diff --git a/advisories/github-reviewed/2025/01/GHSA-5vpc-35f4-r8w6/GHSA-5vpc-35f4-r8w6.json b/advisories/github-reviewed/2025/01/GHSA-5vpc-35f4-r8w6/GHSA-5vpc-35f4-r8w6.json index d07c555904d..85c6a601de2 100644 --- a/advisories/github-reviewed/2025/01/GHSA-5vpc-35f4-r8w6/GHSA-5vpc-35f4-r8w6.json +++ b/advisories/github-reviewed/2025/01/GHSA-5vpc-35f4-r8w6/GHSA-5vpc-35f4-r8w6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5vpc-35f4-r8w6", - "modified": "2025-02-10T09:30:41Z", + "modified": "2025-02-10T18:30:45Z", "published": "2025-01-21T21:22:49Z", "aliases": [ "CVE-2024-11218" @@ -133,6 +133,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2025:1189" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2025:1207" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-11218" diff --git a/advisories/unreviewed/2022/05/GHSA-m2mf-9mv6-9g77/GHSA-m2mf-9mv6-9g77.json b/advisories/unreviewed/2022/05/GHSA-m2mf-9mv6-9g77/GHSA-m2mf-9mv6-9g77.json index fe86540a3fc..ef26117e6d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-m2mf-9mv6-9g77/GHSA-m2mf-9mv6-9g77.json +++ b/advisories/unreviewed/2022/05/GHSA-m2mf-9mv6-9g77/GHSA-m2mf-9mv6-9g77.json @@ -33,7 +33,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-269" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/04/GHSA-36q5-pq8v-368h/GHSA-36q5-pq8v-368h.json b/advisories/unreviewed/2023/04/GHSA-36q5-pq8v-368h/GHSA-36q5-pq8v-368h.json index e24998c1471..076d099d79a 100644 --- a/advisories/unreviewed/2023/04/GHSA-36q5-pq8v-368h/GHSA-36q5-pq8v-368h.json +++ b/advisories/unreviewed/2023/04/GHSA-36q5-pq8v-368h/GHSA-36q5-pq8v-368h.json @@ -33,7 +33,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-770" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/04/GHSA-ccv7-gxf5-xxcc/GHSA-ccv7-gxf5-xxcc.json b/advisories/unreviewed/2023/04/GHSA-ccv7-gxf5-xxcc/GHSA-ccv7-gxf5-xxcc.json index 48210538dff..4421284979b 100644 --- a/advisories/unreviewed/2023/04/GHSA-ccv7-gxf5-xxcc/GHSA-ccv7-gxf5-xxcc.json +++ b/advisories/unreviewed/2023/04/GHSA-ccv7-gxf5-xxcc/GHSA-ccv7-gxf5-xxcc.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-532" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/04/GHSA-jmxm-hwqc-33vw/GHSA-jmxm-hwqc-33vw.json b/advisories/unreviewed/2023/04/GHSA-jmxm-hwqc-33vw/GHSA-jmxm-hwqc-33vw.json index 14e8c66deed..25fb45bc133 100644 --- a/advisories/unreviewed/2023/04/GHSA-jmxm-hwqc-33vw/GHSA-jmxm-hwqc-33vw.json +++ b/advisories/unreviewed/2023/04/GHSA-jmxm-hwqc-33vw/GHSA-jmxm-hwqc-33vw.json @@ -34,7 +34,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-400" + "CWE-400", + "CWE-770" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2023/04/GHSA-r295-r6mq-x42c/GHSA-r295-r6mq-x42c.json b/advisories/unreviewed/2023/04/GHSA-r295-r6mq-x42c/GHSA-r295-r6mq-x42c.json index 169ab7f4914..37c96ff9b52 100644 --- a/advisories/unreviewed/2023/04/GHSA-r295-r6mq-x42c/GHSA-r295-r6mq-x42c.json +++ b/advisories/unreviewed/2023/04/GHSA-r295-r6mq-x42c/GHSA-r295-r6mq-x42c.json @@ -33,7 +33,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-276" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/04/GHSA-rm84-x485-ppvh/GHSA-rm84-x485-ppvh.json b/advisories/unreviewed/2023/04/GHSA-rm84-x485-ppvh/GHSA-rm84-x485-ppvh.json index 911cc1335c6..5b7def22ac9 100644 --- a/advisories/unreviewed/2023/04/GHSA-rm84-x485-ppvh/GHSA-rm84-x485-ppvh.json +++ b/advisories/unreviewed/2023/04/GHSA-rm84-x485-ppvh/GHSA-rm84-x485-ppvh.json @@ -33,7 +33,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-269" + ], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/04/GHSA-wm64-hhrx-w2h7/GHSA-wm64-hhrx-w2h7.json b/advisories/unreviewed/2023/04/GHSA-wm64-hhrx-w2h7/GHSA-wm64-hhrx-w2h7.json index d10bd07613f..5f88ce1dcc7 100644 --- a/advisories/unreviewed/2023/04/GHSA-wm64-hhrx-w2h7/GHSA-wm64-hhrx-w2h7.json +++ b/advisories/unreviewed/2023/04/GHSA-wm64-hhrx-w2h7/GHSA-wm64-hhrx-w2h7.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-770" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/04/GHSA-x3hm-8p8v-997g/GHSA-x3hm-8p8v-997g.json b/advisories/unreviewed/2023/04/GHSA-x3hm-8p8v-997g/GHSA-x3hm-8p8v-997g.json index 5d5e5deeb55..aa11dcca980 100644 --- a/advisories/unreviewed/2023/04/GHSA-x3hm-8p8v-997g/GHSA-x3hm-8p8v-997g.json +++ b/advisories/unreviewed/2023/04/GHSA-x3hm-8p8v-997g/GHSA-x3hm-8p8v-997g.json @@ -33,7 +33,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-269" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-m289-xpfv-pfp5/GHSA-m289-xpfv-pfp5.json b/advisories/unreviewed/2024/04/GHSA-m289-xpfv-pfp5/GHSA-m289-xpfv-pfp5.json index 5088b8f8bad..58eb3c74a60 100644 --- a/advisories/unreviewed/2024/04/GHSA-m289-xpfv-pfp5/GHSA-m289-xpfv-pfp5.json +++ b/advisories/unreviewed/2024/04/GHSA-m289-xpfv-pfp5/GHSA-m289-xpfv-pfp5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-m289-xpfv-pfp5", - "modified": "2024-04-08T00:30:46Z", + "modified": "2025-02-10T18:30:40Z", "published": "2024-04-08T00:30:46Z", "aliases": [ "CVE-2024-3437" @@ -11,6 +11,10 @@ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], "affected": [], diff --git a/advisories/unreviewed/2024/05/GHSA-7grm-v449-2cv5/GHSA-7grm-v449-2cv5.json b/advisories/unreviewed/2024/05/GHSA-7grm-v449-2cv5/GHSA-7grm-v449-2cv5.json index b0c36e7fce2..2ced1fc988f 100644 --- a/advisories/unreviewed/2024/05/GHSA-7grm-v449-2cv5/GHSA-7grm-v449-2cv5.json +++ b/advisories/unreviewed/2024/05/GHSA-7grm-v449-2cv5/GHSA-7grm-v449-2cv5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7grm-v449-2cv5", - "modified": "2024-05-08T15:30:40Z", + "modified": "2025-02-10T18:30:41Z", "published": "2024-05-08T15:30:39Z", "aliases": [ "CVE-2024-4645" @@ -11,6 +11,10 @@ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], "affected": [], diff --git a/advisories/unreviewed/2024/07/GHSA-36qp-g3hr-p7r4/GHSA-36qp-g3hr-p7r4.json b/advisories/unreviewed/2024/07/GHSA-36qp-g3hr-p7r4/GHSA-36qp-g3hr-p7r4.json index 7d04ad7b993..6243261013f 100644 --- a/advisories/unreviewed/2024/07/GHSA-36qp-g3hr-p7r4/GHSA-36qp-g3hr-p7r4.json +++ b/advisories/unreviewed/2024/07/GHSA-36qp-g3hr-p7r4/GHSA-36qp-g3hr-p7r4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-36qp-g3hr-p7r4", - "modified": "2024-07-27T15:34:10Z", + "modified": "2025-02-10T18:30:42Z", "published": "2024-07-27T15:34:10Z", "aliases": [ "CVE-2024-6703" diff --git a/advisories/unreviewed/2024/07/GHSA-mg8q-6jqj-3r4r/GHSA-mg8q-6jqj-3r4r.json b/advisories/unreviewed/2024/07/GHSA-mg8q-6jqj-3r4r/GHSA-mg8q-6jqj-3r4r.json index 365c21f860a..8c2f8ff6da3 100644 --- a/advisories/unreviewed/2024/07/GHSA-mg8q-6jqj-3r4r/GHSA-mg8q-6jqj-3r4r.json +++ b/advisories/unreviewed/2024/07/GHSA-mg8q-6jqj-3r4r/GHSA-mg8q-6jqj-3r4r.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mg8q-6jqj-3r4r", - "modified": "2024-07-10T06:33:52Z", + "modified": "2025-02-10T18:30:41Z", "published": "2024-07-10T06:33:52Z", "aliases": [ "CVE-2024-6410" @@ -37,7 +37,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-639" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/12/GHSA-m2h6-g9h7-jxfj/GHSA-m2h6-g9h7-jxfj.json b/advisories/unreviewed/2024/12/GHSA-m2h6-g9h7-jxfj/GHSA-m2h6-g9h7-jxfj.json index bb5585f62c0..3766c79bd40 100644 --- a/advisories/unreviewed/2024/12/GHSA-m2h6-g9h7-jxfj/GHSA-m2h6-g9h7-jxfj.json +++ b/advisories/unreviewed/2024/12/GHSA-m2h6-g9h7-jxfj/GHSA-m2h6-g9h7-jxfj.json @@ -34,7 +34,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-362" + "CWE-362", + "CWE-416" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/12/GHSA-mh6m-gjcw-57ph/GHSA-mh6m-gjcw-57ph.json b/advisories/unreviewed/2024/12/GHSA-mh6m-gjcw-57ph/GHSA-mh6m-gjcw-57ph.json index 1ad40b98e60..f7b48c95a65 100644 --- a/advisories/unreviewed/2024/12/GHSA-mh6m-gjcw-57ph/GHSA-mh6m-gjcw-57ph.json +++ b/advisories/unreviewed/2024/12/GHSA-mh6m-gjcw-57ph/GHSA-mh6m-gjcw-57ph.