Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
e7ac9279 by Moritz Muehlenhoff at 2020-07-15T13:10:27+02:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -21568,9 +21568,9 @@ CVE-2020-7595 (xmlStringLenDecodeEntities in parser.c 
in libxml2 2.9.10 has an i
 CVE-2020-7594 (MultiTech Conduit MTCDT-LVW2-24XX 1.4.17-ocea-13592 devices 
allow remo ...)
        NOT-FOR-US: MultiTech Conduit MTCDT-LVW2-24XX devices
 CVE-2020-7593 (A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS 
varian ...)
-       TODO: check
+       NOT-FOR-US: Siemens
 CVE-2020-7592 (A vulnerability has been identified in SIMATIC HMI Basic Panels 
1st Ge ...)
-       TODO: check
+       NOT-FOR-US: Siemens
 CVE-2020-7591
        RESERVED
 CVE-2020-7590
@@ -21578,31 +21578,31 @@ CVE-2020-7590
 CVE-2020-7589 (A vulnerability has been identified in LOGO!8 BM (incl. SIPLUS 
variant ...)
        NOT-FOR-US: Siemens
 CVE-2020-7588 (A vulnerability has been identified in Opcenter Execution 
Discrete (Al ...)
-       TODO: check
+       NOT-FOR-US: Siemens
 CVE-2020-7587 (A vulnerability has been identified in Opcenter Execution 
Discrete (Al ...)
-       TODO: check
+       NOT-FOR-US: Siemens
 CVE-2020-7586 (A vulnerability has been identified in SIMATIC PCS 7 V8.2 and 
earlier  ...)
        NOT-FOR-US: Siemens
 CVE-2020-7585 (A vulnerability has been identified in SIMATIC PCS 7 V8.2 and 
earlier  ...)
        NOT-FOR-US: Siemens
 CVE-2020-7584 (A vulnerability has been identified in SIMATIC S7-200 SMART CPU 
family ...)
-       TODO: check
+       NOT-FOR-US: Siemens
 CVE-2020-7583
        RESERVED
 CVE-2020-7582
        RESERVED
 CVE-2020-7581 (A vulnerability has been identified in Opcenter Execution 
Discrete (Al ...)
-       TODO: check
+       NOT-FOR-US: Siemens
 CVE-2020-7580 (A vulnerability has been identified in SIMATIC Automation Tool 
(All ve ...)
        NOT-FOR-US: Siemens
 CVE-2020-7579 (A vulnerability has been identified in Spectrum Power™ 5 
(All ve ...)
        NOT-FOR-US: Siemens
 CVE-2020-7578 (A vulnerability has been identified in Camstar Enterprise 
Platform (Al ...)
-       TODO: check
+       NOT-FOR-US: Siemens
 CVE-2020-7577 (A vulnerability has been identified in Camstar Enterprise 
Platform (Al ...)
-       TODO: check
+       NOT-FOR-US: Siemens
 CVE-2020-7576 (A vulnerability has been identified in Camstar Enterprise 
Platform (Al ...)
-       TODO: check
+       NOT-FOR-US: Siemens
 CVE-2020-7575 (A vulnerability has been identified in Climatix POL908 
(BACnet/IP modu ...)
        NOT-FOR-US: Climatix
 CVE-2020-7574 (A vulnerability has been identified in Climatix POL908 
(BACnet/IP modu ...)
@@ -21728,7 +21728,7 @@ CVE-2020-7515
 CVE-2020-7514
        RESERVED
 CVE-2020-7513 (A CWE-312: Cleartext Storage of Sensitive Information 
vulnerability ex ...)
-       TODO: check
+       NOT-FOR-US: Schneider
 CVE-2020-7512 (A CWE-1103: Use of Platform-Dependent Third Party Components 
with vuln ...)
        NOT-FOR-US: Easergy T300
 CVE-2020-7511 (A CWE-327: Use of a Broken or Risky Cryptographic Algorithm 
vulnerabil ...)
