From bd8ebbb268c17dba1517bae70727fd0cdeeb561b Mon Sep 17 00:00:00 2001 From: Neil Williams Date: Thu, 18 Nov 2021 09:22:22 +0000 Subject: Process 3 NFUs --- data/CVE/2021.list | 8 +++++--- 1 file changed, 5 insertions(+), 3 deletions(-) diff --git a/data/CVE/2021.list b/data/CVE/2021.list index a73c7624c0..5aaf56aa4c 100644 --- a/data/CVE/2021.list +++ b/data/CVE/2021.list @@ -1073,7 +1073,8 @@ CVE-2021-43523 (In uClibc and uClibc-ng before 1.0.39, incorrect handling of spe CVE-2021-43522 RESERVED CVE-2021-3939 (Ubuntu-specific modifications to accountsservice (in patch file debian ...) - TODO: check + NOT-FOR-US: Ubuntu + NOTE: https://ubuntu.com/security/CVE-2021-3939 CVE-2021-3938 (snipe-it is vulnerable to Improper Neutralization of Input During Web ...) NOT-FOR-US: snipe-it CVE-2021-3937 @@ -48745,7 +48746,8 @@ CVE-2021-23474 CVE-2021-23473 RESERVED CVE-2021-23472 (This affects all versions of package bootstrap-table. A type confusion ...) - TODO: check + NOT-FOR-US: bootstrap-table + NOTE: URL in CVE has moved. https://github.com/wenzhixin/bootstrap-table/pull/5941 CVE-2021-23471 RESERVED CVE-2021-23470 @@ -51901,7 +51903,7 @@ CVE-2021-22053 CVE-2021-22052 RESERVED CVE-2021-22051 (Applications using Spring Cloud Gateway are vulnerable to specifically ...) - TODO: check + NOT-FOR-US: Spring Cloud Gateway CVE-2021-22050 RESERVED CVE-2021-22049 -- cgit v1.2.3