[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Nov 23 10:05:54 GMT 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
eb932ba0 by Salvatore Bonaccorso at 2024-11-23T11:05:34+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -267,7 +267,7 @@ CVE-2024-8356 (Visteon Infotainment VIP MCU Code Insufficient Validation of Data
 CVE-2024-8355 (Visteon Infotainment System DeviceManager iAP Serial Number SQL Inject ...)
 	NOT-FOR-US: Visteon Infotainment
 CVE-2024-8025 (Nikon NEF Codec Thumbnail Provider NRW File Parsing Heap-based Buffer  ...)
-	TODO: check
+	NOT-FOR-US: Nikon
 CVE-2024-7565 (SMARTBEAR SoapUI unpackageAll Directory Traversal Remote Code Executio ...)
 	NOT-FOR-US: SMARTBEAR SoapUI
 CVE-2024-7511 (Trimble SketchUp Pro SKP File Parsing Out-Of-Bounds Read Information D ...)
@@ -285,303 +285,303 @@ CVE-2024-7391 (ChargePoint Home Flex Bluetooth Low Energy Information Disclosure
 CVE-2024-7352 (PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Ex ...)
 	NOT-FOR-US: PDF-XChange Editor
 CVE-2024-7253 (NoMachine Uncontrolled Search Path Element Local Privilege Escalation  ...)
-	TODO: check
+	NOT-FOR-US: NoMachine
 CVE-2024-7245 (Panda Security Dome VPN Incorrect Permission Assignment Local Privileg ...)
-	TODO: check
+	NOT-FOR-US: Panda Security Dome
 CVE-2024-7244 (Panda Security Dome VPN DLL Hijacking Local Privilege Escalation Vulne ...)
-	TODO: check
+	NOT-FOR-US: Panda Security Dome
 CVE-2024-7243 (Panda Security Dome Link Following Local Privilege Escalation Vulnerab ...)
-	TODO: check
+	NOT-FOR-US: Panda Security Dome
 CVE-2024-7242 (Panda Security Dome Link Following Local Privilege Escalation Vulnerab ...)
-	TODO: check
+	NOT-FOR-US: Panda Security Dome
 CVE-2024-7241 (Panda Security Dome Link Following Local Privilege Escalation Vulnerab ...)
-	TODO: check
+	NOT-FOR-US: Panda Security Dome
 CVE-2024-7240 (F-Secure Total Link Following Local Privilege Escalation Vulnerability ...)
-	TODO: check
+	NOT-FOR-US: F-Secure Total
 CVE-2024-7239 (VIPRE Advanced Security Link Following Local Privilege Escalation Vuln ...)
-	TODO: check
+	NOT-FOR-US: VIPRE
 CVE-2024-7238 (VIPRE Advanced Security SBAMSvc Link Following Local Privilege Escalat ...)
-	TODO: check
+	NOT-FOR-US: VIPRE
 CVE-2024-7237 (AVG AntiVirus Free AVGSvc Link Following Local Privilege Escalation Vu ...)
-	TODO: check
+	NOT-FOR-US: AVG AntiVirus Free
 CVE-2024-7236 (AVG AntiVirus Free icarus Arbitrary File Creation Denial of Service Vu ...)
-	TODO: check
+	NOT-FOR-US: AVG AntiVirus Free
 CVE-2024-7235 (AVG AntiVirus Free Link Following Denial-of-Service Vulnerability. Thi ...)
-	TODO: check
+	NOT-FOR-US: AVG AntiVirus Free
 CVE-2024-7234 (AVG AntiVirus Free AVGSvc Link Following Local Privilege Escalation Vu ...)
-	TODO: check
+	NOT-FOR-US: AVG AntiVirus Free
 CVE-2024-7233 (Avast Free Antivirus AvastSvc Link Following Local Privilege Escalatio ...)
-	TODO: check
+	NOT-FOR-US: Avast Free Antivirus
 CVE-2024-7232 (Avast Free Antivirus AvastSvc Link Following Local Privilege Escalatio ...)
-	TODO: check
+	NOT-FOR-US: Avast Free Antivirus
 CVE-2024-7231 (Avast Cleanup Premium Link Following Local Privilege Escalation Vulner ...)
