[Git][security-tracker-team/security-tracker][master] auto-nfu: Extend rules for F5 and Cisco

Moritz Muehlenhoff (@jmm) jmm at debian.org
Thu Sep 3 14:10:00 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
8087f8cb by Moritz Muehlenhoff at 2026-09-03T11:58:07+02:00
auto-nfu: Extend rules for F5 and Cisco

- - - - -


2 changed files:

- data/CVE/list
- data/packages/nfu.yaml


Changes:

=====================================
data/CVE/list
=====================================
@@ -374,7 +374,7 @@ CVE-2026-66842 (BIG-IP has a vulnerability where an authenticated user of any ro
 CVE-2026-66652 (Cross-Site Request Forgery (CSRF) vulnerability in ThemeGoods Grand To ...)
 	NOT-FOR-US: WordPress plugin or theme
 CVE-2026-66362 (Description: When NGINX Plus is configured as the data plane for NGINX ...)
-	TODO: check
+	NOT-FOR-US: F5
 CVE-2026-63020 (A vulnerability exists in an undisclosed BIG-IP Configuration utility  ...)
 	NOT-FOR-US: F5
 CVE-2026-55421 (Open edX Platform enables the authoring and delivery of online learnin ...)
@@ -446,9 +446,9 @@ CVE-2026-23584
 CVE-2026-23583
 	REJECTED
 CVE-2026-20355 (Multiple vulnerabilities in the Secure/Multipurpose Internet Mail Exte ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2026-20354 (Multiple vulnerabilities in the Secure/Multipurpose Internet Mail Exte ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2026-20281 (A vulnerability in Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 a ...)
 	NOT-FOR-US: Cisco
 CVE-2026-20280 (As part of Cisco's ongoing commitment to proactive security and produc ...)


=====================================
data/packages/nfu.yaml
=====================================
@@ -448,6 +448,7 @@
       - product: Cisco Nexus Dashboard
       - product: Cisco Prime Infrastructure
       - product: Cisco RoomOS Software
+      - product: Cisco Secure Email
       - product: Cisco Secure Firewall Adaptive Security Appliance (ASA) Software
       - product: Cisco Secure Firewall Threat Defense (FTD) Software
       - product: Cisco Secure Network Analytics
@@ -519,6 +520,7 @@
       - product: F5 BIG-IP Container Ingress Services
       - product: F5OS - Appliance
       - product: F5OS - Chassis
+      - product: NGINX Gateway Fabric
       - product: NGINX Ingress Controller
 - reason: Fortra
   allOf:



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8087f8cbfd750d039b44d2540ad0165a2647d03f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8087f8cbfd750d039b44d2540ad0165a2647d03f
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260903/d11b9c0b/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list