[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Sep 14 16:04:09 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
741e747f by Salvatore Bonaccorso at 2026-09-14T17:03:43+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -253,29 +253,29 @@ CVE-2026-33957 (An issue was discovered in CustOS Driver in Samsung Mobile Proce
 CVE-2026-33956 (An issue was discovered in camera in Samsung Mobile Processor Exynos 1 ...)
 	NOT-FOR-US: Samsung
 CVE-2026-31278 (An issue in the /api/v2/setting/adserversetting endpoint of Suprema Bi ...)
-	TODO: check
+	NOT-FOR-US: Suprema BioStar
 CVE-2026-29812 (CyberPanel before 2.4.4 has no logging for actions that could potentia ...)
-	TODO: check
+	NOT-FOR-US: CyberPanel
 CVE-2026-29811 (CyberPanel before 2.4.4 attempts to detect an "alais" domain (i.e., a  ...)
-	TODO: check
+	NOT-FOR-US: CyberPanel
 CVE-2026-29810 (CyberPanel before 2.4.4 omits a "return 0" that is required by the bus ...)
-	TODO: check
+	NOT-FOR-US: CyberPanel
 CVE-2026-23793 (An issue was discovered in Samsung Mobile Processor Exynos 1330, 1380, ...)
-	TODO: check
+	NOT-FOR-US: Samsung
 CVE-2026-23792 (An issue was discovered in NR RRC in Samsung Mobile Processor and Mode ...)
-	TODO: check
+	NOT-FOR-US: Samsung
 CVE-2026-23791 (An issue was discovered in DPU in Samsung Mobile Processor Exynos 1280 ...)
-	TODO: check
+	NOT-FOR-US: Samsung
 CVE-2026-23790 (An issue was discovered in DPU in Samsung Mobile Processor Exynos 1280 ...)
-	TODO: check
+	NOT-FOR-US: Samsung
 CVE-2026-23789 (An issue was discovered in MFC in Samsung Mobile Processor and Wearabl ...)
-	TODO: check
+	NOT-FOR-US: Samsung
 CVE-2026-23788 (An issue was discovered in DPU in Samsung Mobile Processor Exynos 1280 ...)
-	TODO: check
+	NOT-FOR-US: Samsung
 CVE-2026-23787 (An issue was discovered in DPU in Samsung Mobile Processor Exynos 1280 ...)
-	TODO: check
+	NOT-FOR-US: Samsung
 CVE-2026-23786 (An issue was discovered in DPU in Samsung Mobile Processor Exynos 1280 ...)
-	TODO: check
+	NOT-FOR-US: Samsung
 CVE-2026-16726 (Buffer overflow vulnerabilityin Panasonic IndustryUSB Driver for MINAS ...)
 	NOT-FOR-US: Panasonic
 CVE-2026-15892 (The mcumgr SMP settings-management group handlers settings_mgmt_read() ...)
@@ -283,9 +283,9 @@ CVE-2026-15892 (The mcumgr SMP settings-management group handlers settings_mgmt_
 CVE-2026-15891 (The MQTT-SN client keepalive handler process_ping() in subsys/net/lib/ ...)
 	NOT-FOR-US: Zephyr, different from src:zephyr
 CVE-2025-70820 (Zettlab D6 Ultra before 1.7.0 allows absolute path traversal to reach  ...)
-	TODO: check
+	NOT-FOR-US: Zettlab D6 Ultra
 CVE-2025-68624 (N-able Mail Assure through April 2026 contains a design-level authoriz ...)
-	TODO: check
+	NOT-FOR-US: N-able Mail Assure
 CVE-2025-64031 (libarchive 3.8.x before 3.8.2 has a strcpy heap-based buffer overflow  ...)
 	TODO: check
 CVE-2025-63842 (A Cross-Site Scripting (XSS) vulnerability in the web backend for the  ...)
@@ -465,9 +465,9 @@ CVE-2026-90501 (A security vulnerability has been detected in lenve vhr 1.0-SNAP
 CVE-2026-90500 (A weakness has been identified in lenve vhr 1.0-SNAPSHOT. This vulnera ...)
 	NOT-FOR-US: lenve vhr
 CVE-2025-70819 (Zettlab D6 Ultra before 1.7.0 allows mounting /etc/passwd and /etc/sha ...)
-	TODO: check
+	NOT-FOR-US: Zettlab D6 Ultra
 CVE-2025-64059 (Grav 1.7.50.2 allows admins to enter JavaScript via the Home Page edit ...)
-	TODO: check
+	NOT-FOR-US: Grav CMS
 CVE-2025-45480 (Floodlight 71fe8a7 allows disruption of host communication via link sp ...)
 	TODO: check
 CVE-2026-90679 (Forgejo 13.0.0 through 16.0.4, when "[federation] ENABLED = true" is s ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/741e747f9dd2672345191628610240302bad768d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/741e747f9dd2672345191628610240302bad768d
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260914/456497a8/attachment.htm>


More information about the debian-security-tracker-commits mailing list