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-mh6m-gjcw-57ph", - "modified": "2024-12-28T12:30:47Z", + "modified": "2025-02-10T18:30:44Z", "published": "2024-12-28T12:30:47Z", "aliases": [ "CVE-2024-56693" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbrd: defer automatic disk creation until module initialization succeeds\n\nMy colleague Wupeng found the following problems during fault injection:\n\nBUG: unable to handle page fault for address: fffffbfff809d073\nPGD 6e648067 P4D 123ec8067 PUD 123ec4067 PMD 100e38067 PTE 0\nOops: Oops: 0000 [#1] PREEMPT SMP KASAN NOPTI\nCPU: 5 UID: 0 PID: 755 Comm: modprobe Not tainted 6.12.0-rc3+ #17\nHardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS\n1.16.1-2.fc37 04/01/2014\nRIP: 0010:__asan_load8+0x4c/0xa0\n...\nCall Trace:\n \n blkdev_put_whole+0x41/0x70\n bdev_release+0x1a3/0x250\n blkdev_release+0x11/0x20\n __fput+0x1d7/0x4a0\n task_work_run+0xfc/0x180\n syscall_exit_to_user_mode+0x1de/0x1f0\n do_syscall_64+0x6b/0x170\n entry_SYSCALL_64_after_hwframe+0x76/0x7e\n\nloop_init() is calling loop_add() after __register_blkdev() succeeds and\nis ignoring disk_add() failure from loop_add(), for loop_add() failure\nis not fatal and successfully created disks are already visible to\nbdev_open().\n\nbrd_init() is currently calling brd_alloc() before __register_blkdev()\nsucceeds and is releasing successfully created disks when brd_init()\nreturns an error. This can cause UAF for the latter two case:\n\ncase 1:\n T1:\nmodprobe brd\n brd_init\n brd_alloc(0) // success\n add_disk\n disk_scan_partitions\n bdev_file_open_by_dev // alloc file\n fput // won't free until back to userspace\n brd_alloc(1) // failed since mem alloc error inject\n // error path for modprobe will release code segment\n // back to userspace\n __fput\n blkdev_release\n bdev_release\n blkdev_put_whole\n bdev->bd_disk->fops->release // fops is freed now, UAF!\n\ncase 2:\n T1: T2:\nmodprobe brd\n brd_init\n brd_alloc(0) // success\n open(/dev/ram0)\n brd_alloc(1) // fail\n // error path for modprobe\n\n close(/dev/ram0)\n ...\n /* UAF! */\n bdev->bd_disk->fops->release\n\nFix this problem by following what loop_init() does. Besides,\nreintroduce brd_devices_mutex to help serialize modifications to\nbrd_list.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -40,8 +45,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-416" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-12-28T10:15:14Z" diff --git a/advisories/unreviewed/2024/12/GHSA-qj49-7rgr-pfmq/GHSA-qj49-7rgr-pfmq.json b/advisories/unreviewed/2024/12/GHSA-qj49-7rgr-pfmq/GHSA-qj49-7rgr-pfmq.json index 4d4bc1aa99f..2b226030947 100644 --- a/advisories/unreviewed/2024/12/GHSA-qj49-7rgr-pfmq/GHSA-qj49-7rgr-pfmq.json +++ b/advisories/unreviewed/2024/12/GHSA-qj49-7rgr-pfmq/GHSA-qj49-7rgr-pfmq.json @@ -42,6 +42,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-416", "CWE-476" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2024/12/GHSA-w9v5-63v9-9qvj/GHSA-w9v5-63v9-9qvj.json b/advisories/unreviewed/2024/12/GHSA-w9v5-63v9-9qvj/GHSA-w9v5-63v9-9qvj.json index c5595d9cc15..ae17ca7375f 100644 --- a/advisories/unreviewed/2024/12/GHSA-w9v5-63v9-9qvj/GHSA-w9v5-63v9-9qvj.json +++ b/advisories/unreviewed/2024/12/GHSA-w9v5-63v9-9qvj/GHSA-w9v5-63v9-9qvj.json @@ -38,7 +38,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-362" + "CWE-362", + "CWE-416" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/12/GHSA-wccj-rqrc-g885/GHSA-wccj-rqrc-g885.json b/advisories/unreviewed/2024/12/GHSA-wccj-rqrc-g885/GHSA-wccj-rqrc-g885.json index 4b2fcbed943..251159a0d82 100644 --- a/advisories/unreviewed/2024/12/GHSA-wccj-rqrc-g885/GHSA-wccj-rqrc-g885.json +++ b/advisories/unreviewed/2024/12/GHSA-wccj-rqrc-g885/GHSA-wccj-rqrc-g885.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-362" + "CWE-362", + "CWE-416" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/01/GHSA-xfp4-237c-chrm/GHSA-xfp4-237c-chrm.json b/advisories/unreviewed/2025/01/GHSA-xfp4-237c-chrm/GHSA-xfp4-237c-chrm.json index 1b69e414235..c7b79a8083b 100644 --- a/advisories/unreviewed/2025/01/GHSA-xfp4-237c-chrm/GHSA-xfp4-237c-chrm.json +++ b/advisories/unreviewed/2025/01/GHSA-xfp4-237c-chrm/GHSA-xfp4-237c-chrm.json @@ -34,6 +34,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-416", "CWE-667" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2025/02/GHSA-28mc-jvx2-g85v/GHSA-28mc-jvx2-g85v.json b/advisories/unreviewed/2025/02/GHSA-28mc-jvx2-g85v/GHSA-28mc-jvx2-g85v.json new file mode 100644 index 00000000000..4ad3a62b942 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-28mc-jvx2-g85v/GHSA-28mc-jvx2-g85v.json @@ -0,0 +1,37 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-28mc-jvx2-g85v", + "modified": "2025-02-10T18:30:47Z", + "published": "2025-02-10T18:30:46Z", + "aliases": [ + "CVE-2025-21686" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nio_uring/rsrc: require cloned buffers to share accounting contexts\n\nWhen IORING_REGISTER_CLONE_BUFFERS is used to clone buffers from uring\ninstance A to uring instance B, where A and B use different MMs for\naccounting, the accounting can go wrong:\nIf uring instance A is closed before uring instance B, the pinned memory\ncounters for uring instance B will be decremented, even though the pinned\nmemory was originally accounted through uring instance A; so the MM of\nuring instance B can end up with negative locked memory.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21686" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/19d340a2988d4f3e673cded9dde405d727d7e248" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/cafc60ae35f82ebf156b3245f979ca61cbb8e42c" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/efd96fbe23fa87de39116f632401f67b93be21ab" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T16:15:38Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-2xh3-9jm8-r4r2/GHSA-2xh3-9jm8-r4r2.json b/advisories/unreviewed/2025/02/GHSA-2xh3-9jm8-r4r2/GHSA-2xh3-9jm8-r4r2.json new file mode 100644 index 00000000000..17d5ab5944e --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-2xh3-9jm8-r4r2/GHSA-2xh3-9jm8-r4r2.json @@ -0,0 +1,53 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2xh3-9jm8-r4r2", + "modified": "2025-02-10T18:30:47Z", + "published": "2025-02-10T18:30:47Z", + "aliases": [ + "CVE-2025-21692" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: sched: fix ets qdisc OOB Indexing\n\nHaowei Yan found that ets_class_from_arg() can\nindex an Out-Of-Bound class in ets_class_from_arg() when passed clid of\n0. The overflow may cause local privilege escalation.\n\n [ 18.852298] ------------[ cut here ]------------\n [ 18.853271] UBSAN: array-index-out-of-bounds in net/sched/sch_ets.c:93:20\n [ 18.853743] index 18446744073709551615 is out of range for type 'ets_class [16]'\n [ 18.854254] CPU: 0 UID: 0 PID: 1275 Comm: poc Not tainted 6.12.6-dirty #17\n [ 18.854821] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.15.0-1 04/01/2014\n [ 18.856532] Call Trace:\n [ 18.857441] \n [ 18.858227] dump_stack_lvl+0xc2/0xf0\n [ 18.859607] dump_stack+0x10/0x20\n [ 18.860908] __ubsan_handle_out_of_bounds+0xa7/0xf0\n [ 18.864022] ets_class_change+0x3d6/0x3f0\n [ 18.864322] tc_ctl_tclass+0x251/0x910\n [ 18.864587] ? lock_acquire+0x5e/0x140\n [ 18.865113] ? __mutex_lock+0x9c/0xe70\n [ 18.866009] ? __mutex_lock+0xa34/0xe70\n [ 18.866401] rtnetlink_rcv_msg+0x170/0x6f0\n [ 18.866806] ? __lock_acquire+0x578/0xc10\n [ 18.867184] ? __pfx_rtnetlink_rcv_msg+0x10/0x10\n [ 18.867503] netlink_rcv_skb+0x59/0x110\n [ 18.867776] rtnetlink_rcv+0x15/0x30\n [ 18.868159] netlink_unicast+0x1c3/0x2b0\n [ 18.868440] netlink_sendmsg+0x239/0x4b0\n [ 18.868721] ____sys_sendmsg+0x3e2/0x410\n [ 18.869012] ___sys_sendmsg+0x88/0xe0\n [ 18.869276] ? rseq_ip_fixup+0x198/0x260\n [ 18.869563] ? rseq_update_cpu_node_id+0x10a/0x190\n [ 18.869900] ? trace_hardirqs_off+0x5a/0xd0\n [ 18.870196] ? syscall_exit_to_user_mode+0xcc/0x220\n [ 18.870547] ? do_syscall_64+0x93/0x150\n [ 18.870821] ? __memcg_slab_free_hook+0x69/0x290\n [ 18.871157] __sys_sendmsg+0x69/0xd0\n [ 18.871416] __x64_sys_sendmsg+0x1d/0x30\n [ 18.871699] x64_sys_call+0x9e2/0x2670\n [ 18.871979] do_syscall_64+0x87/0x150\n [ 18.873280] ? do_syscall_64+0x93/0x150\n [ 18.874742] ? lock_release+0x7b/0x160\n [ 