From 200a07d75464859d35394bb6661e509d5dd6867b Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Tue, 3 Sep 2024 15:32:05 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-6mmp-f4p3-97mr.json | 6 +- .../GHSA-hj9j-3xxg-6259.json | 1 + .../GHSA-25gf-472p-pjv4.json | 9 ++- .../GHSA-2w45-v2hv-rxp2.json | 11 ++-- .../GHSA-3826-h8f4-w96h.json | 2 +- .../GHSA-52j9-r8mv-933c.json | 2 +- .../GHSA-6mgg-r5cm-pmmg.json | 11 ++-- .../GHSA-7f5w-jgw7-q73x.json | 2 +- .../GHSA-7j47-mxwc-g3xp.json | 11 ++-- .../GHSA-7pwv-g7hj-39pr.json | 10 +++- .../GHSA-8gxf-54jp-wccf.json | 11 ++-- .../GHSA-f95q-fwq6-mx8w.json | 11 ++-- .../GHSA-ffxp-34wc-r8r7.json | 3 +- .../GHSA-gpj2-qxrh-r55r.json | 11 ++-- .../GHSA-hff3-p4h7-f98r.json | 11 ++-- .../GHSA-jvr7-jmp5-9485.json | 11 ++-- .../GHSA-rjp6-gjq7-25v6.json | 11 ++-- .../GHSA-rmc5-c4fj-6pr3.json | 2 +- .../GHSA-x2xj-658j-798f.json | 11 ++-- .../GHSA-x66f-v9ww-9c9p.json | 11 ++-- .../GHSA-xq7r-x85c-27jm.json | 11 ++-- .../GHSA-556j-85mj-9j97.json | 38 ++++++++++++ .../GHSA-6q4m-8cmc-2222.json | 47 +++++++++++++++ .../GHSA-794f-5gfq-xmmq.json | 47 +++++++++++++++ .../GHSA-7hxr-46j9-w526.json | 9 ++- .../GHSA-82ff-m8fh-55fh.json | 46 +++++++++++++++ .../GHSA-f2h5-3j7q-vp2p.json | 38 ++++++++++++ .../GHSA-f9gm-wm64-8rg3.json | 9 ++- .../GHSA-fgc8-q46c-35v5.json | 38 ++++++++++++ .../GHSA-h3jv-jqj2-3j68.json | 9 ++- .../GHSA-j3m3-gfhr-jmqf.json | 43 ++++++++++++++ .../GHSA-j755-mmjr-g7rh.json | 43 ++++++++++++++ .../GHSA-jw9p-3gc4-84rw.json | 38 ++++++++++++ .../GHSA-m294-4vh4-9qwg.json | 43 ++++++++++++++ .../GHSA-mmm5-wgvp-wp8r.json | 59 +++++++++++++++++++ .../GHSA-p34f-6xg6-mcrp.json | 51 ++++++++++++++++ .../GHSA-ph32-hgpc-r5j4.json | 47 +++++++++++++++ .../GHSA-pm7g-mpjq-33gr.json | 39 ++++++++++++ .../GHSA-v6f8-qv9p-xgc4.json | 31 ++++++++++ .../GHSA-x565-97fv-jfr5.json | 47 +++++++++++++++ 40 files changed, 824 insertions(+), 67 deletions(-) create mode 100644 advisories/unreviewed/2024/09/GHSA-556j-85mj-9j97/GHSA-556j-85mj-9j97.json create mode 100644 advisories/unreviewed/2024/09/GHSA-6q4m-8cmc-2222/GHSA-6q4m-8cmc-2222.json create mode 100644 advisories/unreviewed/2024/09/GHSA-794f-5gfq-xmmq/GHSA-794f-5gfq-xmmq.json create mode 100644 advisories/unreviewed/2024/09/GHSA-82ff-m8fh-55fh/GHSA-82ff-m8fh-55fh.json create mode 100644 advisories/unreviewed/2024/09/GHSA-f2h5-3j7q-vp2p/GHSA-f2h5-3j7q-vp2p.json create mode 100644 advisories/unreviewed/2024/09/GHSA-fgc8-q46c-35v5/GHSA-fgc8-q46c-35v5.json create mode 100644 advisories/unreviewed/2024/09/GHSA-j3m3-gfhr-jmqf/GHSA-j3m3-gfhr-jmqf.json create mode 100644 advisories/unreviewed/2024/09/GHSA-j755-mmjr-g7rh/GHSA-j755-mmjr-g7rh.json create mode 100644 advisories/unreviewed/2024/09/GHSA-jw9p-3gc4-84rw/GHSA-jw9p-3gc4-84rw.json create mode 100644 advisories/unreviewed/2024/09/GHSA-m294-4vh4-9qwg/GHSA-m294-4vh4-9qwg.json create mode 100644 advisories/unreviewed/2024/09/GHSA-mmm5-wgvp-wp8r/GHSA-mmm5-wgvp-wp8r.json create mode 100644 advisories/unreviewed/2024/09/GHSA-p34f-6xg6-mcrp/GHSA-p34f-6xg6-mcrp.json create mode 100644 advisories/unreviewed/2024/09/GHSA-ph32-hgpc-r5j4/GHSA-ph32-hgpc-r5j4.json create mode 100644 advisories/unreviewed/2024/09/GHSA-pm7g-mpjq-33gr/GHSA-pm7g-mpjq-33gr.json create mode 100644 advisories/unreviewed/2024/09/GHSA-v6f8-qv9p-xgc4/GHSA-v6f8-qv9p-xgc4.json create mode 100644 advisories/unreviewed/2024/09/GHSA-x565-97fv-jfr5/GHSA-x565-97fv-jfr5.json diff --git a/advisories/unreviewed/2022/05/GHSA-6mmp-f4p3-97mr/GHSA-6mmp-f4p3-97mr.json b/advisories/unreviewed/2022/05/GHSA-6mmp-f4p3-97mr/GHSA-6mmp-f4p3-97mr.json index a9b8ff637d0..da08ae149ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-6mmp-f4p3-97mr/GHSA-6mmp-f4p3-97mr.json +++ b/advisories/unreviewed/2022/05/GHSA-6mmp-f4p3-97mr/GHSA-6mmp-f4p3-97mr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6mmp-f4p3-97mr", - "modified": "2022-05-17T04:10:14Z", + "modified": "2024-09-03T15:30:38Z", "published": "2022-05-17T04:10:14Z", "aliases": [ "CVE-2013-6040" @@ -18,6 +18,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-6040" }, + { + "type": "WEB", + "url": "https://www.mw6tech.com" + }, { "type": "WEB", "url": "http://www.exploit-db.com/exploits/31176" diff --git a/advisories/unreviewed/2022/05/GHSA-hj9j-3xxg-6259/GHSA-hj9j-3xxg-6259.json b/advisories/unreviewed/2022/05/GHSA-hj9j-3xxg-6259/GHSA-hj9j-3xxg-6259.json index d77d052098d..2d689da5ca9 100644 --- a/advisories/unreviewed/2022/05/GHSA-hj9j-3xxg-6259/GHSA-hj9j-3xxg-6259.json +++ b/advisories/unreviewed/2022/05/GHSA-hj9j-3xxg-6259/GHSA-hj9j-3xxg-6259.json @@ -28,6 +28,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-22", "CWE-668" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2024/08/GHSA-25gf-472p-pjv4/GHSA-25gf-472p-pjv4.json b/advisories/unreviewed/2024/08/GHSA-25gf-472p-pjv4/GHSA-25gf-472p-pjv4.json index 8508b541fe0..d4eb2f0a5ab 100644 --- a/advisories/unreviewed/2024/08/GHSA-25gf-472p-pjv4/GHSA-25gf-472p-pjv4.json +++ b/advisories/unreviewed/2024/08/GHSA-25gf-472p-pjv4/GHSA-25gf-472p-pjv4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-25gf-472p-pjv4", - "modified": "2024-08-30T12:31:40Z", + "modified": "2024-09-03T15:30:40Z", "published": "2024-08-30T12:31:40Z", "aliases": [ "CVE-2022-48944" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nsched: Fix yet more sched_fork() races\n\nWhere commit 4ef0c5c6b5ba (\"kernel/sched: Fix sched_fork() access an\ninvalid sched_task_group\") fixed a fork race vs cgroup, it opened up a\nrace vs syscalls by not placing the task on the runqueue before it\ngets exposed through the pidhash.\n\nCommit 13765de8148f (\"sched/fair: Fix fault in reweight_entity\") is\ntrying to fix a single instance of this, instead fix the whole class\nof issues, effectively reverting this commit.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-30T11:15:14Z" diff --git a/advisories/unreviewed/2024/08/GHSA-2w45-v2hv-rxp2/GHSA-2w45-v2hv-rxp2.json b/advisories/unreviewed/2024/08/GHSA-2w45-v2hv-rxp2/GHSA-2w45-v2hv-rxp2.json index d87d9d66296..bdc2120d5ef 100644 --- a/advisories/unreviewed/2024/08/GHSA-2w45-v2hv-rxp2/GHSA-2w45-v2hv-rxp2.json +++ b/advisories/unreviewed/2024/08/GHSA-2w45-v2hv-rxp2/GHSA-2w45-v2hv-rxp2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2w45-v2hv-rxp2", - "modified": "2024-08-21T00:30:29Z", + "modified": "2024-09-03T15:30:38Z", "published": "2024-08-21T00:30:29Z", "aliases": [ "CVE-2024-43861" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: usb: qmi_wwan: fix memory leak for not ip packets\n\nFree the unused skb when not ip packets arrive.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-401" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-20T22:15:04Z" diff --git a/advisories/unreviewed/2024/08/GHSA-3826-h8f4-w96h/GHSA-3826-h8f4-w96h.json b/advisories/unreviewed/2024/08/GHSA-3826-h8f4-w96h/GHSA-3826-h8f4-w96h.json index 46eb0cd9a7e..674738b952b 100644 --- a/advisories/unreviewed/2024/08/GHSA-3826-h8f4-w96h/GHSA-3826-h8f4-w96h.json +++ b/advisories/unreviewed/2024/08/GHSA-3826-h8f4-w96h/GHSA-3826-h8f4-w96h.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3826-h8f4-w96h", - "modified": "2024-08-30T06:30:38Z", + "modified": "2024-09-03T15:30:40Z", "published": "2024-08-30T06:30:38Z", "aliases": [ "CVE-2024-5879" diff --git a/advisories/unreviewed/2024/08/GHSA-52j9-r8mv-933c/GHSA-52j9-r8mv-933c.json b/advisories/unreviewed/2024/08/GHSA-52j9-r8mv-933c/GHSA-52j9-r8mv-933c.json index fb7fe5b8024..f2c00afae4d 100644 --- a/advisories/unreviewed/2024/08/GHSA-52j9-r8mv-933c/GHSA-52j9-r8mv-933c.json +++ b/advisories/unreviewed/2024/08/GHSA-52j9-r8mv-933c/GHSA-52j9-r8mv-933c.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-52j9-r8mv-933c", - "modified": "2024-08-30T06:30:38Z", + "modified": "2024-09-03T15:30:40Z", "published": "2024-08-30T06:30:38Z", "aliases": [ "CVE-2024-5061" diff --git a/advisories/unreviewed/2024/08/GHSA-6mgg-r5cm-pmmg/GHSA-6mgg-r5cm-pmmg.json b/advisories/unreviewed/2024/08/GHSA-6mgg-r5cm-pmmg/GHSA-6mgg-r5cm-pmmg.json index 6b39b21ef3d..5df36cb5f21 100644 --- a/advisories/unreviewed/2024/08/GHSA-6mgg-r5cm-pmmg/GHSA-6mgg-r5cm-pmmg.json +++ b/advisories/unreviewed/2024/08/GHSA-6mgg-r5cm-pmmg/GHSA-6mgg-r5cm-pmmg.