diff --git a/advisories/github-reviewed/2023/03/GHSA-h828-v5pv-33qx/GHSA-h828-v5pv-33qx.json b/advisories/github-reviewed/2023/03/GHSA-h828-v5pv-33qx/GHSA-h828-v5pv-33qx.json index 31b345fb3da..8723e19b807 100644 --- a/advisories/github-reviewed/2023/03/GHSA-h828-v5pv-33qx/GHSA-h828-v5pv-33qx.json +++ b/advisories/github-reviewed/2023/03/GHSA-h828-v5pv-33qx/GHSA-h828-v5pv-33qx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-h828-v5pv-33qx", - "modified": "2023-03-14T19:39:27Z", + "modified": "2025-03-07T21:32:14Z", "published": "2023-03-03T18:30:27Z", "aliases": [ "CVE-2022-2837" diff --git a/advisories/unreviewed/2023/03/GHSA-773f-mh54-2mhm/GHSA-773f-mh54-2mhm.json b/advisories/unreviewed/2023/03/GHSA-773f-mh54-2mhm/GHSA-773f-mh54-2mhm.json index 57c78f19f78..7de80a878a2 100644 --- a/advisories/unreviewed/2023/03/GHSA-773f-mh54-2mhm/GHSA-773f-mh54-2mhm.json +++ b/advisories/unreviewed/2023/03/GHSA-773f-mh54-2mhm/GHSA-773f-mh54-2mhm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-773f-mh54-2mhm", - "modified": "2023-03-13T18:30:42Z", + "modified": "2025-03-07T21:30:57Z", "published": "2023-03-06T00:30:16Z", "aliases": [ "CVE-2023-22421" diff --git a/advisories/unreviewed/2023/03/GHSA-8989-8fhv-vq42/GHSA-8989-8fhv-vq42.json b/advisories/unreviewed/2023/03/GHSA-8989-8fhv-vq42/GHSA-8989-8fhv-vq42.json index defd8fe1368..433093ba5ba 100644 --- a/advisories/unreviewed/2023/03/GHSA-8989-8fhv-vq42/GHSA-8989-8fhv-vq42.json +++ b/advisories/unreviewed/2023/03/GHSA-8989-8fhv-vq42/GHSA-8989-8fhv-vq42.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8989-8fhv-vq42", - "modified": "2023-03-10T15:30:43Z", + "modified": "2025-03-07T21:30:56Z", "published": "2023-03-03T18:30:27Z", "aliases": [ "CVE-2023-26604" @@ -31,6 +31,10 @@ "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2023/03/msg00032.html" }, + { + "type": "WEB", + "url": "https://medium.com/%40zenmoviefornotification/saidov-maxim-cve-2023-26604-c1232a526ba7" + }, { "type": "WEB", "url": "https://medium.com/@zenmoviefornotification/saidov-maxim-cve-2023-26604-c1232a526ba7" @@ -45,7 +49,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-269" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/07/GHSA-6w6c-rmc6-wccw/GHSA-6w6c-rmc6-wccw.json b/advisories/unreviewed/2023/07/GHSA-6w6c-rmc6-wccw/GHSA-6w6c-rmc6-wccw.json index 10e80cb03df..25e8fc48987 100644 --- a/advisories/unreviewed/2023/07/GHSA-6w6c-rmc6-wccw/GHSA-6w6c-rmc6-wccw.json +++ b/advisories/unreviewed/2023/07/GHSA-6w6c-rmc6-wccw/GHSA-6w6c-rmc6-wccw.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-200" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-frqx-wxgf-37p7/GHSA-frqx-wxgf-37p7.json b/advisories/unreviewed/2023/10/GHSA-frqx-wxgf-37p7/GHSA-frqx-wxgf-37p7.json index caf633b4abc..6740857187e 100644 --- a/advisories/unreviewed/2023/10/GHSA-frqx-wxgf-37p7/GHSA-frqx-wxgf-37p7.json +++ b/advisories/unreviewed/2023/10/GHSA-frqx-wxgf-37p7/GHSA-frqx-wxgf-37p7.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-frqx-wxgf-37p7", - "modified": "2024-04-04T08:11:28Z", + "modified": "2025-03-07T21:30:59Z", "published": "2023-10-03T18:30:23Z", "aliases": [ "CVE-2023-34970" ], - "details": "A local non-privileged user can make improper GPU processing operations to access a limited amount outside of buffer bounds or to exploit a software race condition. If the system’s memory is carefully prepared by the user, then this in turn could give them access to already freed memory\n\n", + "details": "A local non-privileged user can make improper GPU processing operations to access a limited amount outside of buffer bounds or to exploit a software race condition. If the system’s memory is carefully prepared by the user, then this in turn could give them access to already freed memory", "severity": [ { "type": "CVSS_V3", diff --git a/advisories/unreviewed/2023/10/GHSA-gqww-mmf9-7x23/GHSA-gqww-mmf9-7x23.json b/advisories/unreviewed/2023/10/GHSA-gqww-mmf9-7x23/GHSA-gqww-mmf9-7x23.json index 191643ba226..934cbe6e429 100644 --- a/advisories/unreviewed/2023/10/GHSA-gqww-mmf9-7x23/GHSA-gqww-mmf9-7x23.json +++ b/advisories/unreviewed/2023/10/GHSA-gqww-mmf9-7x23/GHSA-gqww-mmf9-7x23.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-gqww-mmf9-7x23", - "modified": "2024-04-04T08:51:19Z", + "modified": "2025-03-07T21:31:04Z", "published": "2023-10-20T12:31:04Z", "aliases": [ "CVE-2023-34045" @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-269" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-vrpg-hfmh-2gwf/GHSA-vrpg-hfmh-2gwf.json b/advisories/unreviewed/2023/10/GHSA-vrpg-hfmh-2gwf/GHSA-vrpg-hfmh-2gwf.json index 2a7e4fbf472..51880d77777 100644 --- a/advisories/unreviewed/2023/10/GHSA-vrpg-hfmh-2gwf/GHSA-vrpg-hfmh-2gwf.json +++ b/advisories/unreviewed/2023/10/GHSA-vrpg-hfmh-2gwf/GHSA-vrpg-hfmh-2gwf.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vrpg-hfmh-2gwf", - "modified": "2024-04-04T08:51:17Z", + "modified": "2025-03-07T21:31:04Z", "published": "2023-10-20T09:30:29Z", "aliases": [ "CVE-2023-34046" diff --git a/advisories/unreviewed/2024/02/GHSA-wqjf-rx4g-qxmr/GHSA-wqjf-rx4g-qxmr.json b/advisories/unreviewed/2024/02/GHSA-wqjf-rx4g-qxmr/GHSA-wqjf-rx4g-qxmr.json index a3d1e1138b5..3ad2a281b93 100644 --- a/advisories/unreviewed/2024/02/GHSA-wqjf-rx4g-qxmr/GHSA-wqjf-rx4g-qxmr.json +++ b/advisories/unreviewed/2024/02/GHSA-wqjf-rx4g-qxmr/GHSA-wqjf-rx4g-qxmr.