18.876157] ? do_user_addr_fault+0x5ce/0x8f0\n [ 18.877833] ? irqentry_exit_to_user_mode+0xc2/0x210\n [ 18.879608] ? irqentry_exit+0x77/0xb0\n [ 18.879808] ? clear_bhb_loop+0x15/0x70\n [ 18.880023] ? clear_bhb_loop+0x15/0x70\n [ 18.880223] ? clear_bhb_loop+0x15/0x70\n [ 18.880426] entry_SYSCALL_64_after_hwframe+0x76/0x7e\n [ 18.880683] RIP: 0033:0x44a957\n [ 18.880851] Code: ff ff e8 fc 00 00 00 66 2e 0f 1f 84 00 00 00 00 00 66 90 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 2e 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 89 54 24 1c 48 8974 24 10\n [ 18.881766] RSP: 002b:00007ffcdd00fad8 EFLAGS: 00000246 ORIG_RAX: 000000000000002e\n [ 18.882149] RAX: ffffffffffffffda RBX: 00007ffcdd010db8 RCX: 000000000044a957\n [ 18.882507] RDX: 0000000000000000 RSI: 00007ffcdd00fb70 RDI: 0000000000000003\n [ 18.885037] RBP: 00007ffcdd010bc0 R08: 000000000703c770 R09: 000000000703c7c0\n [ 18.887203] R10: 0000000000000080 R11: 0000000000000246 R12: 0000000000000001\n [ 18.888026] R13: 00007ffcdd010da8 R14: 00000000004ca7d0 R15: 0000000000000001\n [ 18.888395] \n [ 18.888610] ---[ end trace ]---", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21692" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/03c56665dab1f4ac844bc156652d50d639093fa5" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1332c6ed446be787f901ed1064ec6a3c694f028a" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/997f6ec4208b23c87daf9f044689685f091826f7" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/bcf0d815e728a3a304b50455b32a3170c16e1eaa" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d62b04fca4340a0d468d7853bd66e511935a18cb" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f4168299e553f17aa2ba4016e77a9c38da40eb1d" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f6b0f05fbfa4044f890e8a348288c0d9a20bd1d0" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T16:15:38Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-3g5r-c4ph-rc9c/GHSA-3g5r-c4ph-rc9c.json b/advisories/unreviewed/2025/02/GHSA-3g5r-c4ph-rc9c/GHSA-3g5r-c4ph-rc9c.json new file mode 100644 index 00000000000..82a1a725299 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-3g5r-c4ph-rc9c/GHSA-3g5r-c4ph-rc9c.json @@ -0,0 +1,37 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3g5r-c4ph-rc9c", + "modified": "2025-02-10T18:30:47Z", + "published": "2025-02-10T18:30:47Z", + "aliases": [ + "CVE-2024-57409" + ], + "details": "A stored cross-site scripting (XSS) vulnerability in the Parameter List module of cool-admin-java v1.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the internet pictures field.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-57409" + }, + { + "type": "WEB", + "url": "https://gist.github.com/kaoniniang2/05c2d0acdf8002b7121edff93d5230d6" + }, + { + "type": "WEB", + "url": "https://github.com/cool-team-official/cool-admin-java" + }, + { + "type": "WEB", + "url": "https://github.com/kaoniniang2/exploit/blob/main/Cool-admin-xss.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T18:15:33Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-3m25-8xh3-c6p2/GHSA-3m25-8xh3-c6p2.json b/advisories/unreviewed/2025/02/GHSA-3m25-8xh3-c6p2/GHSA-3m25-8xh3-c6p2.json new file mode 100644 index 00000000000..1e9cf66f26a --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-3m25-8xh3-c6p2/GHSA-3m25-8xh3-c6p2.json @@ -0,0 +1,41 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3m25-8xh3-c6p2", + "modified": "2025-02-10T18:30:47Z", + "published": "2025-02-10T18:30:47Z", + "aliases": [ + "CVE-2025-21691" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ncachestat: fix page cache statistics permission checking\n\nWhen the 'cachestat()' system call was added in commit cf264e1329fb\n(\"cachestat: implement cachestat syscall\"), it was meant to be a much\nmore convenient (and performant) version of mincore() that didn't need\nmapping things into the user virtual address space in order to work.\n\nBut it ended up missing the \"check for writability or ownership\" fix for\nmincore(), done in commit 134fca9063ad (\"mm/mincore.c: make mincore()\nmore conservative\").\n\nThis just adds equivalent logic to 'cachestat()', modified for the file\ncontext (rather than vma).", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21691" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/5f537664e705b0bf8b7e329861f20128534f6a83" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/780ab8329672464984cf1344bd5c3993af0226c7" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7d6405c13b0d8a8367cd8df63f118b619a3f0dd2" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/97153a05077f618f7471f50a78158602badccb30" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T16:15:38Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-42h6-4vvm-4f49/GHSA-42h6-4vvm-4f49.json b/advisories/unreviewed/2025/02/GHSA-42h6-4vvm-4f49/GHSA-42h6-4vvm-4f49.json index dc49adee347..14876abaeea 100644 --- a/advisories/unreviewed/2025/02/GHSA-42h6-4vvm-4f49/GHSA-42h6-4vvm-4f49.json +++ b/advisories/unreviewed/2025/02/GHSA-42h6-4vvm-4f49/GHSA-42h6-4vvm-4f49.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-42h6-4vvm-4f49", - "modified": "2025-02-07T18:31:22Z", + "modified": "2025-02-10T18:30:46Z", "published": "2025-02-07T18:31:22Z", "aliases": [ "CVE-2024-55214" ], "details": "Local File Inclusion vulnerability in dhtmlxFileExplorer v.8.4.6 allows a remote attacker to obtain sensitive information via the file download functionality.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-552" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-07T16:15:37Z" diff --git a/advisories/unreviewed/2025/02/GHSA-45ph-87rf-q9mf/GHSA-45ph-87rf-q9mf.json b/advisories/unreviewed/2025/02/GHSA-45ph-87rf-q9mf/GHSA-45ph-87rf-q9mf.json index 633bba07526..74bcca4e4ae 100644 --- a/advisories/unreviewed/2025/02/GHSA-45ph-87rf-q9mf/GHSA-45ph-87rf-q9mf.json +++ b/advisories/unreviewed/2025/02/GHSA-45ph-87rf-q9mf/GHSA-45ph-87rf-q9mf.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-45ph-87rf-q9mf", - "modified": "2025-02-07T18:31:21Z", + "modified": "2025-02-10T18:30:46Z", "published": "2025-02-07T18:31:21Z", "aliases": [ "CVE-2024-52882" ], "details": "An issue was discovered in AudioCodes One Voice Operations Center (OVOC) before 8.4.582. Due to improper neutralization of input via the devices API, an attacker can inject malicious JavaScript code (XSS) to attack logged-in administrator sessions.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-07T16:15:36Z" diff --git a/advisories/unreviewed/2025/02/GHSA-48g3-p48m-mx96/GHSA-48g3-p48m-mx96.json b/advisories/unreviewed/2025/02/GHSA-48g3-p48m-mx96/GHSA-48g3-p48m-mx96.json new file mode 100644 index 00000000000..824442994ce --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-48g3-p48m-mx96/GHSA-48g3-p48m-mx96.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-48g3-p48m-mx96", + "modified": "2025-02-10T18:30:47Z", + "published": "2025-02-10T18:30:47Z", + "aliases": [ + "CVE-2025-1151" + ], + "details": "A vulnerability was found in GNU Binutils 2.43. It has been rated as problematic. This issue affects the function xmemdup of the file xmemdup.c of the component ld. The manipulation leads to memory leak. The attack may be initiated remotely. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue. The code maintainer explains: \"I'm not going to commit some of the leak fixes I've been working on to the 2.44 branch due to concern that would destabilise ld. All of the reported leaks in this bugzilla have been fixed on binutils master.\"", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1151" + }, + { + "type": "WEB", + "url": "https://sourceware.org/bugzilla/attachment.cgi?id=15887" + }, + { + "type": "WEB", + "url": "https://sourceware.org/bugzilla/show_bug.cgi?id=32576" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.295055" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.295055" + }, + { + "type": "WEB", + "url": "https://www.gnu.org" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-401" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T17:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-5h75-c9mf-fpv6/GHSA-5h75-c9mf-fpv6.json b/advisories/unreviewed/2025/02/GHSA-5h75-c9mf-fpv6/GHSA-5h75-c9mf-fpv6.json index b9d214a3459..7b5d56ecb9b 100644 --- a/advisories/unreviewed/2025/02/GHSA-5h75-c9mf-fpv6/GHSA-5h75-c9mf-fpv6.json +++ b/advisories/unreviewed/2025/02/GHSA-5h75-c9mf-fpv6/GHSA-5h75-c9mf-fpv6.