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6mgg-r5cm-pmmg", - "modified": "2024-08-21T03:31:53Z", + "modified": "2024-09-03T15:30:39Z", "published": "2024-08-21T03:31:53Z", "aliases": [ "CVE-2024-43874" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: ccp - Fix null pointer dereference in __sev_snp_shutdown_locked\n\nFix a null pointer dereference induced by DEBUG_TEST_DRIVER_REMOVE.\nReturn from __sev_snp_shutdown_locked() if the psp_device or the\nsev_device structs are not initialized. Without the fix, the driver will\nproduce the following splat:\n\n ccp 0000:55:00.5: enabling device (0000 -> 0002)\n ccp 0000:55:00.5: sev enabled\n ccp 0000:55:00.5: psp enabled\n BUG: kernel NULL pointer dereference, address: 00000000000000f0\n #PF: supervisor read access in kernel mode\n #PF: error_code(0x0000) - not-present page\n PGD 0 P4D 0\n Oops: 0000 [#1] PREEMPT SMP DEBUG_PAGEALLOC NOPTI\n CPU: 262 PID: 1 Comm: swapper/0 Not tainted 6.9.0-rc1+ #29\n RIP: 0010:__sev_snp_shutdown_locked+0x2e/0x150\n Code: 00 55 48 89 e5 41 57 41 56 41 54 53 48 83 ec 10 41 89 f7 49 89 fe 65 48 8b 04 25 28 00 00 00 48 89 45 d8 48 8b 05 6a 5a 7f 06 <4c> 8b a0 f0 00 00 00 41 0f b6 9c 24 a2 00 00 00 48 83 fb 02 0f 83\n RSP: 0018:ffffb2ea4014b7b8 EFLAGS: 00010286\n RAX: 0000000000000000 RBX: ffff9e4acd2e0a28 RCX: 0000000000000000\n RDX: 0000000000000000 RSI: 0000000000000000 RDI: ffffb2ea4014b808\n RBP: ffffb2ea4014b7e8 R08: 0000000000000106 R09: 000000000003d9c0\n R10: 0000000000000001 R11: ffffffffa39ff070 R12: ffff9e49d40590c8\n R13: 0000000000000000 R14: ffffb2ea4014b808 R15: 0000000000000000\n FS: 0000000000000000(0000) GS:ffff9e58b1e00000(0000) knlGS:0000000000000000\n CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n CR2: 00000000000000f0 CR3: 0000000418a3e001 CR4: 0000000000770ef0\n PKRU: 55555554\n Call Trace:\n \n ? __die_body+0x6f/0xb0\n ? __die+0xcc/0xf0\n ? page_fault_oops+0x330/0x3a0\n ? save_trace+0x2a5/0x360\n ? do_user_addr_fault+0x583/0x630\n ? exc_page_fault+0x81/0x120\n ? asm_exc_page_fault+0x2b/0x30\n ? __sev_snp_shutdown_locked+0x2e/0x150\n __sev_firmware_shutdown+0x349/0x5b0\n ? pm_runtime_barrier+0x66/0xe0\n sev_dev_destroy+0x34/0xb0\n psp_dev_destroy+0x27/0x60\n sp_destroy+0x39/0x90\n sp_pci_remove+0x22/0x60\n pci_device_remove+0x4e/0x110\n really_probe+0x271/0x4e0\n __driver_probe_device+0x8f/0x160\n driver_probe_device+0x24/0x120\n __driver_attach+0xc7/0x280\n ? driver_attach+0x30/0x30\n bus_for_each_dev+0x10d/0x130\n driver_attach+0x22/0x30\n bus_add_driver+0x171/0x2b0\n ? unaccepted_memory_init_kdump+0x20/0x20\n driver_register+0x67/0x100\n __pci_register_driver+0x83/0x90\n sp_pci_init+0x22/0x30\n sp_mod_init+0x13/0x30\n do_one_initcall+0xb8/0x290\n ? sched_clock_noinstr+0xd/0x10\n ? local_clock_noinstr+0x3e/0x100\n ? stack_depot_save_flags+0x21e/0x6a0\n ? local_clock+0x1c/0x60\n ? stack_depot_save_flags+0x21e/0x6a0\n ? sched_clock_noinstr+0xd/0x10\n ? local_clock_noinstr+0x3e/0x100\n ? __lock_acquire+0xd90/0xe30\n ? sched_clock_noinstr+0xd/0x10\n ? local_clock_noinstr+0x3e/0x100\n ? __create_object+0x66/0x100\n ? local_clock+0x1c/0x60\n ? __create_object+0x66/0x100\n ? parameq+0x1b/0x90\n ? parse_one+0x6d/0x1d0\n ? parse_args+0xd7/0x1f0\n ? do_initcall_level+0x180/0x180\n do_initcall_level+0xb0/0x180\n do_initcalls+0x60/0xa0\n ? kernel_init+0x1f/0x1d0\n do_basic_setup+0x41/0x50\n kernel_init_freeable+0x1ac/0x230\n ? rest_init+0x1f0/0x1f0\n kernel_init+0x1f/0x1d0\n ? rest_init+0x1f0/0x1f0\n ret_from_fork+0x3d/0x50\n ? rest_init+0x1f0/0x1f0\n ret_from_fork_asm+0x11/0x20\n \n Modules linked in:\n CR2: 00000000000000f0\n ---[ end trace 0000000000000000 ]---\n RIP: 0010:__sev_snp_shutdown_locked+0x2e/0x150\n Code: 00 55 48 89 e5 41 57 41 56 41 54 53 48 83 ec 10 41 89 f7 49 89 fe 65 48 8b 04 25 28 00 00 00 48 89 45 d8 48 8b 05 6a 5a 7f 06 <4c> 8b a0 f0 00 00 00 41 0f b6 9c 24 a2 00 00 00 48 83 fb 02 0f 83\n RSP: 0018:ffffb2ea4014b7b8 EFLAGS: 00010286\n RAX: 0000000000000000 RBX: ffff9e4acd2e0a28 RCX: 0000000000000000\n RDX: 0000000\n---truncated---", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-21T01:15:11Z" diff --git a/advisories/unreviewed/2024/08/GHSA-7f5w-jgw7-q73x/GHSA-7f5w-jgw7-q73x.json b/advisories/unreviewed/2024/08/GHSA-7f5w-jgw7-q73x/GHSA-7f5w-jgw7-q73x.json index 64d20976794..c89d239d63e 100644 --- a/advisories/unreviewed/2024/08/GHSA-7f5w-jgw7-q73x/GHSA-7f5w-jgw7-q73x.json +++ b/advisories/unreviewed/2024/08/GHSA-7f5w-jgw7-q73x/GHSA-7f5w-jgw7-q73x.