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-862" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-4pj4-wm5x-2j3f/GHSA-4pj4-wm5x-2j3f.json b/advisories/unreviewed/2024/03/GHSA-4pj4-wm5x-2j3f/GHSA-4pj4-wm5x-2j3f.json index 55801688834..c9b09b4aa0e 100644 --- a/advisories/unreviewed/2024/03/GHSA-4pj4-wm5x-2j3f/GHSA-4pj4-wm5x-2j3f.json +++ b/advisories/unreviewed/2024/03/GHSA-4pj4-wm5x-2j3f/GHSA-4pj4-wm5x-2j3f.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4pj4-wm5x-2j3f", - "modified": "2024-03-13T18:31:32Z", + "modified": "2025-03-07T21:31:04Z", "published": "2024-03-13T18:31:32Z", "aliases": [ "CVE-2024-0976" @@ -33,7 +33,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/02/GHSA-2mg6-cgrh-mg4j/GHSA-2mg6-cgrh-mg4j.json b/advisories/unreviewed/2025/02/GHSA-2mg6-cgrh-mg4j/GHSA-2mg6-cgrh-mg4j.json index 819d266d172..b5836ae8de7 100644 --- a/advisories/unreviewed/2025/02/GHSA-2mg6-cgrh-mg4j/GHSA-2mg6-cgrh-mg4j.json +++ b/advisories/unreviewed/2025/02/GHSA-2mg6-cgrh-mg4j/GHSA-2mg6-cgrh-mg4j.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-2mg6-cgrh-mg4j", - "modified": "2025-02-27T03:33:59Z", + "modified": "2025-03-07T21:31:04Z", "published": "2025-02-27T03:33:59Z", "aliases": [ "CVE-2024-57980" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: uvcvideo: Fix double free in error path\n\nIf the uvc_status_init() function fails to allocate the int_urb, it will\nfree the dev->status pointer but doesn't reset the pointer to NULL. This\nresults in the kfree() call in uvc_status_cleanup() trying to\ndouble-free the memory. Fix it by resetting the dev->status pointer to\nNULL after freeing it.\n\nReviewed by: Ricardo Ribalda ", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -36,8 +41,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-415" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-27T02:15:11Z" diff --git a/advisories/unreviewed/2025/02/GHSA-5mr2-544h-qvrm/GHSA-5mr2-544h-qvrm.json b/advisories/unreviewed/2025/02/GHSA-5mr2-544h-qvrm/GHSA-5mr2-544h-qvrm.json index caa687d6d9d..54fc7f60810 100644 --- a/advisories/unreviewed/2025/02/GHSA-5mr2-544h-qvrm/GHSA-5mr2-544h-qvrm.json +++ b/advisories/unreviewed/2025/02/GHSA-5mr2-544h-qvrm/GHSA-5mr2-544h-qvrm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5mr2-544h-qvrm", - "modified": "2025-02-06T06:31:26Z", + "modified": "2025-03-07T21:31:04Z", "published": "2025-02-06T06:31:26Z", "aliases": [ "CVE-2024-56472" diff --git a/advisories/unreviewed/2025/02/GHSA-7wv9-64j8-g396/GHSA-7wv9-64j8-g396.json b/advisories/unreviewed/2025/02/GHSA-7wv9-64j8-g396/GHSA-7wv9-64j8-g396.json index cf99089dd0c..3cf4f84369f 100644 --- a/advisories/unreviewed/2025/02/GHSA-7wv9-64j8-g396/GHSA-7wv9-64j8-g396.json +++ b/advisories/unreviewed/2025/02/GHSA-7wv9-64j8-g396/GHSA-7wv9-64j8-g396.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-7wv9-64j8-g396", - "modified": "2025-02-27T03:33:58Z", + "modified": "2025-03-07T21:31:04Z", "published": "2025-02-27T03:33:58Z", "aliases": [ "CVE-2024-57973" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nrdma/cxgb4: Prevent potential integer overflow on 32bit\n\nThe \"gl->tot_len\" variable is controlled by the user. It comes from\nprocess_responses(). On 32bit systems, the \"gl->tot_len + sizeof(struct\ncpl_pass_accept_req) + sizeof(struct rss_header)\" addition could have an\ninteger wrapping bug. Use size_add() to prevent this.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -36,8 +41,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-190" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-27T02:15:10Z" diff --git a/advisories/unreviewed/2025/02/GHSA-j6gc-v552-cf9v/GHSA-j6gc-v552-cf9v.json b/advisories/unreviewed/2025/02/GHSA-j6gc-v552-cf9v/GHSA-j6gc-v552-cf9v.json index aa506be7626..8c4ca52ea02 100644 --- a/advisories/unreviewed/2025/02/GHSA-j6gc-v552-cf9v/GHSA-j6gc-v552-cf9v.json +++ b/advisories/unreviewed/2025/02/GHSA-j6gc-v552-cf9v/GHSA-j6gc-v552-cf9v.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-j6gc-v552-cf9v", - "modified": "2025-02-27T03:33:59Z", + "modified": "2025-03-07T21:31:04Z", "published": "2025-02-27T03:33:59Z", "aliases": [ "CVE-2024-57978" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: imx-jpeg: Fix potential error pointer dereference in detach_pm()\n\nThe proble is on the first line:\n\n\tif (jpeg->pd_dev[i] && !pm_runtime_suspended(jpeg->pd_dev[i]))\n\nIf jpeg->pd_dev[i] is an error pointer, then passing it to\npm_runtime_suspended() will lead to an Oops. The other conditions\ncheck for both error pointers and NULL, but it would be more clear to\nuse the IS_ERR_OR_NULL() check for that.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -36,8 +41,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-476" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-27T02:15:10Z" diff --git a/advisories/unreviewed/2025/02/GHSA-j98h-85cg-gvmj/GHSA-j98h-85cg-gvmj.json b/advisories/unreviewed/2025/02/GHSA-j98h-85cg-gvmj/GHSA-j98h-85cg-gvmj.json index cf18f7f4069..a19b04c05c4 100644 --- a/advisories/unreviewed/2025/02/GHSA-j98h-85cg-gvmj/GHSA-j98h-85cg-gvmj.json +++ b/advisories/unreviewed/2025/02/GHSA-j98h-85cg-gvmj/GHSA-j98h-85cg-gvmj.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-j98h-85cg-gvmj", - "modified": "2025-03-07T18:31:03Z", + "modified": "2025-03-07T21:31:04Z", "published": "2025-02-27T03:33:58Z", "aliases": [ "CVE-2024-57977" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmemcg: fix soft lockup in the OOM process\n\nA soft lockup issue was found in the product with about 56,000 tasks were\nin the OOM cgroup, it was traversing them when the soft lockup was\ntriggered.