Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
eb932ba0 by Salvatore Bonaccorso at 2024-11-23T11:05:34+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -267,7 +267,7 @@ CVE-2024-8356 (Visteon Infotainment VIP MCU Code 
Insufficient Validation of Data
 CVE-2024-8355 (Visteon Infotainment System DeviceManager iAP Serial Number SQL 
Inject ...)
        NOT-FOR-US: Visteon Infotainment
 CVE-2024-8025 (Nikon NEF Codec Thumbnail Provider NRW File Parsing Heap-based 
Buffer  ...)
-       TODO: check
+       NOT-FOR-US: Nikon
 CVE-2024-7565 (SMARTBEAR SoapUI unpackageAll Directory Traversal Remote Code 
Executio ...)
        NOT-FOR-US: SMARTBEAR SoapUI
 CVE-2024-7511 (Trimble SketchUp Pro SKP File Parsing Out-Of-Bounds Read 
Information D ...)
@@ -285,303 +285,303 @@ CVE-2024-7391 (ChargePoint Home Flex Bluetooth Low 
Energy Information Disclosure
 CVE-2024-7352 (PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote 
Code Ex ...)
        NOT-FOR-US: PDF-XChange Editor
 CVE-2024-7253 (NoMachine Uncontrolled Search Path Element Local Privilege 
Escalation  ...)
-       TODO: check
+       NOT-FOR-US: NoMachine
 CVE-2024-7245 (Panda Security Dome VPN Incorrect Permission Assignment Local 
Privileg ...)
-       TODO: check
+       NOT-FOR-US: Panda Security Dome
 CVE-2024-7244 (Panda Security Dome VPN DLL Hijacking Local Privilege 
Escalation Vulne ...)
-       TODO: check
+       NOT-FOR-US: Panda Security Dome
 CVE-2024-7243 (Panda Security Dome Link Following Local Privilege Escalation 
Vulnerab ...)
-       TODO: check
+       NOT-FOR-US: Panda Security Dome
 CVE-2024-7242 (Panda Security Dome Link Following Local Privilege Escalation 
Vulnerab ...)
-       TODO: check
+       NOT-FOR-US: Panda Security Dome
 CVE-2024-7241 (Panda Security Dome Link Following Local Privilege Escalation 
Vulnerab ...)
-       TODO: check
+       NOT-FOR-US: Panda Security Dome
 CVE-2024-7240 (F-Secure Total Link Following Local Privilege Escalation 
Vulnerability ...)
-       TODO: check
+       NOT-FOR-US: F-Secure Total
 CVE-2024-7239 (VIPRE Advanced Security Link Following Local Privilege 
Escalation Vuln ...)
-       TODO: check
+       NOT-FOR-US: VIPRE
 CVE-2024-7238 (VIPRE Advanced Security SBAMSvc Link Following Local Privilege 
Escalat ...)
-       TODO: check
+       NOT-FOR-US: VIPRE
 CVE-2024-7237 (AVG AntiVirus Free AVGSvc Link Following Local Privilege 
Escalation Vu ...)
-       TODO: check
+       NOT-FOR-US: AVG AntiVirus Free
 CVE-2024-7236 (AVG AntiVirus Free icarus Arbitrary File Creation Denial of 
Service Vu ...)
-       TODO: check
+       NOT-FOR-US: AVG AntiVirus Free
 CVE-2024-7235 (AVG AntiVirus Free Link Following Denial-of-Service 
Vulnerability. Thi ...)
-       TODO: check
+       NOT-FOR-US: AVG AntiVirus Free
 CVE-2024-7234 (AVG AntiVirus Free AVGSvc Link Following Local Privilege 
Escalation Vu ...)
-       TODO: check
+       NOT-FOR-US: AVG AntiVirus Free
 CVE-2024-7233 (Avast Free Antivirus AvastSvc Link Following Local Privilege 
Escalatio ...)
-       TODO: check
+       NOT-FOR-US: Avast Free Antivirus
 CVE-2024-7232 (Avast Free Antivirus AvastSvc Link Following Local Privilege 
Escalatio ...)
-       TODO: check
+       NOT-FOR-US: Avast Free Antivirus
 CVE-2024-7231 (Avast Cleanup Premium Link Following Local Privilege Escalation 
Vulner ...)
-       TODO: check
+       NOT-FOR-US: Avast
 CVE-2024-7230 (Avast Cleanup Premium Link Following Local Privilege Escalation 
Vulner ...)
