[Git][security-tracker-team/security-tracker][master] auto-nfu: Extend Oracle rule

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Jun 17 09:08:55 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
580a05e6 by Moritz Muehlenhoff at 2026-06-17T10:08:46+02:00
auto-nfu: Extend Oracle rule

- - - - -


2 changed files:

- data/CVE/list
- data/packages/nfu.yaml


Changes:

=====================================
data/CVE/list
=====================================
@@ -49,13 +49,13 @@ CVE-2026-47747 (stable-diffusion.cpp is a pure C/C++ library for running diffusi
 CVE-2026-47277 (Runtipi is a personal homeserver orchestrator. In versions 4.9.1 throu ...)
 	TODO: check
 CVE-2026-46979 (Vulnerability in the PeopleSoft Enterprise CS Campus Community product ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46978 (Vulnerability in the Oracle Solaris product of Oracle Systems (compone ...)
 	NOT-FOR-US: Oracle
 CVE-2026-46977 (Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualiza ...)
 	- virtualbox <unfixed>
 CVE-2026-46976 (Vulnerability in the Oracle Public Sector Payroll product of Oracle E- ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46974 (Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualiza ...)
 	- virtualbox <unfixed>
 CVE-2026-46973 (Vulnerability in the Oracle Outsourced Mfg for Discrete Industries pro ...)
@@ -63,13 +63,13 @@ CVE-2026-46973 (Vulnerability in the Oracle Outsourced Mfg for Discrete Industri
 CVE-2026-46972 (Vulnerability in the Oracle Outsourced Mfg for Discrete Industries pro ...)
 	TODO: check
 CVE-2026-46971 (Vulnerability in the Oracle HR Intelligence product of Oracle E-Busine ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46970 (Vulnerability in the Oracle HR Intelligence product of Oracle E-Busine ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46969 (Vulnerability in the Oracle Financials for EMEA product of Oracle E-Bu ...)
 	TODO: check
 CVE-2026-46967 (Vulnerability in the Oracle Public Sector Financials (International) p ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46966 (Vulnerability in the Oracle Universal Work Queue product of Oracle E-B ...)
 	NOT-FOR-US: Oracle
 CVE-2026-46965 (Vulnerability in the Oracle Universal Work Queue product of Oracle E-B ...)
@@ -85,79 +85,79 @@ CVE-2026-46961 (Vulnerability in the Oracle Project Portfolio Analysis product o
 CVE-2026-46960 (Vulnerability in the Oracle Project Portfolio Analysis product of Orac ...)
 	TODO: check
 CVE-2026-46959 (Vulnerability in the Oracle Subledger Accounting product of Oracle E-B ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46958 (Vulnerability in the Oracle Subledger Accounting product of Oracle E-B ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46957 (Vulnerability in the Oracle iSupplier Portal product of Oracle E-Busin ...)
 	NOT-FOR-US: Oracle
 CVE-2026-46956 (Vulnerability in the Oracle Property Manager product of Oracle E-Busin ...)
 	TODO: check
 CVE-2026-46955 (Vulnerability in the Oracle Human Resources product of Oracle E-Busine ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46953 (Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Sui ...)
 	TODO: check
 CVE-2026-46952 (Vulnerability in the Oracle Quality product of Oracle E-Business Suite ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46951 (Vulnerability in the Oracle Quality product of Oracle E-Business Suite ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46950 (Vulnerability in the Oracle Advanced Outbound Telephony product of Ora ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46949 (Vulnerability in the Oracle Advanced Outbound Telephony product of Ora ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46947 (Vulnerability in the Oracle Advanced Outbound Telephony product of Ora ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46946 (Vulnerability in the Oracle iSupport product of Oracle E-Business Suit ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46945 (Vulnerability in the Oracle iSupport product of Oracle E-Business Suit ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46944 (Vulnerability in the Oracle iSupport product of Oracle E-Business Suit ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46942 (Vulnerability in the Oracle Process Manufacturing Process Planning pro ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46940 (Vulnerability in the Oracle Cost Management product of Oracle E-Busine ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46939 (Vulnerability in the Oracle Configure to Order product of Oracle E-Bus ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46938 (Vulnerability in the Oracle Cost Management product of Oracle E-Busine ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46937 (Vulnerability in the Oracle iSetup product of Oracle E-Business Suite  ...)
