE-2024-10750 (A vulnerability has been found in Tenda i22 1.0.0.3(4687) and classifi ...)
-	TODO: check
+	NOT-FOR-US: Tenda
 CVE-2024-10749 (A vulnerability, which was classified as critical, was found in ThinkA ...)
-	TODO: check
+	NOT-FOR-US: ThinkAdmin
 CVE-2024-10748 (A vulnerability, which was classified as problematic, has been found i ...)
-	TODO: check
+	NOT-FOR-US: Cosmote Greece What's Up App
 CVE-2024-10747 (A vulnerability classified as problematic was found in PHPGurukul Onli ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2024-10746 (A vulnerability classified as problematic has been found in PHPGurukul ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2024-10745 (A vulnerability was found in PHPGurukul Online Shopping Portal 2.0. It ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2024-10744 (A vulnerability was found in PHPGurukul Online Shopping Portal 2.0. It ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2024-10743 (A vulnerability was found in PHPGurukul Online Shopping Portal 2.0. It ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2024-10742 (A vulnerability was found in code-projects Wazifa System 1.0 and class ...)
-	TODO: check
+	NOT-FOR-US: code-projects Wazifa System
 CVE-2024-10741 (A vulnerability has been found in code-projects E-Health Care System 1 ...)
-	TODO: check
+	NOT-FOR-US: code-projects E-Health Care System
 CVE-2024-10740 (A vulnerability, which was classified as critical, was found in code-p ...)
 	NOT-FOR-US: code-projects E-Health Care System
 CVE-2024-10739 (A vulnerability, which was classified as critical, has been found in c ...)
@@ -116,11 +118,11 @@ CVE-2024-9191 (The Okta Device Access features, provided by the Okta Verify agen
 CVE-2024-8739 (The ReCaptcha Integration for WordPress plugin for WordPress is vulner ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2024-44234 (The issue was addressed with improved bounds checks. This issue is fix ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-44233 (The issue was addressed with improved bounds checks. This issue is fix ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-44232 (The issue was addressed with improved bounds checks. This issue is fix ...)
-	TODO: check
+	NOT-FOR-US: Apple
 CVE-2024-10702 (A vulnerability classified as critical has been found in code-projects ...)
 	NOT-FOR-US: code-projects Simple Car Rental System
 CVE-2024-10701 (A vulnerability was found in PHPGurukul Car Rental Portal 1.0. It has  ...)
@@ -171,7 +173,7 @@ CVE-2024-51245 (In DrayTek Vigor3900 1.5.1.3, attackers can inject malicious com
 CVE-2024-51244 (In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands  ...)
 	NOT-FOR-US: Draytek Vigor3900
 CVE-2024-49770 (`oak` is a middleware framework for Deno's native HTTP server, Deno De ...)
-	TODO: check
+	NOT-FOR-US: oak middleware
 CVE-2024-49256 (Incorrect Authorization vulnerability in WPChill Htaccess File Editor  ...)
 	NOT-FOR-US: WPChill Htaccess File Editor
 CVE-2024-48410 (Cross Site Scripting vulnerability in Camtrace v.9.16.2.1 allows a rem ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/917ab2358fdf629e5be45e147ef5d371ee5534e6

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/917ab2358fdf629e5be45e147ef5d371ee5534e6
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241104/a8eba619/attachment.htm>


More information about the debian-security-tracker-commits mailing list