diff --git a/advisories/unreviewed/2024/02/GHSA-v8p7-prvv-wvf5/GHSA-v8p7-prvv-wvf5.json b/advisories/unreviewed/2024/02/GHSA-v8p7-prvv-wvf5/GHSA-v8p7-prvv-wvf5.json
index 1eb50f54dd4..fc0c4c401cf 100644
--- a/advisories/unreviewed/2024/02/GHSA-v8p7-prvv-wvf5/GHSA-v8p7-prvv-wvf5.json
+++ b/advisories/unreviewed/2024/02/GHSA-v8p7-prvv-wvf5/GHSA-v8p7-prvv-wvf5.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-v8p7-prvv-wvf5",
- "modified": "2024-02-18T06:30:31Z",
+ "modified": "2024-11-22T21:32:09Z",
"published": "2024-02-18T06:30:31Z",
"aliases": [
"CVE-2023-52368"
],
"details": "Input verification vulnerability in the account module.Successful exploitation of this vulnerability may cause features to perform abnormally.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N"
+ }
],
"affected": [
@@ -31,7 +34,7 @@
"cwe_ids": [
"CWE-20"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-02-18T04:15:07Z"
diff --git a/advisories/unreviewed/2024/03/GHSA-j333-97w2-3p5r/GHSA-j333-97w2-3p5r.json b/advisories/unreviewed/2024/03/GHSA-j333-97w2-3p5r/GHSA-j333-97w2-3p5r.json
index bdfe1aaa6b7..df821578fda 100644
--- a/advisories/unreviewed/2024/03/GHSA-j333-97w2-3p5r/GHSA-j333-97w2-3p5r.json
+++ b/advisories/unreviewed/2024/03/GHSA-j333-97w2-3p5r/GHSA-j333-97w2-3p5r.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-j333-97w2-3p5r",
- "modified": "2024-03-08T03:31:24Z",
+ "modified": "2024-11-22T21:32:09Z",
"published": "2024-03-08T03:31:24Z",
"aliases": [
"CVE-2024-23240"
],
"details": "The issue was addressed with improved checks. This issue is fixed in iOS 17.4 and iPadOS 17.4. Shake-to-undo may allow a deleted photo to be re-surfaced without authentication.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N"
+ }
],
"affected": [
@@ -27,7 +30,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-03-08T02:15:48Z"
diff --git a/advisories/unreviewed/2024/04/GHSA-7qcm-hh75-h23f/GHSA-7qcm-hh75-h23f.json b/advisories/unreviewed/2024/04/GHSA-7qcm-hh75-h23f/GHSA-7qcm-hh75-h23f.json
index 4ebb2fc50a0..8af348e5af0 100644
--- a/advisories/unreviewed/2024/04/GHSA-7qcm-hh75-h23f/GHSA-7qcm-hh75-h23f.json
+++ b/advisories/unreviewed/2024/04/GHSA-7qcm-hh75-h23f/GHSA-7qcm-hh75-h23f.json
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-120"
],
"severity": "MODERATE",
"github_reviewed": false,
diff --git a/advisories/unreviewed/2024/04/GHSA-x945-jm33-f3qv/GHSA-x945-jm33-f3qv.json b/advisories/unreviewed/2024/04/GHSA-x945-jm33-f3qv/GHSA-x945-jm33-f3qv.json
index a3c825fd509..a75b77100fa 100644
--- a/advisories/unreviewed/2024/04/GHSA-x945-jm33-f3qv/GHSA-x945-jm33-f3qv.json
+++ b/advisories/unreviewed/2024/04/GHSA-x945-jm33-f3qv/GHSA-x945-jm33-f3qv.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-x945-jm33-f3qv",
- "modified": "2024-04-03T18:30:41Z",
+ "modified": "2024-11-22T21:32:10Z",
"published": "2024-04-03T18:30:40Z",
"aliases": [
"CVE-2024-31393"
],
"details": "Dragging Javascript URLs to the address bar could cause them to be loaded, bypassing restrictions and security protections This vulnerability affects Firefox for iOS < 124.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N"
+ }
],
"affected": [
@@ -31,7 +34,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-04-03T16:15:07Z"
diff --git a/advisories/unreviewed/2024/04/GHSA-xwvj-4p64-mggq/GHSA-xwvj-4p64-mggq.json b/advisories/unreviewed/2024/04/GHSA-xwvj-4p64-mggq/GHSA-xwvj-4p64-mggq.json
index 18147257963..53d992f36ee 100644
--- a/advisories/unreviewed/2024/04/GHSA-xwvj-4p64-mggq/GHSA-xwvj-4p64-mggq.json
+++ b/advisories/unreviewed/2024/04/GHSA-xwvj-4p64-mggq/GHSA-xwvj-4p64-mggq.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-xwvj-4p64-mggq",
- "modified": "2024-04-01T18:30:56Z",
+ "modified": "2024-11-22T21:32:09Z",
"published": "2024-04-01T18:30:56Z",
"aliases": [
"CVE-2024-30861"
],
"details": "netentsec NS-ASG 6.3 is vulnerable to SQL Injection via /admin/configguide/ipsec_guide_1.php.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N"
+ }
],
"affected": [
@@ -25,9 +28,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-89"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-04-01T16:15:38Z"
diff --git a/advisories/unreviewed/2024/06/GHSA-7fx2-6x89-r7jc/GHSA-7fx2-6x89-r7jc.json b/advisories/unreviewed/2024/06/GHSA-7fx2-6x89-r7jc/GHSA-7fx2-6x89-r7jc.json
index 4953f7a6fc7..8d243a34afa 100644
--- a/advisories/unreviewed/2024/06/GHSA-7fx2-6x89-r7jc/GHSA-7fx2-6x89-r7jc.json
+++ b/advisories/unreviewed/2024/06/GHSA-7fx2-6x89-r7jc/GHSA-7fx2-6x89-r7jc.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-7fx2-6x89-r7jc",
- "modified": "2024-06-11T21:32:17Z",
+ "modified": "2024-11-22T21:32:11Z",
"published": "2024-06-11T21:32:17Z",
"aliases": [
"CVE-2024-34406"
],
"details": "Improper exception handling in McAfee Security: Antivirus VPN for Android before 8.3.0 could allow an attacker to cause a denial of service through the use of a malformed deep link.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N"
+ }
],
"affected": [
@@ -31,7 +34,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-06-11T19:16:07Z"
diff --git a/advisories/unreviewed/2024/06/GHSA-gqwf-4frr-g8c6/GHSA-gqwf-4frr-g8c6.json b/advisories/unreviewed/2024/06/GHSA-gqwf-4frr-g8c6/GHSA-gqwf-4frr-g8c6.json
index 10374d3d164..e51952ada88 100644
--- a/advisories/unreviewed/2024/06/GHSA-gqwf-4frr-g8c6/GHSA-gqwf-4frr-g8c6.json
+++ b/advisories/unreviewed/2024/06/GHSA-gqwf-4frr-g8c6/GHSA-gqwf-4frr-g8c6.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-gqwf-4frr-g8c6",
- "modified": "2024-06-13T21:30:55Z",
+ "modified": "2024-11-22T21:32:11Z",
"published": "2024-06-13T21:30:55Z",
"aliases": [
"CVE-2024-32923"
],
"details": "there is a possible cellular denial of service due to a logic error in the code. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"
+ }
],
"affected": [
@@ -27,7 +30,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-06-13T21:15:56Z"
diff --git a/advisories/unreviewed/2024/07/GHSA-2jrh-c5mc-7j55/GHSA-2jrh-c5mc-7j55.json b/advisories/unreviewed/2024/07/GHSA-2jrh-c5mc-7j55/GHSA-2jrh-c5mc-7j55.json
index fceb6f98780..333cce7e83a 100644
--- a/advisories/unreviewed/2024/07/GHSA-2jrh-c5mc-7j55/GHSA-2jrh-c5mc-7j55.json
+++ b/advisories/unreviewed/2024/07/GHSA-2jrh-c5mc-7j55/GHSA-2jrh-c5mc-7j55.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-2jrh-c5mc-7j55",
- "modified": "2024-07-09T21:30:38Z",
+ "modified": "2024-11-22T21:32:11Z",
"published": "2024-07-09T21:30:37Z",
"aliases": [
"CVE-2024-40750"
],
"details": "Linksys Velop Pro 6E 1.0.8 MX6200_1.0.8.215731 and 7 1.0.10.215314 devices send cleartext Wi-Fi passwords over the public Internet during app-based installation.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L"
+ }
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-312"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-07-09T20:15:12Z"
diff --git a/advisories/unreviewed/2024/07/GHSA-cvpr-vgp2-92p4/GHSA-cvpr-vgp2-92p4.json b/advisories/unreviewed/2024/07/GHSA-cvpr-vgp2-92p4/GHSA-cvpr-vgp2-92p4.json
index 536aaabec63..f2e6ddc7631 100644
--- a/advisories/unreviewed/2024/07/GHSA-cvpr-vgp2-92p4/GHSA-cvpr-vgp2-92p4.json
+++ b/advisories/unreviewed/2024/07/GHSA-cvpr-vgp2-92p4/GHSA-cvpr-vgp2-92p4.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-cvpr-vgp2-92p4",
- "modified": "2024-07-15T18:31:15Z",
+ "modified": "2024-11-22T21:32:11Z",
"published": "2024-07-15T18:31:15Z",
"aliases": [
"CVE-2024-40555"
],
"details": "Tmall_demo v2024.07.03 was discovered to contain an arbitrary file upload vulnerability.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N"
+ }
],
"affected": [
@@ -27,7 +30,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-07-15T16:15:03Z"
diff --git a/advisories/unreviewed/2024/08/GHSA-4rgj-6vvq-8853/GHSA-4rgj-6vvq-8853.json b/advisories/unreviewed/2024/08/GHSA-4rgj-6vvq-8853/GHSA-4rgj-6vvq-8853.json
index a626b11afea..d1e9815b8e5 100644
--- a/advisories/unreviewed/2024/08/GHSA-4rgj-6vvq-8853/GHSA-4rgj-6vvq-8853.json
+++ b/advisories/unreviewed/2024/08/GHSA-4rgj-6vvq-8853/GHSA-4rgj-6vvq-8853.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-4rgj-6vvq-8853",
- "modified": "2024-08-06T15:30:52Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-08-06T15:30:52Z",
"aliases": [
"CVE-2024-33994"
diff --git a/advisories/unreviewed/2024/08/GHSA-mhmm-rgjv-95hx/GHSA-mhmm-rgjv-95hx.json b/advisories/unreviewed/2024/08/GHSA-mhmm-rgjv-95hx/GHSA-mhmm-rgjv-95hx.json
index 079df6366ba..301c9330144 100644
--- a/advisories/unreviewed/2024/08/GHSA-mhmm-rgjv-95hx/GHSA-mhmm-rgjv-95hx.json
+++ b/advisories/unreviewed/2024/08/GHSA-mhmm-rgjv-95hx/GHSA-mhmm-rgjv-95hx.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-mhmm-rgjv-95hx",
- "modified": "2024-08-06T12:30:35Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-08-06T12:30:34Z",
"aliases": [
"CVE-2024-7317"
diff --git a/advisories/unreviewed/2024/09/GHSA-38r2-f5rc-fgw9/GHSA-38r2-f5rc-fgw9.json b/advisories/unreviewed/2024/09/GHSA-38r2-f5rc-fgw9/GHSA-38r2-f5rc-fgw9.json
index 3710eda16fc..15dbbe12fe0 100644
--- a/advisories/unreviewed/2024/09/GHSA-38r2-f5rc-fgw9/GHSA-38r2-f5rc-fgw9.json
+++ b/advisories/unreviewed/2024/09/GHSA-38r2-f5rc-fgw9/GHSA-38r2-f5rc-fgw9.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-38r2-f5rc-fgw9",
- "modified": "2024-09-18T09:30:37Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-09-18T09:30:37Z",
"aliases": [
"CVE-2024-46790"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\ncodetag: debug: mark codetags for poisoned page as empty\n\nWhen PG_hwpoison pages are freed they are treated differently in\nfree_pages_prepare() and instead of being released they are isolated.\n\nPage allocation tag counters are decremented at this point since the page\nis considered not in use. Later on when such pages are released by\nunpoison_memory(), the allocation tag counters will be decremented again\nand the following warning gets reported:\n\n[ 113.930443][ T3282] ------------[ cut here ]------------\n[ 113.931105][ T3282] alloc_tag was not set\n[ 113.931576][ T3282] WARNING: CPU: 2 PID: 3282 at ./include/linux/alloc_tag.h:130 pgalloc_tag_sub.part.66+0x154/0x164\n[ 113.932866][ T3282] Modules linked in: hwpoison_inject fuse ip6t_rpfilter ip6t_REJECT nf_reject_ipv6 ipt_REJECT nf_reject_ipv4 xt_conntrack ebtable_nat ebtable_broute ip6table_nat ip6table_man4\n[ 113.941638][ T3282] CPU: 2 UID: 0 PID: 3282 Comm: madvise11 Kdump: loaded Tainted: G W 6.11.0-rc4-dirty #18\n[ 113.943003][ T3282] Tainted: [W]=WARN\n[ 113.943453][ T3282] Hardware name: QEMU KVM Virtual Machine, BIOS unknown 2/2/2022\n[ 113.944378][ T3282] pstate: 40400005 (nZcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)\n[ 113.945319][ T3282] pc : pgalloc_tag_sub.part.66+0x154/0x164\n[ 113.946016][ T3282] lr : pgalloc_tag_sub.part.66+0x154/0x164\n[ 113.946706][ T3282] sp : ffff800087093a10\n[ 113.947197][ T3282] x29: ffff800087093a10 x28: ffff0000d7a9d400 x27: ffff80008249f0a0\n[ 113.948165][ T3282] x26: 0000000000000000 x25: ffff80008249f2b0 x24: 0000000000000000\n[ 113.949134][ T3282] x23: 0000000000000001 x22: 0000000000000001 x21: 0000000000000000\n[ 113.950597][ T3282] x20: ffff0000c08fcad8 x19: ffff80008251e000 x18: ffffffffffffffff\n[ 113.952207][ T3282] x17: 0000000000000000 x16: 0000000000000000 x15: ffff800081746210\n[ 113.953161][ T3282] x14: 0000000000000000 x13: 205d323832335420 x12: 5b5d353031313339\n[ 113.954120][ T3282] x11: ffff800087093500 x10: 000000000000005d x9 : 00000000ffffffd0\n[ 113.955078][ T3282] x8 : 7f7f7f7f7f7f7f7f x7 : ffff80008236ba90 x6 : c0000000ffff7fff\n[ 113.956036][ T3282] x5 : ffff000b34bf4dc8 x4 : ffff8000820aba90 x3 : 0000000000000001\n[ 113.956994][ T3282] x2 : ffff800ab320f000 x1 : 841d1e35ac932e00 x0 : 0000000000000000\n[ 113.957962][ T3282] Call trace:\n[ 113.958350][ T3282] pgalloc_tag_sub.part.66+0x154/0x164\n[ 113.959000][ T3282] pgalloc_tag_sub+0x14/0x1c\n[ 113.959539][ T3282] free_unref_page+0xf4/0x4b8\n[ 113.960096][ T3282] __folio_put+0xd4/0x120\n[ 113.960614][ T3282] folio_put+0x24/0x50\n[ 113.961103][ T3282] unpoison_memory+0x4f0/0x5b0\n[ 113.961678][ T3282] hwpoison_unpoison+0x30/0x48 [hwpoison_inject]\n[ 113.962436][ T3282] simple_attr_write_xsigned.isra.34+0xec/0x1cc\n[ 113.963183][ T3282] simple_attr_write+0x38/0x48\n[ 113.963750][ T3282] debugfs_attr_write+0x54/0x80\n[ 113.964330][ T3282] full_proxy_write+0x68/0x98\n[ 113.964880][ T3282] vfs_write+0xdc/0x4d0\n[ 113.965372][ T3282] ksys_write+0x78/0x100\n[ 113.965875][ T3282] __arm64_sys_write+0x24/0x30\n[ 113.966440][ T3282] invoke_syscall+0x7c/0x104\n[ 113.966984][ T3282] el0_svc_common.constprop.1+0x88/0x104\n[ 113.967652][ T3282] do_el0_svc+0x2c/0x38\n[ 113.968893][ T3282] el0_svc+0x3c/0x1b8\n[ 113.969379][ T3282] el0t_64_sync_handler+0x98/0xbc\n[ 113.969980][ T3282] el0t_64_sync+0x19c/0x1a0\n[ 113.970511][ T3282] ---[ end trace 0000000000000000 ]---\n\nTo fix this, clear the page tag reference after the page got isolated\nand accounted for.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -31,7 +34,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-09-18T08:15:06Z"
diff --git a/advisories/unreviewed/2024/09/GHSA-3h89-g9r5-cvx9/GHSA-3h89-g9r5-cvx9.json b/advisories/unreviewed/2024/09/GHSA-3h89-g9r5-cvx9/GHSA-3h89-g9r5-cvx9.json
index efd8b111605..bccdec66484 100644
--- a/advisories/unreviewed/2024/09/GHSA-3h89-g9r5-cvx9/GHSA-3h89-g9r5-cvx9.json
+++ b/advisories/unreviewed/2024/09/GHSA-3h89-g9r5-cvx9/GHSA-3h89-g9r5-cvx9.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-3h89-g9r5-cvx9",
- "modified": "2024-09-18T09:30:37Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-09-18T09:30:37Z",
"aliases": [
"CVE-2024-46788"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\ntracing/osnoise: Use a cpumask to know what threads are kthreads\n\nThe start_kthread() and stop_thread() code was not always called with the\ninterface_lock held. This means that the kthread variable could be\nunexpectedly changed causing the kthread_stop() to be called on it when it\nshould not have been, leading to:\n\n while true; do\n rtla timerlat top -u -q & PID=$!;\n sleep 5;\n kill -INT $PID;\n sleep 0.001;\n kill -TERM $PID;\n wait $PID;\n done\n\nCausing the following OOPS:\n\n Oops: general protection fault, probably for non-canonical address 0xdffffc0000000002: 0000 [#1] PREEMPT SMP KASAN PTI\n KASAN: null-ptr-deref in range [0x0000000000000010-0x0000000000000017]\n CPU: 5 UID: 0 PID: 885 Comm: timerlatu/5 Not tainted 6.11.0-rc4-test-00002-gbc754cc76d1b-dirty #125 a533010b71dab205ad2f507188ce8c82203b0254\n Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2 04/01/2014\n RIP: 0010:hrtimer_active+0x58/0x300\n Code: 48 c1 ee 03 41 54 48 01 d1 48 01 d6 55 53 48 83 ec 20 80 39 00 0f 85 30 02 00 00 49 8b 6f 30 4c 8d 75 10 4c 89 f0 48 c1 e8 03 <0f> b6 3c 10 4c 89 f0 83 e0 07 83 c0 03 40 38 f8 7c 09 40 84 ff 0f\n RSP: 0018:ffff88811d97f940 EFLAGS: 00010202\n RAX: 0000000000000002 RBX: ffff88823c6b5b28 RCX: ffffed10478d6b6b\n RDX: dffffc0000000000 RSI: ffffed10478d6b6c RDI: ffff88823c6b5b28\n RBP: 0000000000000000 R08: ffff88823c6b5b58 R09: ffff88823c6b5b60\n R10: ffff88811d97f957 R11: 0000000000000010 R12: 00000000000a801d\n R13: ffff88810d8b35d8 R14: 0000000000000010 R15: ffff88823c6b5b28\n FS: 0000000000000000(0000) GS:ffff88823c680000(0000) knlGS:0000000000000000\n CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n CR2: 0000561858ad7258 CR3: 000000007729e001 CR4: 0000000000170ef0\n Call Trace:\n \n ? die_addr+0x40/0xa0\n ? exc_general_protection+0x154/0x230\n ? asm_exc_general_protection+0x26/0x30\n ? hrtimer_active+0x58/0x300\n ? __pfx_mutex_lock+0x10/0x10\n ? __pfx_locks_remove_file+0x10/0x10\n hrtimer_cancel+0x15/0x40\n timerlat_fd_release+0x8e/0x1f0\n ? security_file_release+0x43/0x80\n __fput+0x372/0xb10\n task_work_run+0x11e/0x1f0\n ? _raw_spin_lock+0x85/0xe0\n ? __pfx_task_work_run+0x10/0x10\n ? poison_slab_object+0x109/0x170\n ? do_exit+0x7a0/0x24b0\n do_exit+0x7bd/0x24b0\n ? __pfx_migrate_enable+0x10/0x10\n ? __pfx_do_exit+0x10/0x10\n ? __pfx_read_tsc+0x10/0x10\n ? ktime_get+0x64/0x140\n ? _raw_spin_lock_irq+0x86/0xe0\n do_group_exit+0xb0/0x220\n get_signal+0x17ba/0x1b50\n ? vfs_read+0x179/0xa40\n ? timerlat_fd_read+0x30b/0x9d0\n ? __pfx_get_signal+0x10/0x10\n ? __pfx_timerlat_fd_read+0x10/0x10\n arch_do_signal_or_restart+0x8c/0x570\n ? __pfx_arch_do_signal_or_restart+0x10/0x10\n ? vfs_read+0x179/0xa40\n ? ksys_read+0xfe/0x1d0\n ? __pfx_ksys_read+0x10/0x10\n syscall_exit_to_user_mode+0xbc/0x130\n do_syscall_64+0x74/0x110\n ? __pfx___rseq_handle_notify_resume+0x10/0x10\n ? __pfx_ksys_read+0x10/0x10\n ? fpregs_restore_userregs+0xdb/0x1e0\n ? fpregs_restore_userregs+0xdb/0x1e0\n ? syscall_exit_to_user_mode+0x116/0x130\n ? do_syscall_64+0x74/0x110\n ? do_syscall_64+0x74/0x110\n ? do_syscall_64+0x74/0x110\n entry_SYSCALL_64_after_hwframe+0x71/0x79\n RIP: 0033:0x7ff0070eca9c\n Code: Unable to access opcode bytes at 0x7ff0070eca72.\n RSP: 002b:00007ff006dff8c0 EFLAGS: 00000246 ORIG_RAX: 0000000000000000\n RAX: 0000000000000000 RBX: 0000000000000005 RCX: 00007ff0070eca9c\n RDX: 0000000000000400 RSI: 00007ff006dff9a0 RDI: 0000000000000003\n RBP: 00007ff006dffde0 R08: 0000000000000000 R09: 00007ff000000ba0\n R10: 00007ff007004b08 R11: 0000000000000246 R12: 0000000000000003\n R13: 00007ff006dff9a0 R14: 0000000000000007 R15: 0000000000000008\n \n Modules linked in: snd_hda_intel snd_intel_dspcfg snd_intel_sdw_acpi snd_hda_codec snd_hwdep snd_hda_core\n ---[ end trace 0000000000000000 ]---\n\nThis is because it would mistakenly call kthread_stop() on a user space\nthread making it \"exit\" before it actually exits.\n\nSince kthread\n---truncated---",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -33,9 +36,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-476"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-09-18T08:15:05Z"
diff --git a/advisories/unreviewed/2024/10/GHSA-58m7-hfr6-rrx2/GHSA-58m7-hfr6-rrx2.json b/advisories/unreviewed/2024/10/GHSA-58m7-hfr6-rrx2/GHSA-58m7-hfr6-rrx2.json
index 16565034bd5..53dfe38c886 100644
--- a/advisories/unreviewed/2024/10/GHSA-58m7-hfr6-rrx2/GHSA-58m7-hfr6-rrx2.json
+++ b/advisories/unreviewed/2024/10/GHSA-58m7-hfr6-rrx2/GHSA-58m7-hfr6-rrx2.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-58m7-hfr6-rrx2",
- "modified": "2024-11-05T21:30:32Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-10-23T06:31:19Z",
"aliases": [
"CVE-2024-50066"
@@ -32,6 +32,10 @@
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/6fa1066fc5d00cb9f1b0e83b7ff6ef98d26ba2aa"
+ },
+ {
+ "type": "WEB",
+ "url": "https://project-zero.issues.chromium.org/issues/371047675"
}
],
"database_specific": {
diff --git a/advisories/unreviewed/2024/10/GHSA-hhvr-2xgw-v77v/GHSA-hhvr-2xgw-v77v.json b/advisories/unreviewed/2024/10/GHSA-hhvr-2xgw-v77v/GHSA-hhvr-2xgw-v77v.json
index 30917029c35..3c935291c82 100644
--- a/advisories/unreviewed/2024/10/GHSA-hhvr-2xgw-v77v/GHSA-hhvr-2xgw-v77v.json
+++ b/advisories/unreviewed/2024/10/GHSA-hhvr-2xgw-v77v/GHSA-hhvr-2xgw-v77v.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-hhvr-2xgw-v77v",
- "modified": "2024-10-21T21:30:54Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-10-21T21:30:54Z",
"aliases": [
"CVE-2024-50063"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Prevent tail call between progs attached to different hooks\n\nbpf progs can be attached to kernel functions, and the attached functions\ncan take different parameters or return different return values. If\nprog attached to one kernel function tail calls prog attached to another\nkernel function, the ctx access or return value verification could be\nbypassed.\n\nFor example, if prog1 is attached to func1 which takes only 1 parameter\nand prog2 is attached to func2 which takes two parameters. Since verifier\nassumes the bpf ctx passed to prog2 is constructed based on func2's\nprototype, verifier allows prog2 to access the second parameter from\nthe bpf ctx passed to it. The problem is that verifier does not prevent\nprog1 from passing its bpf ctx to prog2 via tail call. In this case,\nthe bpf ctx passed to prog2 is constructed from func1 instead of func2,\nthat is, the assumption for ctx access verification is bypassed.\n\nAnother example, if BPF LSM prog1 is attached to hook file_alloc_security,\nand BPF LSM prog2 is attached to hook bpf_lsm_audit_rule_known. Verifier\nknows the return value rules for these two hooks, e.g. it is legal for\nbpf_lsm_audit_rule_known to return positive number 1, and it is illegal\nfor file_alloc_security to return positive number. So verifier allows\nprog2 to return positive number 1, but does not allow prog1 to return\npositive number. The problem is that verifier does not prevent prog1\nfrom calling prog2 via tail call. In this case, prog2's return value 1\nwill be used as the return value for prog1's hook file_alloc_security.\nThat is, the return value rule is bypassed.\n\nThis patch adds restriction for tail call to prevent such bypasses.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -35,7 +38,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-10-21T20:15:18Z"
diff --git a/advisories/unreviewed/2024/10/GHSA-mv5p-xvr5-f5qg/GHSA-mv5p-xvr5-f5qg.json b/advisories/unreviewed/2024/10/GHSA-mv5p-xvr5-f5qg/GHSA-mv5p-xvr5-f5qg.json
index b1a064fbad1..0edd9efc583 100644
--- a/advisories/unreviewed/2024/10/GHSA-mv5p-xvr5-f5qg/GHSA-mv5p-xvr5-f5qg.json
+++ b/advisories/unreviewed/2024/10/GHSA-mv5p-xvr5-f5qg/GHSA-mv5p-xvr5-f5qg.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-mv5p-xvr5-f5qg",
- "modified": "2024-10-01T15:32:08Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-10-01T15:32:08Z",
"aliases": [
"CVE-2024-25658"
],
"details": "Cleartext storage of passwords in Infinera TNMS (Transcend Network Management System) Server 19.10.3 allows attackers (with access to the database or exported configuration files) to obtain SNMP users' usernames and passwords in cleartext.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N"
+ }
],
"affected": [
@@ -25,9 +28,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-312"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-10-01T15:15:07Z"
diff --git a/advisories/unreviewed/2024/10/GHSA-p5hw-4fxj-g4x6/GHSA-p5hw-4fxj-g4x6.json b/advisories/unreviewed/2024/10/GHSA-p5hw-4fxj-g4x6/GHSA-p5hw-4fxj-g4x6.json
index 4647cb19b67..6cd5097ce35 100644
--- a/advisories/unreviewed/2024/10/GHSA-p5hw-4fxj-g4x6/GHSA-p5hw-4fxj-g4x6.json
+++ b/advisories/unreviewed/2024/10/GHSA-p5hw-4fxj-g4x6/GHSA-p5hw-4fxj-g4x6.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-p5hw-4fxj-g4x6",
- "modified": "2024-10-01T18:31:18Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-10-01T18:31:18Z",
"aliases": [
"CVE-2024-9391"
],
"details": "A user who enables full-screen mode on a specially crafted web page could potentially be prevented from exiting full screen mode. This may allow spoofing of other sites as the address bar is no longer visible.\n*This bug only affects Firefox Focus for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox < 131.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N"
+ }
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-290"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-10-01T16:15:10Z"
diff --git a/advisories/unreviewed/2024/10/GHSA-q7g6-f64x-77fj/GHSA-q7g6-f64x-77fj.json b/advisories/unreviewed/2024/10/GHSA-q7g6-f64x-77fj/GHSA-q7g6-f64x-77fj.json
index 5b6cfb3a6c6..6d3352ed30a 100644
--- a/advisories/unreviewed/2024/10/GHSA-q7g6-f64x-77fj/GHSA-q7g6-f64x-77fj.json
+++ b/advisories/unreviewed/2024/10/GHSA-q7g6-f64x-77fj/GHSA-q7g6-f64x-77fj.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-q7g6-f64x-77fj",
- "modified": "2024-10-21T21:30:53Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-10-21T21:30:53Z",
"aliases": [
"CVE-2024-50042"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nice: Fix increasing MSI-X on VF\n\nIncreasing MSI-X value on a VF leads to invalid memory operations. This\nis caused by not reallocating some arrays.\n\nReproducer:\n modprobe ice\n echo 0 > /sys/bus/pci/devices/$PF_PCI/sriov_drivers_autoprobe\n echo 1 > /sys/bus/pci/devices/$PF_PCI/sriov_numvfs\n echo 17 > /sys/bus/pci/devices/$VF0_PCI/sriov_vf_msix_count\n\nDefault MSI-X is 16, so 17 and above triggers this issue.\n\nKASAN reports:\n\n BUG: KASAN: slab-out-of-bounds in ice_vsi_alloc_ring_stats+0x38d/0x4b0 [ice]\n Read of size 8 at addr ffff8888b937d180 by task bash/28433\n (...)\n\n Call Trace:\n (...)\n ? ice_vsi_alloc_ring_stats+0x38d/0x4b0 [ice]\n kasan_report+0xed/0x120\n ? ice_vsi_alloc_ring_stats+0x38d/0x4b0 [ice]\n ice_vsi_alloc_ring_stats+0x38d/0x4b0 [ice]\n ice_vsi_cfg_def+0x3360/0x4770 [ice]\n ? mutex_unlock+0x83/0xd0\n ? __pfx_ice_vsi_cfg_def+0x10/0x10 [ice]\n ? __pfx_ice_remove_vsi_lkup_fltr+0x10/0x10 [ice]\n ice_vsi_cfg+0x7f/0x3b0 [ice]\n ice_vf_reconfig_vsi+0x114/0x210 [ice]\n ice_sriov_set_msix_vec_count+0x3d0/0x960 [ice]\n sriov_vf_msix_count_store+0x21c/0x300\n (...)\n\n Allocated by task 28201:\n (...)\n ice_vsi_cfg_def+0x1c8e/0x4770 [ice]\n ice_vsi_cfg+0x7f/0x3b0 [ice]\n ice_vsi_setup+0x179/0xa30 [ice]\n ice_sriov_configure+0xcaa/0x1520 [ice]\n sriov_numvfs_store+0x212/0x390\n (...)\n\nTo fix it, use ice_vsi_rebuild() instead of ice_vf_reconfig_vsi(). This\ncauses the required arrays to be reallocated taking the new queue count\ninto account (ice_vsi_realloc_stat_arrays()). Set req_txq and req_rxq\nbefore ice_vsi_rebuild(), so that realloc uses the newly set queue\ncount.\n\nAdditionally, ice_vsi_rebuild() does not remove VSI filters\n(ice_fltr_remove_all()), so ice_vf_init_host_cfg() is no longer\nnecessary.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H"
+ }
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-125"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-10-21T20:15:17Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-232x-fx5w-m6mj/GHSA-232x-fx5w-m6mj.json b/advisories/unreviewed/2024/11/GHSA-232x-fx5w-m6mj/GHSA-232x-fx5w-m6mj.json
new file mode 100644
index 00000000000..32117bb7b2b
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-232x-fx5w-m6mj/GHSA-232x-fx5w-m6mj.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-232x-fx5w-m6mj",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-8807"
+ ],
+ "details": "Cohesive Networks VNS3 Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Cohesive Networks VNS3. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within the web service, which listens on TCP port 8000 by default. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24176.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8807"
+ },
+ {
+ "type": "WEB",
+ "url": "https://cohesive.net/support/security-responses"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1231"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-78"
+ ],
+ "severity": "CRITICAL",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:18Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-23pj-rvrr-6499/GHSA-23pj-rvrr-6499.json b/advisories/unreviewed/2024/11/GHSA-23pj-rvrr-6499/GHSA-23pj-rvrr-6499.json
new file mode 100644
index 00000000000..b072fef6ef2
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-23pj-rvrr-6499/GHSA-23pj-rvrr-6499.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-23pj-rvrr-6499",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11528"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24602.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11528"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1589"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:11Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-24gr-v9hq-3qw3/GHSA-24gr-v9hq-3qw3.json b/advisories/unreviewed/2024/11/GHSA-24gr-v9hq-3qw3/GHSA-24gr-v9hq-3qw3.json
new file mode 100644
index 00000000000..f65b95c86a8
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-24gr-v9hq-3qw3/GHSA-24gr-v9hq-3qw3.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-24gr-v9hq-3qw3",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-6816"
+ ],
+ "details": "IrfanView PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PSP files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23214.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6816"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-968"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-122"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:12Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-25rm-3r9j-mwmf/GHSA-25rm-3r9j-mwmf.json b/advisories/unreviewed/2024/11/GHSA-25rm-3r9j-mwmf/GHSA-25rm-3r9j-mwmf.json
new file mode 100644
index 00000000000..39b99e4963c
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-25rm-3r9j-mwmf/GHSA-25rm-3r9j-mwmf.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-25rm-3r9j-mwmf",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8825"
+ ],
+ "details": "PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24263.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8825"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1248"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:20Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-26pv-m6p4-24p9/GHSA-26pv-m6p4-24p9.json b/advisories/unreviewed/2024/11/GHSA-26pv-m6p4-24p9/GHSA-26pv-m6p4-24p9.json
new file mode 100644
index 00000000000..c65b7cd1dc4
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-26pv-m6p4-24p9/GHSA-26pv-m6p4-24p9.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-26pv-m6p4-24p9",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9748"
+ ],
+ "details": "Tungsten Automation Power PDF XPS File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of XPS files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24464.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9748"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1339"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:28Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-27wf-5967-98gx/GHSA-27wf-5967-98gx.json b/advisories/unreviewed/2024/11/GHSA-27wf-5967-98gx/GHSA-27wf-5967-98gx.json
new file mode 100644
index 00000000000..b91991ecb07
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-27wf-5967-98gx/GHSA-27wf-5967-98gx.json
@@ -0,0 +1,46 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-27wf-5967-98gx",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-10220"
+ ],
+ "details": "The Kubernetes kubelet component allows arbitrary command execution via specially crafted gitRepo volumes.This issue affects kubelet: through 1.28.11, from 1.29.0 through 1.29.6, from 1.30.0 through 1.30.2.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10220"
+ },
+ {
+ "type": "WEB",
+ "url": "https://github.com/kubernetes/kubernetes/issues/128885"
+ },
+ {
+ "type": "WEB",
+ "url": "https://groups.google.com/g/kubernetes-security-announce/c/ptNgV5Necko"
+ },
+ {
+ "type": "WEB",
+ "url": "http://www.openwall.com/lists/oss-security/2024/11/20/1"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-22"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T17:15:06Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-284g-pxp5-92cp/GHSA-284g-pxp5-92cp.json b/advisories/unreviewed/2024/11/GHSA-284g-pxp5-92cp/GHSA-284g-pxp5-92cp.json
index 0ff4d59335f..2d134420e43 100644
--- a/advisories/unreviewed/2024/11/GHSA-284g-pxp5-92cp/GHSA-284g-pxp5-92cp.json
+++ b/advisories/unreviewed/2024/11/GHSA-284g-pxp5-92cp/GHSA-284g-pxp5-92cp.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-284g-pxp5-92cp",
- "modified": "2024-11-20T00:32:14Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-20T00:32:14Z",
"aliases": [
"CVE-2018-9433"
],
"details": "In ArrayConcatVisitor of builtins-array.cc, there is a possible type confusion due to improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -25,9 +28,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-116"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T22:15:19Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-2c4h-jg67-pgcw/GHSA-2c4h-jg67-pgcw.json b/advisories/unreviewed/2024/11/GHSA-2c4h-jg67-pgcw/GHSA-2c4h-jg67-pgcw.json
new file mode 100644
index 00000000000..4e7ea11553e
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-2c4h-jg67-pgcw/GHSA-2c4h-jg67-pgcw.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-2c4h-jg67-pgcw",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11551"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24749.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11551"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1549"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:13Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-2cw9-wr8h-2pwh/GHSA-2cw9-wr8h-2pwh.json b/advisories/unreviewed/2024/11/GHSA-2cw9-wr8h-2pwh/GHSA-2cw9-wr8h-2pwh.json
new file mode 100644
index 00000000000..af61656aa24
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-2cw9-wr8h-2pwh/GHSA-2cw9-wr8h-2pwh.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-2cw9-wr8h-2pwh",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-37048"
+ ],
+ "details": "A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to launch a denial-of-service (DoS) attack.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.1.2930 build 20241025 and later\nQuTS hero h5.2.1.2929 build 20241025 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37048"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-43"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-476"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:23Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-2fqc-88rx-cc45/GHSA-2fqc-88rx-cc45.json b/advisories/unreviewed/2024/11/GHSA-2fqc-88rx-cc45/GHSA-2fqc-88rx-cc45.json
new file mode 100644
index 00000000000..495007d20f5
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-2fqc-88rx-cc45/GHSA-2fqc-88rx-cc45.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-2fqc-88rx-cc45",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9720"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24104.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9720"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1477"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:25Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-2g2v-h26j-4qfh/GHSA-2g2v-h26j-4qfh.json b/advisories/unreviewed/2024/11/GHSA-2g2v-h26j-4qfh/GHSA-2g2v-h26j-4qfh.json
new file mode 100644
index 00000000000..2fc7b2d245c
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-2g2v-h26j-4qfh/GHSA-2g2v-h26j-4qfh.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-2g2v-h26j-4qfh",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-38643"
+ ],
+ "details": "A missing authentication for critical function vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow remote attackers to gain access to and execute certain functions.\n\nWe have already fixed the vulnerability in the following version:\nNotes Station 3 3.9.7 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38643"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-36"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-306"
+ ],
+ "severity": "CRITICAL",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:24Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-2h85-gg66-hccv/GHSA-2h85-gg66-hccv.json b/advisories/unreviewed/2024/11/GHSA-2h85-gg66-hccv/GHSA-2h85-gg66-hccv.json
new file mode 100644
index 00000000000..6f190d2d1ec
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-2h85-gg66-hccv/GHSA-2h85-gg66-hccv.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-2h85-gg66-hccv",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-37045"
+ ],
+ "details": "A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to launch a denial-of-service (DoS) attack.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.1.2930 build 20241025 and later\nQuTS hero h5.2.1.2929 build 20241025 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37045"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-43"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-476"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:23Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-2j6g-q9hc-mfr7/GHSA-2j6g-q9hc-mfr7.json b/advisories/unreviewed/2024/11/GHSA-2j6g-q9hc-mfr7/GHSA-2j6g-q9hc-mfr7.json
new file mode 100644
index 00000000000..576f635d432
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-2j6g-q9hc-mfr7/GHSA-2j6g-q9hc-mfr7.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-2j6g-q9hc-mfr7",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5877"
+ ],
+ "details": "IrfanView PIC File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PIC files. The issue results from the lack of proper validation of user-supplied data, which can result in a write before the start of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23974.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5877"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-666"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:11Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-2p5q-6jvg-jx9f/GHSA-2p5q-6jvg-jx9f.json b/advisories/unreviewed/2024/11/GHSA-2p5q-6jvg-jx9f/GHSA-2p5q-6jvg-jx9f.json
index 522cc50a0ca..f3cfa396721 100644
--- a/advisories/unreviewed/2024/11/GHSA-2p5q-6jvg-jx9f/GHSA-2p5q-6jvg-jx9f.json
+++ b/advisories/unreviewed/2024/11/GHSA-2p5q-6jvg-jx9f/GHSA-2p5q-6jvg-jx9f.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-2p5q-6jvg-jx9f",
- "modified": "2024-11-20T12:30:35Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-20T12:30:35Z",
"aliases": [
"CVE-2024-11179"
diff --git a/advisories/unreviewed/2024/11/GHSA-2p5v-3f2j-gq28/GHSA-2p5v-3f2j-gq28.json b/advisories/unreviewed/2024/11/GHSA-2p5v-3f2j-gq28/GHSA-2p5v-3f2j-gq28.json
new file mode 100644
index 00000000000..f83b538c9cf
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-2p5v-3f2j-gq28/GHSA-2p5v-3f2j-gq28.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-2p5v-3f2j-gq28",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-30377"
+ ],
+ "details": "G DATA Total Security Scan Server Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of G DATA Total Security. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.\n\nThe specific flaw exists within the G DATA AntiVirus Scan Server. By creating a symbolic link, an attacker can abuse the service to delete arbitrary files. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-23381.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-30377"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1159"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-59"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:08Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-2qj2-g5q3-xw3g/GHSA-2qj2-g5q3-xw3g.json b/advisories/unreviewed/2024/11/GHSA-2qj2-g5q3-xw3g/GHSA-2qj2-g5q3-xw3g.json
new file mode 100644
index 00000000000..5a59b6a43a8
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-2qj2-g5q3-xw3g/GHSA-2qj2-g5q3-xw3g.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-2qj2-g5q3-xw3g",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11513"
+ ],
+ "details": "IrfanView ECW File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of ECW files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23971.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11513"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1601"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-122"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:09Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-2v3j-g7x7-59j7/GHSA-2v3j-g7x7-59j7.json b/advisories/unreviewed/2024/11/GHSA-2v3j-g7x7-59j7/GHSA-2v3j-g7x7-59j7.json
new file mode 100644
index 00000000000..fb1bc329263
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-2v3j-g7x7-59j7/GHSA-2v3j-g7x7-59j7.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-2v3j-g7x7-59j7",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-9713"
+ ],
+ "details": "Trimble SketchUp Pro SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Pro. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23885.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9713"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1474"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:24Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-2v57-2gwr-vg5h/GHSA-2v57-2gwr-vg5h.json b/advisories/unreviewed/2024/11/GHSA-2v57-2gwr-vg5h/GHSA-2v57-2gwr-vg5h.json
new file mode 100644
index 00000000000..ef4344cc9f5
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-2v57-2gwr-vg5h/GHSA-2v57-2gwr-vg5h.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-2v57-2gwr-vg5h",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2021-38119"
+ ],
+ "details": "Possible Reflected Cross-Site Scripting (XSS) Vulnerability\n\nin iManager has been discovered in\nOpenText™ iManager 3.2.4.0000.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-38119"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.netiq.com/documentation/imanager-32/imanager325_releasenotes/data/imanager325_releasenotes.html"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-79"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:19Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-2vgw-86f4-x4x6/GHSA-2vgw-86f4-x4x6.json b/advisories/unreviewed/2024/11/GHSA-2vgw-86f4-x4x6/GHSA-2vgw-86f4-x4x6.json
new file mode 100644
index 00000000000..01512e244af
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-2vgw-86f4-x4x6/GHSA-2vgw-86f4-x4x6.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-2vgw-86f4-x4x6",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9753"
+ ],
+ "details": "Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24470.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9753"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1360"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:29Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-2w64-4c9j-pq4x/GHSA-2w64-4c9j-pq4x.json b/advisories/unreviewed/2024/11/GHSA-2w64-4c9j-pq4x/GHSA-2w64-4c9j-pq4x.json
index 274670220d2..bf2927486e6 100644
--- a/advisories/unreviewed/2024/11/GHSA-2w64-4c9j-pq4x/GHSA-2w64-4c9j-pq4x.json
+++ b/advisories/unreviewed/2024/11/GHSA-2w64-4c9j-pq4x/GHSA-2w64-4c9j-pq4x.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-2w64-4c9j-pq4x",
- "modified": "2024-11-19T21:31:32Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-19T21:31:32Z",
"aliases": [
"CVE-2018-9368"
],
"details": "In mtkscoaudio debugfs there is a possible arbitrary kernel memory write due to missing bounds check and weakened SELinux policies. This could lead to local escalation of privilege with system execution privileges needed. User interaction is not needed for exploitation.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -25,9 +28,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-787"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T20:15:27Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-2wwj-xcj9-m7p7/GHSA-2wwj-xcj9-m7p7.json b/advisories/unreviewed/2024/11/GHSA-2wwj-xcj9-m7p7/GHSA-2wwj-xcj9-m7p7.json
new file mode 100644
index 00000000000..234b1d0956c
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-2wwj-xcj9-m7p7/GHSA-2wwj-xcj9-m7p7.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-2wwj-xcj9-m7p7",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9733"
+ ],
+ "details": "Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24389.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9733"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1352"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:26Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-2xmr-w4hh-pwj5/GHSA-2xmr-w4hh-pwj5.json b/advisories/unreviewed/2024/11/GHSA-2xmr-w4hh-pwj5/GHSA-2xmr-w4hh-pwj5.json
new file mode 100644
index 00000000000..ffdeef1fe90
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-2xmr-w4hh-pwj5/GHSA-2xmr-w4hh-pwj5.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-2xmr-w4hh-pwj5",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11548"
+ ],
+ "details": "IrfanView DWG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DWG files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24745.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11548"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1545"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:13Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-335h-h5hx-g42j/GHSA-335h-h5hx-g42j.json b/advisories/unreviewed/2024/11/GHSA-335h-h5hx-g42j/GHSA-335h-h5hx-g42j.json
new file mode 100644
index 00000000000..5c117da0c17
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-335h-h5hx-g42j/GHSA-335h-h5hx-g42j.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-335h-h5hx-g42j",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2021-38134"
+ ],
+ "details": "Possible XSS in iManager URL for access Component has been discovered in\nOpenText™ iManager 3.2.5.0000.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-38134"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.netiq.com/documentation/imanager-32/imanager326_releasenotes/data/imanager326_releasenotes.html"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-79"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:19Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-33g4-8f6m-m4gq/GHSA-33g4-8f6m-m4gq.json b/advisories/unreviewed/2024/11/GHSA-33g4-8f6m-m4gq/GHSA-33g4-8f6m-m4gq.json
new file mode 100644
index 00000000000..00e4b43c5bf
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-33g4-8f6m-m4gq/GHSA-33g4-8f6m-m4gq.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-33g4-8f6m-m4gq",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9763"
+ ],
+ "details": "Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24479.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9763"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1359"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:30Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-3472-96gw-hx24/GHSA-3472-96gw-hx24.json b/advisories/unreviewed/2024/11/GHSA-3472-96gw-hx24/GHSA-3472-96gw-hx24.json
