summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2021-01-01 09:39:07 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2021-01-01 09:39:07 +0100
commitd87e421aaaa8aede60559c2e2f0a0bd2e0875f01 (patch)
tree98bcc5ff515902b720ddcdf20f1ea8f08c3d4e00
parent5bf1a45f8374a33ce2e24aff96be64b88abb2ca5 (diff)
Process NFUs
-rw-r--r--data/CVE/2016.list16
-rw-r--r--data/CVE/2017.list2
-rw-r--r--data/CVE/2018.list2
-rw-r--r--data/CVE/2019.list2
-rw-r--r--data/CVE/2020.list2
5 files changed, 12 insertions, 12 deletions
diff --git a/data/CVE/2016.list b/data/CVE/2016.list
index 1ca0db0a9f..2a19cad46d 100644
--- a/data/CVE/2016.list
+++ b/data/CVE/2016.list
@@ -1,19 +1,19 @@
CVE-2016-20008 (The REST/JSON project 7.x-1.x for Drupal allows session enumeration, a ...)
- TODO: check
+ NOT-FOR-US: REST/JSON project for Drupal
CVE-2016-20007 (The REST/JSON project 7.x-1.x for Drupal allows session name guessing, ...)
- TODO: check
+ NOT-FOR-US: REST/JSON project for Drupal
CVE-2016-20006 (The REST/JSON project 7.x-1.x for Drupal allows blockage of user login ...)
- TODO: check
+ NOT-FOR-US: REST/JSON project for Drupal
CVE-2016-20005 (The REST/JSON project 7.x-1.x for Drupal allows user registration bypa ...)
- TODO: check
+ NOT-FOR-US: REST/JSON project for Drupal
CVE-2016-20004 (The REST/JSON project 7.x-1.x for Drupal allows field access bypass, a ...)
- TODO: check
+ NOT-FOR-US: REST/JSON project for Drupal
CVE-2016-20003 (The REST/JSON project 7.x-1.x for Drupal allows user enumeration, aka ...)
- TODO: check
+ NOT-FOR-US: REST/JSON project for Drupal
CVE-2016-20002 (The REST/JSON project 7.x-1.x for Drupal allows comment access bypass, ...)
- TODO: check
+ NOT-FOR-US: REST/JSON project for Drupal
CVE-2016-20001 (The REST/JSON project 7.x-1.x for Drupal allows node access bypass, ak ...)
- TODO: check
+ NOT-FOR-US: REST/JSON project for Drupal
CVE-2016-15001
REJECTED
CVE-2016-11086 (lib/oauth/consumer.rb in the oauth-ruby gem through 0.5.4 for Ruby doe ...)
diff --git a/data/CVE/2017.list b/data/CVE/2017.list
index 7ae4df17ca..d100a59fb8 100644
--- a/data/CVE/2017.list
+++ b/data/CVE/2017.list
@@ -1,5 +1,5 @@
CVE-2017-20001 (The AES encryption project 7.x and 8.x for Drupal does not sufficientl ...)
- TODO: check
+ NOT-FOR-US: AES encryption project for Drupal
CVE-2017-18926 (raptor_xml_writer_start_element_common in raptor_xml_writer.c in Rapto ...)
{DSA-4785-1 DLA-2438-1}
- raptor <removed>
diff --git a/data/CVE/2018.list b/data/CVE/2018.list
index 139e9227d0..342961205b 100644
--- a/data/CVE/2018.list
+++ b/data/CVE/2018.list
@@ -1,5 +1,5 @@
CVE-2018-25002 (uploader.php in the KCFinder integration project through 2018-06-01 fo ...)
- TODO: check
+ NOT-FOR-US: KCFinder integration project for Drupal
CVE-2018-25001 (An issue was discovered in the libpulse-binding crate before 2.5.0 for ...)
TODO: check
CVE-2018-21270 (Versions less than 0.0.6 of the Node.js stringstream module are vulner ...)
diff --git a/data/CVE/2019.list b/data/CVE/2019.list
index c018da9a5c..2a6a372983 100644
--- a/data/CVE/2019.list
+++ b/data/CVE/2019.list
@@ -1,5 +1,5 @@
CVE-2019-25012 (The Webform Report project 7.x-1.x-dev for Drupal allows remote attack ...)
- TODO: check
+ NOT-FOR-US: Webform Report project for Drupal
CVE-2019-25011 (NetBox through 2.6.2 allows an Authenticated User to conduct an XSS at ...)
TODO: check
CVE-2019-25010 (An issue was discovered in the failure crate through 2019-11-13 for Ru ...)
diff --git a/data/CVE/2020.list b/data/CVE/2020.list
index 5d7b3caf80..a5f72849c8 100644
--- a/data/CVE/2020.list
+++ b/data/CVE/2020.list
@@ -41,7 +41,7 @@ CVE-2020-35932 (Insecure Deserialization in the Newsletter plugin before 6.8.2 f
CVE-2020-35931 (An issue was discovered in Foxit Reader before 10.1.1 (and before 4.1. ...)
NOT-FOR-US: Foxit Reader
CVE-2020-35930 (Seo Panel 4.8.0 allows stored XSS by an Authenticated User via the url ...)
- TODO: check
+ NOT-FOR-US: Seo Panel
CVE-2020-35929
RESERVED
CVE-2020-35928 (An issue was discovered in the concread crate before 0.2.6 for Rust. A ...)

© 2014-2024 Faster IT GmbH | imprint | privacy policy