\n\nwatchdog: BUG: soft lockup - CPU#2 stuck for 23s! [VM Thread:1503066]\nCPU: 2 PID: 1503066 Comm: VM Thread Kdump: loaded Tainted: G\nHardware name: Huawei Cloud OpenStack Nova, BIOS\nRIP: 0010:console_unlock+0x343/0x540\nRSP: 0000:ffffb751447db9a0 EFLAGS: 00000247 ORIG_RAX: ffffffffffffff13\nRAX: 0000000000000001 RBX: 0000000000000000 RCX: 00000000ffffffff\nRDX: 0000000000000000 RSI: 0000000000000004 RDI: 0000000000000247\nRBP: ffffffffafc71f90 R08: 0000000000000000 R09: 0000000000000040\nR10: 0000000000000080 R11: 0000000000000000 R12: ffffffffafc74bd0\nR13: ffffffffaf60a220 R14: 0000000000000247 R15: 0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: 00007f2fe6ad91f0 CR3: 00000004b2076003 CR4: 0000000000360ee0\nDR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\nDR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\nCall Trace:\n vprintk_emit+0x193/0x280\n printk+0x52/0x6e\n dump_task+0x114/0x130\n mem_cgroup_scan_tasks+0x76/0x100\n dump_header+0x1fe/0x210\n oom_kill_process+0xd1/0x100\n out_of_memory+0x125/0x570\n mem_cgroup_out_of_memory+0xb5/0xd0\n try_charge+0x720/0x770\n mem_cgroup_try_charge+0x86/0x180\n mem_cgroup_try_charge_delay+0x1c/0x40\n do_anonymous_page+0xb5/0x390\n handle_mm_fault+0xc4/0x1f0\n\nThis is because thousands of processes are in the OOM cgroup, it takes a\nlong time to traverse all of them. As a result, this lead to soft lockup\nin the OOM process.\n\nTo fix this issue, call 'cond_resched' in the 'mem_cgroup_scan_tasks'\nfunction per 1000 iterations. For global OOM, call\n'touch_softlockup_watchdog' per 1000 iterations to avoid this issue.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -36,8 +41,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-667" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-27T02:15:10Z" diff --git a/advisories/unreviewed/2025/02/GHSA-jh56-m69f-g6q7/GHSA-jh56-m69f-g6q7.json b/advisories/unreviewed/2025/02/GHSA-jh56-m69f-g6q7/GHSA-jh56-m69f-g6q7.json index aa863468f05..dc3f0587f8a 100644 --- a/advisories/unreviewed/2025/02/GHSA-jh56-m69f-g6q7/GHSA-jh56-m69f-g6q7.json +++ b/advisories/unreviewed/2025/02/GHSA-jh56-m69f-g6q7/GHSA-jh56-m69f-g6q7.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-jh56-m69f-g6q7", - "modified": "2025-02-06T06:31:26Z", + "modified": "2025-03-07T21:31:04Z", "published": "2025-02-06T06:31:26Z", "aliases": [ "CVE-2024-38318" @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-79", "CWE-80" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2025/02/GHSA-m4w7-955p-fwcr/GHSA-m4w7-955p-fwcr.json b/advisories/unreviewed/2025/02/GHSA-m4w7-955p-fwcr/GHSA-m4w7-955p-fwcr.json index 783f1e15efb..96a4d9c9b1a 100644 --- a/advisories/unreviewed/2025/02/GHSA-m4w7-955p-fwcr/GHSA-m4w7-955p-fwcr.json +++ b/advisories/unreviewed/2025/02/GHSA-m4w7-955p-fwcr/GHSA-m4w7-955p-fwcr.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-m4w7-955p-fwcr", - "modified": "2025-02-27T03:33:58Z", + "modified": "2025-03-07T21:31:04Z", "published": "2025-02-27T03:33:58Z", "aliases": [ "CVE-2024-57953" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nrtc: tps6594: Fix integer overflow on 32bit systems\n\nThe problem is this multiply in tps6594_rtc_set_offset()\n\n\ttmp = offset * TICKS_PER_HOUR;\n\nThe \"tmp\" variable is an s64 but \"offset\" is a long in the\n(-277774)-277774 range. On 32bit systems a long can hold numbers up to\napproximately two billion. The number of TICKS_PER_HOUR is really large,\n(32768 * 3600) or roughly a hundred million. When you start multiplying\nby a hundred million it doesn't take long to overflow the two billion\nmark.\n\nProbably the safest way to fix this is to change the type of\nTICKS_PER_HOUR to long long because it's such a large number.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -28,8 +33,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-190" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-27T02:15:10Z" diff --git a/advisories/unreviewed/2025/03/GHSA-24wm-5x58-mcgj/GHSA-24wm-5x58-mcgj.json b/advisories/unreviewed/2025/03/GHSA-24wm-5x58-mcgj/GHSA-24wm-5x58-mcgj.json index a508661d395..79ab350cfbb 100644 --- a/advisories/unreviewed/2025/03/GHSA-24wm-5x58-mcgj/GHSA-24wm-5x58-mcgj.json +++ b/advisories/unreviewed/2025/03/GHSA-24wm-5x58-mcgj/GHSA-24wm-5x58-mcgj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-24wm-5x58-mcgj", - "modified": "2025-03-03T15:31:33Z", + "modified": "2025-03-07T21:31:05Z", "published": "2025-03-03T15:31:33Z", "aliases": [ "CVE-2025-26984" diff --git a/advisories/unreviewed/2025/03/GHSA-28jg-qhgw-3942/GHSA-28jg-qhgw-3942.json b/advisories/unreviewed/2025/03/GHSA-28jg-qhgw-3942/GHSA-28jg-qhgw-3942.json index 4617d1a5b45..a70c36e54f5 100644 --- a/advisories/unreviewed/2025/03/GHSA-28jg-qhgw-3942/GHSA-28jg-qhgw-3942.json +++ b/advisories/unreviewed/2025/03/GHSA-28jg-qhgw-3942/GHSA-28jg-qhgw-3942.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-28jg-qhgw-3942", - "modified": "2025-03-06T18:31:12Z", + "modified": "2025-03-07T21:31:08Z", "published": "2025-03-06T18:31:12Z", "aliases": [ "CVE-2024-52924" ], "details": "An issue was discovered in NRMM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 9820, 9825, 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. Lack of boundary check during the decoding of Registration Accept messages can lead to out-of-bounds writes on the stack", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-06T18:15:41Z" diff --git a/advisories/unreviewed/2025/03/GHSA-2jvp-r7m9-xhpr/GHSA-2jvp-r7m9-xhpr.json b/advisories/unreviewed/2025/03/GHSA-2jvp-r7m9-xhpr/GHSA-2jvp-r7m9-xhpr.json index f2d29409c82..841315f40d2 100644 --- a/advisories/unreviewed/2025/03/GHSA-2jvp-r7m9-xhpr/GHSA-2jvp-r7m9-xhpr.json +++ b/advisories/unreviewed/2025/03/GHSA-2jvp-r7m9-xhpr/GHSA-2jvp-r7m9-xhpr.