new file mode 100644
index 00000000000..19589996b65
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-3472-96gw-hx24/GHSA-3472-96gw-hx24.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-3472-96gw-hx24",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9746"
+ ],
+ "details": "Tungsten Automation Power PDF TGA File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of TGA files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24462.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9746"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1345"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:28Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-35cx-v8jm-4qrv/GHSA-35cx-v8jm-4qrv.json b/advisories/unreviewed/2024/11/GHSA-35cx-v8jm-4qrv/GHSA-35cx-v8jm-4qrv.json
index 2ab1a87f4bb..0af997e53ab 100644
--- a/advisories/unreviewed/2024/11/GHSA-35cx-v8jm-4qrv/GHSA-35cx-v8jm-4qrv.json
+++ b/advisories/unreviewed/2024/11/GHSA-35cx-v8jm-4qrv/GHSA-35cx-v8jm-4qrv.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-35cx-v8jm-4qrv",
- "modified": "2024-11-08T18:30:49Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-07T12:30:34Z",
"aliases": [
"CVE-2024-50142"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nxfrm: validate new SA's prefixlen using SA family when sel.family is unset\n\nThis expands the validation introduced in commit 07bf7908950a (\"xfrm:\nValidate address prefix lengths in the xfrm selector.\")\n\nsyzbot created an SA with\n usersa.sel.family = AF_UNSPEC\n usersa.sel.prefixlen_s = 128\n usersa.family = AF_INET\n\nBecause of the AF_UNSPEC selector, verify_newsa_info doesn't put\nlimits on prefixlen_{s,d}. But then copy_from_user_state sets\nx->sel.family to usersa.family (AF_INET). Do the same conversion in\nverify_newsa_info before validating prefixlen_{s,d}, since that's how\nprefixlen is going to be used later on.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -55,7 +58,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-07T10:15:06Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-38j7-5jmv-v33p/GHSA-38j7-5jmv-v33p.json b/advisories/unreviewed/2024/11/GHSA-38j7-5jmv-v33p/GHSA-38j7-5jmv-v33p.json
index 909c6b41c9f..c4e73a0661d 100644
--- a/advisories/unreviewed/2024/11/GHSA-38j7-5jmv-v33p/GHSA-38j7-5jmv-v33p.json
+++ b/advisories/unreviewed/2024/11/GHSA-38j7-5jmv-v33p/GHSA-38j7-5jmv-v33p.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-38j7-5jmv-v33p",
- "modified": "2024-11-07T12:30:35Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-07T12:30:35Z",
"aliases": [
"CVE-2024-50162"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: devmap: provide rxq after redirect\n\nrxq contains a pointer to the device from where\nthe redirect happened. Currently, the BPF program\nthat was executed after a redirect via BPF_MAP_TYPE_DEVMAP*\ndoes not have it set.\n\nThis is particularly bad since accessing ingress_ifindex, e.g.\n\nSEC(\"xdp\")\nint prog(struct xdp_md *pkt)\n{\n return bpf_redirect_map(&dev_redirect_map, 0, 0);\n}\n\nSEC(\"xdp/devmap\")\nint prog_after_redirect(struct xdp_md *pkt)\n{\n bpf_printk(\"ifindex %i\", pkt->ingress_ifindex);\n return XDP_PASS;\n}\n\ndepends on access to rxq, so a NULL pointer gets dereferenced:\n\n<1>[ 574.475170] BUG: kernel NULL pointer dereference, address: 0000000000000000\n<1>[ 574.475188] #PF: supervisor read access in kernel mode\n<1>[ 574.475194] #PF: error_code(0x0000) - not-present page\n<6>[ 574.475199] PGD 0 P4D 0\n<4>[ 574.475207] Oops: Oops: 0000 [#1] PREEMPT SMP NOPTI\n<4>[ 574.475217] CPU: 4 UID: 0 PID: 217 Comm: kworker/4:1 Not tainted 6.11.0-rc5-reduced-00859-g780801200300 #23\n<4>[ 574.475226] Hardware name: Intel(R) Client Systems NUC13ANHi7/NUC13ANBi7, BIOS ANRPL357.0026.2023.0314.1458 03/14/2023\n<4>[ 574.475231] Workqueue: mld mld_ifc_work\n<4>[ 574.475247] RIP: 0010:bpf_prog_5e13354d9cf5018a_prog_after_redirect+0x17/0x3c\n<4>[ 574.475257] Code: cc cc cc cc cc cc cc 80 00 00 00 cc cc cc cc cc cc cc cc f3 0f 1e fa 0f 1f 44 00 00 66 90 55 48 89 e5 f3 0f 1e fa 48 8b 57 20 <48> 8b 52 00 8b 92 e0 00 00 00 48 bf f8 a6 d5 c4 5d a0 ff ff be 0b\n<4>[ 574.475263] RSP: 0018:ffffa62440280c98 EFLAGS: 00010206\n<4>[ 574.475269] RAX: ffffa62440280cd8 RBX: 0000000000000001 RCX: 0000000000000000\n<4>[ 574.475274] RDX: 0000000000000000 RSI: ffffa62440549048 RDI: ffffa62440280ce0\n<4>[ 574.475278] RBP: ffffa62440280c98 R08: 0000000000000002 R09: 0000000000000001\n<4>[ 574.475281] R10: ffffa05dc8b98000 R11: ffffa05f577fca40 R12: ffffa05dcab24000\n<4>[ 574.475285] R13: ffffa62440280ce0 R14: ffffa62440549048 R15: ffffa62440549000\n<4>[ 574.475289] FS: 0000000000000000(0000) GS:ffffa05f4f700000(0000) knlGS:0000000000000000\n<4>[ 574.475294] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n<4>[ 574.475298] CR2: 0000000000000000 CR3: 000000025522e000 CR4: 0000000000f50ef0\n<4>[ 574.475303] PKRU: 55555554\n<4>[ 574.475306] Call Trace:\n<4>[ 574.475313] \n<4>[ 574.475318] ? __die+0x23/0x70\n<4>[ 574.475329] ? page_fault_oops+0x180/0x4c0\n<4>[ 574.475339] ? skb_pp_cow_data+0x34c/0x490\n<4>[ 574.475346] ? kmem_cache_free+0x257/0x280\n<4>[ 574.475357] ? exc_page_fault+0x67/0x150\n<4>[ 574.475368] ? asm_exc_page_fault+0x26/0x30\n<4>[ 574.475381] ? bpf_prog_5e13354d9cf5018a_prog_after_redirect+0x17/0x3c\n<4>[ 574.475386] bq_xmit_all+0x158/0x420\n<4>[ 574.475397] __dev_flush+0x30/0x90\n<4>[ 574.475407] veth_poll+0x216/0x250 [veth]\n<4>[ 574.475421] __napi_poll+0x28/0x1c0\n<4>[ 574.475430] net_rx_action+0x32d/0x3a0\n<4>[ 574.475441] handle_softirqs+0xcb/0x2c0\n<4>[ 574.475451] do_softirq+0x40/0x60\n<4>[ 574.475458] \n<4>[ 574.475461] \n<4>[ 574.475464] __local_bh_enable_ip+0x66/0x70\n<4>[ 574.475471] __dev_queue_xmit+0x268/0xe40\n<4>[ 574.475480] ? selinux_ip_postroute+0x213/0x420\n<4>[ 574.475491] ? alloc_skb_with_frags+0x4a/0x1d0\n<4>[ 574.475502] ip6_finish_output2+0x2be/0x640\n<4>[ 574.475512] ? nf_hook_slow+0x42/0xf0\n<4>[ 574.475521] ip6_finish_output+0x194/0x300\n<4>[ 574.475529] ? __pfx_ip6_finish_output+0x10/0x10\n<4>[ 574.475538] mld_sendpack+0x17c/0x240\n<4>[ 574.475548] mld_ifc_work+0x192/0x410\n<4>[ 574.475557] process_one_work+0x15d/0x380\n<4>[ 574.475566] worker_thread+0x29d/0x3a0\n<4>[ 574.475573] ? __pfx_worker_thread+0x10/0x10\n<4>[ 574.475580] ? __pfx_worker_thread+0x10/0x10\n<4>[ 574.475587] kthread+0xcd/0x100\n<4>[ 574.475597] ? __pfx_kthread+0x10/0x10\n<4>[ 574.475606] ret_from_fork+0x31/0x50\n<4>[ 574.475615] ? __pfx_kthread+0x10/0x10\n<4>[ 574.475623] ret_from_fork_asm+0x1a/0x\n---truncated---",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -43,7 +46,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-07T10:15:07Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-39cp-3xcg-82ch/GHSA-39cp-3xcg-82ch.json b/advisories/unreviewed/2024/11/GHSA-39cp-3xcg-82ch/GHSA-39cp-3xcg-82ch.json
index 0449843177c..ce05a684eba 100644
--- a/advisories/unreviewed/2024/11/GHSA-39cp-3xcg-82ch/GHSA-39cp-3xcg-82ch.json
+++ b/advisories/unreviewed/2024/11/GHSA-39cp-3xcg-82ch/GHSA-39cp-3xcg-82ch.json
@@ -44,7 +44,8 @@
],
"database_specific": {
"cwe_ids": [
- "CWE-74"
+ "CWE-74",
+ "CWE-79"
],
"severity": "MODERATE",
"github_reviewed": false,
diff --git a/advisories/unreviewed/2024/11/GHSA-39rc-9px7-4cc5/GHSA-39rc-9px7-4cc5.json b/advisories/unreviewed/2024/11/GHSA-39rc-9px7-4cc5/GHSA-39rc-9px7-4cc5.json
new file mode 100644
index 00000000000..867548ddc25
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-39rc-9px7-4cc5/GHSA-39rc-9px7-4cc5.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-39rc-9px7-4cc5",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9757"
+ ],
+ "details": "Tungsten Automation Power PDF JP2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JP2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24473.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9757"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1367"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:29Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-3g45-m7q2-c5g9/GHSA-3g45-m7q2-c5g9.json b/advisories/unreviewed/2024/11/GHSA-3g45-m7q2-c5g9/GHSA-3g45-m7q2-c5g9.json
new file mode 100644
index 00000000000..6836bb92d69
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-3g45-m7q2-c5g9/GHSA-3g45-m7q2-c5g9.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-3g45-m7q2-c5g9",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2023-52333"
+ ],
+ "details": "Allegra saveFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Although authentication is required to exploit this vulnerability, product implements a registration mechanism that can be used to create a user with a sufficient privilege level.\n\nThe specific flaw exists within the saveFile method. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of LOCAL SERVICE. Was ZDI-CAN-22548.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-52333"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.trackplus.com/en/service/release-notes-reader/7-5-1-release-notes-2.html"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-104"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-22"
+ ],
+ "severity": "CRITICAL",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:07Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-3h38-466h-xfcc/GHSA-3h38-466h-xfcc.json b/advisories/unreviewed/2024/11/GHSA-3h38-466h-xfcc/GHSA-3h38-466h-xfcc.json
new file mode 100644
index 00000000000..46d8a46c94f
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-3h38-466h-xfcc/GHSA-3h38-466h-xfcc.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-3h38-466h-xfcc",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9738"
+ ],
+ "details": "Tungsten Automation Power PDF PDF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24454.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9738"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1341"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:27Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-3hp2-jg96-579w/GHSA-3hp2-jg96-579w.json b/advisories/unreviewed/2024/11/GHSA-3hp2-jg96-579w/GHSA-3hp2-jg96-579w.json
new file mode 100644
index 00000000000..beafe0312ec
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-3hp2-jg96-579w/GHSA-3hp2-jg96-579w.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-3hp2-jg96-579w",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-9712"
+ ],
+ "details": "Trimble SketchUp SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23530.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9712"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1473"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:24Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-3pq3-cxgx-g86g/GHSA-3pq3-cxgx-g86g.json b/advisories/unreviewed/2024/11/GHSA-3pq3-cxgx-g86g/GHSA-3pq3-cxgx-g86g.json
new file mode 100644
index 00000000000..8a725cc7f1f
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-3pq3-cxgx-g86g/GHSA-3pq3-cxgx-g86g.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-3pq3-cxgx-g86g",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2023-51642"
+ ],
+ "details": "Allegra loadFieldMatch Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Although authentication is required to exploit this vulnerability, product implements a registration mechanism that can be used to create a user with a sufficient privilege level.\n\nThe specific flaw exists within the loadFieldMatch method. The issue results from the lack of proper validation of user-supplied data, which can result in deserialization of untrusted data. An attacker can leverage this vulnerability to execute code in the context of LOCAL SERVICE. Was ZDI-CAN-22506.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51642"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.trackplus.com/en/service/release-notes-reader/7-5-1-release-notes-2.html"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-105"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-502"
+ ],
+ "severity": "CRITICAL",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:06Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-3rp8-5q68-6m8w/GHSA-3rp8-5q68-6m8w.json b/advisories/unreviewed/2024/11/GHSA-3rp8-5q68-6m8w/GHSA-3rp8-5q68-6m8w.json
new file mode 100644
index 00000000000..f1532d99daf
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-3rp8-5q68-6m8w/GHSA-3rp8-5q68-6m8w.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-3rp8-5q68-6m8w",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9722"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24106.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9722"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1481"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:25Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-3vp6-4284-wj7c/GHSA-3vp6-4284-wj7c.json b/advisories/unreviewed/2024/11/GHSA-3vp6-4284-wj7c/GHSA-3vp6-4284-wj7c.json
new file mode 100644
index 00000000000..851158bc68d
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-3vp6-4284-wj7c/GHSA-3vp6-4284-wj7c.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-3vp6-4284-wj7c",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2023-24466"
+ ],
+ "details": "Possible XML External Entity Injection\n\n\n in iManager GET parameter has been discovered in\nOpenText™ iManager 3.2.6.0200.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-24466"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.netiq.com/documentation/imanager-32/pdfdoc/imanager326_patch3_releasenotes/imanager326_patch3_releasenotes.pdf"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-611"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:19Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-3vr8-mxjc-h34x/GHSA-3vr8-mxjc-h34x.json b/advisories/unreviewed/2024/11/GHSA-3vr8-mxjc-h34x/GHSA-3vr8-mxjc-h34x.json
new file mode 100644
index 00000000000..6b32fe159aa
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-3vr8-mxjc-h34x/GHSA-3vr8-mxjc-h34x.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-3vr8-mxjc-h34x",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-9716"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24100.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9716"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1375"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:24Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-42h4-5jcf-f7xw/GHSA-42h4-5jcf-f7xw.json b/advisories/unreviewed/2024/11/GHSA-42h4-5jcf-f7xw/GHSA-42h4-5jcf-f7xw.json
new file mode 100644
index 00000000000..8db1d709100
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-42h4-5jcf-f7xw/GHSA-42h4-5jcf-f7xw.json
@@ -0,0 +1,54 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-42h4-5jcf-f7xw",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-11618"
+ ],
+ "details": "A vulnerability classified as critical was found in IPC Unigy Management System 04.03.00.08.0027. Affected by this vulnerability is an unknown functionality of the component HTTP Request Handler. The manipulation leads to server-side request forgery. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L"
+ },
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11618"
+ },
+ {
+ "type": "WEB",
+ "url": "https://github.com/br484/br484.github.io/blob/main/archives/WEB/CVE%20-%20IPC%20Unigy%20-%20ingles.md"
+ },
+ {
+ "type": "WEB",
+ "url": "https://vuldb.com/?ctiid.285841"
+ },
+ {
+ "type": "WEB",
+ "url": "https://vuldb.com/?id.285841"
+ },
+ {
+ "type": "WEB",
+ "url": "https://vuldb.com/?submit.441817"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-918"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T19:15:05Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-442m-g3hg-h8j3/GHSA-442m-g3hg-h8j3.json b/advisories/unreviewed/2024/11/GHSA-442m-g3hg-h8j3/GHSA-442m-g3hg-h8j3.json
new file mode 100644
index 00000000000..725b5f3f239
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-442m-g3hg-h8j3/GHSA-442m-g3hg-h8j3.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-442m-g3hg-h8j3",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11526"
+ ],
+ "details": "IrfanView CGM File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of CGM files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24600.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11526"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1539"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:11Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4433-xj2q-mvjf/GHSA-4433-xj2q-mvjf.json b/advisories/unreviewed/2024/11/GHSA-4433-xj2q-mvjf/GHSA-4433-xj2q-mvjf.json
new file mode 100644
index 00000000000..3ef18e2331c
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4433-xj2q-mvjf/GHSA-4433-xj2q-mvjf.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4433-xj2q-mvjf",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5513"
+ ],
+ "details": "Kofax Power PDF JP2 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JP2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-22044.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5513"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-556"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:09Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-46pw-mqwx-ghm8/GHSA-46pw-mqwx-ghm8.json b/advisories/unreviewed/2024/11/GHSA-46pw-mqwx-ghm8/GHSA-46pw-mqwx-ghm8.json
new file mode 100644
index 00000000000..699f9f35c30
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-46pw-mqwx-ghm8/GHSA-46pw-mqwx-ghm8.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-46pw-mqwx-ghm8",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11579"
+ ],
+ "details": "Luxion KeyShot OBJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Luxion KeyShot. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of obj files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23697.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11579"
+ },
+ {
+ "type": "WEB",
+ "url": "https://download.keyshot.com/cert/ksa-655925/ksa-655925.pdf?version=1.0&_gl=1*1vzfrlf*_gcl_au*MTIxNTA2Njg4MS4xNzMxNTMwMjIx"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1610"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:17Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-479m-68x9-mggp/GHSA-479m-68x9-mggp.json b/advisories/unreviewed/2024/11/GHSA-479m-68x9-mggp/GHSA-479m-68x9-mggp.json
new file mode 100644
index 00000000000..04790b2139e
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-479m-68x9-mggp/GHSA-479m-68x9-mggp.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-479m-68x9-mggp",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11562"
+ ],
+ "details": "IrfanView CGM File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of CGM files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24858.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11562"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1572"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:15Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-47g9-6fvg-823p/GHSA-47g9-6fvg-823p.json b/advisories/unreviewed/2024/11/GHSA-47g9-6fvg-823p/GHSA-47g9-6fvg-823p.json
index 637183d3c08..20c4140a613 100644
--- a/advisories/unreviewed/2024/11/GHSA-47g9-6fvg-823p/GHSA-47g9-6fvg-823p.json
+++ b/advisories/unreviewed/2024/11/GHSA-47g9-6fvg-823p/GHSA-47g9-6fvg-823p.json
@@ -28,6 +28,7 @@
],
"database_specific": {
"cwe_ids": [
+ "CWE-190",
"CWE-787"
],
"severity": "HIGH",
diff --git a/advisories/unreviewed/2024/11/GHSA-47m4-p2m7-6fv5/GHSA-47m4-p2m7-6fv5.json b/advisories/unreviewed/2024/11/GHSA-47m4-p2m7-6fv5/GHSA-47m4-p2m7-6fv5.json
new file mode 100644
index 00000000000..f22fefdd906
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-47m4-p2m7-6fv5/GHSA-47m4-p2m7-6fv5.json
@@ -0,0 +1,43 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-47m4-p2m7-6fv5",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-51073"
+ ],
+ "details": "An issue in Instrument Cluster KIA Seltos Software v1.0, Hardware v1.0 allows attackers to disrupt communications between the Instrument cluster and CAN bus.",
+ "severity": [
+
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51073"
+ },
+ {
+ "type": "WEB",
+ "url": "https://github.com/nitinronge91/KIA-SELTOS-Cluster-Vulnerabilities/blob/3755e3f692dce5b1ab06de2d04a2433c907ab21c/CVE/Control%20CAN%20communication%20for%20KIA%20SELTOS%20Cluster%20CVE-2024-51073.md"
+ },
+ {
+ "type": "WEB",
+ "url": "https://udsoncan.readthedocs.io/en/latest/udsoncan/services.html"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.iso.org/standard/77323.html"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+
+ ],
+ "severity": null,
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:33Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4cp9-p4g4-xxpg/GHSA-4cp9-p4g4-xxpg.json b/advisories/unreviewed/2024/11/GHSA-4cp9-p4g4-xxpg/GHSA-4cp9-p4g4-xxpg.json
new file mode 100644
index 00000000000..11dd4d76fb2
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4cp9-p4g4-xxpg/GHSA-4cp9-p4g4-xxpg.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4cp9-p4g4-xxpg",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9717"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Uninitialized Variable Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of proper initialization of memory prior to accessing it. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24101.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9717"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1377"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-457"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:24Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4crp-rgr3-rv8m/GHSA-4crp-rgr3-rv8m.json b/advisories/unreviewed/2024/11/GHSA-4crp-rgr3-rv8m/GHSA-4crp-rgr3-rv8m.json
new file mode 100644
index 00000000000..e90e50a874e
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4crp-rgr3-rv8m/GHSA-4crp-rgr3-rv8m.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4crp-rgr3-rv8m",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11527"
+ ],
+ "details": "IrfanView DWG File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DWG files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24601.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11527"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1538"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:11Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4ff2-gcjj-67wv/GHSA-4ff2-gcjj-67wv.json b/advisories/unreviewed/2024/11/GHSA-4ff2-gcjj-67wv/GHSA-4ff2-gcjj-67wv.json
new file mode 100644
index 00000000000..cacf389ec3c
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4ff2-gcjj-67wv/GHSA-4ff2-gcjj-67wv.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4ff2-gcjj-67wv",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2024-32770"
+ ],
+ "details": "A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability could allow remote attackers who have gained user access to inject malicious code.\n\nWe have already fixed the vulnerability in the following version:\nPhoto Station 6.4.3 ( 2024/07/12 ) and later",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-32770"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-39"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-79"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:22Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4fhq-hj5g-3c47/GHSA-4fhq-hj5g-3c47.json b/advisories/unreviewed/2024/11/GHSA-4fhq-hj5g-3c47/GHSA-4fhq-hj5g-3c47.json
new file mode 100644
index 00000000000..431f72317e7
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4fhq-hj5g-3c47/GHSA-4fhq-hj5g-3c47.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4fhq-hj5g-3c47",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-38646"
+ ],
+ "details": "An incorrect permission assignment for critical resource vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow local authenticated attackers who have gained administrator access to read or modify the resource.\n\nWe have already fixed the vulnerability in the following version:\nNotes Station 3 3.9.7 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:L/AC:H/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38646"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-36"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-732"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:25Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4fvr-2wjh-fx6h/GHSA-4fvr-2wjh-fx6h.json b/advisories/unreviewed/2024/11/GHSA-4fvr-2wjh-fx6h/GHSA-4fvr-2wjh-fx6h.json
new file mode 100644
index 00000000000..e9eb55b3b78
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4fvr-2wjh-fx6h/GHSA-4fvr-2wjh-fx6h.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4fvr-2wjh-fx6h",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-6817"
+ ],
+ "details": "IrfanView PSP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PSP files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23216.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6817"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-969"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:12Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4h4v-69wg-m6q7/GHSA-4h4v-69wg-m6q7.json b/advisories/unreviewed/2024/11/GHSA-4h4v-69wg-m6q7/GHSA-4h4v-69wg-m6q7.json
new file mode 100644
index 00000000000..1223c9d41b7
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4h4v-69wg-m6q7/GHSA-4h4v-69wg-m6q7.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4h4v-69wg-m6q7",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11537"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24620.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11537"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1582"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:12Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4hxp-5wxw-83f8/GHSA-4hxp-5wxw-83f8.json b/advisories/unreviewed/2024/11/GHSA-4hxp-5wxw-83f8/GHSA-4hxp-5wxw-83f8.json
new file mode 100644
index 00000000000..1dc2e2debbb
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4hxp-5wxw-83f8/GHSA-4hxp-5wxw-83f8.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4hxp-5wxw-83f8",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11522"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24595.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11522"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1590"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4j3h-3q3j-9f5g/GHSA-4j3h-3q3j-9f5g.json b/advisories/unreviewed/2024/11/GHSA-4j3h-3q3j-9f5g/GHSA-4j3h-3q3j-9f5g.json
new file mode 100644
index 00000000000..bb6397aa41c
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4j3h-3q3j-9f5g/GHSA-4j3h-3q3j-9f5g.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4j3h-3q3j-9f5g",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5580"
+ ],
+ "details": "Allegra loadFieldMatch Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Authentication is required to exploit this vulnerability.\n\nThe specific flaw exists within the loadFieldMatch method. The issue results from the lack of proper validation of user-supplied data, which can result in deserialization of untrusted data. An attacker can leverage this vulnerability to execute code in the context of LOCAL SERVICE. Was ZDI-CAN-23452.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5580"
+ },
+ {
+ "type": "WEB",
+ "url": "https://alltena.com/en/resources/release-notes/relnotes-7-5-2"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1163"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-502"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:09Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4jpf-8w9v-465f/GHSA-4jpf-8w9v-465f.json b/advisories/unreviewed/2024/11/GHSA-4jpf-8w9v-465f/GHSA-4jpf-8w9v-465f.json
new file mode 100644
index 00000000000..beeb11e7651
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4jpf-8w9v-465f/GHSA-4jpf-8w9v-465f.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4jpf-8w9v-465f",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2023-39470"
+ ],
+ "details": "PaperCut NG print.script.sandboxed Exposed Dangerous Function Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PaperCut NG. Authentication is required to exploit this vulnerability.\n\nThe specific flaw exists within the management of the print.script.sandboxed setting. The issue results from the exposure of a dangerous function. An attacker can leverage this vulnerability to execute code in the context of SYSTEM. Was ZDI-CAN-20965.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-39470"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.papercut.com/kb/Main/SecurityBulletinJune2023"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-786"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-749"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:05Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4mf4-x557-4pq9/GHSA-4mf4-x557-4pq9.json b/advisories/unreviewed/2024/11/GHSA-4mf4-x557-4pq9/GHSA-4mf4-x557-4pq9.json
new file mode 100644
index 00000000000..aea3e3cd5fd
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4mf4-x557-4pq9/GHSA-4mf4-x557-4pq9.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4mf4-x557-4pq9",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9737"
+ ],
+ "details": "Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24453.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9737"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1350"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:27Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4p8f-jchv-665g/GHSA-4p8f-jchv-665g.json b/advisories/unreviewed/2024/11/GHSA-4p8f-jchv-665g/GHSA-4p8f-jchv-665g.json
new file mode 100644
index 00000000000..b12ab7f83f1
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4p8f-jchv-665g/GHSA-4p8f-jchv-665g.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4p8f-jchv-665g",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11521"
+ ],
+ "details": "IrfanView DJVU File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DJVU files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24578.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11521"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1579"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4pcc-26wc-h35r/GHSA-4pcc-26wc-h35r.json b/advisories/unreviewed/2024/11/GHSA-4pcc-26wc-h35r/GHSA-4pcc-26wc-h35r.json
new file mode 100644
index 00000000000..465f9cef2fa
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4pcc-26wc-h35r/GHSA-4pcc-26wc-h35r.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4pcc-26wc-h35r",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2024-32769"
+ ],
+ "details": "A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability could allow remote attackers who have gained user access to inject malicious code.\n\nWe have already fixed the vulnerability in the following version:\nPhoto Station 6.4.3 ( 2024/07/12 ) and later",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-32769"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-39"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-79"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:22Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4q56-rf7g-66xj/GHSA-4q56-rf7g-66xj.json b/advisories/unreviewed/2024/11/GHSA-4q56-rf7g-66xj/GHSA-4q56-rf7g-66xj.json
new file mode 100644
index 00000000000..539e9201a0c
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4q56-rf7g-66xj/GHSA-4q56-rf7g-66xj.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4q56-rf7g-66xj",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-50397"
+ ],
+ "details": "A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained user access to obtain secret data or modify memory.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.1.2930 build 20241025 and later\nQuTS hero h5.2.1.2929 build 20241025 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50397"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-43"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-134"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:32Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4q65-36r7-c56m/GHSA-4q65-36r7-c56m.json b/advisories/unreviewed/2024/11/GHSA-4q65-36r7-c56m/GHSA-4q65-36r7-c56m.json
new file mode 100644
index 00000000000..1df36ff1446
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4q65-36r7-c56m/GHSA-4q65-36r7-c56m.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4q65-36r7-c56m",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-8809"
+ ],
+ "details": "Cohesive Networks VNS3 Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Cohesive Networks VNS3. Authentication is required to exploit this vulnerability.\n\nThe specific flaw exists within the web service, which listens on TCP port 8000 by default. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24178.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8809"
+ },
+ {
+ "type": "WEB",
+ "url": "https://cohesive.net/support/security-responses"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1233"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-78"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:19Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4qmh-7fxc-x74p/GHSA-4qmh-7fxc-x74p.json b/advisories/unreviewed/2024/11/GHSA-4qmh-7fxc-x74p/GHSA-4qmh-7fxc-x74p.json
new file mode 100644
index 00000000000..73fbcb61f2a
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4qmh-7fxc-x74p/GHSA-4qmh-7fxc-x74p.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4qmh-7fxc-x74p",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8837"
+ ],
+ "details": "PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of XPS files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24408.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8837"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1260"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:22Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4rvq-m8mp-jcx2/GHSA-4rvq-m8mp-jcx2.json b/advisories/unreviewed/2024/11/GHSA-4rvq-m8mp-jcx2/GHSA-4rvq-m8mp-jcx2.json
new file mode 100644
index 00000000000..e6a9d7ccac9
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4rvq-m8mp-jcx2/GHSA-4rvq-m8mp-jcx2.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4rvq-m8mp-jcx2",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11508"
+ ],
+ "details": "IrfanView DXF File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a type confusion condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-22184.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11508"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1603"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-843"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:08Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-4v6v-34r8-27m4/GHSA-4v6v-34r8-27m4.json b/advisories/unreviewed/2024/11/GHSA-4v6v-34r8-27m4/GHSA-4v6v-34r8-27m4.json
new file mode 100644
index 00000000000..f29d5fac381
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-4v6v-34r8-27m4/GHSA-4v6v-34r8-27m4.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4v6v-34r8-27m4",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11510"
+ ],
+ "details": "IrfanView WBZ plugin WB1 File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of WB1 files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-22718.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11510"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1557"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-121"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:09Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-525j-qpc7-rrqj/GHSA-525j-qpc7-rrqj.json b/advisories/unreviewed/2024/11/GHSA-525j-qpc7-rrqj/GHSA-525j-qpc7-rrqj.json
new file mode 100644
index 00000000000..eb691227124
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-525j-qpc7-rrqj/GHSA-525j-qpc7-rrqj.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-525j-qpc7-rrqj",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8842"
+ ],
+ "details": "PDF-XChange Editor RTF File Parsing Uninitialized Variable Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of RTF files. The issue results from the lack of proper initialization of memory prior to accessing it. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24481.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8842"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1265"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-457"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:22Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-5353-75jj-p244/GHSA-5353-75jj-p244.json b/advisories/unreviewed/2024/11/GHSA-5353-75jj-p244/GHSA-5353-75jj-p244.json
new file mode 100644
index 00000000000..318ab030a30
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-5353-75jj-p244/GHSA-5353-75jj-p244.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-5353-75jj-p244",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9761"
+ ],
+ "details": "Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24477.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9761"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1366"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:30Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-54m7-chq9-9wvr/GHSA-54m7-chq9-9wvr.json b/advisories/unreviewed/2024/11/GHSA-54m7-chq9-9wvr/GHSA-54m7-chq9-9wvr.json
new file mode 100644
index 00000000000..1e0e71a81c4
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-54m7-chq9-9wvr/GHSA-54m7-chq9-9wvr.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-54m7-chq9-9wvr",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11532"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24615.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11532"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1587"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:11Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-55j6-hcxw-2cg2/GHSA-55j6-hcxw-2cg2.json b/advisories/unreviewed/2024/11/GHSA-55j6-hcxw-2cg2/GHSA-55j6-hcxw-2cg2.json
new file mode 100644
index 00000000000..14705afd2c4
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-55j6-hcxw-2cg2/GHSA-55j6-hcxw-2cg2.json
@@ -0,0 +1,43 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-55j6-hcxw-2cg2",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-51072"
+ ],
+ "details": "An issue in Instrument Cluster KIA Seltos Software v1.0, Hardware v1.0 allows attackers to cause a Denial of Service (DoS).",
+ "severity": [
+
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51072"
+ },
+ {
+ "type": "WEB",
+ "url": "https://github.com/nitinronge91/KIA-SELTOS-Cluster-Vulnerabilities/blob/628b1550f0093f79380929074b6a5e6ca6f2d04b/CVE/Denial%20of%20Service%20via%20ECU%20Reset%20Service%20For%20KIA%20SELTOS%20CVE-2024-51072.md"
+ },
+ {
+ "type": "WEB",
+ "url": "https://udsoncan.readthedocs.io/en/latest/udsoncan/services.html"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.iso.org/standard/77323.html"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+
+ ],
+ "severity": null,
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:33Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-57pf-vwc9-7j4j/GHSA-57pf-vwc9-7j4j.json b/advisories/unreviewed/2024/11/GHSA-57pf-vwc9-7j4j/GHSA-57pf-vwc9-7j4j.json
new file mode 100644
index 00000000000..4cecb74e5a1
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-57pf-vwc9-7j4j/GHSA-57pf-vwc9-7j4j.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-57pf-vwc9-7j4j",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9754"
+ ],
+ "details": "Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24471.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9754"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1355"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:29Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-58pv-8xf3-c5r4/GHSA-58pv-8xf3-c5r4.json b/advisories/unreviewed/2024/11/GHSA-58pv-8xf3-c5r4/GHSA-58pv-8xf3-c5r4.json
new file mode 100644
index 00000000000..b86fcf0acbd
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-58pv-8xf3-c5r4/GHSA-58pv-8xf3-c5r4.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-58pv-8xf3-c5r4",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2022-26324"
+ ],
+ "details": "Possible XSS in iManager URL for access Component has been discovered in\nOpenText™ iManager 3.2.6.0000.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:H/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-26324"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.netiq.com/documentation/imanager-32/pdfdoc/imanager326_patch1_releasenotes/imanager326_patch1_releasenotes.pdf"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-79"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:19Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-58qh-x4fq-vh49/GHSA-58qh-x4fq-vh49.json b/advisories/unreviewed/2024/11/GHSA-58qh-x4fq-vh49/GHSA-58qh-x4fq-vh49.json
new file mode 100644
index 00000000000..eb16dd66404
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-58qh-x4fq-vh49/GHSA-58qh-x4fq-vh49.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-58qh-x4fq-vh49",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-8814"
+ ],
+ "details": "PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of U3D files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24209.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8814"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1237"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:19Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-59cm-59x5-cwhh/GHSA-59cm-59x5-cwhh.json b/advisories/unreviewed/2024/11/GHSA-59cm-59x5-cwhh/GHSA-59cm-59x5-cwhh.json
new file mode 100644
index 00000000000..146daf9a84e
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-59cm-59x5-cwhh/GHSA-59cm-59x5-cwhh.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-59cm-59x5-cwhh",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8827"
+ ],
+ "details": "PDF-XChange Editor PPM File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PPM files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24306.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8827"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1250"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:21Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-5ggj-xwvc-9x57/GHSA-5ggj-xwvc-9x57.json b/advisories/unreviewed/2024/11/GHSA-5ggj-xwvc-9x57/GHSA-5ggj-xwvc-9x57.json
index 023d4119243..31fa174c42d 100644
--- a/advisories/unreviewed/2024/11/GHSA-5ggj-xwvc-9x57/GHSA-5ggj-xwvc-9x57.json
+++ b/advisories/unreviewed/2024/11/GHSA-5ggj-xwvc-9x57/GHSA-5ggj-xwvc-9x57.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5ggj-xwvc-9x57",
- "modified": "2024-11-19T18:31:06Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-19T18:31:06Z",
"aliases": [
"CVE-2024-53056"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/mediatek: Fix potential NULL dereference in mtk_crtc_destroy()\n\nIn mtk_crtc_create(), if the call to mbox_request_channel() fails then we\nset the \"mtk_crtc->cmdq_client.chan\" pointer to NULL. In that situation,\nwe do not call cmdq_pkt_create().\n\nDuring the cleanup, we need to check if the \"mtk_crtc->cmdq_client.chan\"\nis NULL first before calling cmdq_pkt_destroy(). Calling\ncmdq_pkt_destroy() is unnecessary if we didn't call cmdq_pkt_create() and\nit will result in a NULL pointer dereference.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-476"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T18:15:25Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-5gqf-2mwx-x4qq/GHSA-5gqf-2mwx-x4qq.json b/advisories/unreviewed/2024/11/GHSA-5gqf-2mwx-x4qq/GHSA-5gqf-2mwx-x4qq.json
new file mode 100644
index 00000000000..00f12805ef3
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-5gqf-2mwx-x4qq/GHSA-5gqf-2mwx-x4qq.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-5gqf-2mwx-x4qq",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2023-51641"
+ ],
+ "details": "Allegra renderFieldMatch Deserialization of Unstrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Although authentication is required to exploit this vulnerability, product implements a registration mechanism that can be used to create a user with a sufficient privilege level.\n\nThe specific flaw exists within the renderFieldMatch method. The issue results from the lack of proper validation of user-supplied data, which can result in deserialization of untrusted data. An attacker can leverage this vulnerability to execute code in the context of LOCAL SERVICE. Was ZDI-CAN-22505.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51641"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.trackplus.com/en/service/release-notes-reader/7-5-1-release-notes-2.html"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-106"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-502"
+ ],
+ "severity": "CRITICAL",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:06Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-5hxh-h45m-v2x7/GHSA-5hxh-h45m-v2x7.json b/advisories/unreviewed/2024/11/GHSA-5hxh-h45m-v2x7/GHSA-5hxh-h45m-v2x7.json
new file mode 100644
index 00000000000..56d807772f9
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-5hxh-h45m-v2x7/GHSA-5hxh-h45m-v2x7.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-5hxh-h45m-v2x7",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9758"
+ ],
+ "details": "Tungsten Automation Power PDF AcroForm Annotation Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the handling of Annotation objects. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24474.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9758"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1361"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:29Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-5j5j-p2fj-54hp/GHSA-5j5j-p2fj-54hp.json b/advisories/unreviewed/2024/11/GHSA-5j5j-p2fj-54hp/GHSA-5j5j-p2fj-54hp.json
