[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Oct 22 13:55:04 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a561967f by Salvatore Bonaccorso at 2024-10-22T14:54:43+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,71 +1,71 @@
 CVE-2024-9677 (The insufficiently protected credentials vulnerability in the CLI comm ...)
-	TODO: check
+	NOT-FOR-US: Zyxel
 CVE-2024-9627 (The TeploBot - Telegram Bot for WP plugin for WordPress is vulnerable  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-9591 (The Category and Taxonomy Image plugin for WordPress is vulnerable to  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-9590 (The Category and Taxonomy Meta Fields plugin for WordPress is vulnerab ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-9589 (The Category and Taxonomy Meta Fields plugin for WordPress is vulnerab ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-9588 (The Category and Taxonomy Meta Fields plugin for WordPress is vulnerab ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-9541 (The News Kit Elementor Addons plugin for WordPress is vulnerable to Se ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-8901 (The  AWS ALB Route Directive Adapter For Istio repo https://github.com ...)
 	TODO: check
 CVE-2024-8852 (The All-in-One WP Migration and Backup plugin for WordPress is vulnera ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-47224 (A vulnerability in the AWV (Audio, Web and Video Conferencing) compone ...)
-	TODO: check
+	NOT-FOR-US: Mitel
 CVE-2024-41714 (A vulnerability in the Web Interface component of Mitel MiCollab throu ...)
-	TODO: check
+	NOT-FOR-US: Mitel
 CVE-2024-41713 (A vulnerability in the NuPoint Unified Messaging (NPM) component of Mi ...)
-	TODO: check
+	NOT-FOR-US: Mitel
 CVE-2024-41712 (A vulnerability in the Web Conferencing Component of Mitel MiCollab th ...)
-	TODO: check
+	NOT-FOR-US: Mitel
 CVE-2024-40091 (Vilo 5 Mesh WiFi System <= 5.16.1.33 lacks authentication in the Boa w ...)
-	TODO: check
+	NOT-FOR-US: Vilo 5 Mesh WiFi System
 CVE-2024-40090 (Vilo 5 Mesh WiFi System <= 5.16.1.33 is vulnerable to Information Disc ...)
-	TODO: check
+	NOT-FOR-US: Vilo 5 Mesh WiFi System
 CVE-2024-40089 (A Command Injection vulnerability in Vilo 5 Mesh WiFi System <= 5.16.1 ...)
-	TODO: check
+	NOT-FOR-US: Vilo 5 Mesh WiFi System
 CVE-2024-40088 (A Directory Traversal vulnerability in the Boa webserver of Vilo 5 Mes ...)
-	TODO: check
+	NOT-FOR-US: Vilo 5 Mesh WiFi System
 CVE-2024-40087 (Vilo 5 Mesh WiFi System <= 5.16.1.33 is vulnerable to Insecure Permiss ...)
-	TODO: check
+	NOT-FOR-US: Vilo 5 Mesh WiFi System
 CVE-2024-40086 (A Buffer Overflow vulnerability in the local_app_set_router_wifi_SSID_ ...)
-	TODO: check
+	NOT-FOR-US: Vilo 5 Mesh WiFi System
 CVE-2024-40085 (A Buffer Overflow vulnerability in the local_app_set_router_wan functi ...)
-	TODO: check
+	NOT-FOR-US: Vilo 5 Mesh WiFi System
 CVE-2024-40084 (A Buffer Overflow in the Boa webserver of Vilo 5 Mesh WiFi System <= 5 ...)
-	TODO: check
+	NOT-FOR-US: Vilo 5 Mesh WiFi System
 CVE-2024-40083 (A Buffer Overflow vulnerabilty in the local_app_set_router_token funct ...)
-	TODO: check
+	NOT-FOR-US: Vilo 5 Mesh WiFi System
 CVE-2024-35315 (A vulnerability in the Desktop Client of Mitel MiCollab through 9.7.1. ...)
-	TODO: check
+	NOT-FOR-US: Mitel
 CVE-2024-35314 (A vulnerability in the Desktop Client of Mitel MiCollab through 9.7.1. ...)
-	TODO: check
+	NOT-FOR-US: Mitel
 CVE-2024-35287 (A vulnerability in the NuPoint Messenger (NPM) component of Mitel MiCo ...)
-	TODO: check
+	NOT-FOR-US: Mitel
 CVE-2024-35286 (A vulnerability in NuPoint Messenger (NPM) of Mitel MiCollab through 9 ...)
-	TODO: check
+	NOT-FOR-US: Mitel
 CVE-2024-35285 (A vulnerability in NuPoint Messenger (NPM) of Mitel MiCollab through 9 ...)
-	TODO: check
+	NOT-FOR-US: Mitel
 CVE-2024-30160 (A vulnerability in the Suite Applications Services component of Mitel  ...)
-	TODO: check
+	NOT-FOR-US: Mitel
 CVE-2024-30159 (A vulnerability in the web conferencing component of Mitel MiCollab th ...)
-	TODO: check
+	NOT-FOR-US: Mitel
 CVE-2024-30158 (A vulnerability in the web conferencing component of Mitel MiCollab th ...)
-	TODO: check
+	NOT-FOR-US: Mitel
 CVE-2024-30157 (A vulnerability in the Suite Applications Services component of Mitel  ...)
-	TODO: check
+	NOT-FOR-US: Mitel
 CVE-2024-10125 (The  Amazon.ApplicationLoadBalancer.Identity.AspNetCore repo https://g ...)
 	TODO: check
 CVE-2024-10003 (The Rover IDX plugin for WordPress is vulnerable to unauthorized acces ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-10002 (The Rover IDX plugin for WordPress is vulnerable to Authentication Byp ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-52919 (In the Linux kernel, the following vulnerability has been resolved:  n ...)
 	- linux 6.5.10-1
 	[bookworm] - linux 6.1.64-1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a561967f4487b62009d6d1db7d38c498b16a1e97

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a561967f4487b62009d6d1db7d38c498b16a1e97
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241022/57794592/attachment.htm>


More information about the debian-security-tracker-commits mailing list