[Git][security-tracker-team/security-tracker][master] Process more NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jan 22 21:17:55 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4922c360 by Salvatore Bonaccorso at 2025-01-22T22:17:28+01:00
Process more NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -201,7 +201,7 @@ CVE-2025-20156 (A vulnerability in the REST API of Cisco Meeting Management coul
 CVE-2025-20128 (A vulnerability in the Object Linking and Embedding 2 (OLE2) decryptio ...)
 	TODO: check
 CVE-2025-0651 (Improper Privilege Management vulnerability in Cloudflare WARP on Wind ...)
-	TODO: check
+	NOT-FOR-US: Cloudflare
 CVE-2025-0638 (The initial code parsing the manifest did not check the content of the ...)
 	TODO: check
 CVE-2025-0612 (Out of bounds memory access in V8 in Google Chrome prior to 132.0.6834 ...)
@@ -209,17 +209,17 @@ CVE-2025-0612 (Out of bounds memory access in V8 in Google Chrome prior to 132.0
 CVE-2025-0611 (Object corruption in V8 in Google Chrome prior to 132.0.6834.110 allow ...)
 	TODO: check
 CVE-2025-0604 (A flaw was found in Keycloak. When an Active Directory user resets the ...)
-	TODO: check
+	NOT-FOR-US: Keycloak
 CVE-2025-0395 (When the assert() function in the GNU C Library versions 2.13 to 2.40  ...)
 	TODO: check
 CVE-2024-9310 (By utilizing software-defined radios and a custom low-latency processi ...)
 	TODO: check
 CVE-2024-56914 (D-Link DSL-3782 v1.01 is vulnerable to Buffer Overflow in /New_GUI/Par ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2024-55957 (In Thermo Fisher Scientific Xcalibur before 4.7 SP1 and Thermo Foundat ...)
-	TODO: check
+	NOT-FOR-US: Thermo Fisher Scientific Xcalibur
 CVE-2024-55488 (A stored cross-site scripting (XSS) vulnerability in Umbraco CMS v14.3 ...)
-	TODO: check
+	NOT-FOR-US: Umbraco CMS
 CVE-2024-51457 (IBM Robotic Process Automation for Cloud Pak 21.0.0 through 21.0.7.19  ...)
 	NOT-FOR-US: IBM
 CVE-2024-42013 (In GRAU DATA Blocky before 3.1, Blocky-Gui has a Client-Side Enforceme ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4922c36065041f56a1689ad82de302080da7d2b2

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4922c36065041f56a1689ad82de302080da7d2b2
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250122/ef786f93/attachment.htm>


More information about the debian-security-tracker-commits mailing list