 	TODO: check
 CVE-2026-46935 (Vulnerability in the Oracle Complex Maintenance, Repair and Overhaul p ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46934 (Vulnerability in the Oracle Complex Maintenance, Repair and Overhaul p ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46933 (Vulnerability in the Oracle Applications Manager product of Oracle E-B ...)
 	NOT-FOR-US: Oracle
 CVE-2026-46932 (Vulnerability in the Oracle Enterprise Asset Management product of Ora ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46931 (Vulnerability in the Oracle Enterprise Asset Management product of Ora ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46930 (Vulnerability in the Oracle In-Memory Cost Management for Discrete Ind ...)
 	TODO: check
 CVE-2026-46929 (Vulnerability in the Oracle Cost Management product of Oracle E-Busine ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46928 (Vulnerability in the Oracle Spares Management product of Oracle E-Busi ...)
 	TODO: check
 CVE-2026-46927 (Vulnerability in the Oracle Receivables product of Oracle E-Business S ...)
 	TODO: check
 CVE-2026-46926 (Vulnerability in the Siebel CRM Cloud Applications product of Oracle S ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46925 (Vulnerability in the Siebel CRM Cloud Applications product of Oracle S ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46922 (Vulnerability in the Oracle HR Intelligence product of Oracle E-Busine ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46921 (Vulnerability in the Siebel CRM Cloud Applications product of Oracle S ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46920 (Vulnerability in the Siebel CRM Cloud Applications product of Oracle S ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46919 (Vulnerability in the Siebel CRM Cloud Applications product of Oracle S ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46918 (Vulnerability in the Oracle Process Manufacturing Product Development  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46916 (Vulnerability in the Oracle Process Manufacturing Product Development  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46915 (Vulnerability in the Oracle Complex Maintenance, Repair and Overhaul p ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46914 (Vulnerability in the Oracle Solaris product of Oracle Systems (compone ...)
 	NOT-FOR-US: Oracle
 CVE-2026-46913 (Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle  ...)
@@ -165,7 +165,7 @@ CVE-2026-46913 (Vulnerability in the JD Edwards EnterpriseOne Tools product of O
 CVE-2026-46912 (Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle  ...)
 	NOT-FOR-US: Oracle
 CVE-2026-46911 (Vulnerability in the JD Edwards EnterpriseOne Project Costing product  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46910 (Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle  ...)
 	NOT-FOR-US: Oracle
 CVE-2026-46909 (Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle  ...)
@@ -173,7 +173,7 @@ CVE-2026-46909 (Vulnerability in the JD Edwards EnterpriseOne Tools product of O
 CVE-2026-46908 (Vulnerability in the JD Edwards EnterpriseOne Accounts Payable product ...)
 	TODO: check
 CVE-2026-46907 (Vulnerability in the JD Edwards EnterpriseOne Order Promising product  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46906 (Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle  ...)
 	NOT-FOR-US: Oracle
 CVE-2026-46905 (Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle  ...)
@@ -183,21 +183,21 @@ CVE-2026-46904 (Vulnerability in the JD Edwards EnterpriseOne Tools product of O
 CVE-2026-46903 (Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle  ...)
 	NOT-FOR-US: Oracle
 CVE-2026-46902 (Vulnerability in the Oracle Enterprise Command Center Framework produc ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46901 (Vulnerability in the Oracle Enterprise Command Center Framework produc ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46900 (Vulnerability in the Oracle Enterprise Command Center Framework produc ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46899 (Vulnerability in the Oracle Enterprise Command Center Framework produc ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46898 (Vulnerability in the Oracle Enterprise Command Center Framework produc ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46897 (Vulnerability in the Oracle Enterprise Command Center Framework produc ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46896 (Vulnerability in the Oracle Enterprise Command Center Framework produc ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46895 (Vulnerability in the Oracle Enterprise Command Center Framework produc ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46894 (Vulnerability in the Oracle iSupplier Portal product of Oracle E-Busin ...)
