summaryrefslogtreecommitdiffstats
path: root/data
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2018-06-19 22:59:14 +0200
committerSalvatore Bonaccorso <carnil@debian.org>2018-06-19 22:59:14 +0200
commit24ad214ac7f6c5842be3cdaf4dbb05e35fe289f0 (patch)
tree607b59a4728dc4eba35ddbd0c6b133a190c3b7a4 /data
parentbca9ac55eeb2adf2a0e9c0dec82c05d0f3a33b24 (diff)
Replace some NFUs with source package name tracking
Diffstat (limited to 'data')
-rw-r--r--data/CVE/2007.list8
-rw-r--r--data/CVE/2013.list2
-rw-r--r--data/CVE/2014.list4
-rw-r--r--data/CVE/2015.list2
-rw-r--r--data/CVE/2016.list2
-rw-r--r--data/CVE/2017.list2
6 files changed, 10 insertions, 10 deletions
diff --git a/data/CVE/2007.list b/data/CVE/2007.list
index c759cfb8ff..2ab50cf9af 100644
--- a/data/CVE/2007.list
+++ b/data/CVE/2007.list
@@ -7295,13 +7295,13 @@ CVE-2007-3711 (Unspecified vulnerability in TOS 2.1.x, 2.2.x before 2.2.5, and 2
CVE-2007-3710 (PHP remote file inclusion vulnerability in ...)
NOT-FOR-US: PHP Comet-Server
CVE-2007-3709 (CRLF injection vulnerability in the redirect function in ...)
- NOT-FOR-US: CodeIgniter
+ - codeigniter <itp> (bug #471583)
CVE-2007-3708 (Cross-site scripting (XSS) vulnerability in CodeIgniter 1.5.3 before ...)
- NOT-FOR-US: CodeIgniter
+ - codeigniter <itp> (bug #471583)
CVE-2007-3707 (Directory traversal vulnerability in index.php in CodeIgniter 1.5.3 ...)
- NOT-FOR-US: CodeIgniter
+ - codeigniter <itp> (bug #471583)
CVE-2007-3706 (The _sanitize_globals function in CodeIgniter 1.5.3 before 20070628 ...)
- NOT-FOR-US: CodeIgniter
+ - codeigniter <itp> (bug #471583)
CVE-2007-3705 (SQL injection vulnerability in FuseTalk 2.0 allows remote attackers to ...)
NOT-FOR-US: FuseTalk
CVE-2007-3704 (Entertainment CMS allows remote attackers to bypass authentication and ...)
diff --git a/data/CVE/2013.list b/data/CVE/2013.list
index a08dbf6d80..003190b5f9 100644
--- a/data/CVE/2013.list
+++ b/data/CVE/2013.list
@@ -6645,7 +6645,7 @@ CVE-2013-4893
CVE-2013-4892
RESERVED
CVE-2013-4891 (The xss_clean function in CodeIgniter before 2.1.4 might allow remote ...)
- NOT-FOR-US: CodeIgniter
+ - codeigniter <itp> (bug #471583)
CVE-2013-4889 (Multiple cross-site request forgery (CSRF) vulnerabilities in ...)
NOT-FOR-US: Digital Signage Xibo
CVE-2013-4888 (Cross-site scripting (XSS) vulnerability in index.php in Digital ...)
diff --git a/data/CVE/2014.list b/data/CVE/2014.list
index b708035c5c..6499b95c05 100644
--- a/data/CVE/2014.list
+++ b/data/CVE/2014.list
@@ -3918,11 +3918,11 @@ CVE-2014-8688 (An issue was discovered in Telegram Messenger 2.6 for iOS and 1.8
CVE-2014-8687 (Seagate Business NAS devices with firmware before 2015.00322 allow ...)
NOT-FOR-US: Seagate Business NAS devices
CVE-2014-8686 (CodeIgniter before 2.2.0 makes it easier for attackers to decode ...)
- NOT-FOR-US: CodeIgniter
+ - codeigniter <itp> (bug #471583)
CVE-2014-8685
RESERVED
CVE-2014-8684 (CodeIgniter before 3.0 and Kohana 3.2.3 and earlier and 3.3.x through ...)
- NOT-FOR-US: CodeIgniter
+ - codeigniter <itp> (bug #471583)
CVE-2014-8683 (Cross-site scripting (XSS) vulnerability in models/issue.go in Gogs ...)
NOT-FOR-US: Go Git Service
CVE-2014-8682 (Multiple SQL injection vulnerabilities in Gogs (aka Go Git Service) ...)
diff --git a/data/CVE/2015.list b/data/CVE/2015.list
index b4996c7ad5..a8974f4772 100644
--- a/data/CVE/2015.list
+++ b/data/CVE/2015.list
@@ -10147,7 +10147,7 @@ CVE-2015-5726 (The BER decoder in Botan 0.10.x before 1.10.10 and 1.11.x before
NOTE: Fixed in 1.11.19 and 1.10.10, affected all previous versions of 1.10 and 1.11
NOTE: http://botan.randombit.net/security.html
CVE-2015-5725 (SQL injection vulnerability in the offset method in the Active Record ...)
- NOT-FOR-US: CodeIgniter
+ - codeigniter <itp> (bug #471583)
CVE-2015-5741 [other discoveries of security-relevant RFC 7230 violations]
RESERVED
- golang 2:1.4.2-4 (bug #795106)
diff --git a/data/CVE/2016.list b/data/CVE/2016.list
index 5618eb59ba..3b26121d80 100644
--- a/data/CVE/2016.list
+++ b/data/CVE/2016.list
@@ -1733,7 +1733,7 @@ CVE-2016-10133 (Heap-based buffer overflow in the js_stackoverflow function in j
CVE-2016-10132 (regexp.c in Artifex Software, Inc. MuJS allows attackers to cause a ...)
NOT-FOR-US: MuJS
CVE-2016-10131 (system/libraries/Email.php in CodeIgniter before 3.1.3 allows remote ...)
- NOT-FOR-US: CodeIgniter
+ - codeigniter <itp> (bug #471583)
CVE-2016-10130 (The http_connect function in transports/http.c in libgit2 before ...)
- libgit2 0.25.1+really0.24.6-1 (bug #851406)
[jessie] - libgit2 <not-affected> (Vulnerable code not present)
diff --git a/data/CVE/2017.list b/data/CVE/2017.list
index c083c60122..6dd9c9f196 100644
--- a/data/CVE/2017.list
+++ b/data/CVE/2017.list
@@ -4654,7 +4654,7 @@ CVE-2017-1000248 (Redis-store &lt;=v1.3.0 allows unsafe objects to be loaded fro
[stretch] - ruby-redis-store 1.1.6-1+deb9u1
NOTE: https://github.com/redis-store/redis-store/commit/e0c1398d54a9661c8c70267c3a925ba6b192142e
CVE-2017-1000247 (British Columbia Institute of Technology CodeIgniter 3.1.3 is ...)
- NOT-FOR-US: CodeIgniter
+ - codeigniter <itp> (bug #471583)
CVE-2017-1000246 (Python package pysaml2 version 4.4.0 and earlier reuses the ...)
- python-pysaml2 <unfixed> (bug #882012)
[stretch] - python-pysaml2 <no-dsa> (Minor issue)

© 2014-2024 Faster IT GmbH | imprint | privacy policy