@@ -26946,9 +26946,9 @@ CVE-2020-5376
 CVE-2020-5375
        RESERVED
 CVE-2020-5374 (Dell EMC OpenManage Integration for Microsoft System Center 
(OMIMSSC)  ...)
-       TODO: check
+       NOT-FOR-US: EMC
 CVE-2020-5373 (Dell EMC OpenManage Integration for Microsoft System Center 
(OMIMSSC)  ...)
-       TODO: check
+       NOT-FOR-US: EMC
 CVE-2020-5372 (Dell EMC PowerStore versions prior to 1.0.1.0.5.002 contain a 
vulnerab ...)
        NOT-FOR-US: EMC
 CVE-2020-5371 (Dell EMC Isilon OneFS versions 8.2.2 and earlier and Dell EMC 
PowerSca ...)
@@ -27285,7 +27285,7 @@ CVE-2020-5247 (In Puma (RubyGem) before 4.3.2 and 
before 3.12.3, if an applicati
        NOTE: 
https://github.com/puma/puma/commit/1b17e85a06183cd169b41ca719928c26d44a6e03 
(3.12.3)
        NOTE: 
https://github.com/puma/puma/commit/694feafcd4fdcea786a0730701dad933f7547bea 
(4.3.2)
 CVE-2020-5246 (Traccar GPS Tracking System before version 4.9 has a LDAP 
injection vu ...)
-       TODO: check
+       NOT-FOR-US: Traccar GPS Tracking System
 CVE-2020-5245 (Dropwizard-Validation before 1.3.19, and 2.0.2 may allow 
arbitrary cod ...)
        NOT-FOR-US: Dropwizard-Validation
 CVE-2020-5244 (In BuddyPress before 5.1.2, requests to a certain REST API 
endpoint ca ...)
@@ -30359,9 +30359,9 @@ CVE-2020-3976
 CVE-2020-3975
        RESERVED
 CVE-2020-3974 (VMware Fusion (11.x before 11.5.5), VMware Remote Console for 
Mac (11. ...)
-       TODO: check
+       NOT-FOR-US: VMware
 CVE-2020-3973 (The VeloCloud Orchestrator does not apply correct input 
validation whi ...)
-       TODO: check
+       NOT-FOR-US: VMware
 CVE-2020-3972 (VMware Tools for macOS (11.x.x and prior before 11.1.1) 
contains a den ...)
        NOT-FOR-US: VMware
 CVE-2020-3971 (VMware ESXi (6.7 before ESXi670-201904101-SG and 6.5 before 
ESXi650-20 ...)
@@ -32913,7 +32913,7 @@ CVE-2020-3284
 CVE-2020-3283 (A vulnerability in the Secure Sockets Layer (SSL)/Transport 
Layer Secu ...)
        NOT-FOR-US: Cisco
 CVE-2020-3282 (A vulnerability in the web-based management interface of Cisco 
Unified ...)
-       TODO: check
+       NOT-FOR-US: Cisco
 CVE-2020-3281 (A vulnerability in the audit logging component of Cisco Digital 
Networ ...)
        NOT-FOR-US: Cisco
 CVE-2020-3280 (A vulnerability in the Java Remote Management Interface of 
Cisco Unifi ...)
@@ -36084,15 +36084,15 @@ CVE-2020-2036
 CVE-2020-2035
        RESERVED
 CVE-2020-2034 (An OS Command Injection vulnerability in the PAN-OS 
GlobalProtect port ...)
-       TODO: check
+       NOT-FOR-US: Palo Alto Networks
 CVE-2020-2033 (When the pre-logon feature is enabled, a missing certification 
validat ...)
        NOT-FOR-US: Palo Alto Networks
 CVE-2020-2032 (A race condition vulnerability Palo Alto Networks GlobalProtect 
app on ...)
        NOT-FOR-US: Palo Alto Networks
 CVE-2020-2031 (An integer underflow vulnerability in the dnsproxyd component 
of the P ...)