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7f5w-jgw7-q73x", - "modified": "2024-08-29T18:31:35Z", + "modified": "2024-09-03T15:30:39Z", "published": "2024-08-29T18:31:35Z", "aliases": [ "CVE-2024-43946" diff --git a/advisories/unreviewed/2024/08/GHSA-7j47-mxwc-g3xp/GHSA-7j47-mxwc-g3xp.json b/advisories/unreviewed/2024/08/GHSA-7j47-mxwc-g3xp/GHSA-7j47-mxwc-g3xp.json index 1e15e09d4c1..f919bf5ee75 100644 --- a/advisories/unreviewed/2024/08/GHSA-7j47-mxwc-g3xp/GHSA-7j47-mxwc-g3xp.json +++ b/advisories/unreviewed/2024/08/GHSA-7j47-mxwc-g3xp/GHSA-7j47-mxwc-g3xp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7j47-mxwc-g3xp", - "modified": "2024-08-21T03:31:53Z", + "modified": "2024-09-03T15:30:39Z", "published": "2024-08-21T03:31:53Z", "aliases": [ "CVE-2024-43872" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/hns: Fix soft lockup under heavy CEQE load\n\nCEQEs are handled in interrupt handler currently. This may cause the\nCPU core staying in interrupt context too long and lead to soft lockup\nunder heavy load.\n\nHandle CEQEs in BH workqueue and set an upper limit for the number of\nCEQE handled by a single call of work handler.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-667" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-21T01:15:11Z" diff --git a/advisories/unreviewed/2024/08/GHSA-7pwv-g7hj-39pr/GHSA-7pwv-g7hj-39pr.json b/advisories/unreviewed/2024/08/GHSA-7pwv-g7hj-39pr/GHSA-7pwv-g7hj-39pr.json index 72874cf9cdb..bb7184e6ed3 100644 --- a/advisories/unreviewed/2024/08/GHSA-7pwv-g7hj-39pr/GHSA-7pwv-g7hj-39pr.json +++ b/advisories/unreviewed/2024/08/GHSA-7pwv-g7hj-39pr/GHSA-7pwv-g7hj-39pr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7pwv-g7hj-39pr", - "modified": "2024-08-20T18:31:21Z", + "modified": "2024-09-03T15:30:38Z", "published": "2024-08-19T21:35:10Z", "aliases": [ "CVE-2024-7592" @@ -29,6 +29,14 @@ "type": "WEB", "url": "https://github.com/python/cpython/pull/123075" }, + { + "type": "WEB", + "url": "https://github.com/python/cpython/commit/391e5626e3ee5af267b97e37abc7475732e67621" + }, + { + "type": "WEB", + "url": "https://github.com/python/cpython/commit/dcc3eaef98cd94d6cb6cb0f44bd1c903d04f33b1" + }, { "type": "WEB", "url": "https://mail.python.org/archives/list/security-announce@python.org/thread/HXJAAAALNUNGCQUS2W7WR6GFIZIHFOOK" diff --git a/advisories/unreviewed/2024/08/GHSA-8gxf-54jp-wccf/GHSA-8gxf-54jp-wccf.json b/advisories/unreviewed/2024/08/GHSA-8gxf-54jp-wccf/GHSA-8gxf-54jp-wccf.json index 44e52b998af..33a8638fe6e 100644 --- a/advisories/unreviewed/2024/08/GHSA-8gxf-54jp-wccf/GHSA-8gxf-54jp-wccf.json +++ b/advisories/unreviewed/2024/08/GHSA-8gxf-54jp-wccf/GHSA-8gxf-54jp-wccf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8gxf-54jp-wccf", - "modified": "2024-08-21T00:30:29Z", + "modified": "2024-09-03T15:30:39Z", "published": "2024-08-21T00:30:29Z", "aliases": [ "CVE-2024-43862" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: wan: fsl_qmc_hdlc: Convert carrier_lock spinlock to a mutex\n\nThe carrier_lock spinlock protects the carrier detection. While it is\nheld, framer_get_status() is called which in turn takes a mutex.\nThis is not correct and can lead to a deadlock.\n\nA run with PROVE_LOCKING enabled detected the issue:\n [ BUG: Invalid wait context ]\n ...\n c204ddbc (&framer->mutex){+.+.}-{3:3}, at: framer_get_status+0x40/0x78\n other info that might help us debug this:\n context-{4:4}\n 2 locks held by ifconfig/146:\n #0: c0926a38 (rtnl_mutex){+.+.}-{3:3}, at: devinet_ioctl+0x12c/0x664\n #1: c2006a40 (&qmc_hdlc->carrier_lock){....}-{2:2}, at: qmc_hdlc_framer_set_carrier+0x30/0x98\n\nAvoid the spinlock usage and convert carrier_lock to a mutex.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-667" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-21T00:15:04Z" diff --git a/advisories/unreviewed/2024/08/GHSA-f95q-fwq6-mx8w/GHSA-f95q-fwq6-mx8w.json b/advisories/unreviewed/2024/08/GHSA-f95q-fwq6-mx8w/GHSA-f95q-fwq6-mx8w.json index c1935d0daa5..392150caae9 100644 --- a/advisories/unreviewed/2024/08/GHSA-f95q-fwq6-mx8w/GHSA-f95q-fwq6-mx8w.json +++ b/advisories/unreviewed/2024/08/GHSA-f95q-fwq6-mx8w/GHSA-f95q-fwq6-mx8w.