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-5h75-c9mf-fpv6", - "modified": "2025-02-06T18:31:05Z", + "modified": "2025-02-10T18:30:45Z", "published": "2025-02-06T18:31:05Z", "aliases": [ "CVE-2024-36556" ], "details": "Forever KidsWatch Call Me KW50 R36_YDR_A3PW_GM7S_V1.0_2019_07_15_16.19.24_cob_h, and Forever KidsWatch Call Me 2 KW60 R36CW_YDE_S4_A29_2_V1.0_2023.05.24_22.49.44_cob_b have a Hardcoded password vulnerability.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-798" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-06T18:15:31Z" diff --git a/advisories/unreviewed/2025/02/GHSA-76p7-773f-r4q5/GHSA-76p7-773f-r4q5.json b/advisories/unreviewed/2025/02/GHSA-76p7-773f-r4q5/GHSA-76p7-773f-r4q5.json new file mode 100644 index 00000000000..40c296b31a1 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-76p7-773f-r4q5/GHSA-76p7-773f-r4q5.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-76p7-773f-r4q5", + "modified": "2025-02-10T18:30:47Z", + "published": "2025-02-10T18:30:47Z", + "aliases": [ + "CVE-2024-11831" + ], + "details": "A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object types, allowing an attacker to inject malicious code. This code could be executed when deserialized by a web browser, causing Cross-site scripting (XSS) attacks. This issue is critical in environments where serialized data is sent to web clients, potentially compromising the security of the website or web application using this package.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11831" + }, + { + "type": "WEB", + "url": "https://github.com/yahoo/serialize-javascript/pull/173" + }, + { + "type": "WEB", + "url": "https://github.com/yahoo/serialize-javascript/commit/f27d65d3de42affe2aac14607066c293891cec4e" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/security/cve/CVE-2024-11831" + }, + { + "type": "WEB", + "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2312579" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T16:15:37Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-7rrf-56g2-vq8r/GHSA-7rrf-56g2-vq8r.json b/advisories/unreviewed/2025/02/GHSA-7rrf-56g2-vq8r/GHSA-7rrf-56g2-vq8r.json index 1469f15a2fc..4edd1f591bd 100644 --- a/advisories/unreviewed/2025/02/GHSA-7rrf-56g2-vq8r/GHSA-7rrf-56g2-vq8r.json +++ b/advisories/unreviewed/2025/02/GHSA-7rrf-56g2-vq8r/GHSA-7rrf-56g2-vq8r.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-7rrf-56g2-vq8r", - "modified": "2025-02-07T18:31:22Z", + "modified": "2025-02-10T18:30:46Z", "published": "2025-02-07T18:31:22Z", "aliases": [ "CVE-2024-57707" ], "details": "An issue in DataEase v1 allows an attacker to execute arbitrary code via the user account and password components.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-94" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-07T16:15:38Z" diff --git a/advisories/unreviewed/2025/02/GHSA-85qc-pp3m-xm3f/GHSA-85qc-pp3m-xm3f.json b/advisories/unreviewed/2025/02/GHSA-85qc-pp3m-xm3f/GHSA-85qc-pp3m-xm3f.json new file mode 100644 index 00000000000..d88eb8c35fe --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-85qc-pp3m-xm3f/GHSA-85qc-pp3m-xm3f.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-85qc-pp3m-xm3f", + "modified": "2025-02-10T18:30:47Z", + "published": "2025-02-10T18:30:47Z", + "aliases": [ + "CVE-2024-54954" + ], + "details": "OneBlog v2.3.6 was discovered to contain a template injection vulnerability via the template management department.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-54954" + }, + { + "type": "WEB", + "url": "https://gist.github.com/kaoniniang2/03658cc78e789b992b378f4951bedfb7" + }, + { + "type": "WEB", + "url": "https://gitee.com/yadong.zhang/DBlog/issues/IB6552" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T18:15:29Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-8q6p-chgp-9j92/GHSA-8q6p-chgp-9j92.json b/advisories/unreviewed/2025/02/GHSA-8q6p-chgp-9j92/GHSA-8q6p-chgp-9j92.json new file mode 100644 index 00000000000..ba4d3522537 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-8q6p-chgp-9j92/GHSA-8q6p-chgp-9j92.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8q6p-chgp-9j92", + "modified": "2025-02-10T18:30:48Z", + "published": "2025-02-10T18:30:47Z", + "aliases": [ + "CVE-2025-1150" + ], + "details": "A vulnerability was found in GNU Binutils 2.43. It has been declared as problematic. This vulnerability affects the function bfd_malloc of the file libbfd.c of the component ld. The manipulation leads to memory leak. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue. The code maintainer explains: \"I'm not going to commit some of the leak fixes I've been working on to the 2.44 branch due to concern that would destabilise ld. All of the reported leaks in this bugzilla have been fixed on binutils master.\"", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1150" + }, + { + "type": "WEB", + "url": "https://sourceware.org/bugzilla/attachment.cgi?id=15887" + }, + { + "type": "WEB", + "url": "https://sourceware.org/bugzilla/show_bug.cgi?id=32576" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.295054" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.295054" + }, + { + "type": "WEB", + "url": "https://www.gnu.org" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-401" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T17:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-965p-68x5-j8vf/GHSA-965p-68x5-j8vf.json b/advisories/unreviewed/2025/02/GHSA-965p-68x5-j8vf/GHSA-965p-68x5-j8vf.json index 518ee006536..ba0f59eaa76 100644 --- a/advisories/unreviewed/2025/02/GHSA-965p-68x5-j8vf/GHSA-965p-68x5-j8vf.json +++ b/advisories/unreviewed/2025/02/GHSA-965p-68x5-j8vf/GHSA-965p-68x5-j8vf.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-965p-68x5-j8vf", - "modified": "2025-02-06T18:31:05Z", + "modified": "2025-02-10T18:30:45Z", "published": "2025-02-06T18:31:05Z", "aliases": [ "CVE-2024-36553" ], "details": "Forever KidsWatch Call Me KW-50 R36_YDR_A3PW_GM7S_V1.0_2019_07_15_16.19.24_cob_h is vulnerable to MITM attack.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-300" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-06T18:15:31Z" diff --git a/advisories/unreviewed/2025/02/GHSA-9m28-7q5q-gch7/GHSA-9m28-7q5q-gch7.json b/advisories/unreviewed/2025/02/GHSA-9m28-7q5q-gch7/GHSA-9m28-7q5q-gch7.json index 2ad7ccb0be6..5500645fc37 100644 --- a/advisories/unreviewed/2025/02/GHSA-9m28-7q5q-gch7/GHSA-9m28-7q5q-gch7.json +++ b/advisories/unreviewed/2025/02/GHSA-9m28-7q5q-gch7/GHSA-9m28-7q5q-gch7.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-9m28-7q5q-gch7", - "modified": "2025-02-07T18:31:21Z", + "modified": "2025-02-10T18:30:46Z", "published": "2025-02-07T18:31:21Z", "aliases": [ "CVE-2024-52881" ], "details": "An issue was discovered in AudioCodes One Voice Operations Center (OVOC) before 8.4.582. Due to the use of a hard-coded key, an attacker is able to decrypt sensitive data such as passwords extracted from the topology file.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-321" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-07T16:15:36Z" diff --git a/advisories/unreviewed/2025/02/GHSA-cqj4-fp95-jqxq/GHSA-cqj4-fp95-jqxq.json b/advisories/unreviewed/2025/02/GHSA-cqj4-fp95-jqxq/GHSA-cqj4-fp95-jqxq.json new file mode 100644 index 00000000000..615c121495d --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-cqj4-fp95-jqxq/GHSA-cqj4-fp95-jqxq.