new file mode 100644
index 00000000000..6b077223c34
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-5j5j-p2fj-54hp/GHSA-5j5j-p2fj-54hp.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-5j5j-p2fj-54hp",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11569"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24873.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11569"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1574"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:15Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-5jh4-4329-q4wh/GHSA-5jh4-4329-q4wh.json b/advisories/unreviewed/2024/11/GHSA-5jh4-4329-q4wh/GHSA-5jh4-4329-q4wh.json
new file mode 100644
index 00000000000..18ffd1f2aad
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-5jh4-4329-q4wh/GHSA-5jh4-4329-q4wh.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-5jh4-4329-q4wh",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8822"
+ ],
+ "details": "PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of U3D files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24217.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8822"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1245"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:20Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-5p7c-48hh-g6m7/GHSA-5p7c-48hh-g6m7.json b/advisories/unreviewed/2024/11/GHSA-5p7c-48hh-g6m7/GHSA-5p7c-48hh-g6m7.json
new file mode 100644
index 00000000000..b849a4ece4e
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-5p7c-48hh-g6m7/GHSA-5p7c-48hh-g6m7.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-5p7c-48hh-g6m7",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2023-51634"
+ ],
+ "details": "NETGEAR RAX30 Improper Certificate Validation Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to compromise the integrity of downloaded information on affected installations of NETGEAR RAX30 routers. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within the downloading of files via HTTPS. The issue results from the lack of proper validation of the certificate presented by the server. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of root. Was ZDI-CAN-19589.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51634"
+ },
+ {
+ "type": "WEB",
+ "url": "https://kb.netgear.com/000065928/Security-Advisory-for-Multiple-Vulnerabilities-on-the-RAX30-PSV-2023-0139"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-583"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-295"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:06Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-5r22-m8q2-2p79/GHSA-5r22-m8q2-2p79.json b/advisories/unreviewed/2024/11/GHSA-5r22-m8q2-2p79/GHSA-5r22-m8q2-2p79.json
new file mode 100644
index 00000000000..7a1ce2fd404
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-5r22-m8q2-2p79/GHSA-5r22-m8q2-2p79.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-5r22-m8q2-2p79",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2023-51643"
+ ],
+ "details": "Allegra uploadFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed.\n\nThe specific flaw exists within the uploadFile method. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of LOCAL SERVICE. Was ZDI-CAN-22510.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51643"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.trackplus.com/en/service/release-notes-reader/7-5-1-release-notes-2.html"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-103"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-22"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:06Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-5r59-wwwh-xxvm/GHSA-5r59-wwwh-xxvm.json b/advisories/unreviewed/2024/11/GHSA-5r59-wwwh-xxvm/GHSA-5r59-wwwh-xxvm.json
new file mode 100644
index 00000000000..9b78f09e675
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-5r59-wwwh-xxvm/GHSA-5r59-wwwh-xxvm.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-5r59-wwwh-xxvm",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2023-51638"
+ ],
+ "details": "Allegra Hard-coded Credentials Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Allegra. Authentication is not required to exploit this vulnerability. \n\nThe specific flaw exists within the configuration of a database. The issue results from the use of a hardcoded password. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-22360.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51638"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.trackplus.com/en/service/release-notes-reader/7-5-1-release-notes-2.html"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-111"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-798"
+ ],
+ "severity": "CRITICAL",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:06Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-5rj3-3mjw-jrvc/GHSA-5rj3-3mjw-jrvc.json b/advisories/unreviewed/2024/11/GHSA-5rj3-3mjw-jrvc/GHSA-5rj3-3mjw-jrvc.json
new file mode 100644
index 00000000000..050f43441c5
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-5rj3-3mjw-jrvc/GHSA-5rj3-3mjw-jrvc.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-5rj3-3mjw-jrvc",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-37050"
+ ],
+ "details": "A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to execute code.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.1.2930 build 20241025 and later\nQuTS hero h5.2.1.2929 build 20241025 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37050"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-43"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-120"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:24Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-5x56-3552-fggh/GHSA-5x56-3552-fggh.json b/advisories/unreviewed/2024/11/GHSA-5x56-3552-fggh/GHSA-5x56-3552-fggh.json
new file mode 100644
index 00000000000..374682219d2
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-5x56-3552-fggh/GHSA-5x56-3552-fggh.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-5x56-3552-fggh",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-38647"
+ ],
+ "details": "An exposure of sensitive information vulnerability has been reported to affect QNAP AI Core. If exploited, the vulnerability could allow remote attackers to compromise the security of the system.\n\nWe have already fixed the vulnerability in the following version:\nQNAP AI Core 3.4.1 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38647"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-40"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-200"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:25Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-62qp-pqg5-cf39/GHSA-62qp-pqg5-cf39.json b/advisories/unreviewed/2024/11/GHSA-62qp-pqg5-cf39/GHSA-62qp-pqg5-cf39.json
new file mode 100644
index 00000000000..43c24ff9c27
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-62qp-pqg5-cf39/GHSA-62qp-pqg5-cf39.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-62qp-pqg5-cf39",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5875"
+ ],
+ "details": "IrfanView SHP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SHP files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23972.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5875"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-668"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:11Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-62x5-4rjc-x8j3/GHSA-62x5-4rjc-x8j3.json b/advisories/unreviewed/2024/11/GHSA-62x5-4rjc-x8j3/GHSA-62x5-4rjc-x8j3.json
new file mode 100644
index 00000000000..c137f724185
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-62x5-4rjc-x8j3/GHSA-62x5-4rjc-x8j3.json
@@ -0,0 +1,39 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-62x5-4rjc-x8j3",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-52726"
+ ],
+ "details": "CRMEB v5.4.0 is vulnerable to Arbitrary file read in the save_basics function which allows an attacker to obtain sensitive information",
+ "severity": [
+
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-52726"
+ },
+ {
+ "type": "WEB",
+ "url": "https://gist.github.com/sec-Kode/bb71138619b22de28c6b0ba986ad58e5"
+ },
+ {
+ "type": "WEB",
+ "url": "https://github.com/sec-Kode/cve3/blob/main/cve3.md"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+
+ ],
+ "severity": null,
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T19:15:07Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-63c7-hpx6-x3w3/GHSA-63c7-hpx6-x3w3.json b/advisories/unreviewed/2024/11/GHSA-63c7-hpx6-x3w3/GHSA-63c7-hpx6-x3w3.json
new file mode 100644
index 00000000000..8340c122f6d
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-63c7-hpx6-x3w3/GHSA-63c7-hpx6-x3w3.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-63c7-hpx6-x3w3",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8845"
+ ],
+ "details": "PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24553.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8845"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1268"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:23Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-64r2-w68m-x3qf/GHSA-64r2-w68m-x3qf.json b/advisories/unreviewed/2024/11/GHSA-64r2-w68m-x3qf/GHSA-64r2-w68m-x3qf.json
new file mode 100644
index 00000000000..14f8fbde57f
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-64r2-w68m-x3qf/GHSA-64r2-w68m-x3qf.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-64r2-w68m-x3qf",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11517"
+ ],
+ "details": "IrfanView JPM File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JPM files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24118.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11517"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1597"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-66f6-78p4-23m5/GHSA-66f6-78p4-23m5.json b/advisories/unreviewed/2024/11/GHSA-66f6-78p4-23m5/GHSA-66f6-78p4-23m5.json
new file mode 100644
index 00000000000..21392619d40
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-66f6-78p4-23m5/GHSA-66f6-78p4-23m5.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-66f6-78p4-23m5",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11559"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24809.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11559"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1558"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:14Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-672m-83rh-4rmx/GHSA-672m-83rh-4rmx.json b/advisories/unreviewed/2024/11/GHSA-672m-83rh-4rmx/GHSA-672m-83rh-4rmx.json
new file mode 100644
index 00000000000..eff0fa06daa
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-672m-83rh-4rmx/GHSA-672m-83rh-4rmx.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-672m-83rh-4rmx",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9740"
+ ],
+ "details": "Tungsten Automation Power PDF BMP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of BMP files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24456.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9740"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1343"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:27Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-69h8-v2gw-h8q9/GHSA-69h8-v2gw-h8q9.json b/advisories/unreviewed/2024/11/GHSA-69h8-v2gw-h8q9/GHSA-69h8-v2gw-h8q9.json
index 8472e60211e..6ddfbcb4ccc 100644
--- a/advisories/unreviewed/2024/11/GHSA-69h8-v2gw-h8q9/GHSA-69h8-v2gw-h8q9.json
+++ b/advisories/unreviewed/2024/11/GHSA-69h8-v2gw-h8q9/GHSA-69h8-v2gw-h8q9.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-69h8-v2gw-h8q9",
- "modified": "2024-11-19T18:31:06Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-19T18:31:06Z",
"aliases": [
"CVE-2024-53062"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: mgb4: protect driver against spectre\n\nFrequency range is set from sysfs via frequency_range_store(),\nbeing vulnerable to spectre, as reported by smatch:\n\n\tdrivers/media/pci/mgb4/mgb4_cmt.c:231 mgb4_cmt_set_vin_freq_range() warn: potential spectre issue 'cmt_vals_in' [r]\n\tdrivers/media/pci/mgb4/mgb4_cmt.c:238 mgb4_cmt_set_vin_freq_range() warn: possible spectre second half. 'reg_set'\n\nFix it.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H"
+ }
],
"affected": [
@@ -31,7 +34,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T18:15:26Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-6cfx-9cwr-vx7q/GHSA-6cfx-9cwr-vx7q.json b/advisories/unreviewed/2024/11/GHSA-6cfx-9cwr-vx7q/GHSA-6cfx-9cwr-vx7q.json
new file mode 100644
index 00000000000..4d17e3818d1
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-6cfx-9cwr-vx7q/GHSA-6cfx-9cwr-vx7q.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-6cfx-9cwr-vx7q",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5721"
+ ],
+ "details": "Logsign Unified SecOps Platform Missing Authentication Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Logsign Unified SecOps Platform. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within the implementation of the cluster HTTP API, which listens on TCP port 1924 when enabled. The issue results from the lack of authentication prior to allowing access to functionality. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24169.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5721"
+ },
+ {
+ "type": "WEB",
+ "url": "https://support.logsign.net/hc/en-us/articles/19316621924754-03-06-2024-Version-6-4-8-Release-Notes"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-615"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-306"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-6cjp-89m2-82w2/GHSA-6cjp-89m2-82w2.json b/advisories/unreviewed/2024/11/GHSA-6cjp-89m2-82w2/GHSA-6cjp-89m2-82w2.json
new file mode 100644
index 00000000000..a65bba969e0
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-6cjp-89m2-82w2/GHSA-6cjp-89m2-82w2.json
@@ -0,0 +1,54 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-6cjp-89m2-82w2",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11619"
+ ],
+ "details": "A vulnerability, which was classified as problematic, has been found in macrozheng mall up to 1.0.3. Affected by this issue is some unknown functionality of the component JWT Token Handler. The manipulation leads to use of default cryptographic key. The complexity of an attack is rather high. The exploitation is known to be difficult. The vendor was contacted early about this disclosure but did not respond in any way. Instead the issue posted on GitHub got deleted without any explanation.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L"
+ },
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11619"
+ },
+ {
+ "type": "WEB",
+ "url": "https://github.com/macrozheng/mall/issues/880"
+ },
+ {
+ "type": "WEB",
+ "url": "https://vuldb.com/?ctiid.285842"
+ },
+ {
+ "type": "WEB",
+ "url": "https://vuldb.com/?id.285842"
+ },
+ {
+ "type": "WEB",
+ "url": "https://vuldb.com/?submit.444666"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-1394"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:17Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-6gpv-2g95-83h9/GHSA-6gpv-2g95-83h9.json b/advisories/unreviewed/2024/11/GHSA-6gpv-2g95-83h9/GHSA-6gpv-2g95-83h9.json
index 225c0deaf1b..d30a0cbcbb1 100644
--- a/advisories/unreviewed/2024/11/GHSA-6gpv-2g95-83h9/GHSA-6gpv-2g95-83h9.json
+++ b/advisories/unreviewed/2024/11/GHSA-6gpv-2g95-83h9/GHSA-6gpv-2g95-83h9.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-6gpv-2g95-83h9",
- "modified": "2024-11-19T18:31:05Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-19T18:31:05Z",
"aliases": [
"CVE-2024-52788"
],
"details": "Tenda W9 v1.0.0.7(4456) was discovered to contain a hardcoded password vulnerability in /etc_ro/shadow, which allows attackers to log in as root.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -25,9 +28,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-798"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T17:15:56Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-6gqj-7563-wqv6/GHSA-6gqj-7563-wqv6.json b/advisories/unreviewed/2024/11/GHSA-6gqj-7563-wqv6/GHSA-6gqj-7563-wqv6.json
index cdfede2104d..d27a9720d55 100644
--- a/advisories/unreviewed/2024/11/GHSA-6gqj-7563-wqv6/GHSA-6gqj-7563-wqv6.json
+++ b/advisories/unreviewed/2024/11/GHSA-6gqj-7563-wqv6/GHSA-6gqj-7563-wqv6.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-6gqj-7563-wqv6",
- "modified": "2024-11-13T00:30:48Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-13T00:30:48Z",
"aliases": [
"CVE-2024-28730"
],
"details": "Cross Site Scripting vulnerability in DLink DWR 2000M 5G CPE With Wifi 6 Ax1800 and Dlink DWR 5G CPE DWR-2000M_1.34ME allows a local attacker to obtain sensitive information via the file upload feature of the VPN configuration module.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
+ }
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-79"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-12T23:15:04Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-6h3x-42rp-jgf8/GHSA-6h3x-42rp-jgf8.json b/advisories/unreviewed/2024/11/GHSA-6h3x-42rp-jgf8/GHSA-6h3x-42rp-jgf8.json
new file mode 100644
index 00000000000..2e56fa715f1
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-6h3x-42rp-jgf8/GHSA-6h3x-42rp-jgf8.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-6h3x-42rp-jgf8",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9747"
+ ],
+ "details": "Tungsten Automation Power PDF PSD File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24463.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9747"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1344"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:28Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-6hph-rwjg-9939/GHSA-6hph-rwjg-9939.json b/advisories/unreviewed/2024/11/GHSA-6hph-rwjg-9939/GHSA-6hph-rwjg-9939.json
new file mode 100644
index 00000000000..674340f2273
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-6hph-rwjg-9939/GHSA-6hph-rwjg-9939.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-6hph-rwjg-9939",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8820"
+ ],
+ "details": "PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of U3D files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24215.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8820"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1243"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:20Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-6mqr-4g8p-wrvx/GHSA-6mqr-4g8p-wrvx.json b/advisories/unreviewed/2024/11/GHSA-6mqr-4g8p-wrvx/GHSA-6mqr-4g8p-wrvx.json
new file mode 100644
index 00000000000..df52c980c11
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-6mqr-4g8p-wrvx/GHSA-6mqr-4g8p-wrvx.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-6mqr-4g8p-wrvx",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2024-32768"
+ ],
+ "details": "A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability could allow remote attackers who have gained user access to inject malicious code.\n\nWe have already fixed the vulnerability in the following version:\nPhoto Station 6.4.3 ( 2024/07/12 ) and later",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-32768"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-39"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-79"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:22Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-6qqc-x73q-pqcm/GHSA-6qqc-x73q-pqcm.json b/advisories/unreviewed/2024/11/GHSA-6qqc-x73q-pqcm/GHSA-6qqc-x73q-pqcm.json
new file mode 100644
index 00000000000..4f040784aba
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-6qqc-x73q-pqcm/GHSA-6qqc-x73q-pqcm.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-6qqc-x73q-pqcm",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11556"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24795.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11556"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1562"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:14Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-6qxv-qg6f-f6hp/GHSA-6qxv-qg6f-f6hp.json b/advisories/unreviewed/2024/11/GHSA-6qxv-qg6f-f6hp/GHSA-6qxv-qg6f-f6hp.json
new file mode 100644
index 00000000000..fcbb837de21
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-6qxv-qg6f-f6hp/GHSA-6qxv-qg6f-f6hp.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-6qxv-qg6f-f6hp",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8848"
+ ],
+ "details": "PDF-XChange Editor AcroForm Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the handling of AcroForms. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-25268.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8848"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1271"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:23Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-6xhw-739r-m3mj/GHSA-6xhw-739r-m3mj.json b/advisories/unreviewed/2024/11/GHSA-6xhw-739r-m3mj/GHSA-6xhw-739r-m3mj.json
new file mode 100644
index 00000000000..24c5e87f2af
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-6xhw-739r-m3mj/GHSA-6xhw-739r-m3mj.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-6xhw-739r-m3mj",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2024-37041"
+ ],
+ "details": "A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to execute code.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.1.2930 build 20241025 and later\nQuTS hero h5.2.1.2929 build 20241025 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37041"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-43"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-120"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:23Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-6xw2-v987-mq7h/GHSA-6xw2-v987-mq7h.json b/advisories/unreviewed/2024/11/GHSA-6xw2-v987-mq7h/GHSA-6xw2-v987-mq7h.json
index b699e3994de..ed074bc3c14 100644
--- a/advisories/unreviewed/2024/11/GHSA-6xw2-v987-mq7h/GHSA-6xw2-v987-mq7h.json
+++ b/advisories/unreviewed/2024/11/GHSA-6xw2-v987-mq7h/GHSA-6xw2-v987-mq7h.json
@@ -44,7 +44,7 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-798"
],
"severity": "LOW",
"github_reviewed": false,
diff --git a/advisories/unreviewed/2024/11/GHSA-724r-f3gv-fmx5/GHSA-724r-f3gv-fmx5.json b/advisories/unreviewed/2024/11/GHSA-724r-f3gv-fmx5/GHSA-724r-f3gv-fmx5.json
new file mode 100644
index 00000000000..f29255a57e3
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-724r-f3gv-fmx5/GHSA-724r-f3gv-fmx5.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-724r-f3gv-fmx5",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9728"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24112.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9728"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1484"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:26Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-733q-89m7-5784/GHSA-733q-89m7-5784.json b/advisories/unreviewed/2024/11/GHSA-733q-89m7-5784/GHSA-733q-89m7-5784.json
index 7783a269f46..6992f81e2bb 100644
--- a/advisories/unreviewed/2024/11/GHSA-733q-89m7-5784/GHSA-733q-89m7-5784.json
+++ b/advisories/unreviewed/2024/11/GHSA-733q-89m7-5784/GHSA-733q-89m7-5784.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-733q-89m7-5784",
- "modified": "2024-11-20T21:30:49Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-20T21:30:49Z",
"aliases": [
"CVE-2024-48983"
],
"details": "An issue was discovered in MBed OS 6.16.0. During processing of HCI packets, the software dynamically determines the length of the packet data by reading 2 bytes from the packet header. A buffer is then allocated to contain the entire packet, the size of which is calculated as the length of the packet body determined earlier plus the header length. WsfMsgAlloc then increments this again by sizeof(wsfMsg_t). This may cause an integer overflow that results in the buffer being significantly too small to contain the entire packet. This may cause a buffer overflow of up to 65 KB . This bug is trivial to exploit for a denial of service but can generally not be exploited further because the exploitable buffer is dynamically allocated.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-190"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-20T20:15:19Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-735m-6fpp-9xv9/GHSA-735m-6fpp-9xv9.json b/advisories/unreviewed/2024/11/GHSA-735m-6fpp-9xv9/GHSA-735m-6fpp-9xv9.json
index d2e024a56a9..44229a74f6d 100644
--- a/advisories/unreviewed/2024/11/GHSA-735m-6fpp-9xv9/GHSA-735m-6fpp-9xv9.json
+++ b/advisories/unreviewed/2024/11/GHSA-735m-6fpp-9xv9/GHSA-735m-6fpp-9xv9.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-735m-6fpp-9xv9",
- "modified": "2024-11-19T21:31:32Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-19T21:31:32Z",
"aliases": [
"CVE-2018-9367"
],
"details": "In FT_ACDK_CCT_V2_OP_ISP_SET_TUNING_PARAS of Meta_CCAP_Para.cpp, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -25,9 +28,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-787"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T20:15:27Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-7396-j39w-87xq/GHSA-7396-j39w-87xq.json b/advisories/unreviewed/2024/11/GHSA-7396-j39w-87xq/GHSA-7396-j39w-87xq.json
new file mode 100644
index 00000000000..86141c18bc6
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-7396-j39w-87xq/GHSA-7396-j39w-87xq.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-7396-j39w-87xq",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9764"
+ ],
+ "details": "Tungsten Automation Power PDF PDF File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24480.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9764"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1362"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:30Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-74rr-c455-62vq/GHSA-74rr-c455-62vq.json b/advisories/unreviewed/2024/11/GHSA-74rr-c455-62vq/GHSA-74rr-c455-62vq.json
index 2ba2e86c11b..adcd8685494 100644
--- a/advisories/unreviewed/2024/11/GHSA-74rr-c455-62vq/GHSA-74rr-c455-62vq.json
+++ b/advisories/unreviewed/2024/11/GHSA-74rr-c455-62vq/GHSA-74rr-c455-62vq.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-74rr-c455-62vq",
- "modified": "2024-11-19T18:31:06Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-19T18:31:06Z",
"aliases": [
"CVE-2018-9338"
],
"details": "In ResStringPool::setTo of ResourceTypes.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -25,9 +28,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-787"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T18:15:18Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-7633-3r2w-xq8x/GHSA-7633-3r2w-xq8x.json b/advisories/unreviewed/2024/11/GHSA-7633-3r2w-xq8x/GHSA-7633-3r2w-xq8x.json
new file mode 100644
index 00000000000..797c8ce4e07
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-7633-3r2w-xq8x/GHSA-7633-3r2w-xq8x.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-7633-3r2w-xq8x",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-6815"
+ ],
+ "details": "IrfanView RLE File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of RLE files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23159.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6815"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-967"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:12Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-78x5-mw8r-c5mr/GHSA-78x5-mw8r-c5mr.json b/advisories/unreviewed/2024/11/GHSA-78x5-mw8r-c5mr/GHSA-78x5-mw8r-c5mr.json
new file mode 100644
index 00000000000..e1e1e365d4f
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-78x5-mw8r-c5mr/GHSA-78x5-mw8r-c5mr.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-78x5-mw8r-c5mr",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2021-38116"
+ ],
+ "details": "Possible Elevation of Privilege Vulnerability\n\nin iManager has been discovered in\nOpenText™ iManager. This impacts all versions before 3.2.5",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-38116"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.netiq.com/documentation/imanager-32/imanager325_releasenotes/data/imanager325_releasenotes.html"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-77"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:18Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-78xf-x743-mmc6/GHSA-78xf-x743-mmc6.json b/advisories/unreviewed/2024/11/GHSA-78xf-x743-mmc6/GHSA-78xf-x743-mmc6.json
index 9afa804d3be..5ee3388d59d 100644
--- a/advisories/unreviewed/2024/11/GHSA-78xf-x743-mmc6/GHSA-78xf-x743-mmc6.json
+++ b/advisories/unreviewed/2024/11/GHSA-78xf-x743-mmc6/GHSA-78xf-x743-mmc6.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-78xf-x743-mmc6",
- "modified": "2024-11-19T18:31:07Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-19T18:31:07Z",
"aliases": [
"CVE-2024-53061"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: s5p-jpeg: prevent buffer overflows\n\nThe current logic allows word to be less than 2. If this happens,\nthere will be buffer overflows, as reported by smatch. Add extra\nchecks to prevent it.\n\nWhile here, remove an unused word = 0 assignment.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -53,9 +56,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-191"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T18:15:25Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-7cv6-r593-wvw4/GHSA-7cv6-r593-wvw4.json b/advisories/unreviewed/2024/11/GHSA-7cv6-r593-wvw4/GHSA-7cv6-r593-wvw4.json
new file mode 100644
index 00000000000..d7f37dc36ee
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-7cv6-r593-wvw4/GHSA-7cv6-r593-wvw4.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-7cv6-r593-wvw4",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-50399"
+ ],
+ "details": "A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to obtain secret data or modify memory.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.1.2930 build 20241025 and later\nQuTS hero h5.2.1.2929 build 20241025 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50399"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-43"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-134"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:33Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-7f78-767g-fv94/GHSA-7f78-767g-fv94.json b/advisories/unreviewed/2024/11/GHSA-7f78-767g-fv94/GHSA-7f78-767g-fv94.json
new file mode 100644
index 00000000000..fbe161b7c8f
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-7f78-767g-fv94/GHSA-7f78-767g-fv94.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-7f78-767g-fv94",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-37047"
+ ],
+ "details": "A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to execute code.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.1.2930 build 20241025 and later\nQuTS hero h5.2.1.2929 build 20241025 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37047"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-43"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-120"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:23Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-7gcx-746w-6vr2/GHSA-7gcx-746w-6vr2.json b/advisories/unreviewed/2024/11/GHSA-7gcx-746w-6vr2/GHSA-7gcx-746w-6vr2.json
index 2f8071f4e6e..4abe1be0fe8 100644
--- a/advisories/unreviewed/2024/11/GHSA-7gcx-746w-6vr2/GHSA-7gcx-746w-6vr2.json
+++ b/advisories/unreviewed/2024/11/GHSA-7gcx-746w-6vr2/GHSA-7gcx-746w-6vr2.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-7gcx-746w-6vr2",
- "modified": "2024-11-07T12:30:35Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-07T12:30:35Z",
"aliases": [
"CVE-2024-50166"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nfsl/fman: Fix refcount handling of fman-related devices\n\nIn mac_probe() there are multiple calls to of_find_device_by_node(),\nfman_bind() and fman_port_bind() which takes references to of_dev->dev.\nNot all references taken by these calls are released later on error path\nin mac_probe() and in mac_remove() which lead to reference leaks.\n\nAdd references release.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -35,7 +38,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-07T10:15:07Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-7mv6-9483-r3cp/GHSA-7mv6-9483-r3cp.json b/advisories/unreviewed/2024/11/GHSA-7mv6-9483-r3cp/GHSA-7mv6-9483-r3cp.json
new file mode 100644
index 00000000000..c00e9c25eba
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-7mv6-9483-r3cp/GHSA-7mv6-9483-r3cp.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-7mv6-9483-r3cp",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-38645"
+ ],
+ "details": "A server-side request forgery (SSRF) vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow remote authenticated attackers to read application data.\n\nWe have already fixed the vulnerability in the following version:\nNotes Station 3 3.9.7 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38645"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-36"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-918"
+ ],
+ "severity": "CRITICAL",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:25Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-7r8m-5c4m-7j6c/GHSA-7r8m-5c4m-7j6c.json b/advisories/unreviewed/2024/11/GHSA-7r8m-5c4m-7j6c/GHSA-7r8m-5c4m-7j6c.json
new file mode 100644
index 00000000000..cf7b65e8170
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-7r8m-5c4m-7j6c/GHSA-7r8m-5c4m-7j6c.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-7r8m-5c4m-7j6c",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-50395"
+ ],
+ "details": "An authorization bypass through user-controlled key vulnerability has been reported to affect Media Streaming add-on. If exploited, the vulnerability could allow local network attackers to gain privilege.\n\nWe have already fixed the vulnerability in the following version:\nMedia Streaming add-on 500.1.1.6 ( 2024/08/02 ) and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50395"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-47"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-639"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:32Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-7r95-xv68-x7qg/GHSA-7r95-xv68-x7qg.json b/advisories/unreviewed/2024/11/GHSA-7r95-xv68-x7qg/GHSA-7r95-xv68-x7qg.json
new file mode 100644
index 00000000000..685f6c22cf3
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-7r95-xv68-x7qg/GHSA-7r95-xv68-x7qg.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-7r95-xv68-x7qg",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9760"
+ ],
+ "details": "Tungsten Automation Power PDF PNG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PNG files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24476.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9760"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1357"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:30Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-7rv2-8jhc-rrg3/GHSA-7rv2-8jhc-rrg3.json b/advisories/unreviewed/2024/11/GHSA-7rv2-8jhc-rrg3/GHSA-7rv2-8jhc-rrg3.json
new file mode 100644
index 00000000000..be31aecd434
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-7rv2-8jhc-rrg3/GHSA-7rv2-8jhc-rrg3.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-7rv2-8jhc-rrg3",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11540"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24700.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11540"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1551"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:12Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-7rv4-g7qg-q4mx/GHSA-7rv4-g7qg-q4mx.json b/advisories/unreviewed/2024/11/GHSA-7rv4-g7qg-q4mx/GHSA-7rv4-g7qg-q4mx.json
new file mode 100644
index 00000000000..0cdb22e30e7
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-7rv4-g7qg-q4mx/GHSA-7rv4-g7qg-q4mx.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-7rv4-g7qg-q4mx",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5722"
+ ],
+ "details": "Logsign Unified SecOps Platform HTTP API Hard-coded Cryptographic Key Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Logsign Unified SecOps Platform. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within the HTTP API. The issue results from using a hard-coded cryptographic key. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24170.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5722"
+ },
+ {
+ "type": "WEB",
+ "url": "https://support.logsign.net/hc/en-us/articles/19316621924754-03-06-2024-Version-6-4-8-Release-Notes"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-614"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-321"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-7w5j-jvfw-99gr/GHSA-7w5j-jvfw-99gr.json b/advisories/unreviewed/2024/11/GHSA-7w5j-jvfw-99gr/GHSA-7w5j-jvfw-99gr.json
new file mode 100644
index 00000000000..5606e9b4634
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-7w5j-jvfw-99gr/GHSA-7w5j-jvfw-99gr.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-7w5j-jvfw-99gr",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-6246"
+ ],
+ "details": "Wyze Cam v3 Realtek Wi-Fi Driver Heap-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Wyze Cam v3 IP cameras. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within the Realtek Wi-Fi kernel module. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the kernel. Was ZDI-CAN-22310.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6246"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-837"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-122"
+ ],
+ "severity": "CRITICAL",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:11Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-7w7j-q678-9jm4/GHSA-7w7j-q678-9jm4.json b/advisories/unreviewed/2024/11/GHSA-7w7j-q678-9jm4/GHSA-7w7j-q678-9jm4.json
new file mode 100644
index 00000000000..90ad4abb39f
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-7w7j-q678-9jm4/GHSA-7w7j-q678-9jm4.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-7w7j-q678-9jm4",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11507"
+ ],
+ "details": "IrfanView DXF File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a type confusion condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-22177.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11507"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1604"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-843"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:08Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-7ww3-v68r-jvh7/GHSA-7ww3-v68r-jvh7.json b/advisories/unreviewed/2024/11/GHSA-7ww3-v68r-jvh7/GHSA-7ww3-v68r-jvh7.json
new file mode 100644
index 00000000000..9f91b3bfb62
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-7ww3-v68r-jvh7/GHSA-7ww3-v68r-jvh7.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-7ww3-v68r-jvh7",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8816"
+ ],
+ "details": "PDF-XChange Editor U3D File Parsing Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of U3D files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24211.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8816"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1239"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:19Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-7wxw-j8c5-6p5x/GHSA-7wxw-j8c5-6p5x.json b/advisories/unreviewed/2024/11/GHSA-7wxw-j8c5-6p5x/GHSA-7wxw-j8c5-6p5x.json
new file mode 100644
index 00000000000..cbb0bc755cb
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-7wxw-j8c5-6p5x/GHSA-7wxw-j8c5-6p5x.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-7wxw-j8c5-6p5x",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-8805"
+ ],
+ "details": "BlueZ HID over GATT Profile Improper Access Control Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of BlueZ. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within the implementation of the HID over GATT Profile. The issue results from the lack of authorization prior to allowing access to functionality. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-25177.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8805"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1229"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-284"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:18Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-829f-84x3-382w/GHSA-829f-84x3-382w.json b/advisories/unreviewed/2024/11/GHSA-829f-84x3-382w/GHSA-829f-84x3-382w.json
new file mode 100644
index 00000000000..9628a0c2f7a
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-829f-84x3-382w/GHSA-829f-84x3-382w.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-829f-84x3-382w",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5720"
+ ],
+ "details": "Logsign Unified SecOps Platform Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Logsign Unified SecOps Platform. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed.\n\nThe specific flaw exists within the implementation of the HTTP API. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24168.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5720"
+ },
+ {
+ "type": "WEB",
+ "url": "https://support.logsign.net/hc/en-us/articles/19316621924754-03-06-2024-Version-6-4-8-Release-Notes"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-613"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-78"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-87xg-hm48-6q4p/GHSA-87xg-hm48-6q4p.json b/advisories/unreviewed/2024/11/GHSA-87xg-hm48-6q4p/GHSA-87xg-hm48-6q4p.json
new file mode 100644
index 00000000000..65ab4518934
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-87xg-hm48-6q4p/GHSA-87xg-hm48-6q4p.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-87xg-hm48-6q4p",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8835"
+ ],
+ "details": "PDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JB2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24320.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8835"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1258"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:21Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-882h-ff2x-f86q/GHSA-882h-ff2x-f86q.json b/advisories/unreviewed/2024/11/GHSA-882h-ff2x-f86q/GHSA-882h-ff2x-f86q.json
new file mode 100644
index 00000000000..0f0f2d10405
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-882h-ff2x-f86q/GHSA-882h-ff2x-f86q.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-882h-ff2x-f86q",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11477"
+ ],
+ "details": "7-Zip Zstandard Decompression Integer Underflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of 7-Zip. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the implementation.\n\nThe specific flaw exists within the implementation of Zstandard decompression. The issue results from the lack of proper validation of user-supplied data, which can result in an integer underflow before writing to memory. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24346.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11477"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1532"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-191"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:08Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-89fx-fr4g-h594/GHSA-89fx-fr4g-h594.json b/advisories/unreviewed/2024/11/GHSA-89fx-fr4g-h594/GHSA-89fx-fr4g-h594.json
new file mode 100644
index 00000000000..d9c12859a03
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-89fx-fr4g-h594/GHSA-89fx-fr4g-h594.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-89fx-fr4g-h594",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11566"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24868.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11566"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1564"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:15Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-8c93-8gw8-j92j/GHSA-8c93-8gw8-j92j.json b/advisories/unreviewed/2024/11/GHSA-8c93-8gw8-j92j/GHSA-8c93-8gw8-j92j.json
new file mode 100644
index 00000000000..1691a026fc6
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-8c93-8gw8-j92j/GHSA-8c93-8gw8-j92j.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-8c93-8gw8-j92j",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11546"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24714.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11546"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1543"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:13Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-8cpm-86gf-2992/GHSA-8cpm-86gf-2992.json b/advisories/unreviewed/2024/11/GHSA-8cpm-86gf-2992/GHSA-8cpm-86gf-2992.json
new file mode 100644
index 00000000000..86a320a4d4b
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-8cpm-86gf-2992/GHSA-8cpm-86gf-2992.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-8cpm-86gf-2992",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8834"
+ ],