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f95q-fwq6-mx8w", - "modified": "2024-08-21T00:30:29Z", + "modified": "2024-09-03T15:30:39Z", "published": "2024-08-21T00:30:29Z", "aliases": [ "CVE-2024-43863" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/vmwgfx: Fix a deadlock in dma buf fence polling\n\nIntroduce a version of the fence ops that on release doesn't remove\nthe fence from the pending list, and thus doesn't require a lock to\nfix poll->fence wait->fence unref deadlocks.\n\nvmwgfx overwrites the wait callback to iterate over the list of all\nfences and update their status, to do that it holds a lock to prevent\nthe list modifcations from other threads. The fence destroy callback\nboth deletes the fence and removes it from the list of pending\nfences, for which it holds a lock.\n\ndma buf polling cb unrefs a fence after it's been signaled: so the poll\ncalls the wait, which signals the fences, which are being destroyed.\nThe destruction tries to acquire the lock on the pending fences list\nwhich it can never get because it's held by the wait from which it\nwas called.\n\nOld bug, but not a lot of userspace apps were using dma-buf polling\ninterfaces. Fix those, in particular this fixes KDE stalls/deadlock.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -41,9 +44,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-667" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-21T00:15:04Z" diff --git a/advisories/unreviewed/2024/08/GHSA-ffxp-34wc-r8r7/GHSA-ffxp-34wc-r8r7.json b/advisories/unreviewed/2024/08/GHSA-ffxp-34wc-r8r7/GHSA-ffxp-34wc-r8r7.json index fb5e71c4ec4..0fe8a9368ae 100644 --- a/advisories/unreviewed/2024/08/GHSA-ffxp-34wc-r8r7/GHSA-ffxp-34wc-r8r7.json +++ b/advisories/unreviewed/2024/08/GHSA-ffxp-34wc-r8r7/GHSA-ffxp-34wc-r8r7.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-ffxp-34wc-r8r7", - "modified": "2024-08-30T12:31:40Z", + "modified": "2024-09-03T15:30:40Z", "published": "2024-08-30T12:31:40Z", "aliases": [ "CVE-2024-8252" @@ -40,6 +40,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-829", "CWE-98" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2024/08/GHSA-gpj2-qxrh-r55r/GHSA-gpj2-qxrh-r55r.json b/advisories/unreviewed/2024/08/GHSA-gpj2-qxrh-r55r/GHSA-gpj2-qxrh-r55r.json index ac7d4dea676..feb84040c52 100644 --- a/advisories/unreviewed/2024/08/GHSA-gpj2-qxrh-r55r/GHSA-gpj2-qxrh-r55r.json +++ b/advisories/unreviewed/2024/08/GHSA-gpj2-qxrh-r55r/GHSA-gpj2-qxrh-r55r.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gpj2-qxrh-r55r", - "modified": "2024-08-21T03:31:53Z", + "modified": "2024-09-03T15:30:39Z", "published": "2024-08-21T03:31:53Z", "aliases": [ "CVE-2024-43882" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nexec: Fix ToCToU between perm check and set-uid/gid usage\n\nWhen opening a file for exec via do_filp_open(), permission checking is\ndone against the file's metadata at that moment, and on success, a file\npointer is passed back. Much later in the execve() code path, the file\nmetadata (specifically mode, uid, and gid) is used to determine if/how\nto set the uid and gid. However, those values may have changed since the\npermissions check, meaning the execution may gain unintended privileges.\n\nFor example, if a file could change permissions from executable and not\nset-id:\n\n---------x 1 root root 16048 Aug 7 13:16 target\n\nto set-id and non-executable:\n\n---S------ 1 root root 16048 Aug 7 13:16 target\n\nit is possible to gain root privileges when execution should have been\ndisallowed.\n\nWhile this race condition is rare in real-world scenarios, it has been\nobserved (and proven exploitable) when package managers are updating\nthe setuid bits of installed programs. Such files start with being\nworld-executable but then are adjusted to be group-exec with a set-uid\nbit. For example, \"chmod o-x,u+s target\" makes \"target\" executable only\nby uid \"root\" and gid \"cdrom\", while also becoming setuid-root:\n\n-rwxr-xr-x 1 root cdrom 16048 Aug 7 13:16 target\n\nbecomes:\n\n-rwsr-xr-- 1 root cdrom 16048 Aug 7 13:16 target\n\nBut racing the chmod means users without group \"cdrom\" membership can\nget the permission to execute \"target\" just before the chmod, and when\nthe chmod finishes, the exec reaches brpm_fill_uid(), and performs the\nsetuid to root, violating the expressed authorization of \"only cdrom\ngroup members can setuid to root\".