-	TODO: check
+	NOT-FOR-US: Avast
 CVE-2024-7230 (Avast Cleanup Premium Link Following Local Privilege Escalation Vulner ...)
-	TODO: check
+	NOT-FOR-US: Avast
 CVE-2024-7229 (Avast Cleanup Premium Link Following Local Privilege Escalation Vulner ...)
-	TODO: check
+	NOT-FOR-US: Avast
 CVE-2024-7228 (Avast Free Antivirus Link Following Denial-of-Service Vulnerability. T ...)
-	TODO: check
+	NOT-FOR-US: Avast
 CVE-2024-7227 (Avast Free Antivirus AvastSvc Link Following Local Privilege Escalatio ...)
-	TODO: check
+	NOT-FOR-US: Avast
 CVE-2024-6871 (G DATA Total Security Incorrect Permission Assignment Local Privilege  ...)
-	TODO: check
+	NOT-FOR-US: G DATA
 CVE-2024-6822 (IrfanView CIN File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-6821 (IrfanView CIN File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-6820 (IrfanView AWD File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-6819 (IrfanView PSP File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-6818 (IrfanView PSP File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-6817 (IrfanView PSP File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-6816 (IrfanView PSP File Parsing Heap-based Buffer Overflow Remote Code Exec ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-6815 (IrfanView RLE File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-6260 (Malwarebytes Antimalware Link Following Local Privilege Escalation Vul ...)
-	TODO: check
+	NOT-FOR-US: Malwarebytes Antimalware
 CVE-2024-6249 (Wyze Cam v3 TCP Traffic Handling Stack-Based Buffer Overflow Remote Co ...)
-	TODO: check
+	NOT-FOR-US: Wyze Cam
 CVE-2024-6248 (Wyze Cam v3 Cloud Infrastructure Improper Authentication Remote Code E ...)
-	TODO: check
+	NOT-FOR-US: Wyze Cam
 CVE-2024-6247 (Wyze Cam v3 Wi-Fi SSID OS Command Injection Remote Code Execution Vuln ...)
-	TODO: check
+	NOT-FOR-US: Wyze Cam
 CVE-2024-6246 (Wyze Cam v3 Realtek Wi-Fi Driver Heap-Based Buffer Overflow Remote Cod ...)
-	TODO: check
+	NOT-FOR-US: Wyze Cam
 CVE-2024-6233 (Check Point ZoneAlarm Extreme Security Link Following Local Privilege  ...)
-	TODO: check
+	NOT-FOR-US: Check Point ZoneAlarm
 CVE-2024-5877 (IrfanView PIC File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-5876 (IrfanView PSP File Parsing Heap-based Buffer Overflow Remote Code Exec ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-5875 (IrfanView SHP File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-5874 (IrfanView PNT File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-5722 (Logsign Unified SecOps Platform HTTP API Hard-coded Cryptographic Key  ...)
-	TODO: check
+	NOT-FOR-US: Logsign Unified SecOps Platform
 CVE-2024-5721 (Logsign Unified SecOps Platform Missing Authentication Remote Code Exe ...)
-	TODO: check
+	NOT-FOR-US: Logsign Unified SecOps Platform
 CVE-2024-5720 (Logsign Unified SecOps Platform Command Injection Remote Code Executio ...)
-	TODO: check
+	NOT-FOR-US: Logsign Unified SecOps Platform
 CVE-2024-5719 (Logsign Unified SecOps Platform Command Injection Remote Code Executio ...)
-	TODO: check
+	NOT-FOR-US: Logsign Unified SecOps Platform
 CVE-2024-5718 (Logsign Unified SecOps Platform Missing Authentication Remote Code Exe ...)
-	TODO: check
+	NOT-FOR-US: Logsign Unified SecOps Platform
 CVE-2024-5717 (Logsign Unified SecOps Platform Command Injection Remote Code Executio ...)
-	TODO: check
+	NOT-FOR-US: Logsign Unified SecOps Platform
 CVE-2024-5716 (Logsign Unified SecOps Platform Authentication Bypass Vulnerability. T ...)