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cqj4-fp95-jqxq", + "modified": "2025-02-10T18:30:46Z", + "published": "2025-02-10T18:30:46Z", + "aliases": [ + "CVE-2024-12243" + ], + "details": "A flaw was found in GnuTLS, which relies on libtasn1 for ASN.1 data processing. Due to an inefficient algorithm in libtasn1, decoding certain DER-encoded certificate data can take excessive time, leading to increased resource consumption. This flaw allows a remote attacker to send a specially crafted certificate, causing GnuTLS to become unresponsive or slow, resulting in a denial-of-service condition.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12243" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/security/cve/CVE-2024-12243" + }, + { + "type": "WEB", + "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2344615" + }, + { + "type": "WEB", + "url": "https://gitlab.com/gnutls/libtasn1/-/issues/52" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-407" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T16:15:37Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-g6rc-7qwp-r256/GHSA-g6rc-7qwp-r256.json b/advisories/unreviewed/2025/02/GHSA-g6rc-7qwp-r256/GHSA-g6rc-7qwp-r256.json index 3b16db1e3f2..9ea09858c7a 100644 --- a/advisories/unreviewed/2025/02/GHSA-g6rc-7qwp-r256/GHSA-g6rc-7qwp-r256.json +++ b/advisories/unreviewed/2025/02/GHSA-g6rc-7qwp-r256/GHSA-g6rc-7qwp-r256.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-451" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/02/GHSA-g7f5-75x6-qxhr/GHSA-g7f5-75x6-qxhr.json b/advisories/unreviewed/2025/02/GHSA-g7f5-75x6-qxhr/GHSA-g7f5-75x6-qxhr.json index a2b565c7bd6..6fc2a0f88ae 100644 --- a/advisories/unreviewed/2025/02/GHSA-g7f5-75x6-qxhr/GHSA-g7f5-75x6-qxhr.json +++ b/advisories/unreviewed/2025/02/GHSA-g7f5-75x6-qxhr/GHSA-g7f5-75x6-qxhr.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-g7f5-75x6-qxhr", - "modified": "2025-02-07T15:32:38Z", + "modified": "2025-02-10T18:30:45Z", "published": "2025-02-07T15:32:38Z", "aliases": [ "CVE-2024-35106" ], "details": "NEXTU FLETA AX1500 WIFI6 v1.0.3 was discovered to contain a buffer overflow at /boafrm/formIpQoS. This vulnerability allows attackers to cause a Denial of Service (DoS) or potentially arbitrary code execution via a crafted POST request.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } + ], "affected": [], "references": [ { @@ -28,8 +33,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-120" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-07T15:15:16Z" diff --git a/advisories/unreviewed/2025/02/GHSA-ghrw-wmhg-p2cm/GHSA-ghrw-wmhg-p2cm.json b/advisories/unreviewed/2025/02/GHSA-ghrw-wmhg-p2cm/GHSA-ghrw-wmhg-p2cm.json new file mode 100644 index 00000000000..cd4f9b47e2e --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-ghrw-wmhg-p2cm/GHSA-ghrw-wmhg-p2cm.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-ghrw-wmhg-p2cm", + "modified": "2025-02-10T18:30:46Z", + "published": "2025-02-10T18:30:46Z", + "aliases": [ + "CVE-2024-57950" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Initialize denominator defaults to 1\n\n[WHAT & HOW]\nVariables, used as denominators and maybe not assigned to other values,\nshould be initialized to non-zero to avoid DIVIDE_BY_ZERO, as reported\nby Coverity.\n\n(cherry picked from commit e2c4c6c10542ccfe4a0830bb6c9fd5b177b7bbb7)", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-57950" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/36b23e3baf9129d5b6c3a3a85b6b7ffb75ae287c" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/c9d6afb4f9c338049662d27d169fba7dd60e337d" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T16:15:37Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-gjcc-jpc7-jff7/GHSA-gjcc-jpc7-jff7.json b/advisories/unreviewed/2025/02/GHSA-gjcc-jpc7-jff7/GHSA-gjcc-jpc7-jff7.json new file mode 100644 index 00000000000..1d646b34086 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-gjcc-jpc7-jff7/GHSA-gjcc-jpc7-jff7.json @@ -0,0 +1,57 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gjcc-jpc7-jff7", + "modified": "2025-02-10T18:30:46Z", + "published": "2025-02-10T18:30:46Z", + "aliases": [ + "CVE-2025-21688" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/v3d: Assign job pointer to NULL before signaling the fence\n\nIn commit e4b5ccd392b9 (\"drm/v3d: Ensure job pointer is set to NULL\nafter job completion\"), we introduced a change to assign the job pointer\nto NULL after completing a job, indicating job completion.\n\nHowever, this approach created a race condition between the DRM\nscheduler workqueue and the IRQ execution thread. As soon as the fence is\nsignaled in the IRQ execution thread, a new job starts to be executed.\nThis results in a race condition where the IRQ execution thread sets the\njob pointer to NULL simultaneously as the `run_job()` function assigns\na new job to the pointer.\n\nThis race condition can lead to a NULL pointer dereference if the IRQ\nexecution thread sets the job pointer to NULL after `run_job()` assigns\nit to the new job. When the new job completes and the GPU emits an\ninterrupt, `v3d_irq()` is triggered, potentially causing a crash.\n\n[ 466.310099] Unable to handle kernel NULL pointer dereference at virtual address 00000000000000c0\n[ 466.318928] Mem abort info:\n[ 466.321723] ESR = 0x0000000096000005\n[ 466.325479] EC = 0x25: DABT (current EL), IL = 32 bits\n[ 466.330807] SET = 0, FnV = 0\n[ 466.333864] EA = 0, S1PTW = 0\n[ 466.337010] FSC = 0x05: level 1 translation fault\n[ 466.341900] Data abort info:\n[ 466.344783] ISV = 0, ISS = 0x00000005, ISS2 = 0x00000000\n[ 466.350285] CM = 0, WnR = 0, TnD = 0, TagAccess = 0\n[ 466.355350] GCS = 0, Overlay = 0, DirtyBit = 0, Xs = 0\n[ 466.360677] user pgtable: 4k pages, 39-bit VAs, pgdp=0000000089772000\n[ 466.367140] [00000000000000c0] pgd=0000000000000000, p4d=0000000000000000, pud=0000000000000000\n[ 466.375875] Internal error: Oops: 0000000096000005 [#1] PREEMPT SMP\n[ 466.382163] Modules linked in: rfcomm snd_seq_dummy snd_hrtimer snd_seq snd_seq_device algif_hash algif_skcipher af_alg bnep binfmt_misc vc4 snd_soc_hdmi_codec drm_display_helper cec brcmfmac_wcc spidev rpivid_hevc(C) drm_client_lib brcmfmac hci_uart drm_dma_helper pisp_be btbcm brcmutil snd_soc_core aes_ce_blk v4l2_mem2mem bluetooth aes_ce_cipher snd_compress videobuf2_dma_contig ghash_ce cfg80211 gf128mul snd_pcm_dmaengine videobuf2_memops ecdh_generic sha2_ce ecc videobuf2_v4l2 snd_pcm v3d sha256_arm64 rfkill videodev snd_timer sha1_ce libaes gpu_sched snd videobuf2_common sha1_generic drm_shmem_helper mc rp1_pio drm_kms_helper raspberrypi_hwmon spi_bcm2835 gpio_keys i2c_brcmstb rp1 raspberrypi_gpiomem rp1_mailbox rp1_adc nvmem_rmem uio_pdrv_genirq uio i2c_dev drm ledtrig_pattern drm_panel_orientation_quirks backlight fuse dm_mod ip_tables x_tables ipv6\n[ 466.458429] CPU: 0 UID: 1000 PID: 2008 Comm: chromium Tainted: G C 6.13.0-v8+ #18\n[ 466.467336] Tainted: [C]=CRAP\n[ 466.470306] Hardware name: Raspberry Pi 5 Model B Rev 1.0 (DT)\n[ 466.476157] pstate: 404000c9 (nZcv daIF +PAN -UAO -TCO -DIT -SSBS BTYPE=--)\n[ 466.483143] pc : v3d_irq+0x118/0x2e0 [v3d]\n[ 466.487258] lr : __handle_irq_event_percpu+0x60/0x228\n[ 466.492327] sp : ffffffc080003ea0\n[ 466.495646] x29: ffffffc080003ea0 x28: ffffff80c0c94200 x27: 0000000000000000\n[ 466.502807] x26: ffffffd08dd81d7b x25: ffffff80c0c94200 x24: ffffff8003bdc200\n[ 466.509969] x23: 0000000000000001 x22: 00000000000000a7 x21: 0000000000000000\n[ 466.517130] x20: ffffff8041bb0000 x19: 0000000000000001 x18: 0000000000000000\n[ 466.524291] x17: ffffffafadfb0000 x16: ffffffc080000000 x15: 0000000000000000\n[ 466.531452] x14: 0000000000000000 x13: 0000000000000000 x12: 0000000000000000\n[ 466.538613] x11: 0000000000000000 x10: 0000000000000000 x9 : ffffffd08c527eb0\n[ 466.545777] x8 : 0000000000000000 x7 : 0000000000000000 x6 : 0000000000000000\n[ 466.552941] x5 : ffffffd08c4100d0 x4 : ffffffafadfb0000 x3 : ffffffc080003f70\n[ 466.560102] x2 : ffffffc0829e8058 x1 : 0000000000000001 x0 : 0000000000000000\n[ 466.567263] Call trace:\n[ 466.569711] v3d_irq+0x118/0x2e0 [v3d] (P)\n[ 466.