-       TODO: check
+       NOT-FOR-US: Avast
 CVE-2024-7229 (Avast Cleanup Premium Link Following Local Privilege Escalation 
Vulner ...)
-       TODO: check
+       NOT-FOR-US: Avast
 CVE-2024-7228 (Avast Free Antivirus Link Following Denial-of-Service 
Vulnerability. T ...)
-       TODO: check
+       NOT-FOR-US: Avast
 CVE-2024-7227 (Avast Free Antivirus AvastSvc Link Following Local Privilege 
Escalatio ...)
-       TODO: check
+       NOT-FOR-US: Avast
 CVE-2024-6871 (G DATA Total Security Incorrect Permission Assignment Local 
Privilege  ...)
-       TODO: check
+       NOT-FOR-US: G DATA
 CVE-2024-6822 (IrfanView CIN File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-6821 (IrfanView CIN File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-6820 (IrfanView AWD File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-6819 (IrfanView PSP File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-6818 (IrfanView PSP File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-6817 (IrfanView PSP File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-6816 (IrfanView PSP File Parsing Heap-based Buffer Overflow Remote 
Code Exec ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-6815 (IrfanView RLE File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-6260 (Malwarebytes Antimalware Link Following Local Privilege 
Escalation Vul ...)
-       TODO: check
+       NOT-FOR-US: Malwarebytes Antimalware
 CVE-2024-6249 (Wyze Cam v3 TCP Traffic Handling Stack-Based Buffer Overflow 
Remote Co ...)
-       TODO: check
+       NOT-FOR-US: Wyze Cam
 CVE-2024-6248 (Wyze Cam v3 Cloud Infrastructure Improper Authentication Remote 
Code E ...)
-       TODO: check
+       NOT-FOR-US: Wyze Cam
 CVE-2024-6247 (Wyze Cam v3 Wi-Fi SSID OS Command Injection Remote Code 
Execution Vuln ...)
-       TODO: check
+       NOT-FOR-US: Wyze Cam
 CVE-2024-6246 (Wyze Cam v3 Realtek Wi-Fi Driver Heap-Based Buffer Overflow 
Remote Cod ...)
-       TODO: check
+       NOT-FOR-US: Wyze Cam
 CVE-2024-6233 (Check Point ZoneAlarm Extreme Security Link Following Local 
Privilege  ...)
-       TODO: check
+       NOT-FOR-US: Check Point ZoneAlarm
 CVE-2024-5877 (IrfanView PIC File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-5876 (IrfanView PSP File Parsing Heap-based Buffer Overflow Remote 
Code Exec ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-5875 (IrfanView SHP File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-5874 (IrfanView PNT File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-5722 (Logsign Unified SecOps Platform HTTP API Hard-coded 
Cryptographic Key  ...)
-       TODO: check
+       NOT-FOR-US: Logsign Unified SecOps Platform
 CVE-2024-5721 (Logsign Unified SecOps Platform Missing Authentication Remote 
Code Exe ...)
-       TODO: check
+       NOT-FOR-US: Logsign Unified SecOps Platform
 CVE-2024-5720 (Logsign Unified SecOps Platform Command Injection Remote Code 
Executio ...)
-       TODO: check
+       NOT-FOR-US: Logsign Unified SecOps Platform
 CVE-2024-5719 (Logsign Unified SecOps Platform Command Injection Remote Code 
Executio ...)
-       TODO: check
+       NOT-FOR-US: Logsign Unified SecOps Platform
 CVE-2024-5718 (Logsign Unified SecOps Platform Missing Authentication Remote 
Code Exe ...)
-       TODO: check
+       NOT-FOR-US: Logsign Unified SecOps Platform
 CVE-2024-5717 (Logsign Unified SecOps Platform Command Injection Remote Code 
Executio ...)
-       TODO: check
+       NOT-FOR-US: Logsign Unified SecOps Platform
 CVE-2024-5716 (Logsign Unified SecOps Platform Authentication Bypass 
Vulnerability. T ...)
-       TODO: check
+       NOT-FOR-US: Logsign Unified SecOps Platform
 CVE-2024-5581 (Allegra unzipFile Directory Traversal Remote Code Execution 
Vulnerabil ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2024-5580 (Allegra loadFieldMatch Deserialization of Untrusted Data Remote 
Code E ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2024-5579 (Allegra renderFieldMatch Deserialization of Untrusted Data 
Remote Code ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2024-5513 (Kofax Power PDF JP2 File Parsing Out-Of-Bounds Write Remote 
Code Execu ...)