-	TODO: check
+	NOT-FOR-US: Logsign Unified SecOps Platform
 CVE-2024-5581 (Allegra unzipFile Directory Traversal Remote Code Execution Vulnerabil ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2024-5580 (Allegra loadFieldMatch Deserialization of Untrusted Data Remote Code E ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2024-5579 (Allegra renderFieldMatch Deserialization of Untrusted Data Remote Code ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2024-5513 (Kofax Power PDF JP2 File Parsing Out-Of-Bounds Write Remote Code Execu ...)
 	TODO: check
 CVE-2024-5512 (Kofax Power PDF JP2 File Parsing Out-Of-Bounds Read Information Disclo ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2024-5511 (Kofax Power PDF JP2 File Parsing Out-Of-Bounds Read Remote Code Execut ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2024-5510 (Kofax Power PDF JP2 File Parsing Out-Of-Bounds Read Remote Code Execut ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2024-52034 (An OS Command Injection vulnerability exists within myPRO Manager. A p ...)
-	TODO: check
+	NOT-FOR-US: myPRO Manager
 CVE-2024-50054 (The back-end does not sufficiently verify the user-controlled filename ...)
-	TODO: check
+	NOT-FOR-US: myPRO
 CVE-2024-47407 (A parameter within a command does not properly validate input within m ...)
-	TODO: check
+	NOT-FOR-US: myPRO
 CVE-2024-47138 (The administrative interface listens by default on all interfaces on a ...)
-	TODO: check
+	NOT-FOR-US: myPRO
 CVE-2024-45369 (The web application uses a weak authentication mechanism to verify tha ...)
-	TODO: check
+	NOT-FOR-US: myPRO
 CVE-2024-41761 (IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5 ...)
 	NOT-FOR-US: IBM
 CVE-2024-30377 (G DATA Total Security Scan Server Link Following Local Privilege Escal ...)
-	TODO: check
+	NOT-FOR-US: G DATA
 CVE-2024-30376 (Famatech Advanced IP Scanner Uncontrolled Search Path Element Local Pr ...)
-	TODO: check
+	NOT-FOR-US: Famatech Advanced IP Scanner
 CVE-2024-30372 (Allegra getLinkText Server-Side Template Injection Remote Code Executi ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2024-1868 (G DATA Total Security Link Following Local Privilege Escalation Vulner ...)
-	TODO: check
+	NOT-FOR-US: G DATA
 CVE-2024-1867 (G DATA Total Security Link Following Local Privilege Escalation Vulner ...)
-	TODO: check
+	NOT-FOR-US: G DATA
 CVE-2024-11630 (A vulnerability has been found in E-Lins H685, H685f, H700, H720, H750 ...)
-	TODO: check
+	NOT-FOR-US: E-Lins
 CVE-2024-11619 (A vulnerability, which was classified as problematic, has been found i ...)
-	TODO: check
+	NOT-FOR-US: macrozheng mall
 CVE-2024-11612 (7-Zip CopyCoder Infinite Loop Denial-of-Service Vulnerability. This vu ...)
 	TODO: check
 CVE-2024-11586 (Ubuntu's implementation of pulseaudio can be crashed by a malicious pr ...)
 	TODO: check
 CVE-2024-11581 (Luxion KeyShot JT File Parsing Out-Of-Bounds Read Remote Code Executio ...)
-	TODO: check
+	NOT-FOR-US: Luxion KeyShot
 CVE-2024-11580 (Luxion KeyShot ABC File Parsing Heap-based Buffer Overflow Remote Code ...)
-	TODO: check
+	NOT-FOR-US: Luxion KeyShot
 CVE-2024-11579 (Luxion KeyShot OBJ File Parsing Out-Of-Bounds Write Remote Code Execut ...)
-	TODO: check
+	NOT-FOR-US: Luxion KeyShot
 CVE-2024-11578 (Luxion KeyShot 3DS File Parsing Stack-based Buffer Overflow Remote Cod ...)
-	TODO: check
+	NOT-FOR-US: Luxion KeyShot
 CVE-2024-11577 (Luxion KeyShot SKP File Parsing Out-Of-Bounds Write Remote Code Execut ...)
-	TODO: check
+	NOT-FOR-US: Luxion KeyShot
 CVE-2024-11576 (Luxion KeyShot 3DS File Parsing Heap-based Buffer Overflow Remote Code ...)