-       TODO: check
+       NOT-FOR-US: Palo Alto Networks
 CVE-2020-2030 (An OS Command Injection vulnerability in the PAN-OS management 
interfa ...)
-       TODO: check
+       NOT-FOR-US: Palo Alto Networks
 CVE-2020-2029 (An OS Command Injection vulnerability in the PAN-OS web 
management int ...)
        NOT-FOR-US: Palo Alto Networks
 CVE-2020-2028 (An OS Command Injection vulnerability in PAN-OS management 
server allo ...)
@@ -36196,7 +36196,7 @@ CVE-2020-1983 (A use after free vulnerability in 
ip_reass() in ip_input.c of lib
        NOTE: qemu 1:4.1-2 switched to system libslirp, marking that version as 
fixed
        NOTE: slirp4netns 1.0.1-1 switched to system libslirp, marking that 
version as fixed.
 CVE-2020-1982 (Certain communication between PAN-OS and cloud-delivered 
services inad ...)
-       TODO: check
+       NOT-FOR-US: PAN-OS
 CVE-2020-1981 (A predictable temporary filename vulnerability in PAN-OS allows 
local  ...)
        NOT-FOR-US: PAN-OS
 CVE-2020-1980 (A shell command injection vulnerability in the PAN-OS CLI 
allows a loc ...)
@@ -36951,13 +36951,13 @@ CVE-2020-1841 (Huawei CloudLink Board version 20.0.0; 
DP300 version V500R002C00;
 CVE-2020-1840 (HUAWEI Mate 20 smart phones with versions earlier than 
10.0.0.175(C00E ...)
        NOT-FOR-US: Huawei
 CVE-2020-1839 (HUAWEI Mate 30 with versions earlier than 
10.1.0.150(C00E136R5P3) have ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2020-1838 (HUAWEI Mate 30 Pro with versions earlier than 
10.1.0.150(C00E136R5P3)  ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2020-1837 (ChangXiang 8 Plus with versions earlier than 
9.1.0.136(C00E121R1P6T8)  ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2020-1836 (HUAWEI P30 with versions earlier than 10.1.0.160(C00E160R2P11) 
and HUA ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2020-1835 (HUAWEI Mate 30 with versions earlier than 
10.1.0.126(C00E125R5P3) have ...)
        NOT-FOR-US: Huawei
 CVE-2020-1834 (HUAWEI P30 and HUAWEI P30 Pro with versions earlier than 
10.1.0.135(C0 ...)
@@ -37172,11 +37172,11 @@ CVE-2019-19419
 CVE-2019-19418
        RESERVED
 CVE-2019-19417 (The SIP module of some Huawei products have a denial of 
service (DoS)  ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2019-19416 (The SIP module of some Huawei products have a denial of 
service (DoS)  ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2019-19415 (The SIP module of some Huawei products have a denial of 
service (DoS)  ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2019-19414 (There is an integer overflow vulnerability in LDAP server of 
some Huaw ...)
        NOT-FOR-US: Huawei
 CVE-2019-19413 (There is an integer overflow vulnerability in LDAP client of 
some Huaw ...)
@@ -38252,7 +38252,7 @@ CVE-2019-19163 (A Vulnerability in the firmware of 
COMMAX WallPad(CDP-1020MB) al
 CVE-2019-19162 (A use-after-free vulnerability in the TOBESOFT XPLATFORM 
versions 9.1  ...)
        NOT-FOR-US: TOBESOFT XPLATFORM
 CVE-2019-19161 (CyMiInstaller322 ActiveX which runs MIPLATFORM downloads files 
require ...)
-       TODO: check
+       NOT-FOR-US: CyMiInstaller322
 CVE-2019-19160 (Reportexpress ProPlus contains a vulnerability that could 
allow an arb ...)
