diff --git a/advisories/github-reviewed/2024/07/GHSA-ch7q-gpff-h9hp/GHSA-ch7q-gpff-h9hp.json b/advisories/github-reviewed/2024/07/GHSA-ch7q-gpff-h9hp/GHSA-ch7q-gpff-h9hp.json index 95034415239..911da3789b5 100644 --- a/advisories/github-reviewed/2024/07/GHSA-ch7q-gpff-h9hp/GHSA-ch7q-gpff-h9hp.json +++ b/advisories/github-reviewed/2024/07/GHSA-ch7q-gpff-h9hp/GHSA-ch7q-gpff-h9hp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-ch7q-gpff-h9hp", - "modified": "2024-09-23T21:30:46Z", + "modified": "2024-11-04T22:22:11Z", "published": "2024-07-09T00:31:40Z", "aliases": [ "CVE-2024-3653" @@ -19,6 +19,25 @@ } ], "affected": [ + { + "package": { + "ecosystem": "Maven", + "name": "io.undertow:undertow-core" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "2.3.0.Alpha1" + }, + { + "fixed": "2.3.15.Final" + } + ] + } + ] + }, { "package": { "ecosystem": "Maven", @@ -32,7 +51,7 @@ "introduced": "0" }, { - "last_affected": "2.3.14.Final" + "fixed": "2.2.34.Final" } ] } @@ -44,6 +63,18 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-3653" }, + { + "type": "WEB", + "url": "https://github.com/undertow-io/undertow/pull/1639" + }, + { + "type": "WEB", + "url": "https://github.com/undertow-io/undertow/pull/1640" + }, + { + "type": "WEB", + "url": "https://github.com/undertow-io/undertow/pull/1641" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:4392" @@ -79,6 +110,10 @@ { "type": "PACKAGE", "url": "https://github.com/undertow-io/undertow" + }, + { + "type": "WEB", + "url": "https://issues.redhat.com/browse/UNDERTOW-2382" } ], "database_specific": {