-	TODO: check
+	NOT-FOR-US: Luxion KeyShot
 CVE-2024-11575 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11574 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11573 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11572 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11571 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11570 (IrfanView DXF File Parsing Use-After-Free Remote Code Execution Vulner ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11569 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11568 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11567 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11566 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11565 (IrfanView CGM File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11564 (IrfanView DWG File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11563 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11562 (IrfanView CGM File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11561 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11560 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11559 (IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11558 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11557 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11556 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11555 (IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11554 (IrfanView DWG File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11553 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11552 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11551 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11550 (IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11549 (IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11548 (IrfanView DWG File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11547 (IrfanView DWG File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11546 (IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11545 (IrfanView DXF File Parsing Use-After-Free Remote Code Execution Vulner ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11544 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11543 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11542 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11541 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11540 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11539 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11538 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11537 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11536 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11535 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11534 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11533 (IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11532 (IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11531 (IrfanView CGM File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11530 (IrfanView CGM File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11529 (IrfanView DWG File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11528 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11527 (IrfanView DWG File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11526 (IrfanView CGM File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11525 (IrfanView DXF File Parsing Use-After-Free Remote Code Execution Vulner ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11524 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11523 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11522 (IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11521 (IrfanView DJVU File Parsing Use-After-Free Remote Code Execution Vulne ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11520 (IrfanView ARW File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11519 (IrfanView RLE File Parsing Memory Corruption Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11518 (IrfanView RLE File Parsing Heap-based Buffer Overflow Remote Code Exec ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11517 (IrfanView JPM File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11516 (IrfanView JPM File Parsing Heap-based Buffer Overflow Remote Code Exec ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11515 (IrfanView JPM File Parsing Out-Of-Bounds Write Remote Code Execution V ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11514 (IrfanView ECW File Parsing Heap-based Buffer Overflow Remote Code Exec ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11513 (IrfanView ECW File Parsing Heap-based Buffer Overflow Remote Code Exec ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11512 (IrfanView WBZ Plugin WB1 File Parsing Out-Of-Bounds Write Remote Code  ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11511 (IrfanView XCF Plugin XCF File Parsing Heap-based Buffer Overflow Remot ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11510 (IrfanView WBZ plugin WB1 File Parsing Stack-based Buffer Overflow Remo ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11509 (IrfanView SVG File Parsing Heap-based Buffer Overflow Remote Code Exec ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11508 (IrfanView DXF File Parsing Type Confusion Remote Code Execution Vulner ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11507 (IrfanView DXF File Parsing Type Confusion Remote Code Execution Vulner ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11506 (IrfanView DWG File Parsing Out-Of-Bounds Read Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: IrfanView
 CVE-2024-11463 (The DeBounce Email Validator plugin for WordPress is vulnerable to Ref ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-11446 (The Chessgame Shizzle plugin for WordPress is vulnerable to Reflected  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-11426 (The AutoListicle: Automatically Update Numbered List Articles plugin f ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-11415 (The WP-Orphanage Extended plugin for WordPress is vulnerable to Cross- ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-11408 (The Slotti Ajanvaraus plugin for WordPress is vulnerable to Stored Cro ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-11394 (Hugging Face Transformers Trax Model Deserialization of Untrusted Data ...)
 	TODO: check
 CVE-2024-11393 (Hugging Face Transformers MaskFormer Model Deserialization of Untruste ...)
@@ -589,89 +589,89 @@ CVE-2024-11393 (Hugging Face Transformers MaskFormer Model Deserialization of Un
 CVE-2024-11392 (Hugging Face Transformers MobileViTV2 Deserialization of Untrusted Dat ...)