+ "details": "PDF-XChange Editor TIF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of TIF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24319.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8834"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1257"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:21Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-8f9x-w532-m554/GHSA-8f9x-w532-m554.json b/advisories/unreviewed/2024/11/GHSA-8f9x-w532-m554/GHSA-8f9x-w532-m554.json
new file mode 100644
index 00000000000..00efa873937
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-8f9x-w532-m554/GHSA-8f9x-w532-m554.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-8f9x-w532-m554",
+ "modified": "2024-11-22T21:32:13Z",
+ "published": "2024-11-22T21:32:13Z",
+ "aliases": [
+ "CVE-2024-9442"
+ ],
+ "details": "The F4 Improvements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.9.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses the SVG file.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9442"
+ },
+ {
+ "type": "WEB",
+ "url": "https://wordpress.org/plugins/element-ready-lite/#developers"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/b97a555a-1eeb-4fc4-9338-bad8b9a0585d?source=cve"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-79"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-21T11:15:37Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-8fpg-x495-p3f9/GHSA-8fpg-x495-p3f9.json b/advisories/unreviewed/2024/11/GHSA-8fpg-x495-p3f9/GHSA-8fpg-x495-p3f9.json
new file mode 100644
index 00000000000..13372b2abf7
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-8fpg-x495-p3f9/GHSA-8fpg-x495-p3f9.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-8fpg-x495-p3f9",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11529"
+ ],
+ "details": "IrfanView DWG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DWG files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24604.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11529"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1537"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:11Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-8j46-pm7j-wh94/GHSA-8j46-pm7j-wh94.json b/advisories/unreviewed/2024/11/GHSA-8j46-pm7j-wh94/GHSA-8j46-pm7j-wh94.json
index e7409917931..e7b32faa722 100644
--- a/advisories/unreviewed/2024/11/GHSA-8j46-pm7j-wh94/GHSA-8j46-pm7j-wh94.json
+++ b/advisories/unreviewed/2024/11/GHSA-8j46-pm7j-wh94/GHSA-8j46-pm7j-wh94.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-8j46-pm7j-wh94",
- "modified": "2024-11-19T18:31:05Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-19T18:31:05Z",
"aliases": [
"CVE-2024-52789"
],
"details": "Tenda W30E v2.0 V16.01.0.8 was discovered to contain a hardcoded password vulnerability in /etc_ro/shadow, which allows attackers to log in as root.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -25,9 +28,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-798"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T17:15:56Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-8m8m-prw4-v58w/GHSA-8m8m-prw4-v58w.json b/advisories/unreviewed/2024/11/GHSA-8m8m-prw4-v58w/GHSA-8m8m-prw4-v58w.json
new file mode 100644
index 00000000000..89be4fc701c
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-8m8m-prw4-v58w/GHSA-8m8m-prw4-v58w.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-8m8m-prw4-v58w",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9721"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24105.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9721"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1482"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:25Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-8ppf-9667-6mfj/GHSA-8ppf-9667-6mfj.json b/advisories/unreviewed/2024/11/GHSA-8ppf-9667-6mfj/GHSA-8ppf-9667-6mfj.json
new file mode 100644
index 00000000000..fbc17c2df76
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-8ppf-9667-6mfj/GHSA-8ppf-9667-6mfj.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-8ppf-9667-6mfj",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8836"
+ ],
+ "details": "PDF-XChange Editor TIF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of TIF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24354.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8836"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1259"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:22Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-8qxc-g23q-chq5/GHSA-8qxc-g23q-chq5.json b/advisories/unreviewed/2024/11/GHSA-8qxc-g23q-chq5/GHSA-8qxc-g23q-chq5.json
new file mode 100644
index 00000000000..e39d0260ae1
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-8qxc-g23q-chq5/GHSA-8qxc-g23q-chq5.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-8qxc-g23q-chq5",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-48860"
+ ],
+ "details": "An OS command injection vulnerability has been reported to affect several product versions. If exploited, the vulnerability could allow remote attackers to execute commands.\n\nWe have already fixed the vulnerability in the following version:\nQuRouter 2.4.3.103 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48860"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-44"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-77"
+ ],
+ "severity": "CRITICAL",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:28Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-8vqq-vp59-hxpx/GHSA-8vqq-vp59-hxpx.json b/advisories/unreviewed/2024/11/GHSA-8vqq-vp59-hxpx/GHSA-8vqq-vp59-hxpx.json
new file mode 100644
index 00000000000..e29a4188f2c
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-8vqq-vp59-hxpx/GHSA-8vqq-vp59-hxpx.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-8vqq-vp59-hxpx",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11572"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24897.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11572"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1570"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:16Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-8vxv-2766-5v4v/GHSA-8vxv-2766-5v4v.json b/advisories/unreviewed/2024/11/GHSA-8vxv-2766-5v4v/GHSA-8vxv-2766-5v4v.json
new file mode 100644
index 00000000000..e8fdeccdfbc
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-8vxv-2766-5v4v/GHSA-8vxv-2766-5v4v.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-8vxv-2766-5v4v",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11581"
+ ],
+ "details": "Luxion KeyShot JT File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Luxion KeyShot. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of jt files. The issue results from the lack of proper validation of user-supplied data, which can result in a read before the start of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23826.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11581"
+ },
+ {
+ "type": "WEB",
+ "url": "https://download.keyshot.com/cert/ksa-655925/ksa-655925.pdf?version=1.0&_gl=1*1vzfrlf*_gcl_au*MTIxNTA2Njg4MS4xNzMxNTMwMjIx"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1612"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:17Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-8w2c-9h69-q63q/GHSA-8w2c-9h69-q63q.json b/advisories/unreviewed/2024/11/GHSA-8w2c-9h69-q63q/GHSA-8w2c-9h69-q63q.json
new file mode 100644
index 00000000000..f6ae9faaf08
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-8w2c-9h69-q63q/GHSA-8w2c-9h69-q63q.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-8w2c-9h69-q63q",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8830"
+ ],
+ "details": "PDF-XChange Editor XPS File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of XPS files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24315.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8830"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1253"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:21Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-8wfj-5m7p-h89v/GHSA-8wfj-5m7p-h89v.json b/advisories/unreviewed/2024/11/GHSA-8wfj-5m7p-h89v/GHSA-8wfj-5m7p-h89v.json
index 47fd1f587df..4fa233de246 100644
--- a/advisories/unreviewed/2024/11/GHSA-8wfj-5m7p-h89v/GHSA-8wfj-5m7p-h89v.json
+++ b/advisories/unreviewed/2024/11/GHSA-8wfj-5m7p-h89v/GHSA-8wfj-5m7p-h89v.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-8wfj-5m7p-h89v",
- "modified": "2024-11-07T12:30:35Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-07T12:30:35Z",
"aliases": [
"CVE-2024-50158"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/bnxt_re: Fix out of bound check\n\nDriver exports pacing stats only on GenP5 and P7 adapters. But while\nparsing the pacing stats, driver has a check for \"rdev->dbr_pacing\". This\ncaused a trace when KASAN is enabled.\n\nBUG: KASAN: slab-out-of-bounds in bnxt_re_get_hw_stats+0x2b6a/0x2e00 [bnxt_re]\nWrite of size 8 at addr ffff8885942a6340 by task modprobe/4809",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -33,9 +36,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-125"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-07T10:15:07Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-92xr-2g8g-228q/GHSA-92xr-2g8g-228q.json b/advisories/unreviewed/2024/11/GHSA-92xr-2g8g-228q/GHSA-92xr-2g8g-228q.json
new file mode 100644
index 00000000000..153028e7620
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-92xr-2g8g-228q/GHSA-92xr-2g8g-228q.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-92xr-2g8g-228q",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2024-49054"
+ ],
+ "details": "Microsoft Edge (Chromium-based) Spoofing Vulnerability",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-49054"
+ },
+ {
+ "type": "WEB",
+ "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-49054"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-357"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T15:15:13Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-936g-6jg3-mgp5/GHSA-936g-6jg3-mgp5.json b/advisories/unreviewed/2024/11/GHSA-936g-6jg3-mgp5/GHSA-936g-6jg3-mgp5.json
index 024c46d2e18..051bbf26e91 100644
--- a/advisories/unreviewed/2024/11/GHSA-936g-6jg3-mgp5/GHSA-936g-6jg3-mgp5.json
+++ b/advisories/unreviewed/2024/11/GHSA-936g-6jg3-mgp5/GHSA-936g-6jg3-mgp5.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-936g-6jg3-mgp5",
- "modified": "2024-11-07T12:30:35Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-07T12:30:35Z",
"aliases": [
"CVE-2024-50165"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Preserve param->string when parsing mount options\n\nIn bpf_parse_param(), keep the value of param->string intact so it can\nbe freed later. Otherwise, the kmalloc area pointed to by param->string\nwill be leaked as shown below:\n\nunreferenced object 0xffff888118c46d20 (size 8):\n comm \"new_name\", pid 12109, jiffies 4295580214\n hex dump (first 8 bytes):\n 61 6e 79 00 38 c9 5c 7e any.8.\\~\n backtrace (crc e1b7f876):\n [<00000000c6848ac7>] kmemleak_alloc+0x4b/0x80\n [<00000000de9f7d00>] __kmalloc_node_track_caller_noprof+0x36e/0x4a0\n [<000000003e29b886>] memdup_user+0x32/0xa0\n [<0000000007248326>] strndup_user+0x46/0x60\n [<0000000035b3dd29>] __x64_sys_fsconfig+0x368/0x3d0\n [<0000000018657927>] x64_sys_call+0xff/0x9f0\n [<00000000c0cabc95>] do_syscall_64+0x3b/0xc0\n [<000000002f331597>] entry_SYSCALL_64_after_hwframe+0x4b/0x53",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-401"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-07T10:15:07Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-95h2-5c4f-cpvp/GHSA-95h2-5c4f-cpvp.json b/advisories/unreviewed/2024/11/GHSA-95h2-5c4f-cpvp/GHSA-95h2-5c4f-cpvp.json
new file mode 100644
index 00000000000..23867e28d12
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-95h2-5c4f-cpvp/GHSA-95h2-5c4f-cpvp.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-95h2-5c4f-cpvp",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2024-10863"
+ ],
+ "details": ": Insufficient Logging vulnerability in OpenText Secure Content Manager on Windows allows Audit Log Manipulation.This issue affects Secure Content Manager: from 10.1 before <24.4.\n\n\n\nEnd-users can potentially exploit the vulnerability to exclude audit trails from being recorded on the client side.",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10863"
+ },
+ {
+ "type": "WEB",
+ "url": "https://portal.microfocus.com/s/article/KM000036389?"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-778"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:21Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-99m9-pgm3-57w3/GHSA-99m9-pgm3-57w3.json b/advisories/unreviewed/2024/11/GHSA-99m9-pgm3-57w3/GHSA-99m9-pgm3-57w3.json
index f64471a2b84..a011125a719 100644
--- a/advisories/unreviewed/2024/11/GHSA-99m9-pgm3-57w3/GHSA-99m9-pgm3-57w3.json
+++ b/advisories/unreviewed/2024/11/GHSA-99m9-pgm3-57w3/GHSA-99m9-pgm3-57w3.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-99m9-pgm3-57w3",
- "modified": "2024-11-20T21:30:50Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-20T21:30:50Z",
"aliases": [
"CVE-2024-52765"
],
"details": "H3C GR-1800AX MiniGRW1B0V100R007 is vulnerable to remote code execution (RCE) via the aspForm parameter.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -27,7 +30,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-20T21:15:08Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-9j72-p63r-h27h/GHSA-9j72-p63r-h27h.json b/advisories/unreviewed/2024/11/GHSA-9j72-p63r-h27h/GHSA-9j72-p63r-h27h.json
new file mode 100644
index 00000000000..4ec4fd58fb3
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-9j72-p63r-h27h/GHSA-9j72-p63r-h27h.json
@@ -0,0 +1,35 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-9j72-p63r-h27h",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-44786"
+ ],
+ "details": "Incorrect access control in Meabilis CMS 1.0 allows attackers to access other users' address books via unspecified vectors.",
+ "severity": [
+
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44786"
+ },
+ {
+ "type": "WEB",
+ "url": "https://gist.github.com/luluhackme/8356703c7295d03d6e68a1ca652441b9"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+
+ ],
+ "severity": null,
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T17:15:08Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-9jv6-m6hq-4qf7/GHSA-9jv6-m6hq-4qf7.json b/advisories/unreviewed/2024/11/GHSA-9jv6-m6hq-4qf7/GHSA-9jv6-m6hq-4qf7.json
new file mode 100644
index 00000000000..6783590a123
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-9jv6-m6hq-4qf7/GHSA-9jv6-m6hq-4qf7.json
@@ -0,0 +1,43 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-9jv6-m6hq-4qf7",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-37782"
+ ],
+ "details": "An LDAP injection vulnerability in the login page of Gladinet CentreStack v13.12.9934.54690 allows attackers to access sensitive data or execute arbitrary commands via a crafted payload injected into the username field.",
+ "severity": [
+
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37782"
+ },
+ {
+ "type": "WEB",
+ "url": "https://gist.githubusercontent.com/Draoken/ab5465fc339df7a1e42281540b61f887/raw/fb28d4148e311e8cde9778dee4f8b2e64e27ea92/CVE-2024-37782.txt"
+ },
+ {
+ "type": "WEB",
+ "url": "https://medium.com/%40jkoreamo/centrestack-vulnerability-disclosure-d28dc8f21a56"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.centrestack.com/p/gce_latest_release.html"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+
+ ],
+ "severity": null,
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T18:15:17Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-9r36-4w79-3hrf/GHSA-9r36-4w79-3hrf.json b/advisories/unreviewed/2024/11/GHSA-9r36-4w79-3hrf/GHSA-9r36-4w79-3hrf.json
new file mode 100644
index 00000000000..191b67b0ced
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-9r36-4w79-3hrf/GHSA-9r36-4w79-3hrf.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-9r36-4w79-3hrf",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8829"
+ ],
+ "details": "PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of EMF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24314.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8829"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1252"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:21Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-9vg7-gcq7-4hw3/GHSA-9vg7-gcq7-4hw3.json b/advisories/unreviewed/2024/11/GHSA-9vg7-gcq7-4hw3/GHSA-9vg7-gcq7-4hw3.json
index 8884360258d..c223d729cce 100644
--- a/advisories/unreviewed/2024/11/GHSA-9vg7-gcq7-4hw3/GHSA-9vg7-gcq7-4hw3.json
+++ b/advisories/unreviewed/2024/11/GHSA-9vg7-gcq7-4hw3/GHSA-9vg7-gcq7-4hw3.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-9vg7-gcq7-4hw3",
- "modified": "2024-11-20T00:32:14Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-20T00:32:14Z",
"aliases": [
"CVE-2018-9440"
],
"details": "In parse of M3UParser.cpp there is a possible resource exhaustion due to improper input validation. This could lead to denial of service with no additional execution privileges needed. User interaction is needed for exploitation.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -27,7 +30,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T23:15:04Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-9vx5-qvf7-p8xq/GHSA-9vx5-qvf7-p8xq.json b/advisories/unreviewed/2024/11/GHSA-9vx5-qvf7-p8xq/GHSA-9vx5-qvf7-p8xq.json
new file mode 100644
index 00000000000..da6d92ce0b0
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-9vx5-qvf7-p8xq/GHSA-9vx5-qvf7-p8xq.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-9vx5-qvf7-p8xq",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11506"
+ ],
+ "details": "IrfanView DWG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DWG files. The issue results from the lack of proper validation of user-supplied data, which can result in a read before the start of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-22169.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11506"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1594"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:08Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-9x6j-g82g-j94h/GHSA-9x6j-g82g-j94h.json b/advisories/unreviewed/2024/11/GHSA-9x6j-g82g-j94h/GHSA-9x6j-g82g-j94h.json
index c7cc81d435e..c8aaec6fd95 100644
--- a/advisories/unreviewed/2024/11/GHSA-9x6j-g82g-j94h/GHSA-9x6j-g82g-j94h.json
+++ b/advisories/unreviewed/2024/11/GHSA-9x6j-g82g-j94h/GHSA-9x6j-g82g-j94h.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-9x6j-g82g-j94h",
- "modified": "2024-11-13T00:30:48Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-13T00:30:48Z",
"aliases": [
"CVE-2024-28729"
],
"details": "An issue in DLink DWR 2000M 5G CPE With Wifi 6 Ax1800 and Dlink DWR 5G CPE DWR-2000M_1.34ME allows a local attacker to execute arbitrary code via a crafted request.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-77"
],
- "severity": null,
+ "severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-12T23:15:04Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-9xhx-3vqf-8fhx/GHSA-9xhx-3vqf-8fhx.json b/advisories/unreviewed/2024/11/GHSA-9xhx-3vqf-8fhx/GHSA-9xhx-3vqf-8fhx.json
new file mode 100644
index 00000000000..21d8ab97dee
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-9xhx-3vqf-8fhx/GHSA-9xhx-3vqf-8fhx.json
@@ -0,0 +1,39 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-9xhx-3vqf-8fhx",
+ "modified": "2024-11-22T21:32:13Z",
+ "published": "2024-11-22T21:32:13Z",
+ "aliases": [
+ "CVE-2024-52755"
+ ],
+ "details": "D-LINK DI-8003 v16.07.26A1 was discovered to contain a buffer overflow via the host_ip parameter in the ipsec_road_asp function.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-52755"
+ },
+ {
+ "type": "WEB",
+ "url": "https://github.com/faqiadegege/IoTVuln/blob/main/DI_8003_jingx_asp_stackoverflow/detail.md"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-120",
+ "CWE-787"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-21T09:46:33Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-9xq2-9jc3-2mjw/GHSA-9xq2-9jc3-2mjw.json b/advisories/unreviewed/2024/11/GHSA-9xq2-9jc3-2mjw/GHSA-9xq2-9jc3-2mjw.json
new file mode 100644
index 00000000000..babf1ad071f
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-9xq2-9jc3-2mjw/GHSA-9xq2-9jc3-2mjw.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-9xq2-9jc3-2mjw",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-48862"
+ ],
+ "details": "A link following vulnerability has been reported to affect QuLog Center. If exploited, the vulnerability could allow remote attackers to traverse the file system to unintended locations and read or overwrite the contents of unexpected files.\n\nWe have already fixed the vulnerability in the following versions:\nQuLog Center 1.7.0.831 ( 2024/10/15 ) and later\nQuLog Center 1.8.0.888 ( 2024/10/15 ) and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48862"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-46"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-59"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:28Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-c2vg-7h9p-v54r/GHSA-c2vg-7h9p-v54r.json b/advisories/unreviewed/2024/11/GHSA-c2vg-7h9p-v54r/GHSA-c2vg-7h9p-v54r.json
new file mode 100644
index 00000000000..4f4c088dadf
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-c2vg-7h9p-v54r/GHSA-c2vg-7h9p-v54r.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-c2vg-7h9p-v54r",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2024-9542"
+ ],
+ "details": "The Sky Addons for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.6.1 via the render function in modules/content-switcher/widgets/content-switcher.php. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract sensitive private, pending, and draft Elementor template data.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9542"
+ },
+ {
+ "type": "WEB",
+ "url": "https://plugins.trac.wordpress.org/changeset/3189030/sky-elementor-addons"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/3a0d9356-8083-4154-aa04-9008627dd3f5?source=cve"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-200"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-21T11:15:37Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-c3hf-4f7r-m69m/GHSA-c3hf-4f7r-m69m.json b/advisories/unreviewed/2024/11/GHSA-c3hf-4f7r-m69m/GHSA-c3hf-4f7r-m69m.json
new file mode 100644
index 00000000000..4f17fc42238
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-c3hf-4f7r-m69m/GHSA-c3hf-4f7r-m69m.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-c3hf-4f7r-m69m",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2021-38118"
+ ],
+ "details": "Possible improper input validation Vulnerability\n\nin iManager has been discovered in\nOpenText™ iManager 3.2.4.0000.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-38118"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.netiq.com/documentation/imanager-32/imanager325_releasenotes/data/imanager325_releasenotes.html"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-250"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:18Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-c43q-qj38-7p5j/GHSA-c43q-qj38-7p5j.json b/advisories/unreviewed/2024/11/GHSA-c43q-qj38-7p5j/GHSA-c43q-qj38-7p5j.json
index 877f31df978..e70dbf7c378 100644
--- a/advisories/unreviewed/2024/11/GHSA-c43q-qj38-7p5j/GHSA-c43q-qj38-7p5j.json
+++ b/advisories/unreviewed/2024/11/GHSA-c43q-qj38-7p5j/GHSA-c43q-qj38-7p5j.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-c43q-qj38-7p5j",
- "modified": "2024-11-14T18:30:34Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-12T18:31:00Z",
"aliases": [
"CVE-2024-8068"
diff --git a/advisories/unreviewed/2024/11/GHSA-c453-9769-vghq/GHSA-c453-9769-vghq.json b/advisories/unreviewed/2024/11/GHSA-c453-9769-vghq/GHSA-c453-9769-vghq.json
new file mode 100644
index 00000000000..ecbb147ca97
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-c453-9769-vghq/GHSA-c453-9769-vghq.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-c453-9769-vghq",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8841"
+ ],
+ "details": "PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24432.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8841"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1264"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:22Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-c6g5-vgf8-p856/GHSA-c6g5-vgf8-p856.json b/advisories/unreviewed/2024/11/GHSA-c6g5-vgf8-p856/GHSA-c6g5-vgf8-p856.json
index e8a88fe11e8..10dc8f37686 100644
--- a/advisories/unreviewed/2024/11/GHSA-c6g5-vgf8-p856/GHSA-c6g5-vgf8-p856.json
+++ b/advisories/unreviewed/2024/11/GHSA-c6g5-vgf8-p856/GHSA-c6g5-vgf8-p856.json
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-352"
],
"severity": "MODERATE",
"github_reviewed": false,
diff --git a/advisories/unreviewed/2024/11/GHSA-c6wm-m399-cmrx/GHSA-c6wm-m399-cmrx.json b/advisories/unreviewed/2024/11/GHSA-c6wm-m399-cmrx/GHSA-c6wm-m399-cmrx.json
new file mode 100644
index 00000000000..9c9198db3ba
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-c6wm-m399-cmrx/GHSA-c6wm-m399-cmrx.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-c6wm-m399-cmrx",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-6247"
+ ],
+ "details": "Wyze Cam v3 Wi-Fi SSID OS Command Injection Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Wyze Cam v3 IP cameras. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within the handling of SSIDs embedded in scanned QR codes. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-22337.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6247"
+ },
+ {
+ "type": "WEB",
+ "url": "https://forums.wyze.com/t/security-advisory/289256"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-838"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-78"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:11Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-c9v7-fv5h-vr5j/GHSA-c9v7-fv5h-vr5j.json b/advisories/unreviewed/2024/11/GHSA-c9v7-fv5h-vr5j/GHSA-c9v7-fv5h-vr5j.json
index f4a20436b98..700cb579226 100644
--- a/advisories/unreviewed/2024/11/GHSA-c9v7-fv5h-vr5j/GHSA-c9v7-fv5h-vr5j.json
+++ b/advisories/unreviewed/2024/11/GHSA-c9v7-fv5h-vr5j/GHSA-c9v7-fv5h-vr5j.json
@@ -28,7 +28,8 @@
],
"database_specific": {
"cwe_ids": [
- "CWE-416"
+ "CWE-416",
+ "CWE-667"
],
"severity": "HIGH",
"github_reviewed": false,
diff --git a/advisories/unreviewed/2024/11/GHSA-cf35-r4vm-vv4f/GHSA-cf35-r4vm-vv4f.json b/advisories/unreviewed/2024/11/GHSA-cf35-r4vm-vv4f/GHSA-cf35-r4vm-vv4f.json
new file mode 100644
index 00000000000..acf7512c8d7
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-cf35-r4vm-vv4f/GHSA-cf35-r4vm-vv4f.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-cf35-r4vm-vv4f",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-6233"
+ ],
+ "details": "Check Point ZoneAlarm Extreme Security Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Check Point ZoneAlarm Extreme Security. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.\n\nThe specific flaw exists within the Forensic Recorder service. By creating a symbolic link, an attacker can abuse the service to overwrite arbitrary files. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-21677.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6233"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1036"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-59"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:11Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-cjw2-gq5v-g28j/GHSA-cjw2-gq5v-g28j.json b/advisories/unreviewed/2024/11/GHSA-cjw2-gq5v-g28j/GHSA-cjw2-gq5v-g28j.json
new file mode 100644
index 00000000000..6b683b127f3
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-cjw2-gq5v-g28j/GHSA-cjw2-gq5v-g28j.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-cjw2-gq5v-g28j",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9751"
+ ],
+ "details": "Tungsten Automation Power PDF JP2 File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JP2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24468.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9751"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1363"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:29Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-crw8-988f-3cm9/GHSA-crw8-988f-3cm9.json b/advisories/unreviewed/2024/11/GHSA-crw8-988f-3cm9/GHSA-crw8-988f-3cm9.json
new file mode 100644
index 00000000000..0d56453c16c
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-crw8-988f-3cm9/GHSA-crw8-988f-3cm9.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-crw8-988f-3cm9",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2023-52335"
+ ],
+ "details": "Advantech iView ConfigurationServlet SQL Injection Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Advantech iView. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within the ConfigurationServlet servlet, which listens on TCP port 8080 by default. When parsing the column_value element, the process does not properly validate a user-supplied string before using it to construct SQL queries. An attacker can leverage this vulnerability to disclose stored credentials, leading to further compromise. Was ZDI-CAN-17863.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-52335"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.advantech.com/zh-tw/support/details/firmware?id=1-HIPU-183"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-610"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-89"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:07Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-cwgv-jwgm-r5f5/GHSA-cwgv-jwgm-r5f5.json b/advisories/unreviewed/2024/11/GHSA-cwgv-jwgm-r5f5/GHSA-cwgv-jwgm-r5f5.json
new file mode 100644
index 00000000000..d3056c0c859
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-cwgv-jwgm-r5f5/GHSA-cwgv-jwgm-r5f5.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-cwgv-jwgm-r5f5",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-30372"
+ ],
+ "details": "Allegra getLinkText Server-Side Template Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Authentication is required to exploit this vulnerability.\n\nThe specific flaw exists within the implementation of getLinkText method. The issue results from the lack of proper validation of a user-supplied string before processing it with the template engine. An attacker can leverage this vulnerability to execute code in the context of LOCAL SERVICE. Was ZDI-CAN-23609.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-30372"
+ },
+ {
+ "type": "WEB",
+ "url": "https://alltena.com/en/resources/release-notes/relnotes-7-5-2"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1165"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-1336"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:08Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-cxpg-cp88-2cj7/GHSA-cxpg-cp88-2cj7.json b/advisories/unreviewed/2024/11/GHSA-cxpg-cp88-2cj7/GHSA-cxpg-cp88-2cj7.json
new file mode 100644
index 00000000000..b06df58741e
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-cxpg-cp88-2cj7/GHSA-cxpg-cp88-2cj7.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-cxpg-cp88-2cj7",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9718"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24102.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9718"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1378"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:24Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-f3jq-f2pm-v9m4/GHSA-f3jq-f2pm-v9m4.json b/advisories/unreviewed/2024/11/GHSA-f3jq-f2pm-v9m4/GHSA-f3jq-f2pm-v9m4.json
new file mode 100644
index 00000000000..509a05e964a
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-f3jq-f2pm-v9m4/GHSA-f3jq-f2pm-v9m4.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-f3jq-f2pm-v9m4",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-50398"
+ ],
+ "details": "A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to obtain secret data or modify memory.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.1.2930 build 20241025 and later\nQuTS hero h5.2.1.2929 build 20241025 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50398"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-43"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-134"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:32Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-f466-xr8m-5m4r/GHSA-f466-xr8m-5m4r.json b/advisories/unreviewed/2024/11/GHSA-f466-xr8m-5m4r/GHSA-f466-xr8m-5m4r.json
new file mode 100644
index 00000000000..01a359cfd25
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-f466-xr8m-5m4r/GHSA-f466-xr8m-5m4r.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-f466-xr8m-5m4r",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11545"
+ ],
+ "details": "IrfanView DXF File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24709.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11545"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1542"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:13Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-f6cq-3vq2-5393/GHSA-f6cq-3vq2-5393.json b/advisories/unreviewed/2024/11/GHSA-f6cq-3vq2-5393/GHSA-f6cq-3vq2-5393.json
index 96fe50e4947..9e6cecd9cf6 100644
--- a/advisories/unreviewed/2024/11/GHSA-f6cq-3vq2-5393/GHSA-f6cq-3vq2-5393.json
+++ b/advisories/unreviewed/2024/11/GHSA-f6cq-3vq2-5393/GHSA-f6cq-3vq2-5393.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-f6cq-3vq2-5393",
- "modified": "2024-11-07T12:30:35Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-07T12:30:35Z",
"aliases": [
"CVE-2024-50163"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Make sure internal and UAPI bpf_redirect flags don't overlap\n\nThe bpf_redirect_info is shared between the SKB and XDP redirect paths,\nand the two paths use the same numeric flag values in the ri->flags\nfield (specifically, BPF_F_BROADCAST == BPF_F_NEXTHOP). This means that\nif skb bpf_redirect_neigh() is used with a non-NULL params argument and,\nsubsequently, an XDP redirect is performed using the same\nbpf_redirect_info struct, the XDP path will get confused and end up\ncrashing, which syzbot managed to trigger.\n\nWith the stack-allocated bpf_redirect_info, the structure is no longer\nshared between the SKB and XDP paths, so the crash doesn't happen\nanymore. However, different code paths using identically-numbered flag\nvalues in the same struct field still seems like a bit of a mess, so\nthis patch cleans that up by moving the flag definitions together and\nredefining the three flags in BPF_F_REDIRECT_INTERNAL to not overlap\nwith the flags used for XDP. It also adds a BUILD_BUG_ON() check to make\nsure the overlap is not re-introduced by mistake.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -43,7 +46,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-07T10:15:07Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-f783-xqpr-h254/GHSA-f783-xqpr-h254.json b/advisories/unreviewed/2024/11/GHSA-f783-xqpr-h254/GHSA-f783-xqpr-h254.json
index cba611e621c..beb6d943608 100644
--- a/advisories/unreviewed/2024/11/GHSA-f783-xqpr-h254/GHSA-f783-xqpr-h254.json
+++ b/advisories/unreviewed/2024/11/GHSA-f783-xqpr-h254/GHSA-f783-xqpr-h254.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-f783-xqpr-h254",
- "modified": "2024-11-22T09:33:03Z",
+ "modified": "2024-11-22T21:32:14Z",
"published": "2024-11-22T09:33:03Z",
"aliases": [
"CVE-2024-9422"
],
"details": "The GEO my WP WordPress plugin before 4.5, gmw-premium-settings WordPress plugin before 3.1 does not sufficiently validate files to be uploaded, which could allow attackers to upload arbitrary files such as PHP on the server.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -27,7 +30,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-22T06:15:20Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-f854-g8c6-mq5q/GHSA-f854-g8c6-mq5q.json b/advisories/unreviewed/2024/11/GHSA-f854-g8c6-mq5q/GHSA-f854-g8c6-mq5q.json
new file mode 100644
index 00000000000..eeb031550f4
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-f854-g8c6-mq5q/GHSA-f854-g8c6-mq5q.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-f854-g8c6-mq5q",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9726"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24110.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9726"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1475"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-121"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:25Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-f994-94fv-xfrx/GHSA-f994-94fv-xfrx.json b/advisories/unreviewed/2024/11/GHSA-f994-94fv-xfrx/GHSA-f994-94fv-xfrx.json
new file mode 100644
index 00000000000..2a54bd4621c
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-f994-94fv-xfrx/GHSA-f994-94fv-xfrx.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-f994-94fv-xfrx",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9731"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24145.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9731"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1485"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:26Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-f9mh-6j8h-jr5x/GHSA-f9mh-6j8h-jr5x.json b/advisories/unreviewed/2024/11/GHSA-f9mh-6j8h-jr5x/GHSA-f9mh-6j8h-jr5x.json
new file mode 100644
index 00000000000..474e3d13d3d
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-f9mh-6j8h-jr5x/GHSA-f9mh-6j8h-jr5x.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-f9mh-6j8h-jr5x",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11511"
+ ],
+ "details": "IrfanView XCF Plugin XCF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of XCF files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-22735.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11511"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1556"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-122"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:09Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-ffvq-pv3x-2xfv/GHSA-ffvq-pv3x-2xfv.json b/advisories/unreviewed/2024/11/GHSA-ffvq-pv3x-2xfv/GHSA-ffvq-pv3x-2xfv.json
new file mode 100644
index 00000000000..ebe603d4ba2
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-ffvq-pv3x-2xfv/GHSA-ffvq-pv3x-2xfv.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-ffvq-pv3x-2xfv",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8828"
+ ],
+ "details": "PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of EMF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24313.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8828"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1251"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:21Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-fg3p-cr7g-8j6c/GHSA-fg3p-cr7g-8j6c.json b/advisories/unreviewed/2024/11/GHSA-fg3p-cr7g-8j6c/GHSA-fg3p-cr7g-8j6c.json
new file mode 100644
index 00000000000..e9f3c727b46
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-fg3p-cr7g-8j6c/GHSA-fg3p-cr7g-8j6c.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-fg3p-cr7g-8j6c",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11575"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24901.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11575"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1569"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:16Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-fgg8-x8gw-hg74/GHSA-fgg8-x8gw-hg74.json b/advisories/unreviewed/2024/11/GHSA-fgg8-x8gw-hg74/GHSA-fgg8-x8gw-hg74.json
new file mode 100644
index 00000000000..42643fc27a1
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-fgg8-x8gw-hg74/GHSA-fgg8-x8gw-hg74.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-fgg8-x8gw-hg74",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11547"
+ ],
+ "details": "IrfanView DWG File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DWG files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24732.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11547"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1544"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:13Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-fgwj-fvg5-p6jq/GHSA-fgwj-fvg5-p6jq.json b/advisories/unreviewed/2024/11/GHSA-fgwj-fvg5-p6jq/GHSA-fgwj-fvg5-p6jq.json
new file mode 100644
index 00000000000..84900c1febd
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-fgwj-fvg5-p6jq/GHSA-fgwj-fvg5-p6jq.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-fgwj-fvg5-p6jq",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11561"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24857.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11561"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1577"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:15Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-fhfx-p76m-8rfq/GHSA-fhfx-p76m-8rfq.json b/advisories/unreviewed/2024/11/GHSA-fhfx-p76m-8rfq/GHSA-fhfx-p76m-8rfq.json
new file mode 100644
index 00000000000..e702d161860
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-fhfx-p76m-8rfq/GHSA-fhfx-p76m-8rfq.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-fhfx-p76m-8rfq",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-47863"
+ ],
+ "details": "An issue was discovered in Centreon Web through 24.10. A stored XSS was found in the user configuration contact name field. This form is only accessible to authenticated users with high-privilege access.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47863"
+ },
+ {
+ "type": "WEB",
+ "url": "https://github.com/centreon/centreon/releases"
+ },
+ {
+ "type": "WEB",
+ "url": "https://thewatch.centreon.com/latest-security-bulletins-64/cve-2024-47863-centreon-web-medium-severity-4059"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-79"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:09Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-fhmx-7jhg-8h34/GHSA-fhmx-7jhg-8h34.json b/advisories/unreviewed/2024/11/GHSA-fhmx-7jhg-8h34/GHSA-fhmx-7jhg-8h34.json
index f1e80263fa8..f64f34fbe15 100644
--- a/advisories/unreviewed/2024/11/GHSA-fhmx-7jhg-8h34/GHSA-fhmx-7jhg-8h34.json
+++ b/advisories/unreviewed/2024/11/GHSA-fhmx-7jhg-8h34/GHSA-fhmx-7jhg-8h34.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-fhmx-7jhg-8h34",
- "modified": "2024-11-19T18:31:06Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-19T18:31:06Z",
"aliases": [
"CVE-2024-53052"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nio_uring/rw: fix missing NOWAIT check for O_DIRECT start write\n\nWhen io_uring starts a write, it'll call kiocb_start_write() to bump the\nsuper block rwsem, preventing any freezes from happening while that\nwrite is in-flight. The freeze side will grab that rwsem for writing,\nexcluding any new writers from happening and waiting for existing writes\nto finish. But io_uring unconditionally uses kiocb_start_write(), which\nwill block if someone is currently attempting to freeze the mount point.\nThis causes a deadlock where freeze is waiting for previous writes to\ncomplete, but the previous writes cannot complete, as the task that is\nsupposed to complete them is blocked waiting on starting a new write.\nThis results in the following stuck trace showing that dependency with\nthe write blocked starting a new write:\n\ntask:fio state:D stack:0 pid:886 tgid:886 ppid:876\nCall trace:\n __switch_to+0x1d8/0x348\n __schedule+0x8e8/0x2248\n schedule+0x110/0x3f0\n percpu_rwsem_wait+0x1e8/0x3f8\n __percpu_down_read+0xe8/0x500\n io_write+0xbb8/0xff8\n io_issue_sqe+0x10c/0x1020\n io_submit_sqes+0x614/0x2110\n __arm64_sys_io_uring_enter+0x524/0x1038\n invoke_syscall+0x74/0x268\n el0_svc_common.constprop.0+0x160/0x238\n do_el0_svc+0x44/0x60\n el0_svc+0x44/0xb0\n el0t_64_sync_handler+0x118/0x128\n el0t_64_sync+0x168/0x170\nINFO: task fsfreeze:7364 blocked for more than 15 seconds.\n Not tainted 6.12.0-rc5-00063-g76aaf945701c #7963\n\nwith the attempting freezer stuck trying to grab the rwsem:\n\ntask:fsfreeze state:D stack:0 pid:7364 tgid:7364 ppid:995\nCall trace:\n __switch_to+0x1d8/0x348\n __schedule+0x8e8/0x2248\n schedule+0x110/0x3f0\n percpu_down_write+0x2b0/0x680\n freeze_super+0x248/0x8a8\n do_vfs_ioctl+0x149c/0x1b18\n __arm64_sys_ioctl+0xd0/0x1a0\n invoke_syscall+0x74/0x268\n el0_svc_common.constprop.0+0x160/0x238\n do_el0_svc+0x44/0x60\n el0_svc+0x44/0xb0\n el0t_64_sync_handler+0x118/0x128\n el0t_64_sync+0x168/0x170\n\nFix this by having the io_uring side honor IOCB_NOWAIT, and only attempt a\nblocking grab of the super block rwsem if it isn't set. For normal issue\nwhere IOCB_NOWAIT would always be set, this returns -EAGAIN which will\nhave io_uring core issue a blocking attempt of the write. That will in\nturn also get completions run, ensuring forward progress.\n\nSince freezing requires CAP_SYS_ADMIN in the first place, this isn't\nsomething that can be triggered by a regular user.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -45,9 +48,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-667"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T18:15:25Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-fm3p-g673-crw6/GHSA-fm3p-g673-crw6.json b/advisories/unreviewed/2024/11/GHSA-fm3p-g673-crw6/GHSA-fm3p-g673-crw6.json
new file mode 100644
index 00000000000..a1e18303c44
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-fm3p-g673-crw6/GHSA-fm3p-g673-crw6.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-fm3p-g673-crw6",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2023-51647"
+ ],