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-2jvp-r7m9-xhpr", - "modified": "2025-03-06T21:31:27Z", + "modified": "2025-03-07T21:31:09Z", "published": "2025-03-06T21:31:27Z", "aliases": [ "CVE-2025-25497" ], "details": "An issue in account management interface in Netsweeper Server v.8.2.6 and earlier (fixed in v.8.2.7) allows unauthorized changes to the \"Account Owner\" field due to client-side-only restrictions and a lack of server-side validation. This vulnerability enables account ownership reassignment to or away from any user.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-602" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-06T20:15:38Z" diff --git a/advisories/unreviewed/2025/03/GHSA-2vww-w979-x68j/GHSA-2vww-w979-x68j.json b/advisories/unreviewed/2025/03/GHSA-2vww-w979-x68j/GHSA-2vww-w979-x68j.json new file mode 100644 index 00000000000..109582a5707 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-2vww-w979-x68j/GHSA-2vww-w979-x68j.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2vww-w979-x68j", + "modified": "2025-03-07T21:31:04Z", + "published": "2025-03-07T21:31:04Z", + "aliases": [ + "CVE-2022-49720" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nblock: Fix handling of offline queues in blk_mq_alloc_request_hctx()\n\nThis patch prevents that test nvme/004 triggers the following:\n\nUBSAN: array-index-out-of-bounds in block/blk-mq.h:135:9\nindex 512 is out of range for type 'long unsigned int [512]'\nCall Trace:\n show_stack+0x52/0x58\n dump_stack_lvl+0x49/0x5e\n dump_stack+0x10/0x12\n ubsan_epilogue+0x9/0x3b\n __ubsan_handle_out_of_bounds.cold+0x44/0x49\n blk_mq_alloc_request_hctx+0x304/0x310\n __nvme_submit_sync_cmd+0x70/0x200 [nvme_core]\n nvmf_connect_io_queue+0x23e/0x2a0 [nvme_fabrics]\n nvme_loop_connect_io_queues+0x8d/0xb0 [nvme_loop]\n nvme_loop_create_ctrl+0x58e/0x7d0 [nvme_loop]\n nvmf_create_ctrl+0x1d7/0x4d0 [nvme_fabrics]\n nvmf_dev_write+0xae/0x111 [nvme_fabrics]\n vfs_write+0x144/0x560\n ksys_write+0xb7/0x140\n __x64_sys_write+0x42/0x50\n do_syscall_64+0x35/0x80\n entry_SYSCALL_64_after_hwframe+0x44/0xae", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-49720" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/14dc7a18abbe4176f5626c13c333670da8e06aa1" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7fa28a7c3d74933a4fc22d341b60927952f31c19" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b202a0bd2580ee5b0453772c46d464152fafff73" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b5e65ef044d627effdc2599040b6d204e003f955" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-129" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-26T07:01:47Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-3943-4f4j-gcgj/GHSA-3943-4f4j-gcgj.json b/advisories/unreviewed/2025/03/GHSA-3943-4f4j-gcgj/GHSA-3943-4f4j-gcgj.json new file mode 100644 index 00000000000..72a22cc4ccf --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-3943-4f4j-gcgj/GHSA-3943-4f4j-gcgj.json @@ -0,0 +1,64 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3943-4f4j-gcgj", + "modified": "2025-03-07T21:31:05Z", + "published": "2025-03-07T21:31:05Z", + "aliases": [ + "CVE-2022-49727" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nipv6: Fix signed integer overflow in l2tp_ip6_sendmsg\n\nWhen len >= INT_MAX - transhdrlen, ulen = len + transhdrlen will be\noverflow. To fix, we can follow what udpv6 does and subtract the\ntranshdrlen from the max.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-49727" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/034246122f5c5e2e2a0b9fe04e24517920e9beb1" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0e818d433fc2718fe4da044ffca7431812a7e04e" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/27a37755ceb401111ded76810359d3adc4b268a1" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/2cf73c7cb6125083408d77f43d0e84d86aed0000" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/2f42389d270f2304c8855b0b63498a5a4d0c053d" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6c4e3486d21173d60925ef52e512cae727b43d30" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b8879ca1fd7348b4d5db7db86dcb97f60c73d751" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f638a84afef3dfe10554c51820c16e39a278c915" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-190" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-26T07:01:48Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-3pg4-4j4q-43cp/GHSA-3pg4-4j4q-43cp.json b/advisories/unreviewed/2025/03/GHSA-3pg4-4j4q-43cp/GHSA-3pg4-4j4q-43cp.json new file mode 100644 index 00000000000..e40448f1f33 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-3pg4-4j4q-43cp/GHSA-3pg4-4j4q-43cp.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3pg4-4j4q-43cp", + "modified": "2025-03-07T21:31:04Z", + "published": "2025-03-07T21:31:04Z", + "aliases": [ + "CVE-2022-49718" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nirqchip/apple-aic: Fix refcount leak in aic_of_ic_init\n\nof_get_child_by_name() returns a node pointer with refcount\nincremented, we should use of_node_put() on it when not need anymore.\nAdd missing of_node_put() to avoid refcount leak.