 	TODO: check
 CVE-2024-11387 (The Easy Liveblogs plugin for WordPress is vulnerable to Stored Cross- ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-11362 (The Payments Plugin and Checkout Plugin for WooCommerce: Stripe, PayPa ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-11361 (The PDF Invoices & Packing Slips Generator for WooCommerce plugin for  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-11332 (The HIPAA Compliant Forms with Drag\u2019n\u2019Drop HIPAA Form Builde ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-11330 (The Custom CSS, JS & PHP plugin for WordPress is vulnerable to Reflect ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-11298
 	REJECTED
 CVE-2024-11296
 	REJECTED
 CVE-2024-11265 (The Increase Maximum Upload File Size | Increase Execution Time plugin ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-11188 (The Formidable Forms \u2013 Contact Form Plugin, Survey, Quiz, Payment ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-10961 (The Social Login plugin for WordPress is vulnerable to authentication  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-10886 (The Tribute Testimonials \u2013 WordPress Testimonial Grid/Slider plug ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-10880 (The JobBoardWP \u2013 Job Board Listings and Submissions plugin for Wo ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-10874 (The Quotes llama plugin for WordPress is vulnerable to Stored Cross-Si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-10873 (The LA-Studio Element Kit for Elementor plugin for WordPress is vulner ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-10869 (The WordPress Brute Force Protection \u2013 Stop Brute Force Attacks p ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-10868 (The Enter Addons \u2013 Ultimate Template Builder for Elementor plugin ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-10813 (The Product Table for WooCommerce by CodeAstrology (wooproducttable.co ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-10803 (The MP3 Sticky Player plugin for WordPress is vulnerable to Directory  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-10606 (The WP Travel Engine \u2013 Tour Booking Plugin \u2013 Tour Operator S ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-10537 (The WP User Manager \u2013 User Profile Builder & Membership plugin fo ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-10216 (The WP User Manager \u2013 User Profile Builder & Membership plugin fo ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-10116 (The Twitter Follow Button plugin for WordPress is vulnerable to Stored ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-0138 (NVIDIA Base Command Manager contains a missing authentication vulnerab ...)
-	TODO: check
+	NOT-FOR-US: NVIDIA Base Command Manager
 CVE-2024-0122 (NVIDIA Delegated Licensing Service for all appliance platforms contain ...)
-	TODO: check
+	NOT-FOR-US: NVIDIA
 CVE-2023-52335 (Advantech iView ConfigurationServlet SQL Injection Information Disclos ...)
-	TODO: check
+	NOT-FOR-US: Advantech
 CVE-2023-52334 (Allegra downloadAttachmentGlobal Directory Traversal Information Discl ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2023-52333 (Allegra saveFile Directory Traversal Remote Code Execution Vulnerabili ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2023-52332 (Allegra serveMathJaxLibraries Directory Traversal Information Disclosu ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2023-51648 (Allegra getFileContentAsString Directory Traversal Information Disclos ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2023-51647 (Allegra saveInlineEdit Directory Traversal Remote Code Execution Vulne ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2023-51646 (Allegra uploadSimpleFile Directory Traversal Remote Code Execution Vul ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2023-51645 (Allegra unzipFile Directory Traversal Remote Code Execution Vulnerabil ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2023-51644 (Allegra SiteConfigAction Improper Access Control Remote Code Execution ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2023-51643 (Allegra uploadFile Directory Traversal Remote Code Execution Vulnerabi ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2023-51642 (Allegra loadFieldMatch Deserialization of Untrusted Data Remote Code E ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2023-51641 (Allegra renderFieldMatch Deserialization of Unstrusted Data Remote Cod ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2023-51640 (Allegra extarctZippedFile Directory Traversal Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2023-51639 (Allegra downloadExportedChart Directory Traversal Authentication Bypas ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2023-51638 (Allegra Hard-coded Credentials Authentication Bypass Vulnerability. Th ...)
-	TODO: check
+	NOT-FOR-US: Allegra
 CVE-2023-51635 (NETGEAR RAX30 fing_dil Stack-based Buffer Overflow Remote Code Executi ...)
-	TODO: check
+	NOT-FOR-US: NETGEAR
 CVE-2023-51634 (NETGEAR RAX30 Improper Certificate Validation Remote Code Execution Vu ...)
-	TODO: check
+	NOT-FOR-US: NETGEAR
 CVE-2023-39470 (PaperCut NG print.script.sandboxed Exposed Dangerous Function Remote C ...)
-	TODO: check
+	NOT-FOR-US: PaperCut
 CVE-2024-7882 (Improper Neutralization of Special Elements used in an SQL Command ('S ...)
 	NOT-FOR-US: Special Minds Design and Software e-Commerce
 CVE-2024-7837 (Improper Neutralization of Special Elements used in an SQL Command ('S ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/eb932ba03b1ed27a467c6ecdf7022d5642750c12

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/eb932ba03b1ed27a467c6ecdf7022d5642750c12
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241123/030a3728/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list