+ "details": "Allegra saveInlineEdit Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed.\n\nThe specific flaw exists within the saveInlineEdit method. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of LOCAL SERVICE. Was ZDI-CAN-22528.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51647"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.trackplus.com/en/service/release-notes-reader/7-5-1-release-notes-2.html"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-108"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-22"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:07Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-fmj7-4v6q-8867/GHSA-fmj7-4v6q-8867.json b/advisories/unreviewed/2024/11/GHSA-fmj7-4v6q-8867/GHSA-fmj7-4v6q-8867.json
new file mode 100644
index 00000000000..0872b79f2d8
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-fmj7-4v6q-8867/GHSA-fmj7-4v6q-8867.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-fmj7-4v6q-8867",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5874"
+ ],
+ "details": "IrfanView PNT File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PNT files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23969.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5874"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-667"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-fp3r-f4p3-9f7j/GHSA-fp3r-f4p3-9f7j.json b/advisories/unreviewed/2024/11/GHSA-fp3r-f4p3-9f7j/GHSA-fp3r-f4p3-9f7j.json
new file mode 100644
index 00000000000..ed855e4f867
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-fp3r-f4p3-9f7j/GHSA-fp3r-f4p3-9f7j.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-fp3r-f4p3-9f7j",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8823"
+ ],
+ "details": "PDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JB2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24261.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8823"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1246"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:20Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-fr43-c344-348r/GHSA-fr43-c344-348r.json b/advisories/unreviewed/2024/11/GHSA-fr43-c344-348r/GHSA-fr43-c344-348r.json
new file mode 100644
index 00000000000..9447b288dcf
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-fr43-c344-348r/GHSA-fr43-c344-348r.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-fr43-c344-348r",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8840"
+ ],
+ "details": "PDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JB2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. . Was ZDI-CAN-24420.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8840"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1263"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:22Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-fv86-4v9q-h758/GHSA-fv86-4v9q-h758.json b/advisories/unreviewed/2024/11/GHSA-fv86-4v9q-h758/GHSA-fv86-4v9q-h758.json
new file mode 100644
index 00000000000..df6d0c6a5a3
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-fv86-4v9q-h758/GHSA-fv86-4v9q-h758.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-fv86-4v9q-h758",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-8811"
+ ],
+ "details": "WinZip Mark-of-the-Web Bypass Vulnerability. This vulnerability allows remote attackers to bypass the Mark-of-the-Web protection mechanism on affected installations of WinZip. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the handling of archive files. When opening an archive that bears the Mark-of-the-Web, WinZip removes the Mark-of-the-Web from the archive file. Following extraction, the extracted files also lack the Mark-of-the-Web. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current user. Was ZDI-CAN-23983.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8811"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1234"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-693"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:19Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-fv97-c4gc-26hq/GHSA-fv97-c4gc-26hq.json b/advisories/unreviewed/2024/11/GHSA-fv97-c4gc-26hq/GHSA-fv97-c4gc-26hq.json
new file mode 100644
index 00000000000..2f80237f018
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-fv97-c4gc-26hq/GHSA-fv97-c4gc-26hq.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-fv97-c4gc-26hq",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5512"
+ ],
+ "details": "Kofax Power PDF JP2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Kofax Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JP2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-22021.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5512"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-555"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:09Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-fvxc-c5g5-6jw7/GHSA-fvxc-c5g5-6jw7.json b/advisories/unreviewed/2024/11/GHSA-fvxc-c5g5-6jw7/GHSA-fvxc-c5g5-6jw7.json
new file mode 100644
index 00000000000..d4c34155e7b
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-fvxc-c5g5-6jw7/GHSA-fvxc-c5g5-6jw7.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-fvxc-c5g5-6jw7",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8824"
+ ],
+ "details": "PDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JB2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24262.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8824"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1247"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:20Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-fw35-5qfq-q9px/GHSA-fw35-5qfq-q9px.json b/advisories/unreviewed/2024/11/GHSA-fw35-5qfq-q9px/GHSA-fw35-5qfq-q9px.json
new file mode 100644
index 00000000000..3573fb1e2f4
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-fw35-5qfq-q9px/GHSA-fw35-5qfq-q9px.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-fw35-5qfq-q9px",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-8815"
+ ],
+ "details": "PDF-XChange Editor U3D File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of U3D files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24210.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8815"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1238"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:19Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-fwhr-m7pf-h2c2/GHSA-fwhr-m7pf-h2c2.json b/advisories/unreviewed/2024/11/GHSA-fwhr-m7pf-h2c2/GHSA-fwhr-m7pf-h2c2.json
index 21a36d9d920..b916f9fef99 100644
--- a/advisories/unreviewed/2024/11/GHSA-fwhr-m7pf-h2c2/GHSA-fwhr-m7pf-h2c2.json
+++ b/advisories/unreviewed/2024/11/GHSA-fwhr-m7pf-h2c2/GHSA-fwhr-m7pf-h2c2.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-fwhr-m7pf-h2c2",
- "modified": "2024-11-20T21:30:49Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-20T21:30:49Z",
"aliases": [
"CVE-2024-52754"
],
"details": "D-LINK DI-8003 v16.07.16A1 was discovered to contain a buffer overflow via the fn parameter in the tgfile_htm function.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -29,9 +32,10 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-120",
+ "CWE-787"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-20T20:15:19Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-fwr5-w9hq-mx49/GHSA-fwr5-w9hq-mx49.json b/advisories/unreviewed/2024/11/GHSA-fwr5-w9hq-mx49/GHSA-fwr5-w9hq-mx49.json
new file mode 100644
index 00000000000..05354641e44
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-fwr5-w9hq-mx49/GHSA-fwr5-w9hq-mx49.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-fwr5-w9hq-mx49",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5581"
+ ],
+ "details": "Allegra unzipFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Authentication is required to exploit this vulnerability.\n\nThe specific flaw exists within the unzipFile method. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of LOCAL SERVICE. Was ZDI-CAN-23453.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5581"
+ },
+ {
+ "type": "WEB",
+ "url": "https://alltena.com/en/resources/release-notes/relnotes-7-5-2"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1164"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-22"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:09Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-fx7r-mff6-mv74/GHSA-fx7r-mff6-mv74.json b/advisories/unreviewed/2024/11/GHSA-fx7r-mff6-mv74/GHSA-fx7r-mff6-mv74.json
index e2f4fbca69d..67d5ea3022c 100644
--- a/advisories/unreviewed/2024/11/GHSA-fx7r-mff6-mv74/GHSA-fx7r-mff6-mv74.json
+++ b/advisories/unreviewed/2024/11/GHSA-fx7r-mff6-mv74/GHSA-fx7r-mff6-mv74.json
@@ -44,7 +44,8 @@
],
"database_specific": {
"cwe_ids": [
- "CWE-74"
+ "CWE-74",
+ "CWE-79"
],
"severity": "MODERATE",
"github_reviewed": false,
diff --git a/advisories/unreviewed/2024/11/GHSA-g2g3-fgp6-c9vm/GHSA-g2g3-fgp6-c9vm.json b/advisories/unreviewed/2024/11/GHSA-g2g3-fgp6-c9vm/GHSA-g2g3-fgp6-c9vm.json
new file mode 100644
index 00000000000..578aced4701
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-g2g3-fgp6-c9vm/GHSA-g2g3-fgp6-c9vm.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-g2g3-fgp6-c9vm",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8847"
+ ],
+ "details": "PDF-XChange Editor Doc Object Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the handling of Doc objects. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-25198.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8847"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1270"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:23Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-g3xp-3pvm-prv6/GHSA-g3xp-3pvm-prv6.json b/advisories/unreviewed/2024/11/GHSA-g3xp-3pvm-prv6/GHSA-g3xp-3pvm-prv6.json
new file mode 100644
index 00000000000..38e6fd612f1
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-g3xp-3pvm-prv6/GHSA-g3xp-3pvm-prv6.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-g3xp-3pvm-prv6",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9729"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24144.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9729"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1380"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:26Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-g42v-m6jh-g8qw/GHSA-g42v-m6jh-g8qw.json b/advisories/unreviewed/2024/11/GHSA-g42v-m6jh-g8qw/GHSA-g42v-m6jh-g8qw.json
index 98d18d302db..4b9e2f6a2b4 100644
--- a/advisories/unreviewed/2024/11/GHSA-g42v-m6jh-g8qw/GHSA-g42v-m6jh-g8qw.json
+++ b/advisories/unreviewed/2024/11/GHSA-g42v-m6jh-g8qw/GHSA-g42v-m6jh-g8qw.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-g42v-m6jh-g8qw",
- "modified": "2024-11-19T21:31:33Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-19T21:31:33Z",
"aliases": [
"CVE-2018-9370"
],
"details": "In download.c there is a special mode allowing user to download data into memory and causing possible memory corruptions due to missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -25,9 +28,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-787"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T20:15:27Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-g45h-w7fr-cc7m/GHSA-g45h-w7fr-cc7m.json b/advisories/unreviewed/2024/11/GHSA-g45h-w7fr-cc7m/GHSA-g45h-w7fr-cc7m.json
new file mode 100644
index 00000000000..410383b6f61
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-g45h-w7fr-cc7m/GHSA-g45h-w7fr-cc7m.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-g45h-w7fr-cc7m",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-50965"
+ ],
+ "details": "Cross Site Scripting vulnerability in Public Knowledge Project PKP Platform OJS/OMP/OPS- before v.3.3.0.16 allows an attacker to execute arbitrary code and escalate privileges via a crafted script",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50965"
+ },
+ {
+ "type": "WEB",
+ "url": "https://openjournaltheme.com/urgent-critical-vulnerabilities-in-3-3-0-18-upgrade-your-ojs-now"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-79"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:33Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-g4gj-g2hj-949c/GHSA-g4gj-g2hj-949c.json b/advisories/unreviewed/2024/11/GHSA-g4gj-g2hj-949c/GHSA-g4gj-g2hj-949c.json
new file mode 100644
index 00000000000..d58bf1a5c89
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-g4gj-g2hj-949c/GHSA-g4gj-g2hj-949c.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-g4gj-g2hj-949c",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9755"
+ ],
+ "details": "Tungsten Automation Power PDF JP2 File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JP2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24472.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9755"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1368"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:29Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-g4w7-vcv3-f74v/GHSA-g4w7-vcv3-f74v.json b/advisories/unreviewed/2024/11/GHSA-g4w7-vcv3-f74v/GHSA-g4w7-vcv3-f74v.json
new file mode 100644
index 00000000000..5d8b67b2d1a
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-g4w7-vcv3-f74v/GHSA-g4w7-vcv3-f74v.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-g4w7-vcv3-f74v",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9742"
+ ],
+ "details": "Tungsten Automation Power PDF PSD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PSD files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24458.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9742"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1342"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-122"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:27Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-g5r2-397h-6gjq/GHSA-g5r2-397h-6gjq.json b/advisories/unreviewed/2024/11/GHSA-g5r2-397h-6gjq/GHSA-g5r2-397h-6gjq.json
new file mode 100644
index 00000000000..33061555ea8
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-g5r2-397h-6gjq/GHSA-g5r2-397h-6gjq.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-g5r2-397h-6gjq",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11525"
+ ],
+ "details": "IrfanView DXF File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24599.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11525"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1591"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-g63v-c4x5-2g6v/GHSA-g63v-c4x5-2g6v.json b/advisories/unreviewed/2024/11/GHSA-g63v-c4x5-2g6v/GHSA-g63v-c4x5-2g6v.json
index 166ca61e72e..d4551642c92 100644
--- a/advisories/unreviewed/2024/11/GHSA-g63v-c4x5-2g6v/GHSA-g63v-c4x5-2g6v.json
+++ b/advisories/unreviewed/2024/11/GHSA-g63v-c4x5-2g6v/GHSA-g63v-c4x5-2g6v.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-g63v-c4x5-2g6v",
- "modified": "2024-11-19T18:31:06Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-19T18:31:06Z",
"aliases": [
"CVE-2024-53055"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: iwlwifi: mvm: fix 6 GHz scan construction\n\nIf more than 255 colocated APs exist for the set of all\nAPs found during 2.4/5 GHz scanning, then the 6 GHz scan\nconstruction will loop forever since the loop variable\nhas type u8, which can never reach the number found when\nthat's bigger than 255, and is stored in a u32 variable.\nAlso move it into the loops to have a smaller scope.\n\nUsing a u32 there is fine, we limit the number of APs in\nthe scan list and each has a limit on the number of RNR\nentries due to the frame size. With a limit of 1000 scan\nresults, a frame size upper bound of 4096 (really it's\nmore like ~2300) and a TBTT entry size of at least 11,\nwe get an upper bound for the number of ~372k, well in\nthe bounds of a u32.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -41,9 +44,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-835"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T18:15:25Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-g68p-gp4q-9xq2/GHSA-g68p-gp4q-9xq2.json b/advisories/unreviewed/2024/11/GHSA-g68p-gp4q-9xq2/GHSA-g68p-gp4q-9xq2.json
new file mode 100644
index 00000000000..ab7c7cf79b8
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-g68p-gp4q-9xq2/GHSA-g68p-gp4q-9xq2.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-g68p-gp4q-9xq2",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-9714"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24097.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9714"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1483"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:24Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-g6hx-mx2f-fvx9/GHSA-g6hx-mx2f-fvx9.json b/advisories/unreviewed/2024/11/GHSA-g6hx-mx2f-fvx9/GHSA-g6hx-mx2f-fvx9.json
new file mode 100644
index 00000000000..4ab9ea8559a
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-g6hx-mx2f-fvx9/GHSA-g6hx-mx2f-fvx9.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-g6hx-mx2f-fvx9",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2023-24467"
+ ],
+ "details": "Possible Command Injection\n\n\n in iManager GET parameter has been discovered in\nOpenText™ iManager 3.2.6.0000.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-24467"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.netiq.com/documentation/imanager-32/pdfdoc/imanager326_patch3_releasenotes/imanager326_patch3_releasenotes.pdf"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-77"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:19Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-g6jr-mgvv-g57x/GHSA-g6jr-mgvv-g57x.json b/advisories/unreviewed/2024/11/GHSA-g6jr-mgvv-g57x/GHSA-g6jr-mgvv-g57x.json
index 1d9c8df5b0a..3fe0b2d2be2 100644
--- a/advisories/unreviewed/2024/11/GHSA-g6jr-mgvv-g57x/GHSA-g6jr-mgvv-g57x.json
+++ b/advisories/unreviewed/2024/11/GHSA-g6jr-mgvv-g57x/GHSA-g6jr-mgvv-g57x.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-g6jr-mgvv-g57x",
- "modified": "2024-11-13T00:30:48Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-13T00:30:48Z",
"aliases": [
"CVE-2024-28731"
],
"details": "Cross Site Request Forgery vulnerability in DLink DWR 2000M 5G CPE With Wifi 6 Ax1800 and Dlink DWR 5G CPE DWR-2000M_1.34ME allows a local attacker to obtain sensitive information via the Port forwarding option.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N"
+ }
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-352"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-12T23:15:04Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-g6m8-94m7-hxgm/GHSA-g6m8-94m7-hxgm.json b/advisories/unreviewed/2024/11/GHSA-g6m8-94m7-hxgm/GHSA-g6m8-94m7-hxgm.json
new file mode 100644
index 00000000000..d00ec90dabb
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-g6m8-94m7-hxgm/GHSA-g6m8-94m7-hxgm.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-g6m8-94m7-hxgm",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11523"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24597.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11523"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1592"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-g8g4-68c7-93h5/GHSA-g8g4-68c7-93h5.json b/advisories/unreviewed/2024/11/GHSA-g8g4-68c7-93h5/GHSA-g8g4-68c7-93h5.json
new file mode 100644
index 00000000000..3d44254558a
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-g8g4-68c7-93h5/GHSA-g8g4-68c7-93h5.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-g8g4-68c7-93h5",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11558"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24808.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11558"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1560"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:14Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-g8p3-q878-476h/GHSA-g8p3-q878-476h.json b/advisories/unreviewed/2024/11/GHSA-g8p3-q878-476h/GHSA-g8p3-q878-476h.json
new file mode 100644
index 00000000000..9e3f7b3e02f
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-g8p3-q878-476h/GHSA-g8p3-q878-476h.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-g8p3-q878-476h",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2023-51639"
+ ],
+ "details": "Allegra downloadExportedChart Directory Traversal Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Allegra. Authentication is not required to exploit this vulnerability. \n\nThe specific flaw exists within the downloadExportedChart action. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-22361.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51639"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.trackplus.com/en/service/release-notes-reader/7-5-1-release-notes-2.html"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-110"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-22"
+ ],
+ "severity": "CRITICAL",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:06Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-g8wq-w697-wh26/GHSA-g8wq-w697-wh26.json b/advisories/unreviewed/2024/11/GHSA-g8wq-w697-wh26/GHSA-g8wq-w697-wh26.json
index 967c935b112..e71e621597a 100644
--- a/advisories/unreviewed/2024/11/GHSA-g8wq-w697-wh26/GHSA-g8wq-w697-wh26.json
+++ b/advisories/unreviewed/2024/11/GHSA-g8wq-w697-wh26/GHSA-g8wq-w697-wh26.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-g8wq-w697-wh26",
- "modified": "2024-11-08T18:30:49Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-07T12:30:35Z",
"aliases": [
"CVE-2024-50151"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nsmb: client: fix OOBs when building SMB2_IOCTL request\n\nWhen using encryption, either enforced by the server or when using\n'seal' mount option, the client will squash all compound request buffers\ndown for encryption into a single iov in smb2_set_next_command().\n\nSMB2_ioctl_init() allocates a small buffer (448 bytes) to hold the\nSMB2_IOCTL request in the first iov, and if the user passes an input\nbuffer that is greater than 328 bytes, smb2_set_next_command() will\nend up writing off the end of @rqst->iov[0].iov_base as shown below:\n\n mount.cifs //srv/share /mnt -o ...,seal\n ln -s $(perl -e \"print('a')for 1..1024\") /mnt/link\n\n BUG: KASAN: slab-out-of-bounds in\n smb2_set_next_command.cold+0x1d6/0x24c [cifs]\n Write of size 4116 at addr ffff8881148fcab8 by task ln/859\n\n CPU: 1 UID: 0 PID: 859 Comm: ln Not tainted 6.12.0-rc3 #1\n Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS\n 1.16.3-2.fc40 04/01/2014\n Call Trace:\n \n dump_stack_lvl+0x5d/0x80\n ? smb2_set_next_command.cold+0x1d6/0x24c [cifs]\n print_report+0x156/0x4d9\n ? smb2_set_next_command.cold+0x1d6/0x24c [cifs]\n ? __virt_addr_valid+0x145/0x310\n ? __phys_addr+0x46/0x90\n ? smb2_set_next_command.cold+0x1d6/0x24c [cifs]\n kasan_report+0xda/0x110\n ? smb2_set_next_command.cold+0x1d6/0x24c [cifs]\n kasan_check_range+0x10f/0x1f0\n __asan_memcpy+0x3c/0x60\n smb2_set_next_command.cold+0x1d6/0x24c [cifs]\n smb2_compound_op+0x238c/0x3840 [cifs]\n ? kasan_save_track+0x14/0x30\n ? kasan_save_free_info+0x3b/0x70\n ? vfs_symlink+0x1a1/0x2c0\n ? do_symlinkat+0x108/0x1c0\n ? __pfx_smb2_compound_op+0x10/0x10 [cifs]\n ? kmem_cache_free+0x118/0x3e0\n ? cifs_get_writable_path+0xeb/0x1a0 [cifs]\n smb2_get_reparse_inode+0x423/0x540 [cifs]\n ? __pfx_smb2_get_reparse_inode+0x10/0x10 [cifs]\n ? rcu_is_watching+0x20/0x50\n ? __kmalloc_noprof+0x37c/0x480\n ? smb2_create_reparse_symlink+0x257/0x490 [cifs]\n ? smb2_create_reparse_symlink+0x38f/0x490 [cifs]\n smb2_create_reparse_symlink+0x38f/0x490 [cifs]\n ? __pfx_smb2_create_reparse_symlink+0x10/0x10 [cifs]\n ? find_held_lock+0x8a/0xa0\n ? hlock_class+0x32/0xb0\n ? __build_path_from_dentry_optional_prefix+0x19d/0x2e0 [cifs]\n cifs_symlink+0x24f/0x960 [cifs]\n ? __pfx_make_vfsuid+0x10/0x10\n ? __pfx_cifs_symlink+0x10/0x10 [cifs]\n ? make_vfsgid+0x6b/0xc0\n ? generic_permission+0x96/0x2d0\n vfs_symlink+0x1a1/0x2c0\n do_symlinkat+0x108/0x1c0\n ? __pfx_do_symlinkat+0x10/0x10\n ? strncpy_from_user+0xaa/0x160\n __x64_sys_symlinkat+0xb9/0xf0\n do_syscall_64+0xbb/0x1d0\n entry_SYSCALL_64_after_hwframe+0x77/0x7f\n RIP: 0033:0x7f08d75c13bb",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -49,9 +52,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-787"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-07T10:15:06Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-g9jc-92w4-hqr8/GHSA-g9jc-92w4-hqr8.json b/advisories/unreviewed/2024/11/GHSA-g9jc-92w4-hqr8/GHSA-g9jc-92w4-hqr8.json
new file mode 100644
index 00000000000..df7d7b6f4c0
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-g9jc-92w4-hqr8/GHSA-g9jc-92w4-hqr8.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-g9jc-92w4-hqr8",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11539"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24699.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11539"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1553"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:12Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-gcg5-h35m-25rv/GHSA-gcg5-h35m-25rv.json b/advisories/unreviewed/2024/11/GHSA-gcg5-h35m-25rv/GHSA-gcg5-h35m-25rv.json
index f17583af2d4..1397774de2c 100644
--- a/advisories/unreviewed/2024/11/GHSA-gcg5-h35m-25rv/GHSA-gcg5-h35m-25rv.json
+++ b/advisories/unreviewed/2024/11/GHSA-gcg5-h35m-25rv/GHSA-gcg5-h35m-25rv.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-gcg5-h35m-25rv",
- "modified": "2024-11-13T00:30:48Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-12T21:30:54Z",
"aliases": [
"CVE-2024-10218"
@@ -32,7 +32,7 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-611"
],
"severity": "CRITICAL",
"github_reviewed": false,
diff --git a/advisories/unreviewed/2024/11/GHSA-gff2-cxg7-4qwr/GHSA-gff2-cxg7-4qwr.json b/advisories/unreviewed/2024/11/GHSA-gff2-cxg7-4qwr/GHSA-gff2-cxg7-4qwr.json
new file mode 100644
index 00000000000..22f7ba3dcfe
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-gff2-cxg7-4qwr/GHSA-gff2-cxg7-4qwr.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-gff2-cxg7-4qwr",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-37046"
+ ],
+ "details": "A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to read the contents of unexpected files and expose sensitive data.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.1.2930 build 20241025 and later\nQuTS hero h5.2.1.2929 build 20241025 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37046"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-43"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-22"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:23Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-ghmx-jqp7-vfvf/GHSA-ghmx-jqp7-vfvf.json b/advisories/unreviewed/2024/11/GHSA-ghmx-jqp7-vfvf/GHSA-ghmx-jqp7-vfvf.json
new file mode 100644
index 00000000000..5796939e0a1
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-ghmx-jqp7-vfvf/GHSA-ghmx-jqp7-vfvf.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-ghmx-jqp7-vfvf",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-50396"
+ ],
+ "details": "A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers to obtain secret data or modify memory.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.1.2930 build 20241025 and later\nQuTS hero h5.2.1.2929 build 20241025 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50396"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-43"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-134"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:32Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-gj7q-xpqm-f7q7/GHSA-gj7q-xpqm-f7q7.json b/advisories/unreviewed/2024/11/GHSA-gj7q-xpqm-f7q7/GHSA-gj7q-xpqm-f7q7.json
new file mode 100644
index 00000000000..8798855cdc4
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-gj7q-xpqm-f7q7/GHSA-gj7q-xpqm-f7q7.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-gj7q-xpqm-f7q7",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11533"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24616.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11533"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1586"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:11Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-gjjm-7g3m-h4m5/GHSA-gjjm-7g3m-h4m5.json b/advisories/unreviewed/2024/11/GHSA-gjjm-7g3m-h4m5/GHSA-gjjm-7g3m-h4m5.json
new file mode 100644
index 00000000000..f9c4038979e
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-gjjm-7g3m-h4m5/GHSA-gjjm-7g3m-h4m5.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-gjjm-7g3m-h4m5",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5717"
+ ],
+ "details": "Logsign Unified SecOps Platform Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Logsign Unified SecOps Platform. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed.\n\nThe specific flaw exists within the implementation of the HTTP API. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24165.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5717"
+ },
+ {
+ "type": "WEB",
+ "url": "https://support.logsign.net/hc/en-us/articles/19316621924754-03-06-2024-Version-6-4-8-Release-Notes"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-617"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-78"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-gprg-cxw4-4w2h/GHSA-gprg-cxw4-4w2h.json b/advisories/unreviewed/2024/11/GHSA-gprg-cxw4-4w2h/GHSA-gprg-cxw4-4w2h.json
new file mode 100644
index 00000000000..bae43f96b75
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-gprg-cxw4-4w2h/GHSA-gprg-cxw4-4w2h.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-gprg-cxw4-4w2h",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9734"
+ ],
+ "details": "Tungsten Automation Power PDF PDF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24400.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9734"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1353"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-122"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:26Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-gqgx-q9c6-m42r/GHSA-gqgx-q9c6-m42r.json b/advisories/unreviewed/2024/11/GHSA-gqgx-q9c6-m42r/GHSA-gqgx-q9c6-m42r.json
new file mode 100644
index 00000000000..be0cbab275c
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-gqgx-q9c6-m42r/GHSA-gqgx-q9c6-m42r.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-gqgx-q9c6-m42r",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-6249"
+ ],
+ "details": "Wyze Cam v3 TCP Traffic Handling Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Wyze Cam v3 IP cameras. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within the TUTK P2P library. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-22419.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6249"
+ },
+ {
+ "type": "WEB",
+ "url": "https://forums.wyze.com/t/security-advisory/289256"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-840"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-121"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:11Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-gr5h-hwxc-vxp7/GHSA-gr5h-hwxc-vxp7.json b/advisories/unreviewed/2024/11/GHSA-gr5h-hwxc-vxp7/GHSA-gr5h-hwxc-vxp7.json
new file mode 100644
index 00000000000..dd3739bc187
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-gr5h-hwxc-vxp7/GHSA-gr5h-hwxc-vxp7.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-gr5h-hwxc-vxp7",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11563"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24860.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11563"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1576"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:15Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-gr5x-8j97-qq23/GHSA-gr5x-8j97-qq23.json b/advisories/unreviewed/2024/11/GHSA-gr5x-8j97-qq23/GHSA-gr5x-8j97-qq23.json
new file mode 100644
index 00000000000..f6f97e0ecc0
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-gr5x-8j97-qq23/GHSA-gr5x-8j97-qq23.json
@@ -0,0 +1,35 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-gr5x-8j97-qq23",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-53438"
+ ],
+ "details": "EventAttendance.php in ChurchCRM 5.7.0 is vulnerable to SQL injection. An attacker can exploit this vulnerability by manipulating the 'Event' parameter, which is directly interpolated into the SQL query without proper sanitization or validation, allowing attackers to execute arbitrary SQL commands.",
+ "severity": [
+
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-53438"
+ },
+ {
+ "type": "WEB",
+ "url": "https://github.com/ChurchCRM/CRM/issues/6988"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+
+ ],
+ "severity": null,
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T17:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-gvrc-62gf-cx56/GHSA-gvrc-62gf-cx56.json b/advisories/unreviewed/2024/11/GHSA-gvrc-62gf-cx56/GHSA-gvrc-62gf-cx56.json
index 14b38b8553d..7a0d75af13b 100644
--- a/advisories/unreviewed/2024/11/GHSA-gvrc-62gf-cx56/GHSA-gvrc-62gf-cx56.json
+++ b/advisories/unreviewed/2024/11/GHSA-gvrc-62gf-cx56/GHSA-gvrc-62gf-cx56.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-gvrc-62gf-cx56",
- "modified": "2024-11-07T12:30:34Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-07T12:30:34Z",
"aliases": [
"CVE-2024-50140"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nsched/core: Disable page allocation in task_tick_mm_cid()\n\nWith KASAN and PREEMPT_RT enabled, calling task_work_add() in\ntask_tick_mm_cid() may cause the following splat.\n\n[ 63.696416] BUG: sleeping function called from invalid context at kernel/locking/spinlock_rt.c:48\n[ 63.696416] in_atomic(): 1, irqs_disabled(): 1, non_block: 0, pid: 610, name: modprobe\n[ 63.696416] preempt_count: 10001, expected: 0\n[ 63.696416] RCU nest depth: 1, expected: 1\n\nThis problem is caused by the following call trace.\n\n sched_tick() [ acquire rq->__lock ]\n -> task_tick_mm_cid()\n -> task_work_add()\n -> __kasan_record_aux_stack()\n -> kasan_save_stack()\n -> stack_depot_save_flags()\n -> alloc_pages_mpol_noprof()\n -> __alloc_pages_noprof()\n\t -> get_page_from_freelist()\n\t -> rmqueue()\n\t -> rmqueue_pcplist()\n\t -> __rmqueue_pcplist()\n\t -> rmqueue_bulk()\n\t -> rt_spin_lock()\n\nThe rq lock is a raw_spinlock_t. We can't sleep while holding\nit. IOW, we can't call alloc_pages() in stack_depot_save_flags().\n\nThe task_tick_mm_cid() function with its task_work_add() call was\nintroduced by commit 223baf9d17f2 (\"sched: Fix performance regression\nintroduced by mm_cid\") in v6.4 kernel.\n\nFortunately, there is a kasan_record_aux_stack_noalloc() variant that\ncalls stack_depot_save_flags() while not allowing it to allocate\nnew pages. To allow task_tick_mm_cid() to use task_work without\npage allocation, a new TWAF_NO_ALLOC flag is added to enable calling\nkasan_record_aux_stack_noalloc() instead of kasan_record_aux_stack()\nif set. The task_tick_mm_cid() function is modified to add this new flag.\n\nThe possible downside is the missing stack trace in a KASAN report due\nto new page allocation required when task_work_add_noallloc() is called\nwhich should be rare.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -35,7 +38,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-07T10:15:05Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-gx46-282x-mvj7/GHSA-gx46-282x-mvj7.json b/advisories/unreviewed/2024/11/GHSA-gx46-282x-mvj7/GHSA-gx46-282x-mvj7.json
new file mode 100644
index 00000000000..64729cac220
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-gx46-282x-mvj7/GHSA-gx46-282x-mvj7.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-gx46-282x-mvj7",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-8808"
+ ],
+ "details": "Cohesive Networks VNS3 Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Cohesive Networks VNS3. Authentication is required to exploit this vulnerability.\n\nThe specific flaw exists within the web service, which listens on TCP port 8000 by default. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24177.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8808"
+ },
+ {
+ "type": "WEB",
+ "url": "https://cohesive.net/support/security-responses"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1232"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-78"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:18Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-gxjx-m637-94qv/GHSA-gxjx-m637-94qv.json b/advisories/unreviewed/2024/11/GHSA-gxjx-m637-94qv/GHSA-gxjx-m637-94qv.json
new file mode 100644
index 00000000000..6b0e1de037d
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-gxjx-m637-94qv/GHSA-gxjx-m637-94qv.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-gxjx-m637-94qv",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11571"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24895.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11571"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1566"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:16Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-h38j-rxrv-q3q6/GHSA-h38j-rxrv-q3q6.json b/advisories/unreviewed/2024/11/GHSA-h38j-rxrv-q3q6/GHSA-h38j-rxrv-q3q6.json
index ca2fe03fa62..757ee380577 100644
--- a/advisories/unreviewed/2024/11/GHSA-h38j-rxrv-q3q6/GHSA-h38j-rxrv-q3q6.json
+++ b/advisories/unreviewed/2024/11/GHSA-h38j-rxrv-q3q6/GHSA-h38j-rxrv-q3q6.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-h38j-rxrv-q3q6",
- "modified": "2024-11-07T12:30:35Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-07T12:30:35Z",
"aliases": [
"CVE-2024-50164"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Fix overloading of MEM_UNINIT's meaning\n\nLonial reported an issue in the BPF verifier where check_mem_size_reg()\nhas the following code:\n\n if (!tnum_is_const(reg->var_off))\n /* For unprivileged variable accesses, disable raw\n * mode so that the program is required to\n * initialize all the memory that the helper could\n * just partially fill up.\n */\n meta = NULL;\n\nThis means that writes are not checked when the register containing the\nsize of the passed buffer has not a fixed size. Through this bug, a BPF\nprogram can write to a map which is marked as read-only, for example,\n.rodata global maps.\n\nThe problem is that MEM_UNINIT's initial meaning that \"the passed buffer\nto the BPF helper does not need to be initialized\" which was added back\nin commit 435faee1aae9 (\"bpf, verifier: add ARG_PTR_TO_RAW_STACK type\")\ngot overloaded over time with \"the passed buffer is being written to\".\n\nThe problem however is that checks such as the above which were added later\nvia 06c1c049721a (\"bpf: allow helpers access to variable memory\") set meta\nto NULL in order force the user to always initialize the passed buffer to\nthe helper. Due to the current double meaning of MEM_UNINIT, this bypasses\nverifier write checks to the memory (not boundary checks though) and only\nassumes the latter memory is read instead.\n\nFix this by reverting MEM_UNINIT back to its original meaning, and having\nMEM_WRITE as an annotation to BPF helpers in order to then trigger the\nBPF verifier checks for writing to memory.\n\nSome notes: check_arg_pair_ok() ensures that for ARG_CONST_SIZE{,_OR_ZERO}\nwe can access fn->arg_type[arg - 1] since it must contain a preceding\nARG_PTR_TO_MEM. For check_mem_reg() the meta argument can be removed\naltogether since we do check both BPF_READ and BPF_WRITE. Same for the\nequivalent check_kfunc_mem_size_reg().",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H"
+ }
],
"affected": [
@@ -35,7 +38,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-07T10:15:07Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-h3fv-6wg7-93g2/GHSA-h3fv-6wg7-93g2.json b/advisories/unreviewed/2024/11/GHSA-h3fv-6wg7-93g2/GHSA-h3fv-6wg7-93g2.json
index 9d5dc40fee5..67a9002cff3 100644
--- a/advisories/unreviewed/2024/11/GHSA-h3fv-6wg7-93g2/GHSA-h3fv-6wg7-93g2.json
+++ b/advisories/unreviewed/2024/11/GHSA-h3fv-6wg7-93g2/GHSA-h3fv-6wg7-93g2.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-h3fv-6wg7-93g2",
- "modified": "2024-11-08T18:30:49Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-07T12:30:34Z",
"aliases": [
"CVE-2024-50141"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nACPI: PRM: Find EFI_MEMORY_RUNTIME block for PRM handler and context\n\nPRMT needs to find the correct type of block to translate the PA-VA\nmapping for EFI runtime services.\n\nThe issue arises because the PRMT is finding a block of type\nEFI_CONVENTIONAL_MEMORY, which is not appropriate for runtime services\nas described in Section 2.2.2 (Runtime Services) of the UEFI\nSpecification [1]. Since the PRM handler is a type of runtime service,\nthis causes an exception when the PRM handler is called.\n\n [Firmware Bug]: Unable to handle paging request in EFI runtime service\n WARNING: CPU: 22 PID: 4330 at drivers/firmware/efi/runtime-wrappers.c:341\n __efi_queue_work+0x11c/0x170\n Call trace:\n\nLet PRMT find a block with EFI_MEMORY_RUNTIME for PRM handler and PRM\ncontext.\n\nIf no suitable block is found, a warning message will be printed, but\nthe procedure continues to manage the next PRM handler.\n\nHowever, if the PRM handler is actually called without proper allocation,\nit would result in a failure during error handling.\n\nBy using the correct memory types for runtime services, ensure that the\nPRM handler and the context are properly mapped in the virtual address\nspace during runtime, preventing the paging request error.\n\nThe issue is really that only memory that has been remapped for runtime\nby the firmware can be used by the PRM handler, and so the region needs\nto have the EFI_MEMORY_RUNTIME attribute.\n\n[ rjw: Subject and changelog edits ]",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -43,7 +46,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-07T10:15:06Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-h522-6pjm-fx3x/GHSA-h522-6pjm-fx3x.json b/advisories/unreviewed/2024/11/GHSA-h522-6pjm-fx3x/GHSA-h522-6pjm-fx3x.json
new file mode 100644
index 00000000000..f7ed15ffc40
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-h522-6pjm-fx3x/GHSA-h522-6pjm-fx3x.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-h522-6pjm-fx3x",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-8806"
+ ],
+ "details": "Cohesive Networks VNS3 Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Cohesive Networks VNS3. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within the web service, which listens on TCP port 8000 by default. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24160.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8806"
+ },
+ {
+ "type": "WEB",
+ "url": "https://cohesive.net/support/security-responses"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1230"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-78"
+ ],
+ "severity": "CRITICAL",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:18Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-h857-x2wq-x5g7/GHSA-h857-x2wq-x5g7.json b/advisories/unreviewed/2024/11/GHSA-h857-x2wq-x5g7/GHSA-h857-x2wq-x5g7.json
new file mode 100644
index 00000000000..6a8b19f3481
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-h857-x2wq-x5g7/GHSA-h857-x2wq-x5g7.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-h857-x2wq-x5g7",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11520"
+ ],
+ "details": "IrfanView ARW File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of ARW files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24488.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11520"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1580"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-hf9m-wphx-73hw/GHSA-hf9m-wphx-73hw.json b/advisories/unreviewed/2024/11/GHSA-hf9m-wphx-73hw/GHSA-hf9m-wphx-73hw.json
new file mode 100644
index 00000000000..677a03ef4d8
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-hf9m-wphx-73hw/GHSA-hf9m-wphx-73hw.json
@@ -0,0 +1,39 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-hf9m-wphx-73hw",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-50657"
+ ],
+ "details": "An issue in Owncloud android apk v.4.3.1 allows a physically proximate attacker to escalate privileges via the PassCodeViewModel class, specifically in the checkPassCodeIsValid method",
+ "severity": [
+
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50657"
+ },
+ {
+ "type": "WEB",
+ "url": "https://drive.google.com/drive/folders/1C-ZYjYhmKRGvWs9YN51XOiAS2WxxwdQd?usp=sharing"
+ },
+ {
+ "type": "WEB",
+ "url": "https://github.com/SAHALLL/CVE-2024-50657"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+
+ ],
+ "severity": null,
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T18:15:17Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-hhc8-mf5j-83qr/GHSA-hhc8-mf5j-83qr.json b/advisories/unreviewed/2024/11/GHSA-hhc8-mf5j-83qr/GHSA-hhc8-mf5j-83qr.json
new file mode 100644
index 00000000000..fd4c70d87d6
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-hhc8-mf5j-83qr/GHSA-hhc8-mf5j-83qr.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-hhc8-mf5j-83qr",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9725"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24109.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9725"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1478"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:25Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-hhf5-9hjm-5crr/GHSA-hhf5-9hjm-5crr.json b/advisories/unreviewed/2024/11/GHSA-hhf5-9hjm-5crr/GHSA-hhf5-9hjm-5crr.json
new file mode 100644
index 00000000000..3c901af3fed
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-hhf5-9hjm-5crr/GHSA-hhf5-9hjm-5crr.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-hhf5-9hjm-5crr",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5510"