\n\nRe-check that we still have execute permissions in case the metadata\nhas changed. It would be better to keep a copy from the perm-check time,\nbut until we can do that refactoring, the least-bad option is to do a\nfull inode_permission() call (under inode lock). It is understood that\nthis is safe against dead-locks, but hardly optimal.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-367" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-21T01:15:12Z" diff --git a/advisories/unreviewed/2024/08/GHSA-hff3-p4h7-f98r/GHSA-hff3-p4h7-f98r.json b/advisories/unreviewed/2024/08/GHSA-hff3-p4h7-f98r/GHSA-hff3-p4h7-f98r.json index 6eff339ae77..2595465ae42 100644 --- a/advisories/unreviewed/2024/08/GHSA-hff3-p4h7-f98r/GHSA-hff3-p4h7-f98r.json +++ b/advisories/unreviewed/2024/08/GHSA-hff3-p4h7-f98r/GHSA-hff3-p4h7-f98r.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hff3-p4h7-f98r", - "modified": "2024-08-30T09:31:17Z", + "modified": "2024-09-03T15:30:40Z", "published": "2024-08-30T09:31:17Z", "aliases": [ "CVE-2024-42412" ], "details": "Cross-site scripting vulnerability exists in WAB-I1750-PS and WAB-S1167-PS due to improper processing of input values in menu.cgi. If a user views a malicious web page while logged in to the product, an arbitrary script may be executed on the user's web browser.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-30T07:15:12Z" diff --git a/advisories/unreviewed/2024/08/GHSA-jvr7-jmp5-9485/GHSA-jvr7-jmp5-9485.json b/advisories/unreviewed/2024/08/GHSA-jvr7-jmp5-9485/GHSA-jvr7-jmp5-9485.json index eb628e7a607..ab64c6e6749 100644 --- a/advisories/unreviewed/2024/08/GHSA-jvr7-jmp5-9485/GHSA-jvr7-jmp5-9485.json +++ b/advisories/unreviewed/2024/08/GHSA-jvr7-jmp5-9485/GHSA-jvr7-jmp5-9485.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jvr7-jmp5-9485", - "modified": "2024-08-30T09:31:17Z", + "modified": "2024-09-03T15:30:40Z", "published": "2024-08-30T09:31:17Z", "aliases": [ "CVE-2024-34577" ], "details": "Cross-site scripting vulnerability exists in WRC-X3000GS2-B, WRC-X3000GS2-W, and WRC-X3000GS2A-B due to improper processing of input values in easysetup.cgi. If a user views a malicious web page while logged in to the product, an arbitrary script may be executed on the user's web browser.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-30T07:15:11Z" diff --git a/advisories/unreviewed/2024/08/GHSA-rjp6-gjq7-25v6/GHSA-rjp6-gjq7-25v6.json b/advisories/unreviewed/2024/08/GHSA-rjp6-gjq7-25v6/GHSA-rjp6-gjq7-25v6.json index 59d831e8273..76312313136 100644 --- a/advisories/unreviewed/2024/08/GHSA-rjp6-gjq7-25v6/GHSA-rjp6-gjq7-25v6.json +++ b/advisories/unreviewed/2024/08/GHSA-rjp6-gjq7-25v6/GHSA-rjp6-gjq7-25v6.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-rjp6-gjq7-25v6", - "modified": "2024-08-21T03:31:53Z", + "modified": "2024-09-03T15:30:39Z", "published": "2024-08-21T03:31:53Z", "aliases": [ "CVE-2024-43873" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nvhost/vsock: always initialize seqpacket_allow\n\nThere are two issues around seqpacket_allow:\n1. seqpacket_allow is not initialized when socket is\n created. Thus if features are never set, it will be\n read uninitialized.\n2. if VIRTIO_VSOCK_F_SEQPACKET is set and then cleared,\n then seqpacket_allow will not be cleared appropriately\n (existing apps I know about don't usually do this but\n it's legal and there's no way to be sure no one relies\n on this).