        NOT-FOR-US: Reportexpress ProPlus
 CVE-2019-19159
@@ -39770,7 +39770,7 @@ CVE-2020-1483
 CVE-2020-1482
        RESERVED
 CVE-2020-1481 (A remote code execution vulnerability exists in the ESLint 
extension f ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1480
        RESERVED
 CVE-2020-1479
@@ -39794,183 +39794,183 @@ CVE-2020-1471
 CVE-2020-1470
        RESERVED
 CVE-2020-1469 (A denial of service vulnerability exists when the .NET 
implementation  ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1468 (An information disclosure vulnerability exists when the Windows 
GDI co ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1467
        RESERVED
 CVE-2020-1466
        RESERVED
 CVE-2020-1465 (An elevation of privilege vulnerability exists in Microsoft 
OneDrive t ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1464
        RESERVED
 CVE-2020-1463 (An elevation of privilege vulnerability exists in the way that 
the Sha ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1462 (An information disclosure vulnerability exists when Skype for 
Business ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1461 (An elevation of privilege vulnerability exists when the 
MpSigStub.exe  ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1460
        RESERVED
 CVE-2020-1459
        RESERVED
 CVE-2020-1458 (A remote code execution vulnerability exists when Microsoft 
Office imp ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1457
        RESERVED
 CVE-2020-1456 (A cross-site-scripting (XSS) vulnerability exists when 
Microsoft Share ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1455
        RESERVED
 CVE-2020-1454 (This vulnerability is caused when SharePoint Server does not 
properly  ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1453
        RESERVED
 CVE-2020-1452
        RESERVED
 CVE-2020-1451 (A cross-site-scripting (XSS) vulnerability exists when 
Microsoft Share ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1450 (A cross-site-scripting (XSS) vulnerability exists when 
Microsoft Share ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1449 (A remote code execution vulnerability exists in Microsoft 
Project soft ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1448 (A remote code execution vulnerability exists in Microsoft Word 
softwar ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1447 (A remote code execution vulnerability exists in Microsoft Word 
softwar ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1446 (A remote code execution vulnerability exists in Microsoft Word 
softwar ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1445 (An information disclosure vulnerability exists when Microsoft 
Office i ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1444 (A remote code execution vulnerability exists in the way 
Microsoft Shar ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1443 (A spoofing vulnerability exists when Microsoft SharePoint 
Server does  ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1442 (A spoofing vulnerability exists when an Office Web Apps server 
does no ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1441
        RESERVED
 CVE-2020-1440
        RESERVED
 CVE-2020-1439 (A remote code execution vulnerability exists in 
PerformancePoint Servi ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1438 (An elevation of privilege vulnerability exists in the way that 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1437 (An elevation of privilege vulnerability exists in the way that 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1436 (A remote code execution vulnerability exists when the Windows 
font lib ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1435 (A remote code execution vulnerability exists in the way that 
the Windo ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1434 (An elevation of privilege vulnerability exists in the way that 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1433 (An information disclosure vulnerability exists when Microsoft 
Edge PDF ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1432 (An information disclosure vulnerability exists when Skype for 
Business ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1431 (An elevation of privilege vulnerability exists when the Windows 
AppX D ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1430 (An elevation of privilege vulnerability exists when the Windows 
UPnP D ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1429 (An elevation of privilege vulnerability exists when Windows 
Error Repo ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1428 (An elevation of privilege vulnerability exists in the way that 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1427 (An elevation of privilege vulnerability exists in the way that 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1426 (An information disclosure vulnerability exists when the Windows 
kernel ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1425
        RESERVED
 CVE-2020-1424 (An elevation of privilege vulnerability exists when the Windows 
Update ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1423 (An elevation of privilege vulnerability exists in the way that 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1422 (An elevation of privilege vulnerability exists when the Windows 
Runtim ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1421 (A remote code execution vulnerability exists in Microsoft 
Windows that ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1420 (An information disclosure vulnerability exists when Windows 