+ ],
+ "details": "Kofax Power PDF JP2 File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JP2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-22019.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5510"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-553"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:09Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-hjj3-76x6-4w3x/GHSA-hjj3-76x6-4w3x.json b/advisories/unreviewed/2024/11/GHSA-hjj3-76x6-4w3x/GHSA-hjj3-76x6-4w3x.json
new file mode 100644
index 00000000000..e67e414986d
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-hjj3-76x6-4w3x/GHSA-hjj3-76x6-4w3x.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-hjj3-76x6-4w3x",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2024-37043"
+ ],
+ "details": "A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to read the contents of unexpected files and expose sensitive data.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.1.2930 build 20241025 and later\nQuTS hero h5.2.1.2929 build 20241025 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37043"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-43"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-22"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:23Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-hx7h-2wvr-3q4j/GHSA-hx7h-2wvr-3q4j.json b/advisories/unreviewed/2024/11/GHSA-hx7h-2wvr-3q4j/GHSA-hx7h-2wvr-3q4j.json
index e3219ac895b..a4965e13d10 100644
--- a/advisories/unreviewed/2024/11/GHSA-hx7h-2wvr-3q4j/GHSA-hx7h-2wvr-3q4j.json
+++ b/advisories/unreviewed/2024/11/GHSA-hx7h-2wvr-3q4j/GHSA-hx7h-2wvr-3q4j.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-hx7h-2wvr-3q4j",
- "modified": "2024-11-20T00:32:14Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-20T00:32:14Z",
"aliases": [
"CVE-2018-9456"
],
"details": "In sdpu_extract_attr_seq of sdp_utils.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -25,9 +28,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-125"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T23:15:04Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-hxgh-cc73-q76h/GHSA-hxgh-cc73-q76h.json b/advisories/unreviewed/2024/11/GHSA-hxgh-cc73-q76h/GHSA-hxgh-cc73-q76h.json
new file mode 100644
index 00000000000..1248a525e7d
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-hxgh-cc73-q76h/GHSA-hxgh-cc73-q76h.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-hxgh-cc73-q76h",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2023-52332"
+ ],
+ "details": "Allegra serveMathJaxLibraries Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Allegra. Authentication is not required to exploit this vulnerability. \n\nThe specific flaw exists within the serveMathJaxLibraries method. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to disclose stored credentials, leading to further compromise. Was ZDI-CAN-22532.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-52332"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.trackplus.com/en/service/release-notes-reader/7-5-1-release-notes-2.html"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-100"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-22"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:07Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-hxjh-9jh3-wxpm/GHSA-hxjh-9jh3-wxpm.json b/advisories/unreviewed/2024/11/GHSA-hxjh-9jh3-wxpm/GHSA-hxjh-9jh3-wxpm.json
new file mode 100644
index 00000000000..0a29fcc4f38
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-hxjh-9jh3-wxpm/GHSA-hxjh-9jh3-wxpm.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-hxjh-9jh3-wxpm",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9735"
+ ],
+ "details": "Tungsten Automation Power PDF JPF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JPF files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24451.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9735"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1365"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:27Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-j27h-7c89-c3c6/GHSA-j27h-7c89-c3c6.json b/advisories/unreviewed/2024/11/GHSA-j27h-7c89-c3c6/GHSA-j27h-7c89-c3c6.json
index 50f776ee20e..69db10106c3 100644
--- a/advisories/unreviewed/2024/11/GHSA-j27h-7c89-c3c6/GHSA-j27h-7c89-c3c6.json
+++ b/advisories/unreviewed/2024/11/GHSA-j27h-7c89-c3c6/GHSA-j27h-7c89-c3c6.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-j27h-7c89-c3c6",
- "modified": "2024-11-20T21:30:50Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-20T21:30:50Z",
"aliases": [
"CVE-2024-52677"
],
"details": "HkCms <= v2.3.2.240702 is vulnerable to file upload in the getFileName method in /app/common/library/Upload.php.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-434"
],
- "severity": null,
+ "severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-20T21:15:08Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-j5jp-jf25-8www/GHSA-j5jp-jf25-8www.json b/advisories/unreviewed/2024/11/GHSA-j5jp-jf25-8www/GHSA-j5jp-jf25-8www.json
new file mode 100644
index 00000000000..86c51f3ffe1
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-j5jp-jf25-8www/GHSA-j5jp-jf25-8www.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-j5jp-jf25-8www",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11535"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24618.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11535"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1584"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:12Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-j5vh-vfg7-3v94/GHSA-j5vh-vfg7-3v94.json b/advisories/unreviewed/2024/11/GHSA-j5vh-vfg7-3v94/GHSA-j5vh-vfg7-3v94.json
index 9afe356168b..d5761fe123b 100644
--- a/advisories/unreviewed/2024/11/GHSA-j5vh-vfg7-3v94/GHSA-j5vh-vfg7-3v94.json
+++ b/advisories/unreviewed/2024/11/GHSA-j5vh-vfg7-3v94/GHSA-j5vh-vfg7-3v94.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-j5vh-vfg7-3v94",
- "modified": "2024-11-19T18:31:07Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-19T18:31:06Z",
"aliases": [
"CVE-2024-53057"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sched: stop qdisc_tree_reduce_backlog on TC_H_ROOT\n\nIn qdisc_tree_reduce_backlog, Qdiscs with major handle ffff: are assumed\nto be either root or ingress. This assumption is bogus since it's valid\nto create egress qdiscs with major handle ffff:\nBudimir Markovic found that for qdiscs like DRR that maintain an active\nclass list, it will cause a UAF with a dangling class pointer.\n\nIn 066a3b5b2346, the concern was to avoid iterating over the ingress\nqdisc since its parent is itself. The proper fix is to stop when parent\nTC_H_ROOT is reached because the only way to retrieve ingress is when a\nhierarchy which does not contain a ffff: major handle call into\nqdisc_lookup with TC_H_MAJ(TC_H_ROOT).\n\nIn the scenario where major ffff: is an egress qdisc in any of the tree\nlevels, the updates will also propagate to TC_H_ROOT, which then the\niteration must stop.\n\n\n net/sched/sch_api.c | 2 +-\n 1 file changed, 1 insertion(+), 1 deletion(-)",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -53,9 +56,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-416"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T18:15:25Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-j67w-gxcm-23r4/GHSA-j67w-gxcm-23r4.json b/advisories/unreviewed/2024/11/GHSA-j67w-gxcm-23r4/GHSA-j67w-gxcm-23r4.json
new file mode 100644
index 00000000000..25c6727e680
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-j67w-gxcm-23r4/GHSA-j67w-gxcm-23r4.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-j67w-gxcm-23r4",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-1867"
+ ],
+ "details": "G DATA Total Security Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of G DATA Total Security. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.\n\nThe specific flaw exists within the G DATA Backup Service. By creating a symbolic link, an attacker can abuse the service to delete a file. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-22312.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1867"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-559"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-59"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:08Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-j6r2-whvv-9r48/GHSA-j6r2-whvv-9r48.json b/advisories/unreviewed/2024/11/GHSA-j6r2-whvv-9r48/GHSA-j6r2-whvv-9r48.json
new file mode 100644
index 00000000000..f4e526ad2b4
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-j6r2-whvv-9r48/GHSA-j6r2-whvv-9r48.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-j6r2-whvv-9r48",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9736"
+ ],
+ "details": "Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24452.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9736"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1351"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:27Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-j75g-24ff-chhq/GHSA-j75g-24ff-chhq.json b/advisories/unreviewed/2024/11/GHSA-j75g-24ff-chhq/GHSA-j75g-24ff-chhq.json
new file mode 100644
index 00000000000..14d6a40ed20
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-j75g-24ff-chhq/GHSA-j75g-24ff-chhq.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-j75g-24ff-chhq",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9741"
+ ],
+ "details": "Tungsten Automation Power PDF PDF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24457.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9741"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1346"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-122"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:27Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-jcxw-4397-c5hh/GHSA-jcxw-4397-c5hh.json b/advisories/unreviewed/2024/11/GHSA-jcxw-4397-c5hh/GHSA-jcxw-4397-c5hh.json
new file mode 100644
index 00000000000..e27711cfceb
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-jcxw-4397-c5hh/GHSA-jcxw-4397-c5hh.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-jcxw-4397-c5hh",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8838"
+ ],
+ "details": "PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of XPS files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24409.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8838"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1261"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:22Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-jgvp-3chv-pr37/GHSA-jgvp-3chv-pr37.json b/advisories/unreviewed/2024/11/GHSA-jgvp-3chv-pr37/GHSA-jgvp-3chv-pr37.json
new file mode 100644
index 00000000000..a0e089aaed6
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-jgvp-3chv-pr37/GHSA-jgvp-3chv-pr37.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-jgvp-3chv-pr37",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-1868"
+ ],
+ "details": "G DATA Total Security Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of G DATA Total Security. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.\n\nThe specific flaw exists within the G DATA Backup Service. By creating a symbolic link, an attacker can abuse the service to overwrite a file. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-22313.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1868"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-558"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-59"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:08Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-jh77-hpq9-jwrc/GHSA-jh77-hpq9-jwrc.json b/advisories/unreviewed/2024/11/GHSA-jh77-hpq9-jwrc/GHSA-jh77-hpq9-jwrc.json
new file mode 100644
index 00000000000..2d3b5abdd93
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-jh77-hpq9-jwrc/GHSA-jh77-hpq9-jwrc.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-jh77-hpq9-jwrc",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9744"
+ ],
+ "details": "Tungsten Automation Power PDF JP2 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JP2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24460.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9744"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1364"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:28Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-jjhm-m256-fh7m/GHSA-jjhm-m256-fh7m.json b/advisories/unreviewed/2024/11/GHSA-jjhm-m256-fh7m/GHSA-jjhm-m256-fh7m.json
new file mode 100644
index 00000000000..9ae05f8d3a5
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-jjhm-m256-fh7m/GHSA-jjhm-m256-fh7m.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-jjhm-m256-fh7m",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9727"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24111.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9727"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1476"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:25Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-jpx6-hggq-p7jr/GHSA-jpx6-hggq-p7jr.json b/advisories/unreviewed/2024/11/GHSA-jpx6-hggq-p7jr/GHSA-jpx6-hggq-p7jr.json
new file mode 100644
index 00000000000..1a4f36b02c5
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-jpx6-hggq-p7jr/GHSA-jpx6-hggq-p7jr.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-jpx6-hggq-p7jr",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-52998"
+ ],
+ "details": "Substance3D - Stager versions 3.0.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-52998"
+ },
+ {
+ "type": "WEB",
+ "url": "https://helpx.adobe.com/security/products/substance3d_stager/apsb24-60.html"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T19:15:07Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-jq2h-4qp4-fqq7/GHSA-jq2h-4qp4-fqq7.json b/advisories/unreviewed/2024/11/GHSA-jq2h-4qp4-fqq7/GHSA-jq2h-4qp4-fqq7.json
new file mode 100644
index 00000000000..3361668f2fa
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-jq2h-4qp4-fqq7/GHSA-jq2h-4qp4-fqq7.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-jq2h-4qp4-fqq7",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5718"
+ ],
+ "details": "Logsign Unified SecOps Platform Missing Authentication Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Logsign Unified SecOps Platform. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within the implementation of the cluster HTTP API, which listens on TCP port 1924 by default when enabled. The issue results from the lack of authentication prior to allowing access to functionality. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24166.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5718"
+ },
+ {
+ "type": "WEB",
+ "url": "https://support.logsign.net/hc/en-us/articles/19316621924754-03-06-2024-Version-6-4-8-Release-Notes"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-618"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-306"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-jrq3-7p6q-9m8h/GHSA-jrq3-7p6q-9m8h.json b/advisories/unreviewed/2024/11/GHSA-jrq3-7p6q-9m8h/GHSA-jrq3-7p6q-9m8h.json
new file mode 100644
index 00000000000..3ea6e146f82
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-jrq3-7p6q-9m8h/GHSA-jrq3-7p6q-9m8h.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-jrq3-7p6q-9m8h",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11612"
+ ],
+ "details": "7-Zip CopyCoder Infinite Loop Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of 7-Zip. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the implementation.\n\nThe specific flaw exists within the processing of streams. The issue results from a logic error that can lead to an infinite loop. An attacker can leverage this vulnerability to create a denial-of-service condition on the system. Was ZDI-CAN-24307.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11612"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1606"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-835"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:17Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-jrwm-4975-3g9g/GHSA-jrwm-4975-3g9g.json b/advisories/unreviewed/2024/11/GHSA-jrwm-4975-3g9g/GHSA-jrwm-4975-3g9g.json
new file mode 100644
index 00000000000..e65c8d58256
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-jrwm-4975-3g9g/GHSA-jrwm-4975-3g9g.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-jrwm-4975-3g9g",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-9710"
+ ],
+ "details": "PostHog database_schema Server-Side Request Forgery Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PostHog. Authentication is required to exploit this vulnerability.\n\nThe specific flaw exists within the implementation of the database_schema method. The issue results from the lack of proper validation of a URI prior to accessing resources. An attacker can leverage this vulnerability to execute code in the context of the service account. Was ZDI-CAN-25351.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9710"
+ },
+ {
+ "type": "WEB",
+ "url": "https://github.com/PostHog/posthog/pull/25388"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1383"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-918"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:24Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-jrww-p4wq-2pxx/GHSA-jrww-p4wq-2pxx.json b/advisories/unreviewed/2024/11/GHSA-jrww-p4wq-2pxx/GHSA-jrww-p4wq-2pxx.json
new file mode 100644
index 00000000000..3c27b02af90
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-jrww-p4wq-2pxx/GHSA-jrww-p4wq-2pxx.json
@@ -0,0 +1,39 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-jrww-p4wq-2pxx",
+ "modified": "2024-11-22T21:32:13Z",
+ "published": "2024-11-22T21:32:13Z",
+ "aliases": [
+ "CVE-2024-51151"
+ ],
+ "details": "D-Link DI-8200 16.07.26A1 is vulnerable to remote command execution in the msp_info_htm function via the flag parameter and cmd parameter.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51151"
+ },
+ {
+ "type": "WEB",
+ "url": "https://github.com/faqiadegege/IoTVuln/blob/main/DI_8200_msp_info_htm_rce/detail.md"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-77",
+ "CWE-78"
+ ],
+ "severity": "CRITICAL",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-21T09:45:18Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-jvh6-7w2j-6jpx/GHSA-jvh6-7w2j-6jpx.json b/advisories/unreviewed/2024/11/GHSA-jvh6-7w2j-6jpx/GHSA-jvh6-7w2j-6jpx.json
new file mode 100644
index 00000000000..f01ec12e3ae
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-jvh6-7w2j-6jpx/GHSA-jvh6-7w2j-6jpx.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-jvh6-7w2j-6jpx",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11534"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24617.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11534"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1585"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:11Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-jx75-26p3-gg9h/GHSA-jx75-26p3-gg9h.json b/advisories/unreviewed/2024/11/GHSA-jx75-26p3-gg9h/GHSA-jx75-26p3-gg9h.json
new file mode 100644
index 00000000000..0c4aa54a882
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-jx75-26p3-gg9h/GHSA-jx75-26p3-gg9h.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-jx75-26p3-gg9h",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9739"
+ ],
+ "details": "Tungsten Automation Power PDF PDF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24455.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9739"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1349"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:27Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-m2hm-7hww-7mr3/GHSA-m2hm-7hww-7mr3.json b/advisories/unreviewed/2024/11/GHSA-m2hm-7hww-7mr3/GHSA-m2hm-7hww-7mr3.json
new file mode 100644
index 00000000000..5d9314f5e06
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-m2hm-7hww-7mr3/GHSA-m2hm-7hww-7mr3.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-m2hm-7hww-7mr3",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11509"
+ ],
+ "details": "IrfanView SVG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SVG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-22185.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11509"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1602"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-122"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:09Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-m49c-4fx3-rqr9/GHSA-m49c-4fx3-rqr9.json b/advisories/unreviewed/2024/11/GHSA-m49c-4fx3-rqr9/GHSA-m49c-4fx3-rqr9.json
new file mode 100644
index 00000000000..dd43579005a
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-m49c-4fx3-rqr9/GHSA-m49c-4fx3-rqr9.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-m49c-4fx3-rqr9",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11541"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24702.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11541"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1552"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:12Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-m5jm-j4cj-7522/GHSA-m5jm-j4cj-7522.json b/advisories/unreviewed/2024/11/GHSA-m5jm-j4cj-7522/GHSA-m5jm-j4cj-7522.json
new file mode 100644
index 00000000000..acf333237a0
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-m5jm-j4cj-7522/GHSA-m5jm-j4cj-7522.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-m5jm-j4cj-7522",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-48861"
+ ],
+ "details": "An OS command injection vulnerability has been reported to affect several product versions. If exploited, the vulnerability could allow local network attackers to execute commands.\n\nWe have already fixed the vulnerability in the following versions:\nQuRouter 2.4.4.106 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:P/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48861"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-44"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-77"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:28Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-mfgf-m7fx-8297/GHSA-mfgf-m7fx-8297.json b/advisories/unreviewed/2024/11/GHSA-mfgf-m7fx-8297/GHSA-mfgf-m7fx-8297.json
new file mode 100644
index 00000000000..ce43fc85078
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-mfgf-m7fx-8297/GHSA-mfgf-m7fx-8297.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-mfgf-m7fx-8297",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9759"
+ ],
+ "details": "Tungsten Automation Power PDF GIF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of GIF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24475.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9759"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1356"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:29Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-mh6w-9w29-7xph/GHSA-mh6w-9w29-7xph.json b/advisories/unreviewed/2024/11/GHSA-mh6w-9w29-7xph/GHSA-mh6w-9w29-7xph.json
new file mode 100644
index 00000000000..bb3715cb09a
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-mh6w-9w29-7xph/GHSA-mh6w-9w29-7xph.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-mh6w-9w29-7xph",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2021-38135"
+ ],
+ "details": "Possible \nExternal Service Interaction attack\n\nin iManager has been discovered in\nOpenText™ iManager 3.2.6.0000.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-38135"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.netiq.com/documentation/imanager-32/imanager326_releasenotes/data/imanager326_releasenotes.html"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-406"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:19Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-mm63-c923-gw6c/GHSA-mm63-c923-gw6c.json b/advisories/unreviewed/2024/11/GHSA-mm63-c923-gw6c/GHSA-mm63-c923-gw6c.json
index 425e8ae5b1f..db867b94b68 100644
--- a/advisories/unreviewed/2024/11/GHSA-mm63-c923-gw6c/GHSA-mm63-c923-gw6c.json
+++ b/advisories/unreviewed/2024/11/GHSA-mm63-c923-gw6c/GHSA-mm63-c923-gw6c.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-mm63-c923-gw6c",
- "modified": "2024-11-19T18:31:06Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-19T18:31:06Z",
"aliases": [
"CVE-2024-53054"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\ncgroup/bpf: use a dedicated workqueue for cgroup bpf destruction\n\nA hung_task problem shown below was found:\n\nINFO: task kworker/0:0:8 blocked for more than 327 seconds.\n\"echo 0 > /proc/sys/kernel/hung_task_timeout_secs\" disables this message.\nWorkqueue: events cgroup_bpf_release\nCall Trace:\n \n __schedule+0x5a2/0x2050\n ? find_held_lock+0x33/0x100\n ? wq_worker_sleeping+0x9e/0xe0\n schedule+0x9f/0x180\n schedule_preempt_disabled+0x25/0x50\n __mutex_lock+0x512/0x740\n ? cgroup_bpf_release+0x1e/0x4d0\n ? cgroup_bpf_release+0xcf/0x4d0\n ? process_scheduled_works+0x161/0x8a0\n ? cgroup_bpf_release+0x1e/0x4d0\n ? mutex_lock_nested+0x2b/0x40\n ? __pfx_delay_tsc+0x10/0x10\n mutex_lock_nested+0x2b/0x40\n cgroup_bpf_release+0xcf/0x4d0\n ? process_scheduled_works+0x161/0x8a0\n ? trace_event_raw_event_workqueue_execute_start+0x64/0xd0\n ? process_scheduled_works+0x161/0x8a0\n process_scheduled_works+0x23a/0x8a0\n worker_thread+0x231/0x5b0\n ? __pfx_worker_thread+0x10/0x10\n kthread+0x14d/0x1c0\n ? __pfx_kthread+0x10/0x10\n ret_from_fork+0x59/0x70\n ? __pfx_kthread+0x10/0x10\n ret_from_fork_asm+0x1b/0x30\n \n\nThis issue can be reproduced by the following pressuse test:\n1. A large number of cpuset cgroups are deleted.\n2. Set cpu on and off repeatly.\n3. Set watchdog_thresh repeatly.\nThe scripts can be obtained at LINK mentioned above the signature.\n\nThe reason for this issue is cgroup_mutex and cpu_hotplug_lock are\nacquired in different tasks, which may lead to deadlock.\nIt can lead to a deadlock through the following steps:\n1. A large number of cpusets are deleted asynchronously, which puts a\n large number of cgroup_bpf_release works into system_wq. The max_active\n of system_wq is WQ_DFL_ACTIVE(256). Consequently, all active works are\n cgroup_bpf_release works, and many cgroup_bpf_release works will be put\n into inactive queue. As illustrated in the diagram, there are 256 (in\n the acvtive queue) + n (in the inactive queue) works.\n2. Setting watchdog_thresh will hold cpu_hotplug_lock.read and put\n smp_call_on_cpu work into system_wq. However step 1 has already filled\n system_wq, 'sscs.work' is put into inactive queue. 'sscs.work' has\n to wait until the works that were put into the inacvtive queue earlier\n have executed (n cgroup_bpf_release), so it will be blocked for a while.\n3. Cpu offline requires cpu_hotplug_lock.write, which is blocked by step 2.\n4. Cpusets that were deleted at step 1 put cgroup_release works into\n cgroup_destroy_wq. They are competing to get cgroup_mutex all the time.\n When cgroup_metux is acqured by work at css_killed_work_fn, it will\n call cpuset_css_offline, which needs to acqure cpu_hotplug_lock.read.\n However, cpuset_css_offline will be blocked for step 3.\n5. At this moment, there are 256 works in active queue that are\n cgroup_bpf_release, they are attempting to acquire cgroup_mutex, and as\n a result, all of them are blocked. Consequently, sscs.work can not be\n executed. Ultimately, this situation leads to four processes being\n blocked, forming a deadlock.\n\nsystem_wq(step1)\t\tWatchDog(step2)\t\t\tcpu offline(step3)\tcgroup_destroy_wq(step4)\n...\n2000+ cgroups deleted asyn\n256 actives + n inactives\n\t\t\t\t__lockup_detector_reconfigure\n\t\t\t\tP(cpu_hotplug_lock.read)\n\t\t\t\tput sscs.work into system_wq\n256 + n + 1(sscs.work)\nsscs.work wait to be executed\n\t\t\t\twarting sscs.work finish\n\t\t\t\t\t\t\t\tpercpu_down_write\n\t\t\t\t\t\t\t\tP(cpu_hotplug_lock.write)\n\t\t\t\t\t\t\t\t...blocking...\n\t\t\t\t\t\t\t\t\t\t\tcss_killed_work_fn\n\t\t\t\t\t\t\t\t\t\t\tP(cgroup_mutex)\n\t\t\t\t\t\t\t\t\t\t\tcpuset_css_offline\n\t\t\t\t\t\t\t\t\t\t\tP(cpu_hotplug_lock.read)\n\t\t\t\t\t\t\t\t\t\t\t...blocking...\n256 cgroup_bpf_release\nmutex_lock(&cgroup_mutex);\n..blocking...\n\nTo fix the problem, place cgroup_bpf_release works on a dedicated\nworkqueue which can break the loop and solve the problem. System wqs are\nfor misc things which shouldn't create a large number of concurrent work\nitems. If something is going to generate >\n---truncated---",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -37,9 +40,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-667"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T18:15:25Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-mm73-f56r-p9c7/GHSA-mm73-f56r-p9c7.json b/advisories/unreviewed/2024/11/GHSA-mm73-f56r-p9c7/GHSA-mm73-f56r-p9c7.json
new file mode 100644
index 00000000000..0dba0f4c15e
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-mm73-f56r-p9c7/GHSA-mm73-f56r-p9c7.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-mm73-f56r-p9c7",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11516"
+ ],
+ "details": "IrfanView JPM File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JPM files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24011.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11516"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1600"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-122"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:09Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-mm9q-52p2-75v2/GHSA-mm9q-52p2-75v2.json b/advisories/unreviewed/2024/11/GHSA-mm9q-52p2-75v2/GHSA-mm9q-52p2-75v2.json
new file mode 100644
index 00000000000..cbe32e00af4
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-mm9q-52p2-75v2/GHSA-mm9q-52p2-75v2.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-mm9q-52p2-75v2",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-6260"
+ ],
+ "details": "Malwarebytes Antimalware Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Malwarebytes Antimalware. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.\n\nThe specific flaw exists within the Malwarebytes service. By creating a symbolic link, an attacker can abuse the service to delete a file. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-22321.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6260"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.malwarebytes.com/secure/cves"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1195"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-59"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:12Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-mqx6-fm3x-25wm/GHSA-mqx6-fm3x-25wm.json b/advisories/unreviewed/2024/11/GHSA-mqx6-fm3x-25wm/GHSA-mqx6-fm3x-25wm.json
new file mode 100644
index 00000000000..b5b8faed65d
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-mqx6-fm3x-25wm/GHSA-mqx6-fm3x-25wm.json
@@ -0,0 +1,39 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-mqx6-fm3x-25wm",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-52723"
+ ],
+ "details": "In TOTOLINK X6000R V9.4.0cu.1041_B20240224 in the shttpd file, the Uci_Set Str function is used without strict parameter filtering. An attacker can achieve arbitrary command execution by constructing the payload.",
+ "severity": [
+
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-52723"
+ },
+ {
+ "type": "WEB",
+ "url": "https://gist.github.com/M4rg4tr01d/e84f8ed8dc27960d7c56ad289f6fb0ff"
+ },
+ {
+ "type": "WEB",
+ "url": "http://x6000r.com"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+
+ ],
+ "severity": null,
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:33Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-mr95-vfcf-fx9p/GHSA-mr95-vfcf-fx9p.json b/advisories/unreviewed/2024/11/GHSA-mr95-vfcf-fx9p/GHSA-mr95-vfcf-fx9p.json
new file mode 100644
index 00000000000..19c5896babc
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-mr95-vfcf-fx9p/GHSA-mr95-vfcf-fx9p.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-mr95-vfcf-fx9p",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2024-45719"
+ ],
+ "details": "Inadequate Encryption Strength vulnerability in Apache Answer.\n\nThis issue affects Apache Answer: through 1.4.0.\n\nThe ids generated using the UUID v1 version are to some extent not secure enough. It can cause the generated token to be predictable.\nUsers are recommended to upgrade to version 1.4.1, which fixes the issue.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:C/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45719"
+ },
+ {
+ "type": "WEB",
+ "url": "https://lists.apache.org/thread/sz2d0z39k01nbx3r9pj65t76o1hy9491"
+ },
+ {
+ "type": "WEB",
+ "url": "http://www.openwall.com/lists/oss-security/2024/11/22/1"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-326"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T15:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-mx45-7gmp-84h6/GHSA-mx45-7gmp-84h6.json b/advisories/unreviewed/2024/11/GHSA-mx45-7gmp-84h6/GHSA-mx45-7gmp-84h6.json
new file mode 100644
index 00000000000..5c83ffb9fbb
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-mx45-7gmp-84h6/GHSA-mx45-7gmp-84h6.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-mx45-7gmp-84h6",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9766"
+ ],
+ "details": "Wacom Center WTabletServicePro Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Wacom Center. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.\n\nThe specific flaw exists within WTabletServicePro process. By creating a symbolic link, an attacker can abuse the service to create a file. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-24304.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9766"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1336"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-59"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:30Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-mxmg-qhgp-g6jf/GHSA-mxmg-qhgp-g6jf.json b/advisories/unreviewed/2024/11/GHSA-mxmg-qhgp-g6jf/GHSA-mxmg-qhgp-g6jf.json
new file mode 100644
index 00000000000..47e4037ec70
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-mxmg-qhgp-g6jf/GHSA-mxmg-qhgp-g6jf.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-mxmg-qhgp-g6jf",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11570"
+ ],
+ "details": "IrfanView DXF File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24885.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11570"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1571"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:16Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-p4xq-57qv-f9c5/GHSA-p4xq-57qv-f9c5.json b/advisories/unreviewed/2024/11/GHSA-p4xq-57qv-f9c5/GHSA-p4xq-57qv-f9c5.json
new file mode 100644
index 00000000000..bb2a514fc27
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-p4xq-57qv-f9c5/GHSA-p4xq-57qv-f9c5.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-p4xq-57qv-f9c5",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11576"
+ ],
+ "details": "Luxion KeyShot 3DS File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Luxion KeyShot. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of 3DS files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23681.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11576"
+ },
+ {
+ "type": "WEB",
+ "url": "https://download.keyshot.com/cert/ksa-655925/ksa-655925.pdf?version=1.0&_gl=1*1vzfrlf*_gcl_au*MTIxNTA2Njg4MS4xNzMxNTMwMjIx"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1607"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-122"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:16Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-p5g4-jr8m-xjw5/GHSA-p5g4-jr8m-xjw5.json b/advisories/unreviewed/2024/11/GHSA-p5g4-jr8m-xjw5/GHSA-p5g4-jr8m-xjw5.json
new file mode 100644
index 00000000000..e7da29bd38b
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-p5g4-jr8m-xjw5/GHSA-p5g4-jr8m-xjw5.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-p5g4-jr8m-xjw5",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11542"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24703.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11542"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1550"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:12Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-p69h-9rqf-qr43/GHSA-p69h-9rqf-qr43.json b/advisories/unreviewed/2024/11/GHSA-p69h-9rqf-qr43/GHSA-p69h-9rqf-qr43.json
index 3373dd5c64c..b7d3abbbb55 100644
--- a/advisories/unreviewed/2024/11/GHSA-p69h-9rqf-qr43/GHSA-p69h-9rqf-qr43.json
+++ b/advisories/unreviewed/2024/11/GHSA-p69h-9rqf-qr43/GHSA-p69h-9rqf-qr43.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-p69h-9rqf-qr43",
- "modified": "2024-11-20T00:32:14Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-20T00:32:14Z",
"aliases": [
"CVE-2018-9467"
],
"details": "In the getHost() function of UriTest.java, there is the possibility of incorrect web origin determination. This could lead to incorrect security decisions with no additional execution privileges needed. User interaction is not needed for exploitation.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -25,9 +28,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-276"
],
- "severity": null,
+ "severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-20T00:15:16Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-p6gp-pc6x-f26j/GHSA-p6gp-pc6x-f26j.json b/advisories/unreviewed/2024/11/GHSA-p6gp-pc6x-f26j/GHSA-p6gp-pc6x-f26j.json
new file mode 100644
index 00000000000..abdaba7cd2d
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-p6gp-pc6x-f26j/GHSA-p6gp-pc6x-f26j.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-p6gp-pc6x-f26j",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11550"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24748.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11550"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1540"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:13Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-p7jq-9jcx-rwrh/GHSA-p7jq-9jcx-rwrh.json b/advisories/unreviewed/2024/11/GHSA-p7jq-9jcx-rwrh/GHSA-p7jq-9jcx-rwrh.json
new file mode 100644
index 00000000000..c2b536ed9ff
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-p7jq-9jcx-rwrh/GHSA-p7jq-9jcx-rwrh.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-p7jq-9jcx-rwrh",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11514"
+ ],
+ "details": "IrfanView ECW File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of ECW files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23975.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11514"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1599"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-122"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:09Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-p8qw-2q25-j7x7/GHSA-p8qw-2q25-j7x7.json b/advisories/unreviewed/2024/11/GHSA-p8qw-2q25-j7x7/GHSA-p8qw-2q25-j7x7.json
new file mode 100644
index 00000000000..fb54cf2de0d
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-p8qw-2q25-j7x7/GHSA-p8qw-2q25-j7x7.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-p8qw-2q25-j7x7",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-50400"
+ ],
+ "details": "A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to obtain secret data or modify memory.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.1.2930 build 20241025 and later\nQuTS hero h5.2.1.2929 build 20241025 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50400"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-43"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-134"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:33Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-p97g-v8qv-gxjw/GHSA-p97g-v8qv-gxjw.json b/advisories/unreviewed/2024/11/GHSA-p97g-v8qv-gxjw/GHSA-p97g-v8qv-gxjw.json
new file mode 100644
index 00000000000..325b5161909
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-p97g-v8qv-gxjw/GHSA-p97g-v8qv-gxjw.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-p97g-v8qv-gxjw",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9732"
+ ],
+ "details": "Tungsten Automation Power PDF XPS File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of XPS files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24385.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9732"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1337"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:26Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-p9j8-38hj-99w2/GHSA-p9j8-38hj-99w2.json b/advisories/unreviewed/2024/11/GHSA-p9j8-38hj-99w2/GHSA-p9j8-38hj-99w2.json
index c8c41a94bab..53d4425e09b 100644
--- a/advisories/unreviewed/2024/11/GHSA-p9j8-38hj-99w2/GHSA-p9j8-38hj-99w2.json
+++ b/advisories/unreviewed/2024/11/GHSA-p9j8-38hj-99w2/GHSA-p9j8-38hj-99w2.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-p9j8-38hj-99w2",
- "modified": "2024-11-07T12:30:35Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-07T12:30:35Z",
"aliases": [
"CVE-2024-50169"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nvsock: Update rx_bytes on read_skb()\n\nMake sure virtio_transport_inc_rx_pkt() and virtio_transport_dec_rx_pkt()\ncalls are balanced (i.e. virtio_vsock_sock::rx_bytes doesn't lie) after\nvsock_transport::read_skb().\n\nWhile here, also inform the peer that we've freed up space and it has more\ncredit.\n\nFailing to update rx_bytes after packet is dequeued leads to a warning on\nSOCK_STREAM recv():\n\n[ 233.396654] rx_queue is empty, but rx_bytes is non-zero\n[ 233.396702] WARNING: CPU: 11 PID: 40601 at net/vmw_vsock/virtio_transport_common.c:589",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -35,7 +38,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-07T10:15:08Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-pfcx-5c23-m8c6/GHSA-pfcx-5c23-m8c6.json b/advisories/unreviewed/2024/11/GHSA-pfcx-5c23-m8c6/GHSA-pfcx-5c23-m8c6.json
new file mode 100644
index 00000000000..7d88cca4dfc
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-pfcx-5c23-m8c6/GHSA-pfcx-5c23-m8c6.json
@@ -0,0 +1,39 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-pfcx-5c23-m8c6",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-51074"
+ ],
+ "details": "Incorrect access control in Instrument Cluster KIA Seltos Software v1.0, Hardware v1.0 allows attackers to arbitrarily change odometer readings in the vehicle.",
+ "severity": [
+
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51074"
+ },
+ {
+ "type": "WEB",
+ "url": "https://en.wikipedia.org/wiki/CAN_bus"
+ },
+ {
+ "type": "WEB",
+ "url": "https://github.com/nitinronge91/KIA-SELTOS-Cluster-Vulnerabilities/blob/0446f6fe6299eb39310e996c73d5513e70d76353/CVE/Odometer%20Manipulation%28Increase%29%20for%20KIA%20SELTOS%20Cluster%20CVE-2024-51074.md"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+
+ ],
+ "severity": null,
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:33Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-pgq2-52j2-j4xx/GHSA-pgq2-52j2-j4xx.json b/advisories/unreviewed/2024/11/GHSA-pgq2-52j2-j4xx/GHSA-pgq2-52j2-j4xx.json
index fc1432fe037..5bc23ab2add 100644
--- a/advisories/unreviewed/2024/11/GHSA-pgq2-52j2-j4xx/GHSA-pgq2-52j2-j4xx.json
+++ b/advisories/unreviewed/2024/11/GHSA-pgq2-52j2-j4xx/GHSA-pgq2-52j2-j4xx.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-pgq2-52j2-j4xx",
- "modified": "2024-11-07T12:30:35Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-07T12:30:35Z",
"aliases": [
"CVE-2024-50155"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnetdevsim: use cond_resched() in nsim_dev_trap_report_work()\n\nI am still seeing many syzbot reports hinting that syzbot\nmight fool nsim_dev_trap_report_work() with hundreds of ports [1]\n\nLets use cond_resched(), and system_unbound_wq\ninstead of implicit system_wq.\n\n[1]\nINFO: task syz-executor:20633 blocked for more than 143 seconds.\n Not tainted 6.12.0-rc2-syzkaller-00205-g1d227fcc7222 #0\n\"echo 0 > /proc/sys/kernel/hung_task_timeout_secs\" disables this message.\ntask:syz-executor state:D stack:25856 pid:20633 tgid:20633 ppid:1 flags:0x00004006\n...\nNMI backtrace for cpu 1\nCPU: 1 UID: 0 PID: 16760 Comm: kworker/1:0 Not tainted 6.12.0-rc2-syzkaller-00205-g1d227fcc7222 #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 09/13/2024\nWorkqueue: events nsim_dev_trap_report_work\n RIP: 0010:__sanitizer_cov_trace_pc+0x0/0x70 kernel/kcov.c:210\nCode: 89 fb e8 23 00 00 00 48 8b 3d 04 fb 9c 0c 48 89 de 5b e9 c3 c7 5d 00 0f 1f 00 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1e fa 48 8b 04 24 65 48 8b 0c 25 c0 d7 03 00 65 8b 15 60 f0\nRSP: 0018:ffffc90000a187e8 EFLAGS: 00000246\nRAX: 0000000000000100 RBX: ffffc90000a188e0 RCX: ffff888027d3bc00\nRDX: ffff888027d3bc00 RSI: 0000000000000000 RDI: 0000000000000000\nRBP: ffff88804a2e6000 R08: ffffffff8a4bc495 R09: ffffffff89da3577\nR10: 0000000000000004 R11: ffffffff8a4bc2b0 R12: dffffc0000000000\nR13: ffff88806573b503 R14: dffffc0000000000 R15: ffff8880663cca00\nFS: 0000000000000000(0000) GS:ffff8880b8700000(0000) knlGS:0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: 00007fc90a747f98 CR3: 000000000e734000 CR4: 00000000003526f0\nDR0: 0000000000000000 DR1: 000000000000002b DR2: 0000000000000000\nDR3: 0000000000000000 DR6: 00000000ffff0ff0 DR7: 0000000000000400\nCall Trace:\n \n \n \n __local_bh_enable_ip+0x1bb/0x200 kernel/softirq.c:382\n spin_unlock_bh include/linux/spinlock.h:396 [inline]\n nsim_dev_trap_report drivers/net/netdevsim/dev.c:820 [inline]\n nsim_dev_trap_report_work+0x75d/0xaa0 drivers/net/netdevsim/dev.c:850\n process_one_work kernel/workqueue.c:3229 [inline]\n process_scheduled_works+0xa63/0x1850 kernel/workqueue.c:3310\n worker_thread+0x870/0xd30 kernel/workqueue.c:3391\n kthread+0x2f0/0x390 kernel/kthread.c:389\n ret_from_fork+0x4b/0x80 arch/x86/kernel/process.c:147\n ret_from_fork_asm+0x1a/0x30 arch/x86/entry/entry_64.S:244\n ",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -39,7 +42,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-07T10:15:07Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-pjfh-7598-5j8g/GHSA-pjfh-7598-5j8g.json b/advisories/unreviewed/2024/11/GHSA-pjfh-7598-5j8g/GHSA-pjfh-7598-5j8g.json