 	NOT-FOR-US: Oracle
 CVE-2026-46893 (Vulnerability in the JD Edwards EnterpriseOne General Ledger product o ...)
@@ -207,19 +207,19 @@ CVE-2026-46892 (Vulnerability in the JD Edwards EnterpriseOne Human Resources Ma
 CVE-2026-46891 (Vulnerability in the JD Edwards EnterpriseOne Accounts Payable product ...)
 	TODO: check
 CVE-2026-46890 (Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46889 (Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46888 (Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CR ...)
 	NOT-FOR-US: Oracle
 CVE-2026-46887 (Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46886 (Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46885 (Vulnerability in the Siebel CRM Integration product of Oracle Siebel C ...)
 	TODO: check
 CVE-2026-46884 (Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46883 (Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle  ...)
 	NOT-FOR-US: Oracle
 CVE-2026-46882 (Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle  ...)
@@ -283,23 +283,23 @@ CVE-2026-46853 (Vulnerability in the Oracle Enterprise Manager Base Platform pro
 CVE-2026-46852 (Vulnerability in the Oracle Enterprise Manager Base Platform product o ...)
 	NOT-FOR-US: Oracle
 CVE-2026-46851 (Vulnerability in the PeopleSoft Enterprise CS Campus Community product ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46850 (Vulnerability in the MySQL Shell product of Oracle MySQL (component: S ...)
 	TODO: check
 CVE-2026-46849 (Vulnerability in the PeopleSoft Enterprise CS Student Financials produ ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46848 (Vulnerability in the WebLogic Server product of Oracle Fusion Middlewa ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46847 (Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46846 (Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46845 (Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46844 (Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46838 (Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46832 (Vulnerability in the Oracle Enterprise Manager Base Platform product o ...)
 	NOT-FOR-US: Oracle
 CVE-2026-46825 (Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualiza ...)
@@ -309,43 +309,43 @@ CVE-2026-46816 (Vulnerability in the Oracle VM VirtualBox product of Oracle Virt
 CVE-2026-46815 (Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualiza ...)
 	- virtualbox <unfixed>
 CVE-2026-46814 (Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46813 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46812 (Vulnerability in the Oracle Access Manager product of Oracle Fusion Mi ...)
 	TODO: check
 CVE-2026-46810 (Vulnerability in the Identity Manager product of Oracle Fusion Middlew ...)
 	NOT-FOR-US: Oracle
 CVE-2026-46809 (Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46808 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46807 (Vulnerability in the Identity Manager product of Oracle Fusion Middlew ...)
 	NOT-FOR-US: Oracle
 CVE-2026-46806 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46805 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46804 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46803 (Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46802 (Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46801 (Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46800 (Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46799 (Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46798 (Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46797 (Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46796 (Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46795 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46794 (Vulnerability in the Identity Manager Connector product of Oracle Fusi ...)
 	TODO: check
 CVE-2026-46793 (Vulnerability in the Identity Manager Connector product of Oracle Fusi ...)
@@ -353,19 +353,19 @@ CVE-2026-46793 (Vulnerability in the Identity Manager Connector product of Oracl
 CVE-2026-46792 (Vulnerability in the Identity Manager Connector product of Oracle Fusi ...)
 	TODO: check