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-49718" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/3d45670fab3c25a7452721e4588cc95c51cda134" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6c0010d1dc67c89bcc857c46f542efe318f84ddc" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-26T07:01:47Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-3q4v-7rf3-mxgq/GHSA-3q4v-7rf3-mxgq.json b/advisories/unreviewed/2025/03/GHSA-3q4v-7rf3-mxgq/GHSA-3q4v-7rf3-mxgq.json index 1fc697505ae..75fa8ab3480 100644 --- a/advisories/unreviewed/2025/03/GHSA-3q4v-7rf3-mxgq/GHSA-3q4v-7rf3-mxgq.json +++ b/advisories/unreviewed/2025/03/GHSA-3q4v-7rf3-mxgq/GHSA-3q4v-7rf3-mxgq.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-22", "CWE-35" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2025/03/GHSA-53hj-g53q-mpcc/GHSA-53hj-g53q-mpcc.json b/advisories/unreviewed/2025/03/GHSA-53hj-g53q-mpcc/GHSA-53hj-g53q-mpcc.json new file mode 100644 index 00000000000..689c66f1ce8 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-53hj-g53q-mpcc/GHSA-53hj-g53q-mpcc.json @@ -0,0 +1,64 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-53hj-g53q-mpcc", + "modified": "2025-03-07T21:31:04Z", + "published": "2025-03-07T21:31:04Z", + "aliases": [ + "CVE-2022-49729" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnfc: nfcmrvl: Fix memory leak in nfcmrvl_play_deferred\n\nSimilar to the handling of play_deferred in commit 19cfe912c37b\n(\"Bluetooth: btusb: Fix memory leak in play_deferred\"), we thought\na patch might be needed here as well.\n\nCurrently usb_submit_urb is called directly to submit deferred tx\nurbs after unanchor them.\n\nSo the usb_giveback_urb_bh would failed to unref it in usb_unanchor_urb\nand cause memory leak.\n\nPut those urbs in tx_anchor to avoid the leak, and also fix the error\nhandling.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-49729" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0eeec1a8b0cd38c47edeb042980a6aeacecf35ed" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1eb0afecfb9cd0f38424b82bd9aaa542310934ee" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/3e7c7df6991ac349f2fa8540047757df666e610f" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/3eadc560c1919b8193d17334145dad9a917960e4" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6616872cfe7f0474a22dd1f12699f95bcf81a54d" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6b4d8b44e7163a77fe942f5b80e1651c1b78c537" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/8a4d480702b71184fabcf379b80bf7539716752e" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f21f908347712b8288ffe83b531b5e977042b29c" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-401" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-26T07:01:48Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-6m5m-3phv-f8fm/GHSA-6m5m-3phv-f8fm.json b/advisories/unreviewed/2025/03/GHSA-6m5m-3phv-f8fm/GHSA-6m5m-3phv-f8fm.json new file mode 100644 index 00000000000..825fcafd7ae --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-6m5m-3phv-f8fm/GHSA-6m5m-3phv-f8fm.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6m5m-3phv-f8fm", + "modified": "2025-03-07T21:31:10Z", + "published": "2025-03-07T21:31:10Z", + "aliases": [ + "CVE-2024-42733" + ], + "details": "An issue in Docmosis Tornado v.2.9.7 and before allows a remote attacker to execute arbitrary code via a crafted script to the UNC path input", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-42733" + }, + { + "type": "WEB", + "url": "https://github.com/Docmosis/tornado-docker/issues/14" + }, + { + "type": "WEB", + "url": "https://github.com/Marsman1996/pocs/blob/master/redox/CVE-2024-57492/README.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-07T21:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-6vgf-7pw4-vmph/GHSA-6vgf-7pw4-vmph.json b/advisories/unreviewed/2025/03/GHSA-6vgf-7pw4-vmph/GHSA-6vgf-7pw4-vmph.json index de50b2b2af7..fd1d5c45e0d 100644 --- a/advisories/unreviewed/2025/03/GHSA-6vgf-7pw4-vmph/GHSA-6vgf-7pw4-vmph.json +++ b/advisories/unreviewed/2025/03/GHSA-6vgf-7pw4-vmph/GHSA-6vgf-7pw4-vmph.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6vgf-7pw4-vmph", - "modified": "2025-03-03T15:31:33Z", + "modified": "2025-03-07T21:31:05Z", "published": "2025-03-03T15:31:33Z", "aliases": [ "CVE-2025-26989" diff --git a/advisories/unreviewed/2025/03/GHSA-827h-x2wm-q4v9/GHSA-827h-x2wm-q4v9.json b/advisories/unreviewed/2025/03/GHSA-827h-x2wm-q4v9/GHSA-827h-x2wm-q4v9.json new file mode 100644 index 00000000000..4052b086a6d --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-827h-x2wm-q4v9/GHSA-827h-x2wm-q4v9.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-827h-x2wm-q4v9", + "modified": "2025-03-07T21:31:04Z", + "published": "2025-03-07T21:31:04Z", + "aliases": [ + "CVE-2022-49717" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nirqchip/apple-aic: Fix refcount leak in build_fiq_affinity\n\nof_find_node_by_phandle() returns a node pointer with refcount\nincremented, we should use of_node_put() on it when not need anymore.\nAdd missing of_node_put() to avoid refcount leak.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-49717" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/2dc14cebe5dc053434b507bb24e6821cb795050f" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b1ac803f47cb1615468f35cf1ccb553c52087301" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-26T07:01:47Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-99vh-cg75-pmj9/GHSA-99vh-cg75-pmj9.json b/advisories/unreviewed/2025/03/GHSA-99vh-cg75-pmj9/GHSA-99vh-cg75-pmj9.json new file mode 100644 index 00000000000..db8b3ec9789 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-99vh-cg75-pmj9/GHSA-99vh-cg75-pmj9.