summaryrefslogtreecommitdiffstats
path: root/data
diff options
context:
space:
mode:
authorMoritz Muehlenhoff <jmm@debian.org>2019-01-08 19:28:24 +0100
committerMoritz Muehlenhoff <jmm@debian.org>2019-01-08 19:28:24 +0100
commitb98f04cb78444f044d14ec4d31f91648f553dae0 (patch)
tree33181440f523aef80ef2e837f0b36ae9bc74b8a9 /data
parentf54b62009bb8f4554204a62cf6d1595d339f6df9 (diff)
new tcc issues
new dolibarr issue NFUs
Diffstat (limited to 'data')
-rw-r--r--data/CVE/list20
1 files changed, 13 insertions, 7 deletions
diff --git a/data/CVE/list b/data/CVE/list
index a9d77e4dc1..07d8f43c56 100644
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -5446,11 +5446,17 @@ CVE-2018-20378
CVE-2018-20377 (Orange Livebox 00.96.320S devices allow remote attackers to discover ...)
NOT-FOR-US: Orange Livebox
CVE-2018-20376 (An issue was discovered in Tiny C Compiler (aka TinyCC or TCC) 0.9.27. ...)
- TODO: check
+ - tcc <unfixed> (unimportant)
+ NOTE: Negligable security impact
+ NOTE: https://lists.nongnu.org/archive/html/tinycc-devel/2018-12/msg00013.html
CVE-2018-20375 (An issue was discovered in Tiny C Compiler (aka TinyCC or TCC) 0.9.27. ...)
- TODO: check
+ - tcc <unfixed> (unimportant)
+ NOTE: Negligable security impact
+ NOTE: https://lists.nongnu.org/archive/html/tinycc-devel/2018-12/msg00014.html
CVE-2018-20374 (An issue was discovered in Tiny C Compiler (aka TinyCC or TCC) 0.9.27. ...)
- TODO: check
+ - tcc <unfixed> (unimportant)
+ NOTE: Negligable security impact
+ NOTE: https://lists.nongnu.org/archive/html/tinycc-devel/2018-12/msg00015.html
CVE-2018-20373 (Tenda ADSL modem routers 1.0.1 allow XSS via the hostname of a DHCP ...)
NOT-FOR-US: Tenda ADSL modem routers
CVE-2018-20372 (TP-Link TD-W8961ND devices allow XSS via the hostname of a DHCP client. ...)
@@ -5792,7 +5798,7 @@ CVE-2018-1000825 (FreeCol version &lt;= nightly-2018-08-22 contains a XML Extern
CVE-2018-1000824 (MegaMek version &lt; v0.45.1 contains a Other/Unknown vulnerability in ...)
NOT-FOR-US: MegaMek
CVE-2018-1000823 (exist version &lt;= 5.0.0-RC4 contains a XML External Entity (XXE) ...)
- TODO: check
+ NOT-FOR-US: eXist DB
CVE-2018-1000822 (codelibs fess version before commit faa265b contains a XML External ...)
NOT-FOR-US: codelibs fess
CVE-2018-1000821 (MicroMathematics version before commit 5c05ac8 contains a XML External ...)
@@ -9489,7 +9495,7 @@ CVE-2018-20000 (Apereo Bedework bw-webdav before 4.0.3 allows XXE attacks, as ..
CVE-2018-19999
RESERVED
CVE-2018-19998 (SQL injection vulnerability in user/card.php in Dolibarr version 8.0.2 ...)
- TODO: check
+ - dolibarr <removed>
CVE-2018-19997
RESERVED
CVE-2018-19996
@@ -10722,9 +10728,9 @@ CVE-2018-19864 (NUUO NVRmini2 Network Video Recorder firmware through 3.9.1 allo
CVE-2018-19863 (An issue was discovered in 1Password 7.2.3.BETA before 7.2.3.BETA-3 on ...)
NOT-FOR-US: 1Password
CVE-2018-19862 (Buffer overflow in MiniShare 1.4.1 and earlier allows remote attackers ...)
- TODO: check
+ NOT-FOR-US: MiniShare
CVE-2018-19861 (Buffer overflow in MiniShare 1.4.1 and earlier allows remote attackers ...)
- TODO: check
+ NOT-FOR-US: MiniShare
CVE-2018-19860
RESERVED
CVE-2018-19859 (OpenRefine before 3.5 allows directory traversal via a relative ...)

© 2014-2024 Faster IT GmbH | imprint | privacy policy