\n---truncated---", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21688" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/01a7e3a43ee2e6607169a75889412344c10b37fd" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1f66a3a1a516e4d545906916b3f3c8d1c5e909e6" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/3059e7aaa280daea57bb069fbc65225e1bb95014" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/431fb709db434565b5e7cee82a11bd681a794fd3" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6cfafcad46e95351c477da0ae7e3acb8f7550ada" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6e64d6b3a3c39655de56682ec83e894978d23412" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/9793206fbf5293534c3a79d78f196e2cbb48c22d" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a9401cd5d1bb5a0b8d2bef09623ca43551cd6e8a" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T16:15:38Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-gvgm-vg2q-4mrw/GHSA-gvgm-vg2q-4mrw.json b/advisories/unreviewed/2025/02/GHSA-gvgm-vg2q-4mrw/GHSA-gvgm-vg2q-4mrw.json index d8f614f42b9..920b4162ba3 100644 --- a/advisories/unreviewed/2025/02/GHSA-gvgm-vg2q-4mrw/GHSA-gvgm-vg2q-4mrw.json +++ b/advisories/unreviewed/2025/02/GHSA-gvgm-vg2q-4mrw/GHSA-gvgm-vg2q-4mrw.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-gvgm-vg2q-4mrw", - "modified": "2025-02-10T15:32:21Z", + "modified": "2025-02-10T18:30:46Z", "published": "2025-02-10T15:32:21Z", "aliases": [ "CVE-2024-11621" ], "details": "Missing certificate validation in Devolutions Remote Desktop Manager on macOS, iOS, Android, Linux allows an attacker to intercept and modify encrypted communications via a man-in-the-middle attack.\n\nVersions affected are :\nRemote Desktop Manager macOS 2024.3.9.0 and earlier\nRemote Desktop Manager Linux 2024.3.2.5 and earlier\nRemote Desktop Manager Android 2024.3.3.7 and earlier\nRemote Desktop Manager iOS 2024.3.3.0 and earlier\n\nRemote Desktop Manager Powershell 2024.3.6.0 and earlier", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -23,7 +28,7 @@ "cwe_ids": [ "CWE-295" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-10T14:15:29Z" diff --git a/advisories/unreviewed/2025/02/GHSA-hv45-98mg-9h9w/GHSA-hv45-98mg-9h9w.json b/advisories/unreviewed/2025/02/GHSA-hv45-98mg-9h9w/GHSA-hv45-98mg-9h9w.json index e811890e4af..96140b9fb8e 100644 --- a/advisories/unreviewed/2025/02/GHSA-hv45-98mg-9h9w/GHSA-hv45-98mg-9h9w.json +++ b/advisories/unreviewed/2025/02/GHSA-hv45-98mg-9h9w/GHSA-hv45-98mg-9h9w.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-hv45-98mg-9h9w", - "modified": "2025-02-07T18:31:22Z", + "modified": "2025-02-10T18:30:46Z", "published": "2025-02-07T18:31:22Z", "aliases": [ "CVE-2024-57249" ], "details": "Incorrect Access Control in the Preview Function of Gleamtech FileVista 9.2.0.0 allows remote attackers to gain unauthorized access via exploiting a vulnerability in access control mechanisms by removing authentication-related HTTP headers, such as the Cookie header, in the request. This bypasses the authentication process and grants attackers access to sensitive image files without proper login credentials.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-284" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-07T16:15:38Z" diff --git a/advisories/unreviewed/2025/02/GHSA-j3qr-8f3v-fgjj/GHSA-j3qr-8f3v-fgjj.json b/advisories/unreviewed/2025/02/GHSA-j3qr-8f3v-fgjj/GHSA-j3qr-8f3v-fgjj.json new file mode 100644 index 00000000000..5d3f8e35f25 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-j3qr-8f3v-fgjj/GHSA-j3qr-8f3v-fgjj.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j3qr-8f3v-fgjj", + "modified": "2025-02-10T18:30:47Z", + "published": "2025-02-10T18:30:47Z", + "aliases": [ + "CVE-2024-12133" + ], + "details": "A flaw in libtasn1 causes inefficient handling of specific certificate data. When processing a large number of elements in a certificate, libtasn1 takes much longer than expected, which can slow down or even crash the system. This flaw allows an attacker to send a specially crafted certificate, causing a denial of service attack.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12133" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/security/cve/CVE-2024-12133" + }, + { + "type": "WEB", + "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2344611" + }, + { + "type": "WEB", + "url": "https://gitlab.com/gnutls/libtasn1/-/issues/52" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2025/02/06/6" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-407" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T16:15:37Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-j8hh-6vg7-jqjr/GHSA-j8hh-6vg7-jqjr.json b/advisories/unreviewed/2025/02/GHSA-j8hh-6vg7-jqjr/GHSA-j8hh-6vg7-jqjr.json new file mode 100644 index 00000000000..57d4f35e5c1 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-j8hh-6vg7-jqjr/GHSA-j8hh-6vg7-jqjr.json @@ -0,0 +1,37 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j8hh-6vg7-jqjr", + "modified": "2025-02-10T18:30:47Z", + "published": "2025-02-10T18:30:47Z", + "aliases": [ + "CVE-2024-57408" + ], + "details": "An arbitrary file upload vulnerability in the component /comm/upload of cool-admin-java v1.0 allows attackers to execute arbitrary code via uploading a crafted file.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-57408" + }, + { + "type": "WEB", + "url": "https://gist.github.com/kaoniniang2/2cfc83a612ba929279ed5fb8b91b45ba" + }, + { + "type": "WEB", + "url": "https://github.com/cool-team-official/cool-admin-java" + }, + { + "type": "WEB", + "url": "https://github.com/kaoniniang2/exploit/blob/main/Cool-admin-File%20upload%20vulnerability.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T18:15:33Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-jqr2-rwpf-xrf3/GHSA-jqr2-rwpf-xrf3.json b/advisories/unreviewed/2025/02/GHSA-jqr2-rwpf-xrf3/GHSA-jqr2-rwpf-xrf3.json new file mode 100644 index 00000000000..dc21043b1ab --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-jqr2-rwpf-xrf3/GHSA-jqr2-rwpf-xrf3.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jqr2-rwpf-xrf3", + "modified": "2025-02-10T18:30:47Z", + "published": "2025-02-10T18:30:47Z", + "aliases": [ + "CVE-2025-21693" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmm: zswap: properly synchronize freeing resources during CPU hotunplug\n\nIn zswap_compress() and zswap_decompress(), the per-CPU acomp_ctx of the\ncurrent CPU at the beginning of the operation is retrieved and used\nthroughout. However, since neither preemption nor migration are disabled,\nit is possible that the operation continues on a different CPU.\n\nIf the original CPU is hotunplugged while the acomp_ctx is still in use,\nwe run into a UAF bug as some of the resources attached to the acomp_ctx\nare freed during hotunplug in zswap_cpu_comp_dead() (i.e. \nacomp_ctx.buffer, acomp_ctx.req, or acomp_ctx.acomp).\n\nThe problem was introduced in commit 1ec3b5fe6eec (\"mm/zswap: move to use\ncrypto_acomp API for hardware acceleration\") when the switch to the\ncrypto_acomp API was made. Prior to that, the per-CPU crypto_comp was\nretrieved using get_cpu_ptr() which disables preemption and makes sure the\nCPU cannot go away from under us. Preemption cannot be disabled with the\ncrypto_acomp API as a sleepable context is needed.\n\nUse the acomp_ctx.mutex to synchronize CPU hotplug callbacks allocating\nand freeing resources with compression/decompression paths. Make sure\nthat acomp_ctx.req is NULL when the resources are freed. In the\ncompression/decompression paths, check if acomp_ctx.req is NULL after\nacquiring the mutex (meaning the CPU was offlined) and retry on the new\nCPU.\n\nThe initialization of acomp_ctx.mutex is moved from the CPU hotplug\ncallback to the pool initialization where it belongs (where the mutex is\nallocated). In addition to adding clarity, this makes sure that CPU\nhotplug cannot reinitialize a mutex that is already locked by\ncompression/decompression.