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-99vh-cg75-pmj9", + "modified": "2025-03-07T21:31:10Z", + "published": "2025-03-07T21:31:10Z", + "aliases": [ + "CVE-2025-26643" + ], + "details": "No cwe for this issue in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-26643" + }, + { + "type": "WEB", + "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-26643" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-449" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-07T19:15:37Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-9p6p-jg3p-f8mv/GHSA-9p6p-jg3p-f8mv.json b/advisories/unreviewed/2025/03/GHSA-9p6p-jg3p-f8mv/GHSA-9p6p-jg3p-f8mv.json index 2f6336ecf6f..15248c612cb 100644 --- a/advisories/unreviewed/2025/03/GHSA-9p6p-jg3p-f8mv/GHSA-9p6p-jg3p-f8mv.json +++ b/advisories/unreviewed/2025/03/GHSA-9p6p-jg3p-f8mv/GHSA-9p6p-jg3p-f8mv.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-9p6p-jg3p-f8mv", - "modified": "2025-03-07T00:31:55Z", + "modified": "2025-03-07T21:31:10Z", "published": "2025-03-07T00:31:55Z", "aliases": [ "CVE-2025-1121" ], "details": "Test CVE description", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-269" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-07T00:15:34Z" diff --git a/advisories/unreviewed/2025/03/GHSA-cwf6-gj87-3ghq/GHSA-cwf6-gj87-3ghq.json b/advisories/unreviewed/2025/03/GHSA-cwf6-gj87-3ghq/GHSA-cwf6-gj87-3ghq.json new file mode 100644 index 00000000000..1282950fb5b --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-cwf6-gj87-3ghq/GHSA-cwf6-gj87-3ghq.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cwf6-gj87-3ghq", + "modified": "2025-03-07T21:31:04Z", + "published": "2025-03-07T21:31:04Z", + "aliases": [ + "CVE-2022-49728" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nipv6: Fix signed integer overflow in __ip6_append_data\n\nResurrect ubsan overflow checks and ubsan report this warning,\nfix it by change the variable [length] type to size_t.\n\nUBSAN: signed-integer-overflow in net/ipv6/ip6_output.c:1489:19\n2147479552 + 8567 cannot be represented in type 'int'\nCPU: 0 PID: 253 Comm: err Not tainted 5.16.0+ #1\nHardware name: linux,dummy-virt (DT)\nCall trace:\n dump_backtrace+0x214/0x230\n show_stack+0x30/0x78\n dump_stack_lvl+0xf8/0x118\n dump_stack+0x18/0x30\n ubsan_epilogue+0x18/0x60\n handle_overflow+0xd0/0xf0\n __ubsan_handle_add_overflow+0x34/0x44\n __ip6_append_data.isra.48+0x1598/0x1688\n ip6_append_data+0x128/0x260\n udpv6_sendmsg+0x680/0xdd0\n inet6_sendmsg+0x54/0x90\n sock_sendmsg+0x70/0x88\n ____sys_sendmsg+0xe8/0x368\n ___sys_sendmsg+0x98/0xe0\n __sys_sendmmsg+0xf4/0x3b8\n __arm64_sys_sendmmsg+0x34/0x48\n invoke_syscall+0x64/0x160\n el0_svc_common.constprop.4+0x124/0x300\n do_el0_svc+0x44/0xc8\n el0_svc+0x3c/0x1e8\n el0t_64_sync_handler+0x88/0xb0\n el0t_64_sync+0x16c/0x170\n\nChanges since v1:\n-Change the variable [length] type to unsigned, as Eric Dumazet suggested.\nChanges since v2:\n-Don't change exthdrlen type in ip6_make_skb, as Paolo Abeni suggested.\nChanges since v3:\n-Don't change ulen type in udpv6_sendmsg and l2tp_ip6_sendmsg, as\nJakub Kicinski suggested.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-49728" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/84dc940890e91e42898e4443a093281702440abf" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f93431c86b631bbca5614c66f966bf3ddb3c2803" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-190" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-26T07:01:48Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-fcvf-xxvp-wfjq/GHSA-fcvf-xxvp-wfjq.json b/advisories/unreviewed/2025/03/GHSA-fcvf-xxvp-wfjq/GHSA-fcvf-xxvp-wfjq.json index 34d229820d1..fe3df6514d7 100644 --- a/advisories/unreviewed/2025/03/GHSA-fcvf-xxvp-wfjq/GHSA-fcvf-xxvp-wfjq.json +++ b/advisories/unreviewed/2025/03/GHSA-fcvf-xxvp-wfjq/GHSA-fcvf-xxvp-wfjq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-fcvf-xxvp-wfjq", - "modified": "2025-03-03T15:31:33Z", + "modified": "2025-03-07T21:31:05Z", "published": "2025-03-03T15:31:33Z", "aliases": [ "CVE-2025-26994" diff --git a/advisories/unreviewed/2025/03/GHSA-gx49-v8fg-qgrf/GHSA-gx49-v8fg-qgrf.json b/advisories/unreviewed/2025/03/GHSA-gx49-v8fg-qgrf/GHSA-gx49-v8fg-qgrf.json index 91a06c3b068..ab00e4122dd 100644 --- a/advisories/unreviewed/2025/03/GHSA-gx49-v8fg-qgrf/GHSA-gx49-v8fg-qgrf.json +++ b/advisories/unreviewed/2025/03/GHSA-gx49-v8fg-qgrf/GHSA-gx49-v8fg-qgrf.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-gx49-v8fg-qgrf", - "modified": "2025-03-07T09:30:34Z", + "modified": "2025-03-07T21:31:10Z", "published": "2025-03-07T09:30:34Z", "aliases": [ "CVE-2024-12576" ], "details": "Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger a crash of the FW running on the GPU freezing graphics output.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -23,7 +28,7 @@ "cwe_ids": [ "CWE-822" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-07T08:15:35Z" diff --git a/advisories/unreviewed/2025/03/GHSA-mjh4-pvvj-rg94/GHSA-mjh4-pvvj-rg94.json b/advisories/unreviewed/2025/03/GHSA-mjh4-pvvj-rg94/GHSA-mjh4-pvvj-rg94.json index e125dc7714d..fa1851a3594 100644 --- a/advisories/unreviewed/2025/03/GHSA-mjh4-pvvj-rg94/GHSA-mjh4-pvvj-rg94.json +++ b/advisories/unreviewed/2025/03/GHSA-mjh4-pvvj-rg94/GHSA-mjh4-pvvj-rg94.