 CVE-2026-46791 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46790 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46789 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46788 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46787 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46786 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46785 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46784 (Vulnerability in the WebCenter Content: Imaging product of Oracle Fusi ...)
 	TODO: check
 CVE-2026-46783 (Vulnerability in the WebCenter Content: Imaging product of Oracle Fusi ...)
@@ -381,7 +381,7 @@ CVE-2026-46779 (Vulnerability in the Oracle WebCenter Enterprise Capture product
 CVE-2026-46778 (Vulnerability in the Oracle WebCenter Enterprise Capture product of Or ...)
 	TODO: check
 CVE-2026-46777 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46776 (Vulnerability in the Oracle Unified Directory product of Oracle Fusion ...)
 	TODO: check
 CVE-2026-46774 (Vulnerability in the Oracle Unified Directory product of Oracle Fusion ...)
@@ -399,11 +399,11 @@ CVE-2026-46769 (Vulnerability in the Oracle Application Development Framework (A
 CVE-2026-46768 (Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualiza ...)
 	- virtualbox <unfixed>
 CVE-2026-46767 (Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46766 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-46765 (Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion  ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-44587 (CarrierWave is a framework to upload files from Ruby applications. In  ...)
 	TODO: check
 CVE-2026-40761 (Unauthenticated PHP Object Injection in Valeska <= 1.2.2 versions.)
@@ -461,31 +461,31 @@ CVE-2026-39438 (Unauthenticated SQL Injection in ListingPro <= 2.9.10 versions.)
 CVE-2026-39433 (Subscriber Arbitrary Content Deletion in WPAMS < 49.5.3 versions.)
 	NOT-FOR-US: WordPress plugin or theme
 CVE-2026-35327 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35326 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35325 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35324 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35323 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35322 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35321 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35320 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35319 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35318 (Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35317 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35316 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35315 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35314 (Vulnerability in the Oracle Access Manager product of Oracle Fusion Mi ...)
 	TODO: check
 CVE-2026-35313 (Vulnerability in the Oracle Access Manager product of Oracle Fusion Mi ...)
@@ -521,13 +521,13 @@ CVE-2026-35299 (Vulnerability in the WebLogic Server product of Oracle Fusion Mi
 CVE-2026-35298 (Vulnerability in the WebLogic Server product of Oracle Fusion Middlewa ...)
 	TODO: check
 CVE-2026-35296 (Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35295 (Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35294 (Vulnerability in the Identity Manager Connector product of Oracle Fusi ...)
 	TODO: check
 CVE-2026-35293 (Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion M ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35292 (Vulnerability in the WebLogic Server product of Oracle Fusion Middlewa ...)
 	TODO: check
 CVE-2026-35291 (Vulnerability in the WebLogic Server product of Oracle Fusion Middlewa ...)
@@ -537,7 +537,7 @@ CVE-2026-35289 (Vulnerability in the PeopleSoft Enterprise PT PeopleTools produc
 CVE-2026-35288 (Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of O ...)
 	TODO: check
 CVE-2026-35286 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35285 (Vulnerability in the Oracle WebCenter Enterprise Capture product of Or ...)
 	TODO: check
 CVE-2026-35284 (Vulnerability in the Oracle WebCenter Enterprise Capture product of Or ...)
@@ -565,7 +565,7 @@ CVE-2026-35272 (Vulnerability in the PeopleSoft Enterprise PT PeopleTools produc
 CVE-2026-35271 (Vulnerability in the PeopleSoft Enterprise PT PeopleTools product of O ...)
 	TODO: check
 CVE-2026-35270 (Vulnerability in the Oracle WebCenter Content product of Oracle Fusion ...)
-	TODO: check
+	NOT-FOR-US: Oracle
 CVE-2026-35269 (Vulnerability in the Identity Manager product of Oracle Fusion Middlew ...)
 	NOT-FOR-US: Oracle
 CVE-2026-35268 (Vulnerability in the Identity Manager product of Oracle Fusion Middlew ...)