new file mode 100644
index 00000000000..b82f991180a
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-pjfh-7598-5j8g/GHSA-pjfh-7598-5j8g.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-pjfh-7598-5j8g",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-8813"
+ ],
+ "details": "PDF-XChange Editor U3D File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of U3D files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24208.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8813"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1236"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:19Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-pqrp-8v3j-9mvr/GHSA-pqrp-8v3j-9mvr.json b/advisories/unreviewed/2024/11/GHSA-pqrp-8v3j-9mvr/GHSA-pqrp-8v3j-9mvr.json
index b7194355d00..82c8c564380 100644
--- a/advisories/unreviewed/2024/11/GHSA-pqrp-8v3j-9mvr/GHSA-pqrp-8v3j-9mvr.json
+++ b/advisories/unreviewed/2024/11/GHSA-pqrp-8v3j-9mvr/GHSA-pqrp-8v3j-9mvr.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-pqrp-8v3j-9mvr",
- "modified": "2024-11-08T18:30:49Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-07T12:30:35Z",
"aliases": [
"CVE-2024-50150"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: typec: altmode should keep reference to parent\n\nThe altmode device release refers to its parent device, but without keeping\na reference to it.\n\nWhen registering the altmode, get a reference to the parent and put it in\nthe release function.\n\nBefore this fix, when using CONFIG_DEBUG_KOBJECT_RELEASE, we see issues\nlike this:\n\n[ 43.572860] kobject: 'port0.0' (ffff8880057ba008): kobject_release, parent 0000000000000000 (delayed 3000)\n[ 43.573532] kobject: 'port0.1' (ffff8880057bd008): kobject_release, parent 0000000000000000 (delayed 1000)\n[ 43.574407] kobject: 'port0' (ffff8880057b9008): kobject_release, parent 0000000000000000 (delayed 3000)\n[ 43.575059] kobject: 'port1.0' (ffff8880057ca008): kobject_release, parent 0000000000000000 (delayed 4000)\n[ 43.575908] kobject: 'port1.1' (ffff8880057c9008): kobject_release, parent 0000000000000000 (delayed 4000)\n[ 43.576908] kobject: 'typec' (ffff8880062dbc00): kobject_release, parent 0000000000000000 (delayed 4000)\n[ 43.577769] kobject: 'port1' (ffff8880057bf008): kobject_release, parent 0000000000000000 (delayed 3000)\n[ 46.612867] ==================================================================\n[ 46.613402] BUG: KASAN: slab-use-after-free in typec_altmode_release+0x38/0x129\n[ 46.614003] Read of size 8 at addr ffff8880057b9118 by task kworker/2:1/48\n[ 46.614538]\n[ 46.614668] CPU: 2 UID: 0 PID: 48 Comm: kworker/2:1 Not tainted 6.12.0-rc1-00138-gedbae730ad31 #535\n[ 46.615391] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.15.0-1 04/01/2014\n[ 46.616042] Workqueue: events kobject_delayed_cleanup\n[ 46.616446] Call Trace:\n[ 46.616648] \n[ 46.616820] dump_stack_lvl+0x5b/0x7c\n[ 46.617112] ? typec_altmode_release+0x38/0x129\n[ 46.617470] print_report+0x14c/0x49e\n[ 46.617769] ? rcu_read_unlock_sched+0x56/0x69\n[ 46.618117] ? __virt_addr_valid+0x19a/0x1ab\n[ 46.618456] ? kmem_cache_debug_flags+0xc/0x1d\n[ 46.618807] ? typec_altmode_release+0x38/0x129\n[ 46.619161] kasan_report+0x8d/0xb4\n[ 46.619447] ? typec_altmode_release+0x38/0x129\n[ 46.619809] ? process_scheduled_works+0x3cb/0x85f\n[ 46.620185] typec_altmode_release+0x38/0x129\n[ 46.620537] ? process_scheduled_works+0x3cb/0x85f\n[ 46.620907] device_release+0xaf/0xf2\n[ 46.621206] kobject_delayed_cleanup+0x13b/0x17a\n[ 46.621584] process_scheduled_works+0x4f6/0x85f\n[ 46.621955] ? __pfx_process_scheduled_works+0x10/0x10\n[ 46.622353] ? hlock_class+0x31/0x9a\n[ 46.622647] ? lock_acquired+0x361/0x3c3\n[ 46.622956] ? move_linked_works+0x46/0x7d\n[ 46.623277] worker_thread+0x1ce/0x291\n[ 46.623582] ? __kthread_parkme+0xc8/0xdf\n[ 46.623900] ? __pfx_worker_thread+0x10/0x10\n[ 46.624236] kthread+0x17e/0x190\n[ 46.624501] ? kthread+0xfb/0x190\n[ 46.624756] ? __pfx_kthread+0x10/0x10\n[ 46.625015] ret_from_fork+0x20/0x40\n[ 46.625268] ? __pfx_kthread+0x10/0x10\n[ 46.625532] ret_from_fork_asm+0x1a/0x30\n[ 46.625805] \n[ 46.625953]\n[ 46.626056] Allocated by task 678:\n[ 46.626287] kasan_save_stack+0x24/0x44\n[ 46.626555] kasan_save_track+0x14/0x2d\n[ 46.626811] __kasan_kmalloc+0x3f/0x4d\n[ 46.627049] __kmalloc_noprof+0x1bf/0x1f0\n[ 46.627362] typec_register_port+0x23/0x491\n[ 46.627698] cros_typec_probe+0x634/0xbb6\n[ 46.628026] platform_probe+0x47/0x8c\n[ 46.628311] really_probe+0x20a/0x47d\n[ 46.628605] device_driver_attach+0x39/0x72\n[ 46.628940] bind_store+0x87/0xd7\n[ 46.629213] kernfs_fop_write_iter+0x1aa/0x218\n[ 46.629574] vfs_write+0x1d6/0x29b\n[ 46.629856] ksys_write+0xcd/0x13b\n[ 46.630128] do_syscall_64+0xd4/0x139\n[ 46.630420] entry_SYSCALL_64_after_hwframe+0x76/0x7e\n[ 46.630820]\n[ 46.630946] Freed by task 48:\n[ 46.631182] kasan_save_stack+0x24/0x44\n[ 46.631493] kasan_save_track+0x14/0x2d\n[ 46.631799] kasan_save_free_info+0x3f/0x4d\n[ 46.632144] __kasan_slab_free+0x37/0x45\n[ 46.632474]\n---truncated---",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -53,9 +56,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-416"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-07T10:15:06Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-prf8-q9jr-xcfm/GHSA-prf8-q9jr-xcfm.json b/advisories/unreviewed/2024/11/GHSA-prf8-q9jr-xcfm/GHSA-prf8-q9jr-xcfm.json
index 6f5267820ee..09b476ab96e 100644
--- a/advisories/unreviewed/2024/11/GHSA-prf8-q9jr-xcfm/GHSA-prf8-q9jr-xcfm.json
+++ b/advisories/unreviewed/2024/11/GHSA-prf8-q9jr-xcfm/GHSA-prf8-q9jr-xcfm.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-prf8-q9jr-xcfm",
- "modified": "2024-11-19T21:31:33Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-19T21:31:33Z",
"aliases": [
"CVE-2018-9369"
],
"details": "In bootloader there is fastboot command allowing user specified kernel command line arguments. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -25,9 +28,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-276"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T20:15:27Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-prfm-4fp6-f2vg/GHSA-prfm-4fp6-f2vg.json b/advisories/unreviewed/2024/11/GHSA-prfm-4fp6-f2vg/GHSA-prfm-4fp6-f2vg.json
new file mode 100644
index 00000000000..f1019d084c6
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-prfm-4fp6-f2vg/GHSA-prfm-4fp6-f2vg.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-prfm-4fp6-f2vg",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-30376"
+ ],
+ "details": "Famatech Advanced IP Scanner Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Famatech Advanced IP Scanner. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.\n\nThe specific flaw exists within the application's use of Qt. The application loads Qt plugins from an unsecured location. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of an administrator. Was ZDI-CAN-20768.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-30376"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-670"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-427"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:08Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-prhx-whmf-2rx6/GHSA-prhx-whmf-2rx6.json b/advisories/unreviewed/2024/11/GHSA-prhx-whmf-2rx6/GHSA-prhx-whmf-2rx6.json
new file mode 100644
index 00000000000..ffd67ccb66c
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-prhx-whmf-2rx6/GHSA-prhx-whmf-2rx6.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-prhx-whmf-2rx6",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8826"
+ ],
+ "details": "PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of XPS files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24305.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8826"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1249"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:20Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-pv9c-6wpp-27gj/GHSA-pv9c-6wpp-27gj.json b/advisories/unreviewed/2024/11/GHSA-pv9c-6wpp-27gj/GHSA-pv9c-6wpp-27gj.json
new file mode 100644
index 00000000000..4ffdafcd6e7
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-pv9c-6wpp-27gj/GHSA-pv9c-6wpp-27gj.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-pv9c-6wpp-27gj",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11531"
+ ],
+ "details": "IrfanView CGM File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of CGM files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24606.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11531"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1535"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:11Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-pvx5-6vgm-chjx/GHSA-pvx5-6vgm-chjx.json b/advisories/unreviewed/2024/11/GHSA-pvx5-6vgm-chjx/GHSA-pvx5-6vgm-chjx.json
new file mode 100644
index 00000000000..6d80f73edad
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-pvx5-6vgm-chjx/GHSA-pvx5-6vgm-chjx.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-pvx5-6vgm-chjx",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5716"
+ ],
+ "details": "Logsign Unified SecOps Platform Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Logsign Unified SecOps Platform. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within the password reset mechanism. The issue results from the lack of restriction of excessive authentication attempts. An attacker can leverage this vulnerability to reset a user's password and bypass authentication on the system. Was ZDI-CAN-24164.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5716"
+ },
+ {
+ "type": "WEB",
+ "url": "https://support.logsign.net/hc/en-us/articles/19316621924754-03-06-2024-Version-6-4-8-Release-Notes"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-616"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-307"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-pw24-4j78-83gj/GHSA-pw24-4j78-83gj.json b/advisories/unreviewed/2024/11/GHSA-pw24-4j78-83gj/GHSA-pw24-4j78-83gj.json
new file mode 100644
index 00000000000..2e1466e5db5
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-pw24-4j78-83gj/GHSA-pw24-4j78-83gj.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-pw24-4j78-83gj",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2023-51640"
+ ],
+ "details": "Allegra extarctZippedFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed.\n\nThe specific flaw exists within the extarctZippedFile [sic] method. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of LOCAL SERVICE. Was ZDI-CAN-22504.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51640"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.trackplus.com/en/service/release-notes-reader/7-5-1-release-notes-2.html"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-107"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-22"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:06Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-pwq3-ch77-f2gh/GHSA-pwq3-ch77-f2gh.json b/advisories/unreviewed/2024/11/GHSA-pwq3-ch77-f2gh/GHSA-pwq3-ch77-f2gh.json
new file mode 100644
index 00000000000..5503e487ee0
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-pwq3-ch77-f2gh/GHSA-pwq3-ch77-f2gh.json
@@ -0,0 +1,46 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-pwq3-ch77-f2gh",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-37783"
+ ],
+ "details": "A reflected cross-site scripting (XSS) vulnerability in Gladinet CentreStack v13.12.9934.54690 allows attackers to inject malicious JavaScript into the web browser of a victim via the sessionId parameter at /portal/ForgotPassword.aspx.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37783"
+ },
+ {
+ "type": "WEB",
+ "url": "https://gist.githubusercontent.com/Draoken/9526cd338b7941340b7bf12340324215/raw/f32c03ee229210f9f039293bd2f3c7fe1d9be8c4/CVE-2024-37783.txt"
+ },
+ {
+ "type": "WEB",
+ "url": "https://medium.com/%40jkoreamo/centrestack-vulnerability-disclosure-d28dc8f21a56"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.centrestack.com/p/gce_latest_release.html"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-79"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T18:15:17Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-pwwx-xw8c-97hj/GHSA-pwwx-xw8c-97hj.json b/advisories/unreviewed/2024/11/GHSA-pwwx-xw8c-97hj/GHSA-pwwx-xw8c-97hj.json
new file mode 100644
index 00000000000..b57e064d157
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-pwwx-xw8c-97hj/GHSA-pwwx-xw8c-97hj.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-pwwx-xw8c-97hj",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8849"
+ ],
+ "details": "PDF-XChange Editor AcroForm Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the handling of AcroForms. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-25269.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8849"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1272"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:23Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-q23h-296p-m22r/GHSA-q23h-296p-m22r.json b/advisories/unreviewed/2024/11/GHSA-q23h-296p-m22r/GHSA-q23h-296p-m22r.json
new file mode 100644
index 00000000000..775b7e618bc
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-q23h-296p-m22r/GHSA-q23h-296p-m22r.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-q23h-296p-m22r",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8818"
+ ],
+ "details": "PDF-XChange Editor U3D File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of U3D files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24213.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8818"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1241"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:20Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-q5px-fpgh-4rxw/GHSA-q5px-fpgh-4rxw.json b/advisories/unreviewed/2024/11/GHSA-q5px-fpgh-4rxw/GHSA-q5px-fpgh-4rxw.json
new file mode 100644
index 00000000000..69daf4a1259
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-q5px-fpgh-4rxw/GHSA-q5px-fpgh-4rxw.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-q5px-fpgh-4rxw",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-9257"
+ ],
+ "details": "Logsign Unified SecOps Platform delete_gsuite_key_file Input Validation Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files within sensitive directories on affected installations of Logsign Unified SecOps Platform. Authentication is required to exploit this vulnerability.\n\nThe specific flaw exists within the delete_gsuite_key_file endpoint. The issue results from the lack of proper validation of a user-supplied filename prior to using it in file operations. An attacker can leverage this vulnerability to delete critical files on the system. Was ZDI-CAN-25265.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9257"
+ },
+ {
+ "type": "WEB",
+ "url": "https://support.logsign.net/hc/en-us/articles/21062889743762-30-08-2024-Version-6-4-26-Release-Notes"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1295"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-20"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:23Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-q5q7-8864-fg9c/GHSA-q5q7-8864-fg9c.json b/advisories/unreviewed/2024/11/GHSA-q5q7-8864-fg9c/GHSA-q5q7-8864-fg9c.json
index 067c130de7b..08a6de9f544 100644
--- a/advisories/unreviewed/2024/11/GHSA-q5q7-8864-fg9c/GHSA-q5q7-8864-fg9c.json
+++ b/advisories/unreviewed/2024/11/GHSA-q5q7-8864-fg9c/GHSA-q5q7-8864-fg9c.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-q5q7-8864-fg9c",
- "modified": "2024-11-20T21:30:49Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-20T21:30:49Z",
"aliases": [
"CVE-2024-48981"
],
"details": "An issue was discovered in MBed OS 6.16.0. During processing of HCI packets, the software dynamically determines the length of the packet header by looking up the identifying first byte and matching it against a table of possible lengths. The initial parsing function, hciTrSerialRxIncoming does not drop packets with invalid identifiers but also does not set a safe default for the length of unknown packets' headers, leading to a buffer overflow. This can be leveraged into an arbitrary write by an attacker. It is possible to overwrite the pointer to a not-yet-allocated buffer that is supposed to receive the contents of the packet body. One can then overwrite the state variable used by the function to determine which state of packet parsing is currently occurring. Because the buffer is allocated when the last byte of the header has been copied, the combination of having a bad header length variable that will never match the counter variable and being able to overwrite the state variable with the resulting buffer overflow can be used to advance the function to the next step while skipping the buffer allocation and resulting pointer write. The next 16 bytes from the packet body are then written wherever the corrupted data pointer is pointing.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N"
+ }
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-120"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-20T20:15:19Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-q842-x9v4-3f8c/GHSA-q842-x9v4-3f8c.json b/advisories/unreviewed/2024/11/GHSA-q842-x9v4-3f8c/GHSA-q842-x9v4-3f8c.json
new file mode 100644
index 00000000000..7692a3c9389
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-q842-x9v4-3f8c/GHSA-q842-x9v4-3f8c.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-q842-x9v4-3f8c",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8819"
+ ],
+ "details": "PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of U3D files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24214.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8819"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1242"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:20Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-qf3j-7fmq-f4pr/GHSA-qf3j-7fmq-f4pr.json b/advisories/unreviewed/2024/11/GHSA-qf3j-7fmq-f4pr/GHSA-qf3j-7fmq-f4pr.json
new file mode 100644
index 00000000000..655bc783503
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-qf3j-7fmq-f4pr/GHSA-qf3j-7fmq-f4pr.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-qf3j-7fmq-f4pr",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-6248"
+ ],
+ "details": "Wyze Cam v3 Cloud Infrastructure Improper Authentication Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Wyze Cam v3 IP cameras. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within the run_action_batch endpoint of the cloud infrastructure. The issue results from the use of the device's MAC address as a sole credential for authentication. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of root. Was ZDI-CAN-22393.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6248"
+ },
+ {
+ "type": "WEB",
+ "url": "https://forums.wyze.com/t/security-advisory/289256"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-839"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-287"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:11Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-qhv3-2cgf-c955/GHSA-qhv3-2cgf-c955.json b/advisories/unreviewed/2024/11/GHSA-qhv3-2cgf-c955/GHSA-qhv3-2cgf-c955.json
index 22b3dedc015..28318a31665 100644
--- a/advisories/unreviewed/2024/11/GHSA-qhv3-2cgf-c955/GHSA-qhv3-2cgf-c955.json
+++ b/advisories/unreviewed/2024/11/GHSA-qhv3-2cgf-c955/GHSA-qhv3-2cgf-c955.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-qhv3-2cgf-c955",
- "modified": "2024-11-20T18:32:17Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-20T18:32:17Z",
"aliases": [
"CVE-2024-51162"
],
"details": "An issue in Audimex EE v.15.1.20 and before allows a remote attacker to escalate privileges.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-276"
],
- "severity": null,
+ "severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-20T17:15:18Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-qjr9-xq6h-8wfr/GHSA-qjr9-xq6h-8wfr.json b/advisories/unreviewed/2024/11/GHSA-qjr9-xq6h-8wfr/GHSA-qjr9-xq6h-8wfr.json
new file mode 100644
index 00000000000..716cb6f1722
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-qjr9-xq6h-8wfr/GHSA-qjr9-xq6h-8wfr.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-qjr9-xq6h-8wfr",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2024-9851"
+ ],
+ "details": "The LSX Tour Operator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.4.9 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses the SVG file.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9851"
+ },
+ {
+ "type": "WEB",
+ "url": "https://wordpress.org/plugins/tour-operator/#developers"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/08ef71da-50f2-4f7e-8a23-23adbabee09d?source=cve"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-79"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-21T11:15:38Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-qp4r-vr9j-jg3p/GHSA-qp4r-vr9j-jg3p.json b/advisories/unreviewed/2024/11/GHSA-qp4r-vr9j-jg3p/GHSA-qp4r-vr9j-jg3p.json
new file mode 100644
index 00000000000..1b75f22d89e
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-qp4r-vr9j-jg3p/GHSA-qp4r-vr9j-jg3p.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-qp4r-vr9j-jg3p",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-9715"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24098.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9715"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1376"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:24Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-qp7v-hp83-pq4x/GHSA-qp7v-hp83-pq4x.json b/advisories/unreviewed/2024/11/GHSA-qp7v-hp83-pq4x/GHSA-qp7v-hp83-pq4x.json
new file mode 100644
index 00000000000..4c7b5121924
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-qp7v-hp83-pq4x/GHSA-qp7v-hp83-pq4x.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-qp7v-hp83-pq4x",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5579"
+ ],
+ "details": "Allegra renderFieldMatch Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Authentication is required to exploit this vulnerability.\n\nThe specific flaw exists within the renderFieldMatch method. The issue results from the lack of proper validation of user-supplied data, which can result in deserialization of untrusted data. An attacker can leverage this vulnerability to execute code in the context of LOCAL SERVICE. Was ZDI-CAN-23451.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5579"
+ },
+ {
+ "type": "WEB",
+ "url": "https://alltena.com/en/resources/release-notes/relnotes-7-5-2"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1162"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-502"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:09Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-qpfc-v7f3-w9g5/GHSA-qpfc-v7f3-w9g5.json b/advisories/unreviewed/2024/11/GHSA-qpfc-v7f3-w9g5/GHSA-qpfc-v7f3-w9g5.json
new file mode 100644
index 00000000000..69219b2990f
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-qpfc-v7f3-w9g5/GHSA-qpfc-v7f3-w9g5.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-qpfc-v7f3-w9g5",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11549"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24746.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11549"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1547"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:13Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-qq67-p454-7jfc/GHSA-qq67-p454-7jfc.json b/advisories/unreviewed/2024/11/GHSA-qq67-p454-7jfc/GHSA-qq67-p454-7jfc.json
index 20efe5248eb..6db5162da9e 100644
--- a/advisories/unreviewed/2024/11/GHSA-qq67-p454-7jfc/GHSA-qq67-p454-7jfc.json
+++ b/advisories/unreviewed/2024/11/GHSA-qq67-p454-7jfc/GHSA-qq67-p454-7jfc.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-qq67-p454-7jfc",
- "modified": "2024-11-19T18:31:06Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-19T18:31:06Z",
"aliases": [
"CVE-2024-53053"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: ufs: core: Fix another deadlock during RTC update\n\nIf ufshcd_rtc_work calls ufshcd_rpm_put_sync() and the pm's usage_count\nis 0, we will enter the runtime suspend callback. However, the runtime\nsuspend callback will wait to flush ufshcd_rtc_work, causing a deadlock.\n\nReplace ufshcd_rpm_put_sync() with ufshcd_rpm_put() to avoid the\ndeadlock.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-667"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T18:15:25Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-qqcr-x579-7pxp/GHSA-qqcr-x579-7pxp.json b/advisories/unreviewed/2024/11/GHSA-qqcr-x579-7pxp/GHSA-qqcr-x579-7pxp.json
new file mode 100644
index 00000000000..90b0c3f4a5d
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-qqcr-x579-7pxp/GHSA-qqcr-x579-7pxp.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-qqcr-x579-7pxp",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2023-51644"
+ ],
+ "details": "Allegra SiteConfigAction Improper Access Control Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Authentication is not required to exploit this vulnerability. \n\nThe specific flaw exists within the configuration of Struts. The issue results from improper access control. An attacker can leverage this vulnerability to execute code in the context of LOCAL SERVICE. Was ZDI-CAN-22512.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51644"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.trackplus.com/en/service/release-notes-reader/7-5-1-release-notes-2.html"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-102"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-284"
+ ],
+ "severity": "CRITICAL",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:06Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-qrm7-h6wj-g2mx/GHSA-qrm7-h6wj-g2mx.json b/advisories/unreviewed/2024/11/GHSA-qrm7-h6wj-g2mx/GHSA-qrm7-h6wj-g2mx.json
new file mode 100644
index 00000000000..b81aab563c1
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-qrm7-h6wj-g2mx/GHSA-qrm7-h6wj-g2mx.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-qrm7-h6wj-g2mx",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2023-51648"
+ ],
+ "details": "Allegra getFileContentAsString Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Allegra. Although authentication is required to exploit this vulnerability, the product implements a registration mechanism that can be used to create a new user with a sufficient privilege level.\n\nThe specific flaw exists within the getFileContentAsString method. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to disclose stored credentials, leading to further compromise. Was ZDI-CAN-22530.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51648"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.trackplus.com/en/service/release-notes-reader/7-5-1-release-notes-2.html"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-099"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-22"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:07Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-qvpx-wghr-w7h4/GHSA-qvpx-wghr-w7h4.json b/advisories/unreviewed/2024/11/GHSA-qvpx-wghr-w7h4/GHSA-qvpx-wghr-w7h4.json
new file mode 100644
index 00000000000..88f4929110c
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-qvpx-wghr-w7h4/GHSA-qvpx-wghr-w7h4.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-qvpx-wghr-w7h4",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11536"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24619.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11536"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1583"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:12Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-qvxf-rx86-53ww/GHSA-qvxf-rx86-53ww.json b/advisories/unreviewed/2024/11/GHSA-qvxf-rx86-53ww/GHSA-qvxf-rx86-53ww.json
new file mode 100644
index 00000000000..a8fd36a5b24
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-qvxf-rx86-53ww/GHSA-qvxf-rx86-53ww.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-qvxf-rx86-53ww",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11524"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24598.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11524"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1593"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-qwxh-j4v9-h3q4/GHSA-qwxh-j4v9-h3q4.json b/advisories/unreviewed/2024/11/GHSA-qwxh-j4v9-h3q4/GHSA-qwxh-j4v9-h3q4.json
new file mode 100644
index 00000000000..17b6974a09f
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-qwxh-j4v9-h3q4/GHSA-qwxh-j4v9-h3q4.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-qwxh-j4v9-h3q4",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5719"
+ ],
+ "details": "Logsign Unified SecOps Platform Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Logsign Unified SecOps Platform. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed.\n\nThe specific flaw exists within the implementation of the HTTP API. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24167.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5719"
+ },
+ {
+ "type": "WEB",
+ "url": "https://support.logsign.net/hc/en-us/articles/19316621924754-03-06-2024-Version-6-4-8-Release-Notes"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-619"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-78"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-r262-2rmj-2h3m/GHSA-r262-2rmj-2h3m.json b/advisories/unreviewed/2024/11/GHSA-r262-2rmj-2h3m/GHSA-r262-2rmj-2h3m.json
new file mode 100644
index 00000000000..ff12e7da743
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-r262-2rmj-2h3m/GHSA-r262-2rmj-2h3m.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-r262-2rmj-2h3m",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11560"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24853.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11560"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1578"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:14Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-r57p-9vwh-hqg7/GHSA-r57p-9vwh-hqg7.json b/advisories/unreviewed/2024/11/GHSA-r57p-9vwh-hqg7/GHSA-r57p-9vwh-hqg7.json
new file mode 100644
index 00000000000..5e2408fcae0
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-r57p-9vwh-hqg7/GHSA-r57p-9vwh-hqg7.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-r57p-9vwh-hqg7",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11538"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24629.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11538"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1588"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:12Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-r5f8-46f5-h4jg/GHSA-r5f8-46f5-h4jg.json b/advisories/unreviewed/2024/11/GHSA-r5f8-46f5-h4jg/GHSA-r5f8-46f5-h4jg.json
new file mode 100644
index 00000000000..530ffdb9500
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-r5f8-46f5-h4jg/GHSA-r5f8-46f5-h4jg.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-r5f8-46f5-h4jg",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8833"
+ ],
+ "details": "PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of XPS files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24318.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8833"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1256"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:21Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-r74j-g337-qrjr/GHSA-r74j-g337-qrjr.json b/advisories/unreviewed/2024/11/GHSA-r74j-g337-qrjr/GHSA-r74j-g337-qrjr.json
new file mode 100644
index 00000000000..0203ef76990
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-r74j-g337-qrjr/GHSA-r74j-g337-qrjr.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-r74j-g337-qrjr",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11567"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24871.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11567"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1575"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:15Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-r864-j7x7-66f2/GHSA-r864-j7x7-66f2.json b/advisories/unreviewed/2024/11/GHSA-r864-j7x7-66f2/GHSA-r864-j7x7-66f2.json
new file mode 100644
index 00000000000..56fbb90745a
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-r864-j7x7-66f2/GHSA-r864-j7x7-66f2.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-r864-j7x7-66f2",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-9665"
+ ],
+ "details": "Zimbra GraphQL Cross-Site Request Forgery Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Zimbra. User interaction is required to exploit this vulnerability in that the target must open a malicious email message.\n\nThe specific flaw exists within the implementation of the graphql endpoint. The issue results from the lack of proper protections against cross-site request forgery (CSRF) attacks. An attacker can leverage this vulnerability to disclose information in the context of the target email account. Was ZDI-CAN-23939.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9665"
+ },
+ {
+ "type": "WEB",
+ "url": "https://blog.zimbra.com/2024/10/new-patch-release-reminders-for-missing-attachments-out-of-office-notifications-traffic-light-protocol-tlp-and-mailto-links"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1369"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-352"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:23Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-r9v3-wmhr-p388/GHSA-r9v3-wmhr-p388.json b/advisories/unreviewed/2024/11/GHSA-r9v3-wmhr-p388/GHSA-r9v3-wmhr-p388.json
new file mode 100644
index 00000000000..a4957778f40
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-r9v3-wmhr-p388/GHSA-r9v3-wmhr-p388.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-r9v3-wmhr-p388",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11530"
+ ],
+ "details": "IrfanView CGM File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of CGM files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24605.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11530"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1536"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:11Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-rcr8-p88j-65jw/GHSA-rcr8-p88j-65jw.json b/advisories/unreviewed/2024/11/GHSA-rcr8-p88j-65jw/GHSA-rcr8-p88j-65jw.json
new file mode 100644
index 00000000000..80666bc7385
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-rcr8-p88j-65jw/GHSA-rcr8-p88j-65jw.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-rcr8-p88j-65jw",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11557"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24807.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11557"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1561"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:14Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-rgmc-25hj-7gpf/GHSA-rgmc-25hj-7gpf.json b/advisories/unreviewed/2024/11/GHSA-rgmc-25hj-7gpf/GHSA-rgmc-25hj-7gpf.json
new file mode 100644
index 00000000000..f6a25a19d63
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-rgmc-25hj-7gpf/GHSA-rgmc-25hj-7gpf.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-rgmc-25hj-7gpf",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11555"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24780.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11555"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1559"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:14Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-rh75-4g63-jhj7/GHSA-rh75-4g63-jhj7.json b/advisories/unreviewed/2024/11/GHSA-rh75-4g63-jhj7/GHSA-rh75-4g63-jhj7.json
new file mode 100644
index 00000000000..5b631d84a7f
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-rh75-4g63-jhj7/GHSA-rh75-4g63-jhj7.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-rh75-4g63-jhj7",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2023-52334"
+ ],
+ "details": "Allegra downloadAttachmentGlobal Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Allegra. Although authentication is required to exploit this vulnerability, product implements a registration mechanism that can be used to create a user with a sufficient privilege level.\n\nThe specific flaw exists within the downloadAttachmentGlobal action. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to disclose stored credentials, leading to further compromise. Was ZDI-CAN-22507.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-52334"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.trackplus.com/en/service/release-notes-reader/7-5-1-release-notes-2.html"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-112"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-22"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:07Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-rh8w-v72g-cm9w/GHSA-rh8w-v72g-cm9w.json b/advisories/unreviewed/2024/11/GHSA-rh8w-v72g-cm9w/GHSA-rh8w-v72g-cm9w.json
new file mode 100644
index 00000000000..b725ca32108
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-rh8w-v72g-cm9w/GHSA-rh8w-v72g-cm9w.json
@@ -0,0 +1,55 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-rh8w-v72g-cm9w",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2024-11588"
+ ],
+ "details": "A vulnerability was found in AVL-DiTEST-DiagDev libdoip 1.0.0. It has been rated as problematic. This issue affects the function DoIPConnection::reactOnReceivedTcpMessage of the file DoIPConnection.cpp. The manipulation leads to null pointer dereference.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
+ },
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11588"
+ },
+ {
+ "type": "WEB",
+ "url": "https://github.com/AVL-DiTEST-DiagDev/libdoip/issues/11"
+ },
+ {
+ "type": "WEB",
+ "url": "https://vuldb.com/?ctiid.285659"
+ },
+ {
+ "type": "WEB",
+ "url": "https://vuldb.com/?id.285659"
+ },
+ {
+ "type": "WEB",
+ "url": "https://vuldb.com/?submit.443175"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-404",
+ "CWE-476"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-21T13:15:06Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-rhxf-wm42-frg5/GHSA-rhxf-wm42-frg5.json b/advisories/unreviewed/2024/11/GHSA-rhxf-wm42-frg5/GHSA-rhxf-wm42-frg5.json
new file mode 100644
index 00000000000..8d985129931
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-rhxf-wm42-frg5/GHSA-rhxf-wm42-frg5.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-rhxf-wm42-frg5",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-8812"
+ ],
+ "details": "PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of U3D files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24207.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8812"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1235"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:19Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-rmgr-fp65-5wjg/GHSA-rmgr-fp65-5wjg.json b/advisories/unreviewed/2024/11/GHSA-rmgr-fp65-5wjg/GHSA-rmgr-fp65-5wjg.json
new file mode 100644
index 00000000000..7ff7fa03f5f
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-rmgr-fp65-5wjg/GHSA-rmgr-fp65-5wjg.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-rmgr-fp65-5wjg",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9750"
+ ],
+ "details": "Tungsten Automation Power PDF PNG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PNG files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24466.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9750"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1348"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:28Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-rmm3-pvp6-hmx9/GHSA-rmm3-pvp6-hmx9.json b/advisories/unreviewed/2024/11/GHSA-rmm3-pvp6-hmx9/GHSA-rmm3-pvp6-hmx9.json
index 9e5e1d05383..4edc144df68 100644
--- a/advisories/unreviewed/2024/11/GHSA-rmm3-pvp6-hmx9/GHSA-rmm3-pvp6-hmx9.json
+++ b/advisories/unreviewed/2024/11/GHSA-rmm3-pvp6-hmx9/GHSA-rmm3-pvp6-hmx9.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-rmm3-pvp6-hmx9",
- "modified": "2024-11-19T15:31:54Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-19T15:31:54Z",
"aliases": [
"CVE-2024-52711"
],
"details": "DI-8100 v16.07.26A1 is vulnerable to Buffer Overflow In the ip_position_asp function via the ip parameter.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -25,9 +28,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-120"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T14:15:18Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-rpqf-986g-5427/GHSA-rpqf-986g-5427.json b/advisories/unreviewed/2024/11/GHSA-rpqf-986g-5427/GHSA-rpqf-986g-5427.json
new file mode 100644
index 00000000000..a48b2aabf6f
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-rpqf-986g-5427/GHSA-rpqf-986g-5427.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-rpqf-986g-5427",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11512"
+ ],
+ "details": "IrfanView WBZ Plugin WB1 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of WB1 files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-22741.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11512"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1555"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:09Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-rq96-3q6x-w6vh/GHSA-rq96-3q6x-w6vh.json b/advisories/unreviewed/2024/11/GHSA-rq96-3q6x-w6vh/GHSA-rq96-3q6x-w6vh.json
new file mode 100644
index 00000000000..95218d13620
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-rq96-3q6x-w6vh/GHSA-rq96-3q6x-w6vh.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-rq96-3q6x-w6vh",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5511"
+ ],
+ "details": "Kofax Power PDF JP2 File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JP2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-22020.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5511"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-554"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:09Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-rv2r-f7rf-m342/GHSA-rv2r-f7rf-m342.json b/advisories/unreviewed/2024/11/GHSA-rv2r-f7rf-m342/GHSA-rv2r-f7rf-m342.json
new file mode 100644
index 00000000000..16ae298e906
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-rv2r-f7rf-m342/GHSA-rv2r-f7rf-m342.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-rv2r-f7rf-m342",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9719"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24103.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9719"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1379"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:25Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-rvgw-vpfm-x6vv/GHSA-rvgw-vpfm-x6vv.json b/advisories/unreviewed/2024/11/GHSA-rvgw-vpfm-x6vv/GHSA-rvgw-vpfm-x6vv.json
new file mode 100644
index 00000000000..f43b107a545
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-rvgw-vpfm-x6vv/GHSA-rvgw-vpfm-x6vv.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-rvgw-vpfm-x6vv",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8846"
+ ],
+ "details": "PDF-XChange Editor TIF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of TIF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24835.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8846"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1269"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:23Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-rw9x-j3p5-vvx2/GHSA-rw9x-j3p5-vvx2.json b/advisories/unreviewed/2024/11/GHSA-rw9x-j3p5-vvx2/GHSA-rw9x-j3p5-vvx2.json
new file mode 100644
index 00000000000..93ef281928b
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-rw9x-j3p5-vvx2/GHSA-rw9x-j3p5-vvx2.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-rw9x-j3p5-vvx2",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11518"
+ ],
+ "details": "IrfanView RLE File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of RLE files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24444.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11518"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1596"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-122"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-rxmx-2mhf-x3fq/GHSA-rxmx-2mhf-x3fq.json b/advisories/unreviewed/2024/11/GHSA-rxmx-2mhf-x3fq/GHSA-rxmx-2mhf-x3fq.json
new file mode 100644
index 00000000000..75a716ad846
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-rxmx-2mhf-x3fq/GHSA-rxmx-2mhf-x3fq.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-rxmx-2mhf-x3fq",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11515"
+ ],