\n\nPreviously a fix was attempted by holding cpus_read_lock() [1]. This\nwould have caused a potential deadlock as it is possible for code already\nholding the lock to fall into reclaim and enter zswap (causing a\ndeadlock). A fix was also attempted using SRCU for synchronization, but\nJohannes pointed out that synchronize_srcu() cannot be used in CPU hotplug\nnotifiers [2].\n\nAlternative fixes that were considered/attempted and could have worked:\n- Refcounting the per-CPU acomp_ctx. This involves complexity in\n handling the race between the refcount dropping to zero in\n zswap_[de]compress() and the refcount being re-initialized when the\n CPU is onlined.\n- Disabling migration before getting the per-CPU acomp_ctx [3], but\n that's discouraged and is a much bigger hammer than needed, and could\n result in subtle performance issues.\n\n[1]https://lkml.kernel.org/20241219212437.2714151-1-yosryahmed@google.com/\n[2]https://lkml.kernel.org/20250107074724.1756696-2-yosryahmed@google.com/\n[3]https://lkml.kernel.org/20250107222236.2715883-2-yosryahmed@google.com/\n\n[yosryahmed@google.com: remove comment]\n Link: https://lkml.kernel.org/r/CAJD7tkaxS1wjn+swugt8QCvQ-rVF5RZnjxwPGX17k8x9zSManA@mail.gmail.com", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21693" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/12dcb0ef540629a281533f9dedc1b6b8e14cfb65" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/8d29ff5d50304daa41dc3cfdda4a9d1e46cf5be1" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-416" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T16:15:38Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-jrp8-vq3h-w34w/GHSA-jrp8-vq3h-w34w.json b/advisories/unreviewed/2025/02/GHSA-jrp8-vq3h-w34w/GHSA-jrp8-vq3h-w34w.json index f5c0ab85b88..b67605df3a8 100644 --- a/advisories/unreviewed/2025/02/GHSA-jrp8-vq3h-w34w/GHSA-jrp8-vq3h-w34w.json +++ b/advisories/unreviewed/2025/02/GHSA-jrp8-vq3h-w34w/GHSA-jrp8-vq3h-w34w.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-jrp8-vq3h-w34w", - "modified": "2025-02-07T18:31:21Z", + "modified": "2025-02-10T18:30:46Z", "published": "2025-02-07T18:31:21Z", "aliases": [ "CVE-2024-55213" ], "details": "Directory Traversal vulnerability in dhtmlxFileExplorer v.8.4.6 allows a remote attacker to obtain sensitive information via the File Listing function.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-552" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-07T16:15:37Z" diff --git a/advisories/unreviewed/2025/02/GHSA-jwqj-7c2q-9ffr/GHSA-jwqj-7c2q-9ffr.json b/advisories/unreviewed/2025/02/GHSA-jwqj-7c2q-9ffr/GHSA-jwqj-7c2q-9ffr.json new file mode 100644 index 00000000000..db5129c6e8f --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-jwqj-7c2q-9ffr/GHSA-jwqj-7c2q-9ffr.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jwqj-7c2q-9ffr", + "modified": "2025-02-10T18:30:47Z", + "published": "2025-02-10T18:30:47Z", + "aliases": [ + "CVE-2024-57407" + ], + "details": "An arbitrary file upload vulnerability in the component /userPicture of Timo v2.0.3 allows attackers to execute arbitrary code via uploading a crafted file.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-57407" + }, + { + "type": "WEB", + "url": "https://gist.github.com/kaoniniang2/71f6a39535490ea2eeac371f33faec9c" + }, + { + "type": "WEB", + "url": "https://gitee.com/aun/Timo/issues/IBBTZI" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T18:15:33Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-mgqg-wqxj-q43c/GHSA-mgqg-wqxj-q43c.json b/advisories/unreviewed/2025/02/GHSA-mgqg-wqxj-q43c/GHSA-mgqg-wqxj-q43c.json new file mode 100644 index 00000000000..7237301a6a0 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-mgqg-wqxj-q43c/GHSA-mgqg-wqxj-q43c.json @@ -0,0 +1,57 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mgqg-wqxj-q43c", + "modified": "2025-02-10T18:30:46Z", + "published": "2025-02-10T18:30:46Z", + "aliases": [ + "CVE-2025-21689" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nUSB: serial: quatech2: fix null-ptr-deref in qt2_process_read_urb()\n\nThis patch addresses a null-ptr-deref in qt2_process_read_urb() due to\nan incorrect bounds check in the following:\n\n if (newport > serial->num_ports) {\n dev_err(&port->dev,\n \"%s - port change to invalid port: %i\\n\",\n __func__, newport);\n break;\n }\n\nThe condition doesn't account for the valid range of the serial->port\nbuffer, which is from 0 to serial->num_ports - 1. When newport is equal\nto serial->num_ports, the assignment of \"port\" in the\nfollowing code is out-of-bounds and NULL:\n\n serial_priv->current_port = newport;\n port = serial->port[serial_priv->current_port];\n\nThe fix checks if newport is greater than or equal to serial->num_ports\nindicating it is out-of-bounds.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21689" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/4b9b41fabcd38990f69ef0cee9c631d954a2b530" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/575a5adf48b06a2980c9eeffedf699ed5534fade" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6068dcff7f19e9fa6fa23ee03453ad6a40fa4efe" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6377838560c03b36e1153a42ef727533def9b68f" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/8542b33622571f54dfc2a267fce378b6e3840b8b" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/94770cf7c5124f0268d481886829dc2beecc4507" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f371471708c7d997f763b0e70565026eb67cc470" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/fa4c7472469d97c4707698b4c0e098f8cfc2bf22" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T16:15:38Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-mp4p-vfgp-m87p/GHSA-mp4p-vfgp-m87p.json b/advisories/unreviewed/2025/02/GHSA-mp4p-vfgp-m87p/GHSA-mp4p-vfgp-m87p.json new file mode 100644 index 00000000000..1b5e24fbc24 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-mp4p-vfgp-m87p/GHSA-mp4p-vfgp-m87p.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mp4p-vfgp-m87p", + "modified": "2025-02-10T18:30:47Z", + "published": "2025-02-10T18:30:47Z", + "aliases": [ + "CVE-2024-48170" + ], + "details": "PHPGurukul Small CRM 3.0 is vulnerable to Cross Site Scripting (XSS) via a crafted payload injected into the name in the profile.php.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48170" + }, + { + "type": "WEB", + "url": "https://medium.com/@jose.inaciot/cve-2024-48170-bee6ccb773d4" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T18:15:26Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-pcxj-752c-m479/GHSA-pcxj-752c-m479.json b/advisories/unreviewed/2025/02/GHSA-pcxj-752c-m479/GHSA-pcxj-752c-m479.json index 42d76e6346a..0db0ff3566d 100644 --- a/advisories/unreviewed/2025/02/GHSA-pcxj-752c-m479/GHSA-pcxj-752c-m479.json +++ b/advisories/unreviewed/2025/02/GHSA-pcxj-752c-m479/GHSA-pcxj-752c-m479.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-pcxj-752c-m479", - "modified": "2025-02-07T18:31:22Z", + "modified": "2025-02-10T18:30:46Z", "published": "2025-02-07T18:31:22Z", "aliases": [ "CVE-2024-57248" ], "details": "Directory Traversal in File Upload in Gleamtech FileVista 9.2.0.0 allows remote attackers to achieve Code Execution, Information Disclosure, and Escalation of Privileges via injecting malicious payloads in HTTP requests to manipulate file paths, bypass access controls, and upload malicious files.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-22" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-07T16:15:38Z" diff --git a/advisories/unreviewed/2025/02/GHSA-q3hh-qh22-77x8/GHSA-q3hh-qh22-77x8.json b/advisories/unreviewed/2025/02/GHSA-q3hh-qh22-77x8/GHSA-q3hh-qh22-77x8.json new file mode 100644 index 00000000000..55572cfbde1 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-q3hh-qh22-77x8/GHSA-q3hh-qh22-77x8.json @@ -0,0 +1,57 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q3hh-qh22-77x8", + "modified": "2025-02-10T18:30:47Z", + "published": "2025-02-10T18:30:47Z", + "aliases": [ + "CVE-2025-21687" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nvfio/platform: check the bounds of read/write syscalls\n\ncount and offset are passed from user space and not checked, only\noffset is capped to 40 bits, which can be used to read/write out of\nbounds of the device.