Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
64dd9b6a by Salvatore Bonaccorso at 2023-12-21T21:24:21+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,31 +1,31 @@
 CVE-2023-7047 (Inadequate validation of permissions when employing remote 
tools and   ...)
-       TODO: check
+       NOT-FOR-US: Devolutions
 CVE-2023-7042 (A null pointer dereference vulnerability was found in 
ath10k_wmi_tlv_o ...)
        TODO: check
 CVE-2023-7041 (A vulnerability, which was classified as critical, has been 
found in c ...)
-       TODO: check
+       NOT-FOR-US: codelyfe Stupid Simple CMS
 CVE-2023-7040 (A vulnerability classified as problematic was found in codelyfe 
Stupid ...)
-       TODO: check
+       NOT-FOR-US: codelyfe Stupid Simple CMS
 CVE-2023-7039 (A vulnerability classified as critical has been found in 
Beijing Baich ...)
-       TODO: check
+       NOT-FOR-US: Beijing Baichuo S210
 CVE-2023-7038 (A vulnerability was found in automad up to 1.10.9. It has been 
rated a ...)
-       TODO: check
+       NOT-FOR-US: automad
 CVE-2023-7037 (A vulnerability was found in automad up to 1.10.9. It has been 
declare ...)
-       TODO: check
+       NOT-FOR-US: automad
 CVE-2023-7036 (A vulnerability was found in automad up to 1.10.9. It has been 
classif ...)
-       TODO: check
+       NOT-FOR-US: automad
 CVE-2023-7035 (A vulnerability was found in automad up to 1.10.9 and 
classified as pr ...)
-       TODO: check
+       NOT-FOR-US: automad
 CVE-2023-6546 (A race condition was found in the GSM 0710 tty multiplexor in 
the Linu ...)
        TODO: check
 CVE-2023-6145 (Improper Neutralization of Special Elements used in an SQL 
Command ('S ...)
-       TODO: check
+       NOT-FOR-US: Istanbul Soft Informatics and Consultancy Limited Company 
Softomi Advanced C2C Marketplace Software
 CVE-2023-6122 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: Istanbul Soft Informatics and Consultancy Limited Company 
Softomi Software
 CVE-2023-5989 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: LioXERP
 CVE-2023-5988 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: LioXERP
 CVE-2023-5594 (Improper validation of the server\u2019s certificate chain in 
secure t ...)
        TODO: check
 CVE-2023-51655 (In JetBrains IntelliJ IDEA before 2023.3.2 code execution was 
possible ...)
@@ -33,43 +33,43 @@ CVE-2023-51655 (In JetBrains IntelliJ IDEA before 2023.3.2 
code execution was po
 CVE-2023-51442 (Navidrome is an open source web-based music collection server 
and stre ...)
        TODO: check
 CVE-2023-51052 (S-CMS v5.0 was discovered to contain a SQL injection 
vulnerability via ...)
-       TODO: check
+       NOT-FOR-US: S-CMS
 CVE-2023-51051 (S-CMS v5.0 was discovered to contain a SQL injection 
vulnerability via ...)
-       TODO: check
+       NOT-FOR-US: S-CMS
 CVE-2023-51050 (S-CMS v5.0 was discovered to contain a SQL injection 
vulnerability via ...)
-       TODO: check
+       NOT-FOR-US: S-CMS
 CVE-2023-51049 (S-CMS v5.0 was discovered to contain a SQL injection 
vulnerability via ...)
-       TODO: check
+       NOT-FOR-US: S-CMS
 CVE-2023-51048 (S-CMS v5.0 was discovered to contain a SQL injection 
vulnerability via ...)
-       TODO: check
+       NOT-FOR-US: S-CMS
 CVE-2023-50834 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2023-50833 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2023-50832 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2023-50831 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2023-50830 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2023-50829 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2023-50828 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2023-50827 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2023-50826 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2023-50825 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2023-50824 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2023-50823 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2023-50822 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2023-50732 (XWiki Platform is a generic wiki platform offering runtime 
services fo ...)
-       TODO: check
+       NOT-FOR-US: XWiki
 CVE-2023-50724 (Resque (pronounced like "rescue") is a Redis-backed library 
for creati ...)
        TODO: check
 CVE-2023-50481 (An issue was discovered in blinksocks version 3.3.8, allows 
remote att ...)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/64dd9b6a8bfe7bc92cf850a8c6bcdce93f99cceb

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/64dd9b6a8bfe7bc92cf850a8c6bcdce93f99cceb
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to