+ "details": "IrfanView JPM File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JPM files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24010.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11515"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1598"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:09Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-v259-7c7m-x3q9/GHSA-v259-7c7m-x3q9.json b/advisories/unreviewed/2024/11/GHSA-v259-7c7m-x3q9/GHSA-v259-7c7m-x3q9.json
new file mode 100644
index 00000000000..4afc6a568e6
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-v259-7c7m-x3q9/GHSA-v259-7c7m-x3q9.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-v259-7c7m-x3q9",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8832"
+ ],
+ "details": "PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of EMF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24317.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8832"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1255"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:21Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-v35f-jr52-fwpj/GHSA-v35f-jr52-fwpj.json b/advisories/unreviewed/2024/11/GHSA-v35f-jr52-fwpj/GHSA-v35f-jr52-fwpj.json
new file mode 100644
index 00000000000..38a470d48d5
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-v35f-jr52-fwpj/GHSA-v35f-jr52-fwpj.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-v35f-jr52-fwpj",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2023-51646"
+ ],
+ "details": "Allegra uploadSimpleFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed.\n\nThe specific flaw exists within the uploadSimpleFile method. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of LOCAL SERVICE. Was ZDI-CAN-22527.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51646"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.trackplus.com/en/service/release-notes-reader/7-5-1-release-notes-2.html"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-109"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-22"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:07Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-v38r-cmm6-v8c3/GHSA-v38r-cmm6-v8c3.json b/advisories/unreviewed/2024/11/GHSA-v38r-cmm6-v8c3/GHSA-v38r-cmm6-v8c3.json
index 926ca3e0544..e35b9f33640 100644
--- a/advisories/unreviewed/2024/11/GHSA-v38r-cmm6-v8c3/GHSA-v38r-cmm6-v8c3.json
+++ b/advisories/unreviewed/2024/11/GHSA-v38r-cmm6-v8c3/GHSA-v38r-cmm6-v8c3.json
@@ -28,7 +28,8 @@
],
"database_specific": {
"cwe_ids": [
- "CWE-704"
+ "CWE-704",
+ "CWE-843"
],
"severity": "HIGH",
"github_reviewed": false,
diff --git a/advisories/unreviewed/2024/11/GHSA-v3fr-cpvw-27p2/GHSA-v3fr-cpvw-27p2.json b/advisories/unreviewed/2024/11/GHSA-v3fr-cpvw-27p2/GHSA-v3fr-cpvw-27p2.json
new file mode 100644
index 00000000000..41cb8bb4fc3
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-v3fr-cpvw-27p2/GHSA-v3fr-cpvw-27p2.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-v3fr-cpvw-27p2",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9749"
+ ],
+ "details": "Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24465.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9749"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1340"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:28Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-v3vm-xgxp-h9fp/GHSA-v3vm-xgxp-h9fp.json b/advisories/unreviewed/2024/11/GHSA-v3vm-xgxp-h9fp/GHSA-v3vm-xgxp-h9fp.json
new file mode 100644
index 00000000000..66d37d4714e
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-v3vm-xgxp-h9fp/GHSA-v3vm-xgxp-h9fp.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-v3vm-xgxp-h9fp",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11552"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24751.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11552"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1546"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:13Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-v43g-f5c4-v4jm/GHSA-v43g-f5c4-v4jm.json b/advisories/unreviewed/2024/11/GHSA-v43g-f5c4-v4jm/GHSA-v43g-f5c4-v4jm.json
new file mode 100644
index 00000000000..177d7357440
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-v43g-f5c4-v4jm/GHSA-v43g-f5c4-v4jm.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-v43g-f5c4-v4jm",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2023-51635"
+ ],
+ "details": "NETGEAR RAX30 fing_dil Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR RAX30 routers. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within fing_dil service. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-19843.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51635"
+ },
+ {
+ "type": "WEB",
+ "url": "https://kb.netgear.com/000065928/Security-Advisory-for-Multiple-Vulnerabilities-on-the-RAX30-PSV-2023-0139"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-584"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-121"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:06Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-v49w-c8rr-g8j2/GHSA-v49w-c8rr-g8j2.json b/advisories/unreviewed/2024/11/GHSA-v49w-c8rr-g8j2/GHSA-v49w-c8rr-g8j2.json
new file mode 100644
index 00000000000..22725d5b426
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-v49w-c8rr-g8j2/GHSA-v49w-c8rr-g8j2.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-v49w-c8rr-g8j2",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9724"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24108.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9724"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1479"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:25Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-v5j8-4g8q-9q2c/GHSA-v5j8-4g8q-9q2c.json b/advisories/unreviewed/2024/11/GHSA-v5j8-4g8q-9q2c/GHSA-v5j8-4g8q-9q2c.json
new file mode 100644
index 00000000000..5394ca19e79
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-v5j8-4g8q-9q2c/GHSA-v5j8-4g8q-9q2c.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-v5j8-4g8q-9q2c",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2024-37042"
+ ],
+ "details": "A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to launch a denial-of-service (DoS) attack.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.1.2930 build 20241025 and later\nQuTS hero h5.2.1.2929 build 20241025 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37042"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-43"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-476"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:23Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-v66c-953m-5pfj/GHSA-v66c-953m-5pfj.json b/advisories/unreviewed/2024/11/GHSA-v66c-953m-5pfj/GHSA-v66c-953m-5pfj.json
new file mode 100644
index 00000000000..0cba661c7f2
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-v66c-953m-5pfj/GHSA-v66c-953m-5pfj.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-v66c-953m-5pfj",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11580"
+ ],
+ "details": "Luxion KeyShot ABC File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Luxion KeyShot. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of abc files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23700.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11580"
+ },
+ {
+ "type": "WEB",
+ "url": "https://download.keyshot.com/cert/ksa-655925/ksa-655925.pdf?version=1.0&_gl=1*1vzfrlf*_gcl_au*MTIxNTA2Njg4MS4xNzMxNTMwMjIx"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1611"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-122"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:17Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-v6rf-gwhg-99g6/GHSA-v6rf-gwhg-99g6.json b/advisories/unreviewed/2024/11/GHSA-v6rf-gwhg-99g6/GHSA-v6rf-gwhg-99g6.json
new file mode 100644
index 00000000000..5c65f748fff
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-v6rf-gwhg-99g6/GHSA-v6rf-gwhg-99g6.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-v6rf-gwhg-99g6",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11554"
+ ],
+ "details": "IrfanView DWG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DWG files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24754.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11554"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1581"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:14Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-v7hw-xvff-vf3v/GHSA-v7hw-xvff-vf3v.json b/advisories/unreviewed/2024/11/GHSA-v7hw-xvff-vf3v/GHSA-v7hw-xvff-vf3v.json
new file mode 100644
index 00000000000..2315aafc6e7
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-v7hw-xvff-vf3v/GHSA-v7hw-xvff-vf3v.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-v7hw-xvff-vf3v",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11568"
+ ],
+ "details": "IrfanView DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24872.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11568"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1563"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:15Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-v94v-33c2-x5m5/GHSA-v94v-33c2-x5m5.json b/advisories/unreviewed/2024/11/GHSA-v94v-33c2-x5m5/GHSA-v94v-33c2-x5m5.json
new file mode 100644
index 00000000000..5f0157bdf0d
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-v94v-33c2-x5m5/GHSA-v94v-33c2-x5m5.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-v94v-33c2-x5m5",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-38644"
+ ],
+ "details": "An OS command injection vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow remote authenticated attackers to execute commands.\n\nWe have already fixed the vulnerability in the following version:\nNotes Station 3 3.9.7 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38644"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-36"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-77"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:25Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-vc5q-m359-46xj/GHSA-vc5q-m359-46xj.json b/advisories/unreviewed/2024/11/GHSA-vc5q-m359-46xj/GHSA-vc5q-m359-46xj.json
new file mode 100644
index 00000000000..534eef54f83
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-vc5q-m359-46xj/GHSA-vc5q-m359-46xj.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-vc5q-m359-46xj",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8831"
+ ],
+ "details": "PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. \n\nThe specific flaw exists within the parsing of XPS files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24316.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8831"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1254"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:21Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-vchv-pqrf-xh97/GHSA-vchv-pqrf-xh97.json b/advisories/unreviewed/2024/11/GHSA-vchv-pqrf-xh97/GHSA-vchv-pqrf-xh97.json
index c6b9135b52a..0ea9adadfa7 100644
--- a/advisories/unreviewed/2024/11/GHSA-vchv-pqrf-xh97/GHSA-vchv-pqrf-xh97.json
+++ b/advisories/unreviewed/2024/11/GHSA-vchv-pqrf-xh97/GHSA-vchv-pqrf-xh97.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-vchv-pqrf-xh97",
- "modified": "2024-11-20T21:30:49Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-20T21:30:49Z",
"aliases": [
"CVE-2024-48985"
],
"details": "An issue was discovered in MBed OS 6.16.0. During processing of HCI packets, the software dynamically determines the length of the packet data by reading 2 bytes from the packet data. A buffer is then allocated to contain the entire packet, the size of which is calculated as the length of the packet body determined earlier and the header length. If the allocate fails because the specified packet is too large, no exception handling occurs and hciTrSerialRxIncoming continues to write bytes into the 4-byte large temporary header buffer, leading to a buffer overflow. This can be leveraged into an arbitrary write by an attacker. It is possible to overwrite the pointer to the buffer that is supposed to receive the contents of the packet body but which couldn't be allocated. One can then overwrite the state variable used by the function to determine which step of the parsing process is currently being executed. This advances the function to the next state, where it proceeds to copy data to that arbitrary location. The packet body is then written wherever the corrupted data pointer is pointing.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N"
+ }
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-120"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-20T20:15:19Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-vcrf-vfc8-wvm5/GHSA-vcrf-vfc8-wvm5.json b/advisories/unreviewed/2024/11/GHSA-vcrf-vfc8-wvm5/GHSA-vcrf-vfc8-wvm5.json
new file mode 100644
index 00000000000..079440bccfd
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-vcrf-vfc8-wvm5/GHSA-vcrf-vfc8-wvm5.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-vcrf-vfc8-wvm5",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-8817"
+ ],
+ "details": "PDF-XChange Editor U3D File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of U3D files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24212.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8817"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1240"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:19Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-vg3v-8w3m-rfrq/GHSA-vg3v-8w3m-rfrq.json b/advisories/unreviewed/2024/11/GHSA-vg3v-8w3m-rfrq/GHSA-vg3v-8w3m-rfrq.json
new file mode 100644
index 00000000000..731d65be56b
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-vg3v-8w3m-rfrq/GHSA-vg3v-8w3m-rfrq.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-vg3v-8w3m-rfrq",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11553"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24752.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11553"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1554"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:14Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-vm82-4pmf-6cv6/GHSA-vm82-4pmf-6cv6.json b/advisories/unreviewed/2024/11/GHSA-vm82-4pmf-6cv6/GHSA-vm82-4pmf-6cv6.json
new file mode 100644
index 00000000000..6ac7debe842
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-vm82-4pmf-6cv6/GHSA-vm82-4pmf-6cv6.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-vm82-4pmf-6cv6",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11564"
+ ],
+ "details": "IrfanView DWG File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DWG files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24864.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11564"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1568"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:15Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-vmj9-px92-p7h7/GHSA-vmj9-px92-p7h7.json b/advisories/unreviewed/2024/11/GHSA-vmj9-px92-p7h7/GHSA-vmj9-px92-p7h7.json
new file mode 100644
index 00000000000..4855d39b26e
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-vmj9-px92-p7h7/GHSA-vmj9-px92-p7h7.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-vmj9-px92-p7h7",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9730"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24146.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9730"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1381"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:26Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-vqfj-mm88-89m5/GHSA-vqfj-mm88-89m5.json b/advisories/unreviewed/2024/11/GHSA-vqfj-mm88-89m5/GHSA-vqfj-mm88-89m5.json
new file mode 100644
index 00000000000..21315547233
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-vqfj-mm88-89m5/GHSA-vqfj-mm88-89m5.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-vqfj-mm88-89m5",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11578"
+ ],
+ "details": "Luxion KeyShot 3DS File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Luxion KeyShot. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of 3DS files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23693.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11578"
+ },
+ {
+ "type": "WEB",
+ "url": "https://download.keyshot.com/cert/ksa-655925/ksa-655925.pdf?version=1.0&_gl=1*1vzfrlf*_gcl_au*MTIxNTA2Njg4MS4xNzMxNTMwMjIx"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1609"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-121"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:16Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-vv6x-mmfx-2x2g/GHSA-vv6x-mmfx-2x2g.json b/advisories/unreviewed/2024/11/GHSA-vv6x-mmfx-2x2g/GHSA-vv6x-mmfx-2x2g.json
new file mode 100644
index 00000000000..4155a152502
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-vv6x-mmfx-2x2g/GHSA-vv6x-mmfx-2x2g.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-vv6x-mmfx-2x2g",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11573"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24898.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11573"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1565"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:16Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-vxp2-h5r5-jv9j/GHSA-vxp2-h5r5-jv9j.json b/advisories/unreviewed/2024/11/GHSA-vxp2-h5r5-jv9j/GHSA-vxp2-h5r5-jv9j.json
new file mode 100644
index 00000000000..1b6c1c0cadc
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-vxp2-h5r5-jv9j/GHSA-vxp2-h5r5-jv9j.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-vxp2-h5r5-jv9j",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2024-5876"
+ ],
+ "details": "IrfanView PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PSP files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23973.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5876"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-669"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-122"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:11Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-w45w-2j52-4v45/GHSA-w45w-2j52-4v45.json b/advisories/unreviewed/2024/11/GHSA-w45w-2j52-4v45/GHSA-w45w-2j52-4v45.json
new file mode 100644
index 00000000000..5c9be5753b7
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-w45w-2j52-4v45/GHSA-w45w-2j52-4v45.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-w45w-2j52-4v45",
+ "modified": "2024-11-22T21:32:17Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11519"
+ ],
+ "details": "IrfanView RLE File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of RLE files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24445.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11519"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1595"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-w6wr-rvjr-vqcm/GHSA-w6wr-rvjr-vqcm.json b/advisories/unreviewed/2024/11/GHSA-w6wr-rvjr-vqcm/GHSA-w6wr-rvjr-vqcm.json
new file mode 100644
index 00000000000..9191ce71a05
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-w6wr-rvjr-vqcm/GHSA-w6wr-rvjr-vqcm.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-w6wr-rvjr-vqcm",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8839"
+ ],
+ "details": "PDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JB2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24419.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8839"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1262"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:22Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-w72p-2w6q-hfhp/GHSA-w72p-2w6q-hfhp.json b/advisories/unreviewed/2024/11/GHSA-w72p-2w6q-hfhp/GHSA-w72p-2w6q-hfhp.json
new file mode 100644
index 00000000000..36551a440e6
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-w72p-2w6q-hfhp/GHSA-w72p-2w6q-hfhp.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-w72p-2w6q-hfhp",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9723"
+ ],
+ "details": "Trimble SketchUp Viewer SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24107.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9723"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1480"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:25Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-w7jp-xrvv-jcjf/GHSA-w7jp-xrvv-jcjf.json b/advisories/unreviewed/2024/11/GHSA-w7jp-xrvv-jcjf/GHSA-w7jp-xrvv-jcjf.json
index 8e9fbb05db3..9186e4ad54a 100644
--- a/advisories/unreviewed/2024/11/GHSA-w7jp-xrvv-jcjf/GHSA-w7jp-xrvv-jcjf.json
+++ b/advisories/unreviewed/2024/11/GHSA-w7jp-xrvv-jcjf/GHSA-w7jp-xrvv-jcjf.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-w7jp-xrvv-jcjf",
- "modified": "2024-11-20T21:30:50Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-20T21:30:50Z",
"aliases": [
"CVE-2024-52757"
],
"details": "D-LINK DI-8003 v16.07.16A1 was discovered to contain a buffer overflow via the notify parameter in the arp_sys_asp function.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -29,9 +32,10 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-120",
+ "CWE-787"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-20T20:15:19Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-w88f-hx5j-cj79/GHSA-w88f-hx5j-cj79.json b/advisories/unreviewed/2024/11/GHSA-w88f-hx5j-cj79/GHSA-w88f-hx5j-cj79.json
new file mode 100644
index 00000000000..d3546341dfc
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-w88f-hx5j-cj79/GHSA-w88f-hx5j-cj79.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-w88f-hx5j-cj79",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-50401"
+ ],
+ "details": "A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to obtain secret data or modify memory.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.1.2930 build 20241025 and later\nQuTS hero h5.2.1.2929 build 20241025 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50401"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-43"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-134"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:33Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-wf5x-q69x-435x/GHSA-wf5x-q69x-435x.json b/advisories/unreviewed/2024/11/GHSA-wf5x-q69x-435x/GHSA-wf5x-q69x-435x.json
new file mode 100644
index 00000000000..d7eb80ce773
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-wf5x-q69x-435x/GHSA-wf5x-q69x-435x.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-wf5x-q69x-435x",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9762"
+ ],
+ "details": "Tungsten Automation Power PDF OXPS File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of OXPS files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24478.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9762"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1358"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:30Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-whgj-xqgq-mp34/GHSA-whgj-xqgq-mp34.json b/advisories/unreviewed/2024/11/GHSA-whgj-xqgq-mp34/GHSA-whgj-xqgq-mp34.json
new file mode 100644
index 00000000000..b2e4420f4fe
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-whgj-xqgq-mp34/GHSA-whgj-xqgq-mp34.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-whgj-xqgq-mp34",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11574"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24900.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11574"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1573"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:16Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-wjc3-x7p8-9qfh/GHSA-wjc3-x7p8-9qfh.json b/advisories/unreviewed/2024/11/GHSA-wjc3-x7p8-9qfh/GHSA-wjc3-x7p8-9qfh.json
new file mode 100644
index 00000000000..e3637d02abb
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-wjc3-x7p8-9qfh/GHSA-wjc3-x7p8-9qfh.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-wjc3-x7p8-9qfh",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9743"
+ ],
+ "details": "Tungsten Automation Power PDF PDF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24459.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9743"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1338"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-122"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:28Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-wmcv-j9w5-vgv5/GHSA-wmcv-j9w5-vgv5.json b/advisories/unreviewed/2024/11/GHSA-wmcv-j9w5-vgv5/GHSA-wmcv-j9w5-vgv5.json
new file mode 100644
index 00000000000..dcd0074d853
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-wmcv-j9w5-vgv5/GHSA-wmcv-j9w5-vgv5.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-wmcv-j9w5-vgv5",
+ "modified": "2024-11-22T21:32:16Z",
+ "published": "2024-11-22T21:32:16Z",
+ "aliases": [
+ "CVE-2023-51645"
+ ],
+ "details": "Allegra unzipFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed.\n\nThe specific flaw exists within the unzipFile method. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of LOCAL SERVICE. Was ZDI-CAN-22513.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51645"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.trackplus.com/en/service/release-notes-reader/7-5-1-release-notes-2.html"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-101"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-22"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T20:15:07Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-wp26-g22c-7r5j/GHSA-wp26-g22c-7r5j.json b/advisories/unreviewed/2024/11/GHSA-wp26-g22c-7r5j/GHSA-wp26-g22c-7r5j.json
index 36cd74c587a..6e4a9ccd669 100644
--- a/advisories/unreviewed/2024/11/GHSA-wp26-g22c-7r5j/GHSA-wp26-g22c-7r5j.json
+++ b/advisories/unreviewed/2024/11/GHSA-wp26-g22c-7r5j/GHSA-wp26-g22c-7r5j.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-wp26-g22c-7r5j",
- "modified": "2024-11-19T18:31:07Z",
+ "modified": "2024-11-22T21:32:13Z",
"published": "2024-11-19T18:31:07Z",
"aliases": [
"CVE-2024-53058"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: stmmac: TSO: Fix unbalanced DMA map/unmap for non-paged SKB data\n\nIn case the non-paged data of a SKB carries protocol header and protocol\npayload to be transmitted on a certain platform that the DMA AXI address\nwidth is configured to 40-bit/48-bit, or the size of the non-paged data\nis bigger than TSO_MAX_BUFF_SIZE on a certain platform that the DMA AXI\naddress width is configured to 32-bit, then this SKB requires at least\ntwo DMA transmit descriptors to serve it.\n\nFor example, three descriptors are allocated to split one DMA buffer\nmapped from one piece of non-paged data:\n dma_desc[N + 0],\n dma_desc[N + 1],\n dma_desc[N + 2].\nThen three elements of tx_q->tx_skbuff_dma[] will be allocated to hold\nextra information to be reused in stmmac_tx_clean():\n tx_q->tx_skbuff_dma[N + 0],\n tx_q->tx_skbuff_dma[N + 1],\n tx_q->tx_skbuff_dma[N + 2].\nNow we focus on tx_q->tx_skbuff_dma[entry].buf, which is the DMA buffer\naddress returned by DMA mapping call. stmmac_tx_clean() will try to\nunmap the DMA buffer _ONLY_IF_ tx_q->tx_skbuff_dma[entry].buf\nis a valid buffer address.\n\nThe expected behavior that saves DMA buffer address of this non-paged\ndata to tx_q->tx_skbuff_dma[entry].buf is:\n tx_q->tx_skbuff_dma[N + 0].buf = NULL;\n tx_q->tx_skbuff_dma[N + 1].buf = NULL;\n tx_q->tx_skbuff_dma[N + 2].buf = dma_map_single();\nUnfortunately, the current code misbehaves like this:\n tx_q->tx_skbuff_dma[N + 0].buf = dma_map_single();\n tx_q->tx_skbuff_dma[N + 1].buf = NULL;\n tx_q->tx_skbuff_dma[N + 2].buf = NULL;\n\nOn the stmmac_tx_clean() side, when dma_desc[N + 0] is closed by the\nDMA engine, tx_q->tx_skbuff_dma[N + 0].buf is a valid buffer address\nobviously, then the DMA buffer will be unmapped immediately.\nThere may be a rare case that the DMA engine does not finish the\npending dma_desc[N + 1], dma_desc[N + 2] yet. Now things will go\nhorribly wrong, DMA is going to access a unmapped/unreferenced memory\nregion, corrupted data will be transmited or iommu fault will be\ntriggered :(\n\nIn contrast, the for-loop that maps SKB fragments behaves perfectly\nas expected, and that is how the driver should do for both non-paged\ndata and paged frags actually.\n\nThis patch corrects DMA map/unmap sequences by fixing the array index\nfor tx_q->tx_skbuff_dma[entry].buf when assigning DMA buffer address.\n\nTested and verified on DWXGMAC CORE 3.20a",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -43,7 +46,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T18:15:25Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-wqwx-2q3h-582h/GHSA-wqwx-2q3h-582h.json b/advisories/unreviewed/2024/11/GHSA-wqwx-2q3h-582h/GHSA-wqwx-2q3h-582h.json
new file mode 100644
index 00000000000..862ca6cf8d1
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-wqwx-2q3h-582h/GHSA-wqwx-2q3h-582h.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-wqwx-2q3h-582h",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8844"
+ ],
+ "details": "PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24550.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8844"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1267"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:23Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-wr4j-4rh5-7rvv/GHSA-wr4j-4rh5-7rvv.json b/advisories/unreviewed/2024/11/GHSA-wr4j-4rh5-7rvv/GHSA-wr4j-4rh5-7rvv.json
new file mode 100644
index 00000000000..27fcdd993cd
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-wr4j-4rh5-7rvv/GHSA-wr4j-4rh5-7rvv.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-wr4j-4rh5-7rvv",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11544"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24707.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11544"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1541"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:13Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-wxm8-2h9q-mr2r/GHSA-wxm8-2h9q-mr2r.json b/advisories/unreviewed/2024/11/GHSA-wxm8-2h9q-mr2r/GHSA-wxm8-2h9q-mr2r.json
index 684cf1cd019..6ebe6ce18ae 100644
--- a/advisories/unreviewed/2024/11/GHSA-wxm8-2h9q-mr2r/GHSA-wxm8-2h9q-mr2r.json
+++ b/advisories/unreviewed/2024/11/GHSA-wxm8-2h9q-mr2r/GHSA-wxm8-2h9q-mr2r.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-wxm8-2h9q-mr2r",
- "modified": "2024-11-19T03:31:07Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-19T03:31:07Z",
"aliases": [
"CVE-2024-50266"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nclk: qcom: videocc-sm8350: use HW_CTRL_TRIGGER for vcodec GDSCs\n\nA recent change in the venus driver results in a stuck clock on the\nLenovo ThinkPad X13s, for example, when streaming video in firefox:\n\n\tvideo_cc_mvs0_clk status stuck at 'off'\n\tWARNING: CPU: 6 PID: 2885 at drivers/clk/qcom/clk-branch.c:87 clk_branch_wait+0x144/0x15c\n\t...\n\tCall trace:\n\t clk_branch_wait+0x144/0x15c\n\t clk_branch2_enable+0x30/0x40\n\t clk_core_enable+0xd8/0x29c\n\t clk_enable+0x2c/0x4c\n\t vcodec_clks_enable.isra.0+0x94/0xd8 [venus_core]\n\t coreid_power_v4+0x464/0x628 [venus_core]\n\t vdec_start_streaming+0xc4/0x510 [venus_dec]\n\t vb2_start_streaming+0x6c/0x180 [videobuf2_common]\n\t vb2_core_streamon+0x120/0x1dc [videobuf2_common]\n\t vb2_streamon+0x1c/0x6c [videobuf2_v4l2]\n\t v4l2_m2m_ioctl_streamon+0x30/0x80 [v4l2_mem2mem]\n\t v4l_streamon+0x24/0x30 [videodev]\n\nusing the out-of-tree sm8350/sc8280xp venus support. [1]\n\nUpdate also the sm8350/sc8280xp GDSC definitions so that the hw control\nmode can be changed at runtime as the venus driver now requires.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -31,7 +34,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T02:16:28Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-x2h3-hwfm-chhg/GHSA-x2h3-hwfm-chhg.json b/advisories/unreviewed/2024/11/GHSA-x2h3-hwfm-chhg/GHSA-x2h3-hwfm-chhg.json
new file mode 100644
index 00000000000..b0cee9d4498
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-x2h3-hwfm-chhg/GHSA-x2h3-hwfm-chhg.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-x2h3-hwfm-chhg",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9745"
+ ],
+ "details": "Tungsten Automation Power PDF TIF File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of TIF files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24461.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9745"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1347"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-121"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:28Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-x386-xj3c-xjx5/GHSA-x386-xj3c-xjx5.json b/advisories/unreviewed/2024/11/GHSA-x386-xj3c-xjx5/GHSA-x386-xj3c-xjx5.json
index e199d781e6f..bd5bb6fc086 100644
--- a/advisories/unreviewed/2024/11/GHSA-x386-xj3c-xjx5/GHSA-x386-xj3c-xjx5.json
+++ b/advisories/unreviewed/2024/11/GHSA-x386-xj3c-xjx5/GHSA-x386-xj3c-xjx5.json
@@ -28,6 +28,7 @@
],
"database_specific": {
"cwe_ids": [
+ "CWE-125",
"CWE-787"
],
"severity": "HIGH",
diff --git a/advisories/unreviewed/2024/11/GHSA-x56m-f472-mvxv/GHSA-x56m-f472-mvxv.json b/advisories/unreviewed/2024/11/GHSA-x56m-f472-mvxv/GHSA-x56m-f472-mvxv.json
new file mode 100644
index 00000000000..1b0e72da167
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-x56m-f472-mvxv/GHSA-x56m-f472-mvxv.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-x56m-f472-mvxv",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2024-37044"
+ ],
+ "details": "A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to execute code.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.1.2930 build 20241025 and later\nQuTS hero h5.2.1.2929 build 20241025 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37044"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-43"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-120"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:23Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-x749-4jc5-gxmr/GHSA-x749-4jc5-gxmr.json b/advisories/unreviewed/2024/11/GHSA-x749-4jc5-gxmr/GHSA-x749-4jc5-gxmr.json
new file mode 100644
index 00000000000..55671fab0ef
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-x749-4jc5-gxmr/GHSA-x749-4jc5-gxmr.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-x749-4jc5-gxmr",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2021-38117"
+ ],
+ "details": "Possible Command injection Vulnerability\n\nin iManager has been discovered in\nOpenText™ iManager 3.2.4.0000.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-38117"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.netiq.com/documentation/imanager-32/imanager325_releasenotes/data/imanager325_releasenotes.html"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-94"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:18Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-x7mj-r2cp-pv8c/GHSA-x7mj-r2cp-pv8c.json b/advisories/unreviewed/2024/11/GHSA-x7mj-r2cp-pv8c/GHSA-x7mj-r2cp-pv8c.json
new file mode 100644
index 00000000000..fb062359b3e
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-x7mj-r2cp-pv8c/GHSA-x7mj-r2cp-pv8c.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-x7mj-r2cp-pv8c",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8843"
+ ],
+ "details": "PDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JB2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24495.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8843"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1266"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:22Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-x935-45jx-x98p/GHSA-x935-45jx-x98p.json b/advisories/unreviewed/2024/11/GHSA-x935-45jx-x98p/GHSA-x935-45jx-x98p.json
index 1359a528b95..58f38420e69 100644
--- a/advisories/unreviewed/2024/11/GHSA-x935-45jx-x98p/GHSA-x935-45jx-x98p.json
+++ b/advisories/unreviewed/2024/11/GHSA-x935-45jx-x98p/GHSA-x935-45jx-x98p.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-x935-45jx-x98p",
- "modified": "2024-11-07T12:30:34Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-07T12:30:34Z",
"aliases": [
"CVE-2024-50139"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: arm64: Fix shift-out-of-bounds bug\n\nFix a shift-out-of-bounds bug reported by UBSAN when running\nVM with MTE enabled host kernel.\n\nUBSAN: shift-out-of-bounds in arch/arm64/kvm/sys_regs.c:1988:14\nshift exponent 33 is too large for 32-bit type 'int'\nCPU: 26 UID: 0 PID: 7629 Comm: qemu-kvm Not tainted 6.12.0-rc2 #34\nHardware name: IEI NF5280R7/Mitchell MB, BIOS 00.00. 2024-10-12 09:28:54 10/14/2024\nCall trace:\n dump_backtrace+0xa0/0x128\n show_stack+0x20/0x38\n dump_stack_lvl+0x74/0x90\n dump_stack+0x18/0x28\n __ubsan_handle_shift_out_of_bounds+0xf8/0x1e0\n reset_clidr+0x10c/0x1c8\n kvm_reset_sys_regs+0x50/0x1c8\n kvm_reset_vcpu+0xec/0x2b0\n __kvm_vcpu_set_target+0x84/0x158\n kvm_vcpu_set_target+0x138/0x168\n kvm_arch_vcpu_ioctl_vcpu_init+0x40/0x2b0\n kvm_arch_vcpu_ioctl+0x28c/0x4b8\n kvm_vcpu_ioctl+0x4bc/0x7a8\n __arm64_sys_ioctl+0xb4/0x100\n invoke_syscall+0x70/0x100\n el0_svc_common.constprop.0+0x48/0xf0\n do_el0_svc+0x24/0x38\n el0_svc+0x3c/0x158\n el0t_64_sync_handler+0x120/0x130\n el0t_64_sync+0x194/0x198",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -35,7 +38,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-07T10:15:05Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-x943-wjcx-6wrv/GHSA-x943-wjcx-6wrv.json b/advisories/unreviewed/2024/11/GHSA-x943-wjcx-6wrv/GHSA-x943-wjcx-6wrv.json
new file mode 100644
index 00000000000..56c7bf8365d
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-x943-wjcx-6wrv/GHSA-x943-wjcx-6wrv.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-x943-wjcx-6wrv",
+ "modified": "2024-11-22T21:32:19Z",
+ "published": "2024-11-22T21:32:19Z",
+ "aliases": [
+ "CVE-2024-8821"
+ ],
+ "details": "PDF-XChange Editor U3D File Parsing Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of U3D files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24216.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8821"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1244"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-416"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:20Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-xq6h-mq75-c7w9/GHSA-xq6h-mq75-c7w9.json b/advisories/unreviewed/2024/11/GHSA-xq6h-mq75-c7w9/GHSA-xq6h-mq75-c7w9.json
new file mode 100644
index 00000000000..e40b191d29d
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-xq6h-mq75-c7w9/GHSA-xq6h-mq75-c7w9.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-xq6h-mq75-c7w9",
+ "modified": "2024-11-22T21:32:20Z",
+ "published": "2024-11-22T21:32:20Z",
+ "aliases": [
+ "CVE-2024-9752"
+ ],
+ "details": "Tungsten Automation Power PDF JPG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of JPG files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24469.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9752"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1354"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:29Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-xr3c-w29h-2qr9/GHSA-xr3c-w29h-2qr9.json b/advisories/unreviewed/2024/11/GHSA-xr3c-w29h-2qr9/GHSA-xr3c-w29h-2qr9.json
new file mode 100644
index 00000000000..235fa2d527b
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-xr3c-w29h-2qr9/GHSA-xr3c-w29h-2qr9.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-xr3c-w29h-2qr9",
+ "modified": "2024-11-22T21:32:15Z",
+ "published": "2024-11-22T21:32:15Z",
+ "aliases": [
+ "CVE-2024-37049"
+ ],
+ "details": "A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to execute code.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.1.2930 build 20241025 and later\nQuTS hero h5.2.1.2929 build 20241025 and later",
+ "severity": [
+ {
+ "type": "CVSS_V4",
+ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37049"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-43"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-120"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:24Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-xrh5-v6q2-cjwm/GHSA-xrh5-v6q2-cjwm.json b/advisories/unreviewed/2024/11/GHSA-xrh5-v6q2-cjwm/GHSA-xrh5-v6q2-cjwm.json
new file mode 100644
index 00000000000..211ed7fda98
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-xrh5-v6q2-cjwm/GHSA-xrh5-v6q2-cjwm.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-xrh5-v6q2-cjwm",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:17Z",
+ "aliases": [
+ "CVE-2024-11543"
+ ],
+ "details": "IrfanView DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24704.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11543"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1548"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-119"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:12Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-xwf9-2w8q-559f/GHSA-xwf9-2w8q-559f.json b/advisories/unreviewed/2024/11/GHSA-xwf9-2w8q-559f/GHSA-xwf9-2w8q-559f.json
new file mode 100644
index 00000000000..b065b450015
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-xwf9-2w8q-559f/GHSA-xwf9-2w8q-559f.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-xwf9-2w8q-559f",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11565"
+ ],
+ "details": "IrfanView CGM File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of CGM files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-24866.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11565"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1567"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-125"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:15Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-xwww-jpfc-7835/GHSA-xwww-jpfc-7835.json b/advisories/unreviewed/2024/11/GHSA-xwww-jpfc-7835/GHSA-xwww-jpfc-7835.json
new file mode 100644
index 00000000000..44c9941a6c9
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-xwww-jpfc-7835/GHSA-xwww-jpfc-7835.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-xwww-jpfc-7835",
+ "modified": "2024-11-22T21:32:14Z",
+ "published": "2024-11-22T21:32:14Z",
+ "aliases": [
+ "CVE-2024-32767"
+ ],
+ "details": "A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability could allow remote attackers who have gained user access to inject malicious code.\n\nWe have already fixed the vulnerability in the following version:\nPhoto Station 6.4.3 ( 2024/07/12 ) and later",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-32767"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.qnap.com/en/security-advisory/qsa-24-39"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-79"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T16:15:22Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2024/11/GHSA-xxcq-q4px-9ggw/GHSA-xxcq-q4px-9ggw.json b/advisories/unreviewed/2024/11/GHSA-xxcq-q4px-9ggw/GHSA-xxcq-q4px-9ggw.json
index adf5819ee14..5b5f73d405e 100644
--- a/advisories/unreviewed/2024/11/GHSA-xxcq-q4px-9ggw/GHSA-xxcq-q4px-9ggw.json
+++ b/advisories/unreviewed/2024/11/GHSA-xxcq-q4px-9ggw/GHSA-xxcq-q4px-9ggw.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-xxcq-q4px-9ggw",
- "modified": "2024-11-19T18:31:06Z",
+ "modified": "2024-11-22T21:32:12Z",
"published": "2024-11-19T18:31:06Z",
"aliases": [
"CVE-2024-53049"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nslub/kunit: fix a WARNING due to unwrapped __kmalloc_cache_noprof\n\n'modprobe slub_kunit' will have a warning as shown below. The root cause\nis that __kmalloc_cache_noprof was directly used, which resulted in no\nalloc_tag being allocated. This caused current->alloc_tag to be null,\nleading to a warning in alloc_tag_add_check.\n\nLet's add an alloc_hook layer to __kmalloc_cache_noprof specifically\nwithin lib/slub_kunit.c, which is the only user of this internal slub\nfunction outside kmalloc implementation itself.\n\n[58162.947016] WARNING: CPU: 2 PID: 6210 at\n./include/linux/alloc_tag.h:125 alloc_tagging_slab_alloc_hook+0x268/0x27c\n[58162.957721] Call trace:\n[58162.957919] alloc_tagging_slab_alloc_hook+0x268/0x27c\n[58162.958286] __kmalloc_cache_noprof+0x14c/0x344\n[58162.958615] test_kmalloc_redzone_access+0x50/0x10c [slub_kunit]\n[58162.959045] kunit_try_run_case+0x74/0x184 [kunit]\n[58162.959401] kunit_generic_run_threadfn_adapter+0x2c/0x4c [kunit]\n[58162.959841] kthread+0x10c/0x118\n[58162.960093] ret_from_fork+0x10/0x20\n[58162.960363] ---[ end trace 0000000000000000 ]---",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
@@ -31,7 +34,7 @@
"cwe_ids": [
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-11-19T18:15:25Z"
diff --git a/advisories/unreviewed/2024/11/GHSA-xxpj-jgjg-9g2f/GHSA-xxpj-jgjg-9g2f.json b/advisories/unreviewed/2024/11/GHSA-xxpj-jgjg-9g2f/GHSA-xxpj-jgjg-9g2f.json
new file mode 100644
index 00000000000..b70f72bb42e
--- /dev/null
+++ b/advisories/unreviewed/2024/11/GHSA-xxpj-jgjg-9g2f/GHSA-xxpj-jgjg-9g2f.json
@@ -0,0 +1,42 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-xxpj-jgjg-9g2f",
+ "modified": "2024-11-22T21:32:18Z",
+ "published": "2024-11-22T21:32:18Z",
+ "aliases": [
+ "CVE-2024-11577"
+ ],
+ "details": "Luxion KeyShot SKP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Luxion KeyShot. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-23685.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11577"
+ },
+ {
+ "type": "WEB",
+ "url": "https://download.keyshot.com/cert/ksa-655925/ksa-655925.pdf?version=1.0&_gl=1*1vzfrlf*_gcl_au*MTIxNTA2Njg4MS4xNzMxNTMwMjIx"
+ },
+ {
+ "type": "WEB",
+ "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1608"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-787"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2024-11-22T21:15:16Z"
+ }
+}
\ No newline at end of file