summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorNeil Williams <codehelp@debian.org>2022-01-25 14:10:09 +0000
committerNeil Williams <codehelp@debian.org>2022-01-25 14:10:09 +0000
commit0d06aaeb8d211d37360edf1247e397c32645577f (patch)
treee6e205969b14d9d0e823f40706e16df100989618
parent78ad558a7db0c6d7a7c793b1993d8ea7f15f5008 (diff)
Process some NFUs
-rw-r--r--data/CVE/2021.list4
1 files changed, 2 insertions, 2 deletions
diff --git a/data/CVE/2021.list b/data/CVE/2021.list
index 65a1bbb3c1..85d7a6f6b1 100644
--- a/data/CVE/2021.list
+++ b/data/CVE/2021.list
@@ -56288,7 +56288,7 @@ CVE-2021-23576
CVE-2021-23575
RESERVED
CVE-2021-23574 (All versions of package js-data are vulnerable to Prototype Pollution ...)
- TODO: check
+ NOT-FOR-US: Node js-data
CVE-2021-23573
RESERVED
CVE-2021-23572
@@ -56300,7 +56300,7 @@ CVE-2021-23570
CVE-2021-23569
RESERVED
CVE-2021-23568 (The package extend2 before 1.0.1 are vulnerable to Prototype Pollution ...)
- TODO: check
+ NOT-FOR-US: extend2 (fork of node-extend which is not affected)
CVE-2021-23567 (The package colors after 1.4.0 are vulnerable to Denial of Service (Do ...)
TODO: check
CVE-2021-23566 (The package nanoid before 3.1.31 are vulnerable to Information Exposur ...)

© 2014-2024 Faster IT GmbH | imprint | privacy policy