        TODO: check
 CVE-2024-5512 (Kofax Power PDF JP2 File Parsing Out-Of-Bounds Read Information 
Disclo ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2024-5511 (Kofax Power PDF JP2 File Parsing Out-Of-Bounds Read Remote Code 
Execut ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2024-5510 (Kofax Power PDF JP2 File Parsing Out-Of-Bounds Read Remote Code 
Execut ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2024-52034 (An OS Command Injection vulnerability exists within myPRO 
Manager. A p ...)
-       TODO: check
+       NOT-FOR-US: myPRO Manager
 CVE-2024-50054 (The back-end does not sufficiently verify the user-controlled 
filename ...)
-       TODO: check
+       NOT-FOR-US: myPRO
 CVE-2024-47407 (A parameter within a command does not properly validate input 
within m ...)
-       TODO: check
+       NOT-FOR-US: myPRO
 CVE-2024-47138 (The administrative interface listens by default on all 
interfaces on a ...)
-       TODO: check
+       NOT-FOR-US: myPRO
 CVE-2024-45369 (The web application uses a weak authentication mechanism to 
verify tha ...)
-       TODO: check
+       NOT-FOR-US: myPRO
 CVE-2024-41761 (IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect 
Server) 10.5 ...)
        NOT-FOR-US: IBM
 CVE-2024-30377 (G DATA Total Security Scan Server Link Following Local 
Privilege Escal ...)
-       TODO: check
+       NOT-FOR-US: G DATA
 CVE-2024-30376 (Famatech Advanced IP Scanner Uncontrolled Search Path Element 
Local Pr ...)
-       TODO: check
+       NOT-FOR-US: Famatech Advanced IP Scanner
 CVE-2024-30372 (Allegra getLinkText Server-Side Template Injection Remote Code 
Executi ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2024-1868 (G DATA Total Security Link Following Local Privilege Escalation 
Vulner ...)
-       TODO: check
+       NOT-FOR-US: G DATA
 CVE-2024-1867 (G DATA Total Security Link Following Local Privilege Escalation 
Vulner ...)
-       TODO: check
+       NOT-FOR-US: G DATA
 CVE-2024-11630 (A vulnerability has been found in E-Lins H685, H685f, H700, 
H720, H750 ...)
-       TODO: check
+       NOT-FOR-US: E-Lins
 CVE-2024-11619 (A vulnerability, which was classified as problematic, has been 
found i ...)
-       TODO: check
+       NOT-FOR-US: macrozheng mall
 CVE-2024-11612 (7-Zip CopyCoder Infinite Loop Denial-of-Service Vulnerability. 
This vu ...)
        TODO: check
 CVE-2024-11586 (Ubuntu's implementation of pulseaudio can be crashed by a 
malicious pr ...)
        TODO: check
 CVE-2024-11581 (Luxion KeyShot JT File Parsing Out-Of-Bounds Read Remote Code 
Executio ...)
-       TODO: check
+       NOT-FOR-US: Luxion KeyShot
 CVE-2024-11580 (Luxion KeyShot ABC File Parsing Heap-based Buffer Overflow 
Remote Code ...)
-       TODO: check
+       NOT-FOR-US: Luxion KeyShot
 CVE-2024-11579 (Luxion KeyShot OBJ File Parsing Out-Of-Bounds Write Remote 
Code Execut ...)
-       TODO: check
+       NOT-FOR-US: Luxion KeyShot
 CVE-2024-11578 (Luxion KeyShot 3DS File Parsing Stack-based Buffer Overflow 
Remote Cod ...)
-       TODO: check
+       NOT-FOR-US: Luxion KeyShot
 CVE-2024-11577 (Luxion KeyShot SKP File Parsing Out-Of-Bounds Write Remote 
Code Execut ...)
-       TODO: check
+       NOT-FOR-US: Luxion KeyShot
 CVE-2024-11576 (Luxion KeyShot 3DS File Parsing Heap-based Buffer Overflow 
Remote Code ...)