Error Repo ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1419 (An information disclosure vulnerability exists when the Windows 
kernel ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1418 (An elevation of privilege vulnerability exists when the Windows 
Diagno ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1417
        RESERVED
 CVE-2020-1416 (An elevation of privilege vulnerability exists in Visual Studio 
and Vi ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1415 (An elevation of privilege vulnerability exists when the Windows 
Runtim ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1414 (An elevation of privilege vulnerability exists when the Windows 
Runtim ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1413 (An elevation of privilege vulnerability exists when the Windows 
Runtim ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1412 (A remote code execution vulnerability exists in the way that 
Microsoft ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1411 (An elevation of privilege vulnerability exists when the Windows 
kernel ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1410 (A remote code execution vulnerability exists when Windows 
Address Book ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1409 (A remote code execution vulnerability exists in the way that 
DirectWri ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1408 (A remote code execution vulnerability exists when the Windows 
font lib ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1407 (A remote code execution vulnerability exists when the Windows 
Jet Data ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1406 (An elevation of privilege vulnerability exists in the way that 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1405 (An elevation of privilege vulnerability exists when Windows 
Mobile Dev ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1404 (An elevation of privilege vulnerability exists when the Windows 
Runtim ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1403 (A remote code execution vulnerability exists in the way that 
the VBScr ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1402 (An elevation of privilege vulnerability exists when the Windows 
Active ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1401 (A remote code execution vulnerability exists when the Windows 
Jet Data ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1400 (A remote code execution vulnerability exists when the Windows 
Jet Data ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1399 (An elevation of privilege vulnerability exists when the Windows 
Runtim ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1398 (An elevation of privilege vulnerability exists when Windows 
Lockscreen ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1397 (An information disclosure vulnerability exists in Windows when 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1396 (An elevation of privilege vulnerability exists when Windows 
improperly ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1395 (An elevation of privilege vulnerability exists in the way that 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1394 (An elevation of privilege vulnerability exists in the way that 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1393 (An elevation of privilege vulnerability exists when the Windows 
Diagno ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1392 (An elevation of privilege vulnerability exists when the Windows 
Delive ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1391 (An information disclosure vulnerability exists when the Windows 
Agent  ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1390 (An elevation of privilege vulnerability exists in the way that 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1389 (An information disclosure vulnerability exists when the Windows 
kernel ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1388 (An elevation of privilege vulnerability exists in the way that 
the psm ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1387 (An elevation of privilege vulnerability exists in the way the 
Windows  ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1386 (An information vulnerability exists when Windows Connected User 
Experi ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1385 (An elevation of privilege vulnerability exists in the way that 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1384 (An elevation of privilege vulnerability exists when the Windows 
Crypto ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1383
        RESERVED
 CVE-2020-1382 (An elevation of privilege vulnerability exists when the Windows 
Graphi ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1381 (An elevation of privilege vulnerability exists when the Windows 
Graphi ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1380
        RESERVED
 CVE-2020-1379
@@ -39982,73 +39982,73 @@ CVE-2020-1377
 CVE-2020-1376
        RESERVED
 CVE-2020-1375 (An elevation of privilege vulnerability exists when Windows 
improperly ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1374 (A remote code execution vulnerability exists in the Windows 
Remote Des ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1373 (An elevation of privilege vulnerability exists in the way that 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1372 (An elevation of privilege vulnerability exists when Windows 
Mobile Dev ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1371 (An elevation of privilege vulnerability exists when the Windows 
Event  ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1370 (An elevation of privilege vulnerability exists when the Windows 
