From 2d3162cc50268b3959e2a3b6ef4786b44bb17c78 Mon Sep 17 00:00:00 2001 From: Moritz Muehlenhoff Date: Tue, 7 Apr 2020 14:31:47 +0200 Subject: py2.7 fixed NFUs --- data/CVE/list.2019 | 2 +- data/CVE/list.2020 | 5 +++++ 2 files changed, 6 insertions(+), 1 deletion(-) diff --git a/data/CVE/list.2019 b/data/CVE/list.2019 index be6ec0bd56..7bbc610774 100644 --- a/data/CVE/list.2019 +++ b/data/CVE/list.2019 @@ -5988,7 +5988,7 @@ CVE-2019-18348 (An issue was discovered in urllib2 in Python 2.x through 2.7.17 - python3.7 (unimportant) - python3.5 (unimportant) - python3.4 (unimportant) - - python2.7 (unimportant) + - python2.7 2.7.18~rc1-1 (unimportant) NOTE: https://bugs.python.org/issue38576 NOTE: Issue only exploitable if CVE-2016-10739 is unfixed in src:glibc. This is NOTE: not the case in all suites, but the issue is minor in general and would diff --git a/data/CVE/list.2020 b/data/CVE/list.2020 index 73c64b80dc..d7b0cad766 100644 --- a/data/CVE/list.2020 +++ b/data/CVE/list.2020 @@ -20137,14 +20137,19 @@ CVE-2020-2177 RESERVED CVE-2020-2176 RESERVED + NOT-FOR-US: Jenkins plugin CVE-2020-2175 RESERVED + NOT-FOR-US: Jenkins plugin CVE-2020-2174 RESERVED + NOT-FOR-US: Jenkins plugin CVE-2020-2173 RESERVED + NOT-FOR-US: Jenkins plugin CVE-2020-2172 RESERVED + NOT-FOR-US: Jenkins plugin CVE-2020-2171 (Jenkins RapidDeploy Plugin 4.2 and earlier does not configure its XML ...) NOT-FOR-US: Jenkins plugin CVE-2020-2170 (Jenkins RapidDeploy Plugin 4.2 and earlier does not escape package nam ...) -- cgit v1.2.3