-       TODO: check
+       NOT-FOR-US: Luxion KeyShot
 CVE-2024-11575 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11574 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11573 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11572 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11571 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11570 (IrfanView DXF File Parsing Use-After-Free Remote Code 
Execution Vulner ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11569 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11568 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11567 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11566 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11565 (IrfanView CGM File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11564 (IrfanView DWG File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11563 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11562 (IrfanView CGM File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11561 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11560 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11559 (IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11558 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11557 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11556 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11555 (IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11554 (IrfanView DWG File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11553 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11552 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11551 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11550 (IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11549 (IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11548 (IrfanView DWG File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11547 (IrfanView DWG File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11546 (IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11545 (IrfanView DXF File Parsing Use-After-Free Remote Code 
Execution Vulner ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11544 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11543 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11542 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11541 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11540 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11539 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11538 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11537 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11536 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11535 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11534 (IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11533 (IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11532 (IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11531 (IrfanView CGM File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11530 (IrfanView CGM File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11529 (IrfanView DWG File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11528 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11527 (IrfanView DWG File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11526 (IrfanView CGM File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11525 (IrfanView DXF File Parsing Use-After-Free Remote Code 
Execution Vulner ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11524 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11523 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11522 (IrfanView DXF File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11521 (IrfanView DJVU File Parsing Use-After-Free Remote Code 
Execution Vulne ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11520 (IrfanView ARW File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11519 (IrfanView RLE File Parsing Memory Corruption Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11518 (IrfanView RLE File Parsing Heap-based Buffer Overflow Remote 
Code Exec ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11517 (IrfanView JPM File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11516 (IrfanView JPM File Parsing Heap-based Buffer Overflow Remote 
Code Exec ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11515 (IrfanView JPM File Parsing Out-Of-Bounds Write Remote Code 
Execution V ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11514 (IrfanView ECW File Parsing Heap-based Buffer Overflow Remote 
Code Exec ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11513 (IrfanView ECW File Parsing Heap-based Buffer Overflow Remote 
Code Exec ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11512 (IrfanView WBZ Plugin WB1 File Parsing Out-Of-Bounds Write 
Remote Code  ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11511 (IrfanView XCF Plugin XCF File Parsing Heap-based Buffer 
Overflow Remot ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11510 (IrfanView WBZ plugin WB1 File Parsing Stack-based Buffer 
Overflow Remo ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11509 (IrfanView SVG File Parsing Heap-based Buffer Overflow Remote 
Code Exec ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11508 (IrfanView DXF File Parsing Type Confusion Remote Code 
Execution Vulner ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11507 (IrfanView DXF File Parsing Type Confusion Remote Code 
Execution Vulner ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11506 (IrfanView DWG File Parsing Out-Of-Bounds Read Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: IrfanView
 CVE-2024-11463 (The DeBounce Email Validator plugin for WordPress is 
vulnerable to Ref ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-11446 (The Chessgame Shizzle plugin for WordPress is vulnerable to 
Reflected  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-11426 (The AutoListicle: Automatically Update Numbered List Articles 
plugin f ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-11415 (The WP-Orphanage Extended plugin for WordPress is vulnerable 
to Cross- ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-11408 (The Slotti Ajanvaraus plugin for WordPress is vulnerable to 
Stored Cro ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-11394 (Hugging Face Transformers Trax Model Deserialization of 
Untrusted Data ...)
        TODO: check
 CVE-2024-11393 (Hugging Face Transformers MaskFormer Model Deserialization of 
Untruste ...)
@@ -589,89 +589,89 @@ CVE-2024-11393 (Hugging Face Transformers MaskFormer 
Model Deserialization of Un
 CVE-2024-11392 (Hugging Face Transformers MobileViTV2 Deserialization of 
Untrusted Dat ...)