\n\nTo fix:\n\t- initialize seqpacket_allow after allocation\n\t- set it unconditionally in set_features", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -41,9 +44,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-909" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-21T01:15:11Z" diff --git a/advisories/unreviewed/2024/08/GHSA-rmc5-c4fj-6pr3/GHSA-rmc5-c4fj-6pr3.json b/advisories/unreviewed/2024/08/GHSA-rmc5-c4fj-6pr3/GHSA-rmc5-c4fj-6pr3.json index f9178dc82d3..2939611d2a8 100644 --- a/advisories/unreviewed/2024/08/GHSA-rmc5-c4fj-6pr3/GHSA-rmc5-c4fj-6pr3.json +++ b/advisories/unreviewed/2024/08/GHSA-rmc5-c4fj-6pr3/GHSA-rmc5-c4fj-6pr3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-rmc5-c4fj-6pr3", - "modified": "2024-08-29T18:31:35Z", + "modified": "2024-09-03T15:30:39Z", "published": "2024-08-29T18:31:35Z", "aliases": [ "CVE-2024-43935" diff --git a/advisories/unreviewed/2024/08/GHSA-x2xj-658j-798f/GHSA-x2xj-658j-798f.json b/advisories/unreviewed/2024/08/GHSA-x2xj-658j-798f/GHSA-x2xj-658j-798f.json index b9e8b537b56..13243813ad3 100644 --- a/advisories/unreviewed/2024/08/GHSA-x2xj-658j-798f/GHSA-x2xj-658j-798f.json +++ b/advisories/unreviewed/2024/08/GHSA-x2xj-658j-798f/GHSA-x2xj-658j-798f.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-x2xj-658j-798f", - "modified": "2024-08-21T03:31:53Z", + "modified": "2024-09-03T15:30:39Z", "published": "2024-08-21T03:31:53Z", "aliases": [ "CVE-2024-43871" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndevres: Fix memory leakage caused by driver API devm_free_percpu()\n\nIt will cause memory leakage when use driver API devm_free_percpu()\nto free memory allocated by devm_alloc_percpu(), fixed by using\ndevres_release() instead of devres_destroy() within devm_free_percpu().", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-401" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-21T01:15:11Z" diff --git a/advisories/unreviewed/2024/08/GHSA-x66f-v9ww-9c9p/GHSA-x66f-v9ww-9c9p.json b/advisories/unreviewed/2024/08/GHSA-x66f-v9ww-9c9p/GHSA-x66f-v9ww-9c9p.json index 080c303deae..971c5e65a2e 100644 --- a/advisories/unreviewed/2024/08/GHSA-x66f-v9ww-9c9p/GHSA-x66f-v9ww-9c9p.json +++ b/advisories/unreviewed/2024/08/GHSA-x66f-v9ww-9c9p/GHSA-x66f-v9ww-9c9p.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-x66f-v9ww-9c9p", - "modified": "2024-08-19T06:30:53Z", + "modified": "2024-09-03T15:30:38Z", "published": "2024-08-17T09:30:25Z", "aliases": [ "CVE-2024-42308" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Check for NULL pointer\n\n[why & how]\nNeed to make sure plane_state is initialized\nbefore accessing its members.\n\n(cherry picked from commit 295d91cbc700651782a60572f83c24861607b648)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -49,9 +52,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-17T09:15:10Z" diff --git a/advisories/unreviewed/2024/08/GHSA-xq7r-x85c-27jm/GHSA-xq7r-x85c-27jm.json b/advisories/unreviewed/2024/08/GHSA-xq7r-x85c-27jm/GHSA-xq7r-x85c-27jm.json index 1739c090896..4706d00aadc 100644 --- a/advisories/unreviewed/2024/08/GHSA-xq7r-x85c-27jm/GHSA-xq7r-x85c-27jm.json +++ b/advisories/unreviewed/2024/08/GHSA-xq7r-x85c-27jm/GHSA-xq7r-x85c-27jm.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-xq7r-x85c-27jm", - "modified": "2024-08-30T09:31:17Z", + "modified": "2024-09-03T15:30:40Z", "published": "2024-08-30T09:31:17Z", "aliases": [ "CVE-2024-44944" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: ctnetlink: use helper function to calculate expect ID\n\nDelete expectation path is missing a call to the nf_expect_get_id()\nhelper function to calculate the expectation ID, otherwise LSB of the\nexpectation object address is leaked to userspace.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-401" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-30T08:15:04Z" diff --git a/advisories/unreviewed/2024/09/GHSA-556j-85mj-9j97/GHSA-556j-85mj-9j97.json b/advisories/unreviewed/2024/09/GHSA-556j-85mj-9j97/GHSA-556j-85mj-9j97.json new file mode 100644 index 00000000000..c6cccf44865 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-556j-85mj-9j97/GHSA-556j-85mj-9j97.