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-502" + ], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/03/GHSA-pfpf-6q8p-prjp/GHSA-pfpf-6q8p-prjp.json b/advisories/unreviewed/2025/03/GHSA-pfpf-6q8p-prjp/GHSA-pfpf-6q8p-prjp.json index 38a32998234..c64eb9aba0e 100644 --- a/advisories/unreviewed/2025/03/GHSA-pfpf-6q8p-prjp/GHSA-pfpf-6q8p-prjp.json +++ b/advisories/unreviewed/2025/03/GHSA-pfpf-6q8p-prjp/GHSA-pfpf-6q8p-prjp.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-pfpf-6q8p-prjp", - "modified": "2025-03-06T21:31:27Z", + "modified": "2025-03-07T21:31:09Z", "published": "2025-03-06T21:31:27Z", "aliases": [ "CVE-2025-25763" ], "details": "crmeb CRMEB-KY v5.4.0 and before has a SQL Injection vulnerability at getRead() in /system/SystemDatabackupServices.php", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-06T21:15:15Z" diff --git a/advisories/unreviewed/2025/03/GHSA-pgf7-qmfm-349p/GHSA-pgf7-qmfm-349p.json b/advisories/unreviewed/2025/03/GHSA-pgf7-qmfm-349p/GHSA-pgf7-qmfm-349p.json index df72e2732d7..d8d94600474 100644 --- a/advisories/unreviewed/2025/03/GHSA-pgf7-qmfm-349p/GHSA-pgf7-qmfm-349p.json +++ b/advisories/unreviewed/2025/03/GHSA-pgf7-qmfm-349p/GHSA-pgf7-qmfm-349p.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-120" + "CWE-120", + "CWE-787" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/03/GHSA-pwx5-jwh9-q63q/GHSA-pwx5-jwh9-q63q.json b/advisories/unreviewed/2025/03/GHSA-pwx5-jwh9-q63q/GHSA-pwx5-jwh9-q63q.json index aef292dded2..961e4bf58aa 100644 --- a/advisories/unreviewed/2025/03/GHSA-pwx5-jwh9-q63q/GHSA-pwx5-jwh9-q63q.json +++ b/advisories/unreviewed/2025/03/GHSA-pwx5-jwh9-q63q/GHSA-pwx5-jwh9-q63q.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-pwx5-jwh9-q63q", - "modified": "2025-03-06T21:31:27Z", + "modified": "2025-03-07T21:31:09Z", "published": "2025-03-06T21:31:27Z", "aliases": [ "CVE-2025-26167" ], "details": "Buffalo LS520D 4.53 is vulnerable to Arbitrary file read, which allows unauthenticated attackers to access the NAS web UI and read arbitrary internal files.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-200" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-06T19:15:27Z" diff --git a/advisories/unreviewed/2025/03/GHSA-q67r-p3hc-x2w9/GHSA-q67r-p3hc-x2w9.json b/advisories/unreviewed/2025/03/GHSA-q67r-p3hc-x2w9/GHSA-q67r-p3hc-x2w9.json index 7f59789a16f..0e30a3b52d8 100644 --- a/advisories/unreviewed/2025/03/GHSA-q67r-p3hc-x2w9/GHSA-q67r-p3hc-x2w9.json +++ b/advisories/unreviewed/2025/03/GHSA-q67r-p3hc-x2w9/GHSA-q67r-p3hc-x2w9.json @@ -30,6 +30,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-190", "CWE-787" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2025/03/GHSA-r7j7-c9pj-h2v7/GHSA-r7j7-c9pj-h2v7.json b/advisories/unreviewed/2025/03/GHSA-r7j7-c9pj-h2v7/GHSA-r7j7-c9pj-h2v7.json index ee340138ee1..f9bbc812407 100644 --- a/advisories/unreviewed/2025/03/GHSA-r7j7-c9pj-h2v7/GHSA-r7j7-c9pj-h2v7.json +++ b/advisories/unreviewed/2025/03/GHSA-r7j7-c9pj-h2v7/GHSA-r7j7-c9pj-h2v7.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-r7j7-c9pj-h2v7", - "modified": "2025-03-06T21:31:26Z", + "modified": "2025-03-07T21:31:08Z", "published": "2025-03-06T21:31:26Z", "aliases": [ "CVE-2025-25361" ], "details": "An arbitrary file upload vulnerability in the component /cms/CmsWebFileAdminController.java of PublicCMS v4.0.202406 allows attackers to execute arbitrary code via uploading a crafted svg or xml file.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-434" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-06T19:15:27Z" diff --git a/advisories/unreviewed/2025/03/GHSA-v36w-xhj2-p37c/GHSA-v36w-xhj2-p37c.json b/advisories/unreviewed/2025/03/GHSA-v36w-xhj2-p37c/GHSA-v36w-xhj2-p37c.json new file mode 100644 index 00000000000..87ba8ca8288 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-v36w-xhj2-p37c/GHSA-v36w-xhj2-p37c.json @@ -0,0 +1,62 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v36w-xhj2-p37c", + "modified": "2025-03-07T21:31:04Z", + "published": "2025-03-07T21:31:04Z", + "aliases": [ + "CVE-2022-49719" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nirqchip/gic/realview: Fix refcount leak in realview_gic_of_init\n\nof_find_matching_node_and_match() returns a node pointer with refcount\nincremented, we should use of_node_put() on it when not need anymore.\nAdd missing of_node_put() to avoid refcount leak.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-49719" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/16b603cb8d34c2d917983918db1f88c8b831baaa" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/486f68f85085d9b16ae097679b1486dcb1b6eb69" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/56526c3883fc7a1f5898b1d40a02c8b8685a5d92" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/5d38720661a4b9c87705c206a6081177ffb8ec1d" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/87da903ce632d5689bef66d56ee5dae700d82104" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b634af84bc1edece4e63317b0ad95618dd3a8693" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e52a58b79f11755ea7e877015c4a1704303fa55f" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f4b98e314888cc51486421bcf6d52852452ea48b" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-26T07:01:47Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-v656-frxw-r56p/GHSA-v656-frxw-r56p.json b/advisories/unreviewed/2025/03/GHSA-v656-frxw-r56p/GHSA-v656-frxw-r56p.json new file mode 100644 index 00000000000..edd2a5fc32d --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-v656-frxw-r56p/GHSA-v656-frxw-r56p.