Runtim ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1369 (An elevation of privilege vulnerability exists in the way that 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1368 (An elevation of privilege vulnerability exists in the way that 
the Cre ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1367 (An information disclosure vulnerability exists when the Windows 
kernel ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1366 (An elevation of privilege vulnerability exists when the Windows 
Print  ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1365 (An elevation of privilege vulnerability exists when the Windows 
Event  ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1364 (A denial of service vulnerability exists in the way that the 
WalletSer ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1363 (An elevation of privilege vulnerability exists when the Windows 
Picker ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1362 (An elevation of privilege vulnerability exists in the way that 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1361 (An information disclosure vulnerability exists in the way that 
the Wal ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1360 (An elevation of privilege vulnerability exists when the Windows 
Profil ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1359 (An elevation of privilege vulnerability exists when the Windows 
Crypto ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1358 (An information disclosure vulnerability exists when the Windows 
Resour ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1357 (An elevation of privilege vulnerability exists when the Windows 
System ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1356 (An elevation of privilege vulnerability exists when the Windows 
iSCSI  ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1355 (A remote code execution vulnerability exists when the Windows 
Font Dri ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1354 (An elevation of privilege vulnerability exists when the Windows 
UPnP D ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1353 (An elevation of privilege vulnerability exists when the Windows 
Runtim ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1352 (An elevation of privilege vulnerability exists when the Windows 
USO Co ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1351 (An information disclosure vulnerability exists when the Windows 
Graphi ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1350 (A remote code execution vulnerability exists in Windows Domain 
Name Sy ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1349 (A remote code execution vulnerability exists in Microsoft 
Outlook soft ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1348 (An information disclosure vulnerability exists when the Windows 
GDI co ...)
        NOT-FOR-US: Microsoft
 CVE-2020-1347 (An elevation of privilege vulnerability exists when the Windows 
Storag ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1346 (An elevation of privilege vulnerability exists when the Windows 
Module ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1345
        RESERVED
 CVE-2020-1344 (An elevation of privilege vulnerability exists in the way that 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1343 (An information disclosure vulnerability exists in Visual Studio 
Code L ...)
        NOT-FOR-US: Microsoft
 CVE-2020-1342 (An information disclosure vulnerability exists when Microsoft 
Office s ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1341
        RESERVED
 CVE-2020-1340 (A spoofing vulnerability exists when the NuGetGallery does not 
properl ...)
@@ -40060,19 +40060,19 @@ CVE-2020-1338
 CVE-2020-1337
        RESERVED
 CVE-2020-1336 (An elevation of privilege vulnerability exists in the way that 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1335
        RESERVED
 CVE-2020-1334 (An elevation of privilege vulnerability exists when the Windows 
Runtim ...)
        NOT-FOR-US: Microsoft
 CVE-2020-1333 (An elevation of privilege vulnerability exists when Group 
Policy Servi ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1332
        RESERVED
 CVE-2020-1331 (A spoofing vulnerability exists when System Center Operations 
Manager  ...)
        NOT-FOR-US: Microsoft
 CVE-2020-1330 (An information disclosure vulnerability exists when Windows 
Mobile Dev ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1329 (A spoofing vulnerability exists when Microsoft Bing Search for 
Android ...)
        NOT-FOR-US: Microsoft
 CVE-2020-1328
@@ -40080,7 +40080,7 @@ CVE-2020-1328
 CVE-2020-1327 (A spoofing vulnerability exists in Microsoft Azure DevOps 
Server when  ...)
        NOT-FOR-US: Microsoft
 CVE-2020-1326 (A Cross-site Scripting (XSS) vulnerability exists when Azure 
DevOps Se ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1325
        RESERVED
 CVE-2020-1324 (An elevation of privilege (user to user) vulnerability exists 
in Windo ...)
@@ -40198,7 +40198,7 @@ CVE-2020-1269 (An elevation of privilege vulnerability 
exists when the Windows k
 CVE-2020-1268 (An information disclosure vulnerability exists when a Windows 
service  ...)
        NOT-FOR-US: Microsoft
 CVE-2020-1267 (This security update corrects a denial of service in the Local 
Securit ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1266 (An elevation of privilege vulnerability exists when the Windows 
kernel ...)
        NOT-FOR-US: Microsoft
 CVE-2020-1265 (An elevation of privilege vulnerability exists when the Windows 
Runtim ...)
