Advisory Database Sync

This commit is contained in:
advisory-database[bot]
2025-02-10 18:32:38 +00:00
parent 890d70a9d3
commit 02b45777f0
55 changed files with 1125 additions and 80 deletions
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5vpc-35f4-r8w6",
"modified": "2025-02-10T09:30:41Z",
"modified": "2025-02-10T18:30:45Z",
"published": "2025-01-21T21:22:49Z",
"aliases": [
"CVE-2024-11218"
@@ -133,6 +133,10 @@
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2025:1189"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2025:1207"
},
{
"type": "WEB",
"url": "https://access.redhat.com/security/cve/CVE-2024-11218"
@@ -33,7 +33,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-269"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -33,7 +33,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-770"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -29,7 +29,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-532"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -34,7 +34,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-400"
"CWE-400",
"CWE-770"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -33,7 +33,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-276"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -33,7 +33,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-269"
],
"severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -29,7 +29,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-770"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -33,7 +33,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-269"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-m289-xpfv-pfp5",
"modified": "2024-04-08T00:30:46Z",
"modified": "2025-02-10T18:30:40Z",
"published": "2024-04-08T00:30:46Z",
"aliases": [
"CVE-2024-3437"
@@ -11,6 +11,10 @@
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L"
},
{
"type": "CVSS_V4",
"score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
}
],
"affected": [],
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-7grm-v449-2cv5",
"modified": "2024-05-08T15:30:40Z",
"modified": "2025-02-10T18:30:41Z",
"published": "2024-05-08T15:30:39Z",
"aliases": [
"CVE-2024-4645"
@@ -11,6 +11,10 @@
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N"
},
{
"type": "CVSS_V4",
"score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
}
],
"affected": [],
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-36qp-g3hr-p7r4",
"modified": "2024-07-27T15:34:10Z",
"modified": "2025-02-10T18:30:42Z",
"published": "2024-07-27T15:34:10Z",
"aliases": [
"CVE-2024-6703"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-mg8q-6jqj-3r4r",
"modified": "2024-07-10T06:33:52Z",
"modified": "2025-02-10T18:30:41Z",
"published": "2024-07-10T06:33:52Z",
"aliases": [
"CVE-2024-6410"
@@ -37,7 +37,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-639"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -34,7 +34,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-362"
"CWE-362",
"CWE-416"
],
"severity": "HIGH",
"github_reviewed": false,
File diff suppressed because one or more lines are too long
@@ -42,6 +42,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-416",
"CWE-476"
],
"severity": "MODERATE",
@@ -38,7 +38,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-362"
"CWE-362",
"CWE-416"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -30,7 +30,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-362"
"CWE-362",
"CWE-416"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -34,6 +34,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-416",
"CWE-667"
],
"severity": "MODERATE",
@@ -0,0 +1,37 @@
{
"schema_version": "1.4.0",
"id": "GHSA-28mc-jvx2-g85v",
"modified": "2025-02-10T18:30:47Z",
"published": "2025-02-10T18:30:46Z",
"aliases": [
"CVE-2025-21686"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nio_uring/rsrc: require cloned buffers to share accounting contexts\n\nWhen IORING_REGISTER_CLONE_BUFFERS is used to clone buffers from uring\ninstance A to uring instance B, where A and B use different MMs for\naccounting, the accounting can go wrong:\nIf uring instance A is closed before uring instance B, the pinned memory\ncounters for uring instance B will be decremented, even though the pinned\nmemory was originally accounted through uring instance A; so the MM of\nuring instance B can end up with negative locked memory.",
"severity": [],
"affected": [],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21686"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/19d340a2988d4f3e673cded9dde405d727d7e248"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/cafc60ae35f82ebf156b3245f979ca61cbb8e42c"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/efd96fbe23fa87de39116f632401f67b93be21ab"
}
],
"database_specific": {
"cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2025-02-10T16:15:38Z"
}
}

Some files were not shown because too many files have changed in this diff Show More