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21687" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/665cfd1083866f87301bbd232cb8ba48dcf4acce" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6bcb8a5b70b80143db9bf12dfa7d53636f824d53" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/92340e6c5122d823ad064984ef7513eba9204048" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a20fcaa230f7472456d12cf761ed13938e320ac3" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/c981c32c38af80737a2fedc16e270546d139ccdd" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ce9ff21ea89d191e477a02ad7eabf4f996b80a69" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d19a8650fd3d7aed8d1af1d9a77f979a8430eba1" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f21636f24b6786c8b13f1af4319fa75ffcf17f38" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T16:15:38Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-q9w8-xpx6-pvc2/GHSA-q9w8-xpx6-pvc2.json b/advisories/unreviewed/2025/02/GHSA-q9w8-xpx6-pvc2/GHSA-q9w8-xpx6-pvc2.json index 9d9ea475406..703ce103ea1 100644 --- a/advisories/unreviewed/2025/02/GHSA-q9w8-xpx6-pvc2/GHSA-q9w8-xpx6-pvc2.json +++ b/advisories/unreviewed/2025/02/GHSA-q9w8-xpx6-pvc2/GHSA-q9w8-xpx6-pvc2.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-q9w8-xpx6-pvc2", - "modified": "2025-02-07T18:31:21Z", + "modified": "2025-02-10T18:30:46Z", "published": "2025-02-07T18:31:21Z", "aliases": [ "CVE-2024-52883" ], "details": "An issue was discovered in AudioCodes One Voice Operations Center (OVOC) before 8.4.582. Due to a path traversal vulnerability, sensitive data can be read without any authentication.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-22" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-07T16:15:36Z" diff --git a/advisories/unreviewed/2025/02/GHSA-v3wx-9j8m-4934/GHSA-v3wx-9j8m-4934.json b/advisories/unreviewed/2025/02/GHSA-v3wx-9j8m-4934/GHSA-v3wx-9j8m-4934.json index 5bf9d784547..6166ebc0479 100644 --- a/advisories/unreviewed/2025/02/GHSA-v3wx-9j8m-4934/GHSA-v3wx-9j8m-4934.json +++ b/advisories/unreviewed/2025/02/GHSA-v3wx-9j8m-4934/GHSA-v3wx-9j8m-4934.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-v3wx-9j8m-4934", - "modified": "2025-02-10T15:32:22Z", + "modified": "2025-02-10T18:30:46Z", "published": "2025-02-10T15:32:22Z", "aliases": [ "CVE-2025-1193" ], "details": "Improper host validation in the certificate validation component in Devolutions Remote Desktop Manager on 2024.3.19 and earlier on Windows allows an attacker to intercept and modify encrypted communications via a man-in-the-middle attack \nby presenting a certificate for a different host.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N" + } + ], "affected": [], "references": [ { @@ -23,7 +28,7 @@ "cwe_ids": [ "CWE-295" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-10T14:15:30Z" diff --git a/advisories/unreviewed/2025/02/GHSA-v6vm-3qpv-vj6x/GHSA-v6vm-3qpv-vj6x.json b/advisories/unreviewed/2025/02/GHSA-v6vm-3qpv-vj6x/GHSA-v6vm-3qpv-vj6x.json index 4f0f52191c0..e7b3b79a115 100644 --- a/advisories/unreviewed/2025/02/GHSA-v6vm-3qpv-vj6x/GHSA-v6vm-3qpv-vj6x.json +++ b/advisories/unreviewed/2025/02/GHSA-v6vm-3qpv-vj6x/GHSA-v6vm-3qpv-vj6x.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-v6vm-3qpv-vj6x", - "modified": "2025-02-07T18:31:21Z", + "modified": "2025-02-10T18:30:46Z", "published": "2025-02-07T18:31:21Z", "aliases": [ "CVE-2024-52884" ], "details": "An issue was discovered in AudioCodes Mediant Session Border Controller (SBC) before 7.40A.501.841. Due to the use of weak password obfuscation/encryption, an attacker with access to configuration exports (INI) is able to decrypt the passwords.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-327" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-07T16:15:36Z" diff --git a/advisories/unreviewed/2025/02/GHSA-wr5v-43p3-xfrq/GHSA-wr5v-43p3-xfrq.json b/advisories/unreviewed/2025/02/GHSA-wr5v-43p3-xfrq/GHSA-wr5v-43p3-xfrq.json index 098daa4ea75..031405a6190 100644 --- a/advisories/unreviewed/2025/02/GHSA-wr5v-43p3-xfrq/GHSA-wr5v-43p3-xfrq.json +++ b/advisories/unreviewed/2025/02/GHSA-wr5v-43p3-xfrq/GHSA-wr5v-43p3-xfrq.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-wr5v-43p3-xfrq", - "modified": "2025-02-07T18:31:20Z", + "modified": "2025-02-10T18:30:46Z", "published": "2025-02-07T18:31:20Z", "aliases": [ "CVE-2024-48091" ], "details": "Tally Prime Edit Log v2.1 was discovered to contain a DLL hijacking vulnerability via the component TextShaping.dll. This vulnerability allows attackers to execute arbitrary code via a crafted DLL.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-427" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-07T16:15:36Z" diff --git a/advisories/unreviewed/2025/02/GHSA-x7cw-79fv-35qf/GHSA-x7cw-79fv-35qf.json b/advisories/unreviewed/2025/02/GHSA-x7cw-79fv-35qf/GHSA-x7cw-79fv-35qf.json new file mode 100644 index 00000000000..1bbcaa9d672 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-x7cw-79fv-35qf/GHSA-x7cw-79fv-35qf.json @@ -0,0 +1,49 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x7cw-79fv-35qf", + "modified": "2025-02-10T18:30:46Z", + "published": "2025-02-10T18:30:46Z", + "aliases": [ + "CVE-2025-21690" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: storvsc: Ratelimit warning logs to prevent VM denial of service\n\nIf there's a persistent error in the hypervisor, the SCSI warning for\nfailed I/O can flood the kernel log and max out CPU utilization,\npreventing troubleshooting from the VM side. Ratelimit the warning so\nit doesn't DoS the VM.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21690" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/01d1ebdab9ccb73c952e1666a8a80abd194dbc55" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/088bde862f8d3d0fc52e40e66a0484a246837087" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/182a4b7c731e95c08cb47f14b87a272b6ab2b2da" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/81d4dd05c412ba04f9f6b85b718e6da833be290c" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d0f0af1bafef33b3e2aa8c3a4ef44db48df9b0ea" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d2138eab8cde61e0e6f62d0713e45202e8457d6d" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T16:15:38Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-xr98-5c2m-hfwp/GHSA-xr98-5c2m-hfwp.json b/advisories/unreviewed/2025/02/GHSA-xr98-5c2m-hfwp/GHSA-xr98-5c2m-hfwp.json new file mode 100644 index 00000000000..b9d975a1095 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-xr98-5c2m-hfwp/GHSA-xr98-5c2m-hfwp.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xr98-5c2m-hfwp", + "modified": "2025-02-10T18:30:47Z", + "published": "2025-02-10T18:30:47Z", + "aliases": [ + "CVE-2025-1152" + ], + "details": "A vulnerability classified as problematic has been found in GNU Binutils 2.43. Affected is the function xstrdup of the file xstrdup.c of the component ld. The manipulation leads to memory leak. It is possible to launch the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue. The code maintainer explains: \"I'm not going to commit some of the leak fixes I've been working on to the 2.44 branch due to concern that would destabilise ld. All of the reported leaks in this bugzilla have been fixed on binutils master.\"", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1152" + }, + { + "type": "WEB", + "url": "https://sourceware.org/bugzilla/attachment.cgi?id=15887" + }, + { + "type": "WEB", + "url": "https://sourceware.org/bugzilla/show_bug.cgi?id=32576" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.295056" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.295056" + }, + { + "type": "WEB", + "url": "https://www.gnu.org" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-401" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-10T18:15:34Z" + } +} \ No newline at end of file