@@ -40234,7 +40234,7 @@ CVE-2020-1251 (An elevation of privilege vulnerability 
exists in Windows when th
 CVE-2020-1250
        RESERVED
 CVE-2020-1249 (An elevation of privilege vulnerability exists when the Windows 
Runtim ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1248 (A remote code execution vulnerability exists in the way that 
the Windo ...)
        NOT-FOR-US: Microsoft
 CVE-2020-1247 (An elevation of privilege vulnerability exists in Windows when 
the Win ...)
@@ -40252,7 +40252,7 @@ CVE-2020-1242 (An information disclosure vulnerability 
exists in the way that Mi
 CVE-2020-1241 (A security feature bypass vulnerability exists when Windows 
Kernel fai ...)
        NOT-FOR-US: Microsoft
 CVE-2020-1240 (A remote code execution vulnerability exists in Microsoft Excel 
softwa ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1239 (A memory corruption vulnerability exists when Windows Media 
Foundation ...)
        NOT-FOR-US: Microsoft
 CVE-2020-1238 (A memory corruption vulnerability exists when Windows Media 
Foundation ...)
@@ -40562,7 +40562,7 @@ CVE-2020-1087 (An elevation of privilege vulnerability 
exists in the way that th
 CVE-2020-1086 (An elevation of privilege vulnerability exists when the Windows 
Runtim ...)
        NOT-FOR-US: Microsoft
 CVE-2020-1085 (An elevation of privilege vulnerability exists in the way that 
the Win ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1084 (A Denial Of Service vulnerability exists when Connected User 
Experienc ...)
        NOT-FOR-US: Microsoft
 CVE-2020-1083
@@ -40646,13 +40646,13 @@ CVE-2020-1045
 CVE-2020-1044
        RESERVED
 CVE-2020-1043 (A remote code execution vulnerability exists when Hyper-V 
RemoteFX vGP ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1042 (A remote code execution vulnerability exists when Hyper-V 
RemoteFX vGP ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1041 (A remote code execution vulnerability exists when Hyper-V 
RemoteFX vGP ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1040 (A remote code execution vulnerability exists when Hyper-V 
RemoteFX vGP ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1039
        RESERVED
 CVE-2020-1038
@@ -40660,7 +40660,7 @@ CVE-2020-1038
 CVE-2020-1037 (A remote code execution vulnerability exists in the way that 
the Chakr ...)
        NOT-FOR-US: Microsoft
 CVE-2020-1036 (A remote code execution vulnerability exists when Hyper-V 
RemoteFX vGP ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1035 (A remote code execution vulnerability exists in the way that 
the VBScr ...)
        NOT-FOR-US: Microsoft
 CVE-2020-1034
@@ -40668,7 +40668,7 @@ CVE-2020-1034
 CVE-2020-1033
        RESERVED
 CVE-2020-1032 (A remote code execution vulnerability exists when Hyper-V 
RemoteFX vGP ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1031
        RESERVED
 CVE-2020-1030
@@ -40682,7 +40682,7 @@ CVE-2020-1027 (An elevation of privilege vulnerability 
exists in the way that th
 CVE-2020-1026 (A Security Feature Bypass vulnerability exists in the MSR 
JavaScript C ...)
        NOT-FOR-US: Microsoft
 CVE-2020-1025 (An elevation of privilege vulnerability exists when Microsoft 
SharePoi ...)
-       TODO: check
+       NOT-FOR-US: Microsoft
 CVE-2020-1024 (A remote code execution vulnerability exists in Microsoft 
SharePoint w ...)
        NOT-FOR-US: Microsoft
 CVE-2020-1023 (A remote code execution vulnerability exists in Microsoft 
SharePoint w ...)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e7ac927957563010e6b3d9e295c69e8d6dc7bf17

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e7ac927957563010e6b3d9e295c69e8d6dc7bf17
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
debian-security-tracker-commits@alioth-lists.debian.net
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to