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v656-frxw-r56p", + "modified": "2025-03-07T21:31:10Z", + "published": "2025-03-07T21:31:10Z", + "aliases": [ + "CVE-2025-2024" + ], + "details": "Trimble SketchUp SKP File Parsing Uninitialized Variable Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trimble SketchUp. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.\n\nThe specific flaw exists within the parsing of SKP files. The issue results from the lack of proper initialization of memory prior to accessing it. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-25210.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2024" + }, + { + "type": "WEB", + "url": "https://www.zerodayinitiative.com/advisories/ZDI-25-111" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-457" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-07T20:15:39Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-vccg-pg4r-fjxh/GHSA-vccg-pg4r-fjxh.json b/advisories/unreviewed/2025/03/GHSA-vccg-pg4r-fjxh/GHSA-vccg-pg4r-fjxh.json index b1fdd944fc5..f35baeb5a15 100644 --- a/advisories/unreviewed/2025/03/GHSA-vccg-pg4r-fjxh/GHSA-vccg-pg4r-fjxh.json +++ b/advisories/unreviewed/2025/03/GHSA-vccg-pg4r-fjxh/GHSA-vccg-pg4r-fjxh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vccg-pg4r-fjxh", - "modified": "2025-03-03T15:31:33Z", + "modified": "2025-03-07T21:31:05Z", "published": "2025-03-03T15:31:33Z", "aliases": [ "CVE-2025-26988" diff --git a/advisories/unreviewed/2025/03/GHSA-x2cr-cpw2-j9x5/GHSA-x2cr-cpw2-j9x5.json b/advisories/unreviewed/2025/03/GHSA-x2cr-cpw2-j9x5/GHSA-x2cr-cpw2-j9x5.json index 230b54fa3e4..c0e135a6dc0 100644 --- a/advisories/unreviewed/2025/03/GHSA-x2cr-cpw2-j9x5/GHSA-x2cr-cpw2-j9x5.json +++ b/advisories/unreviewed/2025/03/GHSA-x2cr-cpw2-j9x5/GHSA-x2cr-cpw2-j9x5.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-x2cr-cpw2-j9x5", - "modified": "2025-03-06T21:31:26Z", + "modified": "2025-03-07T21:31:09Z", "published": "2025-03-06T21:31:26Z", "aliases": [ "CVE-2025-25381" ], "details": "Incorrect access control in the KSRTC AWATAR app of Karnataka State Road Transport Corporation v1.3.0 allows to view sensitive information such as usernames and passwords.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-284" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-06T19:15:27Z" diff --git a/advisories/unreviewed/2025/03/GHSA-x7j4-8pgc-mvw6/GHSA-x7j4-8pgc-mvw6.json b/advisories/unreviewed/2025/03/GHSA-x7j4-8pgc-mvw6/GHSA-x7j4-8pgc-mvw6.json index 1b09cfd03f9..15f2c64223a 100644 --- a/advisories/unreviewed/2025/03/GHSA-x7j4-8pgc-mvw6/GHSA-x7j4-8pgc-mvw6.json +++ b/advisories/unreviewed/2025/03/GHSA-x7j4-8pgc-mvw6/GHSA-x7j4-8pgc-mvw6.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-x7j4-8pgc-mvw6", - "modified": "2025-03-06T18:31:12Z", + "modified": "2025-03-07T21:31:08Z", "published": "2025-03-06T18:31:12Z", "aliases": [ "CVE-2024-52923" ], "details": "An issue was discovered in NRMM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 9820, 9825, 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. Lack of a boundary check during the decoding of DL NAS Transport messages leads to a Denial of Service.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-119" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-06T18:15:41Z" diff --git a/advisories/unreviewed/2025/03/GHSA-x8fr-74rg-389v/GHSA-x8fr-74rg-389v.json b/advisories/unreviewed/2025/03/GHSA-x8fr-74rg-389v/GHSA-x8fr-74rg-389v.json new file mode 100644 index 00000000000..02f6ae6a53c --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-x8fr-74rg-389v/GHSA-x8fr-74rg-389v.json @@ -0,0 +1,64 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x8fr-74rg-389v", + "modified": "2025-03-07T21:31:04Z", + "published": "2025-03-07T21:31:04Z", + "aliases": [ + "CVE-2022-49731" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nata: libata-core: fix NULL pointer deref in ata_host_alloc_pinfo()\n\nIn an unlikely (and probably wrong?) case that the 'ppi' parameter of\nata_host_alloc_pinfo() points to an array starting with a NULL pointer,\nthere's going to be a kernel oops as the 'pi' local variable won't get\nreassigned from the initial value of NULL. Initialize 'pi' instead to\n'&ata_dummy_port_info' to fix the possible kernel oops for good...\n\nFound by Linux Verification Center (linuxtesting.org) with the SVACE static\nanalysis tool.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-49731" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/07cbdb4807d369fbda73062a91b570c4dc5ec429" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1ac5efee33f29e704226506d429b84575a5d66f8" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/253334f84c81bc6a43af489f108c0bddad989eef" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/36cd19e7d4e5571d77a2ed20c5b6ef50cf57734a" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a810bd5af06977a847d1f202b22d7defd5c62497" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/bf476fe22aa1851bab4728e0c49025a6a0bea307" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ca4693e6e06e4fd2b240c0fec47aa2498c94848e" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ff128fbea720bf763fa345680dda5f050bc24a47" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-476" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-26T07:01:48Z" + } +} \ No newline at end of file