=====================================
data/packages/nfu.yaml
=====================================
@@ -581,9 +581,12 @@
     - cna: oracle
     - anyOf:
       - product: Identity Manager
+      - product: JD Edwards EnterpriseOne Order Promising
+      - product: JD Edwards EnterpriseOne Project Costing
       - product: JD Edwards EnterpriseOne Tools
       - product: MySQL Cluster
       - product: Oracle Advanced Inbound Telephony
+      - product: Oracle Advanced Outbound Telephony
       - product: Oracle Agile PLM
       - product: Oracle Agile Product Lifecycle Management for Process
       - product: Oracle Application Development Framework (ADF)
@@ -600,9 +603,14 @@
       - product: Oracle Commerce Platform
       - product: Oracle Common Applications
       - product: Oracle Communications Order and Service Management
+      - product: Oracle Complex Maintenance, Repair and Overhaul
       - product: Oracle Concurrent Processing
+      - product: Oracle Configure to Order
       - product: Oracle Configurator
+      - product: Oracle Cost Management
       - product: Oracle Database Server
+      - product: Oracle Enterprise Asset Management
+      - product: Oracle Enterprise Command Center Framework
       - product: Oracle Enterprise Manager Base Platform
       - product: Oracle Essbase
       - product: Oracle FLEXCUBE Investor Servicing
@@ -618,11 +626,14 @@
       - product: Oracle Hospitality OPERA 5
       - product: Oracle Hospitality OPERA 5 Property Services
       - product: Oracle Hospitality Simphony
+      - product: Oracle HR Intelligence
+      - product: Oracle Human Resources
       - product: Oracle HTTP Server
       - product: Oracle Hyperion Financial Reporting
       - product: Oracle Hyperion Infrastructure Technology
       - product: Oracle Identity Manager
       - product: Oracle Identity Manager Connector
+      - product: Oracle iSupport
       - product: Oracle Lease and Finance Management
       - product: Oracle Life Sciences Empirica Signal
       - product: Oracle Life Sciences InForm
@@ -633,17 +644,26 @@
       - product: Oracle Marketing
       - product: Oracle Mobile Field Service
       - product: Oracle Planning and Budgeting Cloud Service
+      - product: Oracle Process Manufacturing Product Development
+      - product: Oracle Process Manufacturing Process Planning
       - product: Oracle Product Hub
+      - product: Oracle Public Sector Financials (International)
+      - product: Oracle Public Sector Payroll
+      - product: Oracle Quality
       - product: Oracle REST Data Services
       - product: Oracle Scripting
       - product: Oracle Secure Backup
       - product: Oracle Security Service
       - product: Oracle Smart View for Office
       - product: Oracle Solaris
+      - product: Oracle Subledger Accounting
       - product: Oracle Teleservice
       - product: Oracle Universal Work Queue
       - product: Oracle User Management
       - product: Oracle Utilities Application Framework
+      - product: Oracle WebCenter Content
+      - product: Oracle WebCenter Portal
+      - product: Oracle WebCenter Sites
       - product: Oracle WebLogic Server
       - product: Oracle Workflow
       - product: Oracle Zero Data Loss Recovery Appliance Software
@@ -651,6 +671,8 @@
       - product: Oracle iStore
       - product: Oracle iSupplier Portal
       - product: PeopleSoft Enterprise CC Common Application Objects
+      - product: PeopleSoft Enterprise CS Campus Community
+      - product: PeopleSoft Enterprise CS Student Financials
       - product: PeopleSoft Enterprise CS Student Records
       - product: PeopleSoft Enterprise FIN Contracts
       - product: PeopleSoft Enterprise FIN IT Asset Management
@@ -665,6 +687,8 @@
       - product: PeopleSoft Enterprise PeopleTools
       - product: PeopleSoft Enterprise SCM Purchasing
       - product: Primavera P6 Enterprise Project Portfolio Management
+      - product: Siebel Apps - Marketing
+      - product: Siebel CRM Cloud Applications
       - product: Siebel CRM End User
       - product: Siebel CRM Deployment
 - reason: SUSE



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/580a05e68735fa13206d9b9e28251f0c7f7c2fbd

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/580a05e68735fa13206d9b9e28251f0c7f7c2fbd
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260617/69d751ba/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list