        TODO: check
 CVE-2024-11387 (The Easy Liveblogs plugin for WordPress is vulnerable to 
Stored Cross- ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-11362 (The Payments Plugin and Checkout Plugin for WooCommerce: 
Stripe, PayPa ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-11361 (The PDF Invoices & Packing Slips Generator for WooCommerce 
plugin for  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-11332 (The HIPAA Compliant Forms with Drag\u2019n\u2019Drop HIPAA 
Form Builde ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-11330 (The Custom CSS, JS & PHP plugin for WordPress is vulnerable to 
Reflect ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-11298
        REJECTED
 CVE-2024-11296
        REJECTED
 CVE-2024-11265 (The Increase Maximum Upload File Size | Increase Execution 
Time plugin ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-11188 (The Formidable Forms \u2013 Contact Form Plugin, Survey, Quiz, 
Payment ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-10961 (The Social Login plugin for WordPress is vulnerable to 
authentication  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-10886 (The Tribute Testimonials \u2013 WordPress Testimonial 
Grid/Slider plug ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-10880 (The JobBoardWP \u2013 Job Board Listings and Submissions 
plugin for Wo ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-10874 (The Quotes llama plugin for WordPress is vulnerable to Stored 
Cross-Si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-10873 (The LA-Studio Element Kit for Elementor plugin for WordPress 
is vulner ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-10869 (The WordPress Brute Force Protection \u2013 Stop Brute Force 
Attacks p ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-10868 (The Enter Addons \u2013 Ultimate Template Builder for 
Elementor plugin ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-10813 (The Product Table for WooCommerce by CodeAstrology 
(wooproducttable.co ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-10803 (The MP3 Sticky Player plugin for WordPress is vulnerable to 
Directory  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-10606 (The WP Travel Engine \u2013 Tour Booking Plugin \u2013 Tour 
Operator S ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-10537 (The WP User Manager \u2013 User Profile Builder & Membership 
plugin fo ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-10216 (The WP User Manager \u2013 User Profile Builder & Membership 
plugin fo ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-10116 (The Twitter Follow Button plugin for WordPress is vulnerable 
to Stored ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-0138 (NVIDIA Base Command Manager contains a missing authentication 
vulnerab ...)
-       TODO: check
+       NOT-FOR-US: NVIDIA Base Command Manager
 CVE-2024-0122 (NVIDIA Delegated Licensing Service for all appliance platforms 
contain ...)
-       TODO: check
+       NOT-FOR-US: NVIDIA
 CVE-2023-52335 (Advantech iView ConfigurationServlet SQL Injection Information 
Disclos ...)
-       TODO: check
+       NOT-FOR-US: Advantech
 CVE-2023-52334 (Allegra downloadAttachmentGlobal Directory Traversal 
Information Discl ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2023-52333 (Allegra saveFile Directory Traversal Remote Code Execution 
Vulnerabili ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2023-52332 (Allegra serveMathJaxLibraries Directory Traversal Information 
Disclosu ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2023-51648 (Allegra getFileContentAsString Directory Traversal Information 
Disclos ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2023-51647 (Allegra saveInlineEdit Directory Traversal Remote Code 
Execution Vulne ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2023-51646 (Allegra uploadSimpleFile Directory Traversal Remote Code 
Execution Vul ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2023-51645 (Allegra unzipFile Directory Traversal Remote Code Execution 
Vulnerabil ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2023-51644 (Allegra SiteConfigAction Improper Access Control Remote Code 
Execution ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2023-51643 (Allegra uploadFile Directory Traversal Remote Code Execution 
Vulnerabi ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2023-51642 (Allegra loadFieldMatch Deserialization of Untrusted Data 
Remote Code E ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2023-51641 (Allegra renderFieldMatch Deserialization of Unstrusted Data 
Remote Cod ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2023-51640 (Allegra extarctZippedFile Directory Traversal Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2023-51639 (Allegra downloadExportedChart Directory Traversal 
Authentication Bypas ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2023-51638 (Allegra Hard-coded Credentials Authentication Bypass 
Vulnerability. Th ...)
-       TODO: check
+       NOT-FOR-US: Allegra
 CVE-2023-51635 (NETGEAR RAX30 fing_dil Stack-based Buffer Overflow Remote Code 
Executi ...)
-       TODO: check
+       NOT-FOR-US: NETGEAR
 CVE-2023-51634 (NETGEAR RAX30 Improper Certificate Validation Remote Code 
Execution Vu ...)
-       TODO: check
+       NOT-FOR-US: NETGEAR
 CVE-2023-39470 (PaperCut NG print.script.sandboxed Exposed Dangerous Function 
Remote C ...)
-       TODO: check
+       NOT-FOR-US: PaperCut
 CVE-2024-7882 (Improper Neutralization of Special Elements used in an SQL 
Command ('S ...)
        NOT-FOR-US: Special Minds Design and Software e-Commerce
 CVE-2024-7837 (Improper Neutralization of Special Elements used in an SQL 
Command ('S ...)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/eb932ba03b1ed27a467c6ecdf7022d5642750c12

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/eb932ba03b1ed27a467c6ecdf7022d5642750c12
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
debian-security-tracker-commits@alioth-lists.debian.net
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to