From 01dafa36d767979a8300ff6a8bcadedf19b4a77d Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Tue, 20 May 2025 12:31:57 +0000 Subject: [PATCH] Publish Advisories GHSA-4q3h-v92p-gchj GHSA-54q4-26xw-h978 GHSA-h754-2839-mqvq GHSA-xrqm-569v-qj6w --- .../GHSA-4q3h-v92p-gchj.json | 36 +++++++++++ .../GHSA-54q4-26xw-h978.json | 61 +++++++++++++++++++ .../GHSA-h754-2839-mqvq.json | 36 +++++++++++ .../GHSA-xrqm-569v-qj6w.json | 36 +++++++++++ 4 files changed, 169 insertions(+) create mode 100644 advisories/unreviewed/2025/05/GHSA-4q3h-v92p-gchj/GHSA-4q3h-v92p-gchj.json create mode 100644 advisories/unreviewed/2025/05/GHSA-54q4-26xw-h978/GHSA-54q4-26xw-h978.json create mode 100644 advisories/unreviewed/2025/05/GHSA-h754-2839-mqvq/GHSA-h754-2839-mqvq.json create mode 100644 advisories/unreviewed/2025/05/GHSA-xrqm-569v-qj6w/GHSA-xrqm-569v-qj6w.json diff --git a/advisories/unreviewed/2025/05/GHSA-4q3h-v92p-gchj/GHSA-4q3h-v92p-gchj.json b/advisories/unreviewed/2025/05/GHSA-4q3h-v92p-gchj/GHSA-4q3h-v92p-gchj.json new file mode 100644 index 00000000000..d86d24d280e --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-4q3h-v92p-gchj/GHSA-4q3h-v92p-gchj.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4q3h-v92p-gchj", + "modified": "2025-05-20T12:30:23Z", + "published": "2025-05-20T12:30:23Z", + "aliases": [ + "CVE-2025-30193" + ], + "details": "In some circumstances, when DNSdist is configured to allow an unlimited number of queries on a single, incoming TCP connection from a client, an attacker can cause a denial of service by crafting a TCP exchange that triggers an exhaustion of the stack and a crash of DNSdist, causing a denial of service.\n\nThe remedy is: upgrade to the patched 1.9.10 version.\n\nA workaround is to restrict the maximum number of queries on incoming TCP connections to a safe value, like 50, via the setMaxTCPQueriesPerConnection setting.\n\nWe would like to thank Renaud Allard for bringing this issue to our attention.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-30193" + }, + { + "type": "WEB", + "url": "https://dnsdist.org/security-advisories/powerdns-advisory-for-dnsdist-2025-03.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-674" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-20T12:15:19Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-54q4-26xw-h978/GHSA-54q4-26xw-h978.json b/advisories/unreviewed/2025/05/GHSA-54q4-26xw-h978/GHSA-54q4-26xw-h978.json new file mode 100644 index 00000000000..129ffdbaf40 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-54q4-26xw-h978/GHSA-54q4-26xw-h978.json @@ -0,0 +1,61 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-54q4-26xw-h978", + "modified": "2025-05-20T12:30:23Z", + "published": "2025-05-20T12:30:23Z", + "aliases": [ + "CVE-2025-37892" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmtd: inftlcore: Add error check for inftl_read_oob()\n\nIn INFTL_findwriteunit(), the return value of inftl_read_oob()\nneed to be checked. A proper implementation can be\nfound in INFTL_deleteblock(). The status will be set as\nSECTOR_IGNORE to break from the while-loop correctly\nif the inftl_read_oob() fails.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-37892" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0300e751170cf80c05ca1a762a7b449e8ca6b693" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/114d94f095aa405fa9a51484c4be34846d7bb386" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1c22356dfb041e5292835c9ff44d5f91bef8dd18" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/5479a6af3c96f73bec2d2819532b6d6814f52dd6" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6af3b92b1c0b58ca281d0e1501bad2567f73c1a5" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7772621041ee78823ccc5f1fe38f6faa22af7023" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b828d394308e8e00df0a6f57e7dabae609bb8b7b" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d027951dc85cb2e15924c980dc22a6754d100c7c" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e7d6ceff95c55297f0ee8f9dbc4da5c558f30e9e" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-20T11:15:48Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-h754-2839-mqvq/GHSA-h754-2839-mqvq.json b/advisories/unreviewed/2025/05/GHSA-h754-2839-mqvq/GHSA-h754-2839-mqvq.json new file mode 100644 index 00000000000..9abd038becc --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-h754-2839-mqvq/GHSA-h754-2839-mqvq.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h754-2839-mqvq", + "modified": "2025-05-20T12:30:23Z", + "published": "2025-05-20T12:30:23Z", + "aliases": [ + "CVE-2025-40634" + ], + "details": "Stack-based buffer overflow vulnerability in the 'conn-indicator' binary running as root on the TP-Link Archer AX50 router, in firmware versions prior to 1.0.15 build 241203 rel61480. This vulnerability allows an attacker to execute arbitrary code on the device over LAN and WAN networks.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-40634" + }, + { + "type": "WEB", + "url": "https://www.incibe.es/en/incibe-cert/notices/aviso/stack-based-buffer-overflow-tp-link-archer-ax50" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-20T11:15:48Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-xrqm-569v-qj6w/GHSA-xrqm-569v-qj6w.json b/advisories/unreviewed/2025/05/GHSA-xrqm-569v-qj6w/GHSA-xrqm-569v-qj6w.json new file mode 100644 index 00000000000..ca2ad18c207 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-xrqm-569v-qj6w/GHSA-xrqm-569v-qj6w.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xrqm-569v-qj6w", + "modified": "2025-05-20T12:30:23Z", + "published": "2025-05-20T12:30:23Z", + "aliases": [ + "CVE-2025-40633" + ], + "details": "A Stored Cross-Site Scripting (XSS) vulnerability has been found in \nKoibox for versions prior to e8cbce2. This vulnerability allows an \nauthenticated attacker to upload an image containing malicious \nJavaScript code as profile picture in the \n'/es/dashboard/clientes/ficha/' endpoint", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-40633" + }, + { + "type": "WEB", + "url": "https://www.incibe.es/en/incibe-cert/notices/aviso/stored-cross-site-scripting-xss-koibox" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-20T11:15:48Z" + } +} \ No newline at end of file