From 19c303c57ddef2c3ec9c516afb95d4e72d40cad0 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Mon, 21 Feb 2022 09:28:18 +0100 Subject: Process some NFUs --- data/CVE/2021.list | 4 ++-- data/CVE/2022.list | 8 ++++---- 2 files changed, 6 insertions(+), 6 deletions(-) diff --git a/data/CVE/2021.list b/data/CVE/2021.list index 9ab85c1471..3d39d700dd 100644 --- a/data/CVE/2021.list +++ b/data/CVE/2021.list @@ -1,5 +1,5 @@ CVE-2021-46701 (PreMiD 2.2.0 allows unintended access via the websocket transport. An ...) - TODO: check + NOT-FOR-US: PreMiD CVE-2021-46700 (In libsixel 1.8.6, sixel_encoder_output_without_macro (called from six ...) - libsixel NOTE: https://github.com/saitoha/libsixel/issues/158 @@ -4421,7 +4421,7 @@ CVE-2021-45009 CVE-2021-45008 RESERVED CVE-2021-45007 (Plesk 18.0.37 is affected by a Cross Site Request Forgery (CSRF) vulne ...) - TODO: check + NOT-FOR-US: Plesk CVE-2021-45006 RESERVED CVE-2021-45005 (Artifex MuJS v1.1.3 was discovered to contain a heap buffer overflow w ...) diff --git a/data/CVE/2022.list b/data/CVE/2022.list index 0be49625cd..6fe23ae2ba 100644 --- a/data/CVE/2022.list +++ b/data/CVE/2022.list @@ -451,7 +451,7 @@ CVE-2022-25374 CVE-2022-25373 RESERVED CVE-2022-25372 (Pritunl Client through 1.2.3019.52 on Windows allows local privilege e ...) - TODO: check + NOT-FOR-US: Pritunl Client CVE-2022-0698 RESERVED CVE-2022-0697 @@ -6929,9 +6929,9 @@ CVE-2022-23056 CVE-2022-23055 RESERVED CVE-2022-23054 (Openmct versions 1.3.0 to 1.7.7 are vulnerable against stored XSS via ...) - TODO: check + NOT-FOR-US: Openmct CVE-2022-23053 (Openmct versions 1.3.0 to 1.7.7 are vulnerable against stored XSS via ...) - TODO: check + NOT-FOR-US: Openmct CVE-2022-23052 RESERVED CVE-2022-23051 @@ -9494,7 +9494,7 @@ CVE-2022-22128 CVE-2022-22127 RESERVED CVE-2022-22126 (Openmct versions 1.3.0 to 1.7.7 are vulnerable against stored XSS via ...) - TODO: check + NOT-FOR-US: Openmct CVE-2022-22125 (In Halo, versions v1.0.0 to v1.4.17 (latest) are vulnerable to Stored ...) NOT-FOR-US: Halo CVE-2022-22124 (In Halo, versions v1.0.0 to v1.4.17 (latest) are vulnerable to Stored ...) -- cgit v1.2.3