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-556j-85mj-9j97", + "modified": "2024-09-03T15:30:46Z", + "published": "2024-09-03T15:30:46Z", + "aliases": [ + "CVE-2024-7345" + ], + "details": "Local ABL Client bypass of the required PASOE security checks may allow an attacker to commit unauthorized code injection into Multi-Session Agents on supported OpenEdge LTS platforms up to OpenEdge LTS 11.7.18 and LTS 12.2.13 on all supported release platforms", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-7345" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/Direct-local-client-connections-to-MS-Agents-can-bypass-authentication" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-94" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-03T15:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-6q4m-8cmc-2222/GHSA-6q4m-8cmc-2222.json b/advisories/unreviewed/2024/09/GHSA-6q4m-8cmc-2222/GHSA-6q4m-8cmc-2222.json new file mode 100644 index 00000000000..c47cf000d3f --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-6q4m-8cmc-2222/GHSA-6q4m-8cmc-2222.json @@ -0,0 +1,47 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6q4m-8cmc-2222", + "modified": "2024-09-03T15:30:46Z", + "published": "2024-09-03T15:30:46Z", + "aliases": [ + "CVE-2024-8384" + ], + "details": "The JavaScript garbage collector could mis-color cross-compartment objects if OOM conditions were detected at the right point between two passes. This could have led to memory corruption. This vulnerability affects Firefox < 130, Firefox ESR < 128.2, and Firefox ESR < 115.15.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8384" + }, + { + "type": "WEB", + "url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1911288" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-39" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-40" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-41" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-03T13:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-794f-5gfq-xmmq/GHSA-794f-5gfq-xmmq.json b/advisories/unreviewed/2024/09/GHSA-794f-5gfq-xmmq/GHSA-794f-5gfq-xmmq.json new file mode 100644 index 00000000000..49ad0becd2b --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-794f-5gfq-xmmq/GHSA-794f-5gfq-xmmq.json @@ -0,0 +1,47 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-794f-5gfq-xmmq", + "modified": "2024-09-03T15:30:46Z", + "published": "2024-09-03T15:30:46Z", + "aliases": [ + "CVE-2024-8383" + ], + "details": "Firefox normally asks for confirmation before asking the operating system to find an application to handle a scheme that the browser does not support. It did not ask before doing so for the Usenet-related schemes news: and snews:. Since most operating systems don't have a trusted newsreader installed by default, an unscrupulous program that the user downloaded could register itself as a handler. The website that served the application download could then launch that application at will This vulnerability affects Firefox < 130, Firefox ESR < 128.2, and Firefox ESR < 115.15.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8383" + }, + { + "type": "WEB", + "url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1908496" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-39" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-40" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-41" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-03T13:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-7hxr-46j9-w526/GHSA-7hxr-46j9-w526.json b/advisories/unreviewed/2024/09/GHSA-7hxr-46j9-w526/GHSA-7hxr-46j9-w526.json index e9df68af09b..c8fb5d21acd 100644 --- a/advisories/unreviewed/2024/09/GHSA-7hxr-46j9-w526/GHSA-7hxr-46j9-w526.json +++ b/advisories/unreviewed/2024/09/GHSA-7hxr-46j9-w526/GHSA-7hxr-46j9-w526.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7hxr-46j9-w526", - "modified": "2024-09-02T09:30:45Z", + "modified": "2024-09-03T15:30:43Z", "published": "2024-09-02T09:30:45Z", "aliases": [ "CVE-2024-7690" ], "details": "The DN Popup WordPress plugin through 1.2.2 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:L" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-02T08:15:06Z" diff --git a/advisories/unreviewed/2024/09/GHSA-82ff-m8fh-55fh/GHSA-82ff-m8fh-55fh.json b/advisories/unreviewed/2024/09/GHSA-82ff-m8fh-55fh/GHSA-82ff-m8fh-55fh.json new file mode 100644 index 00000000000..c996d7a5f4b --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-82ff-m8fh-55fh/GHSA-82ff-m8fh-55fh.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-82ff-m8fh-55fh", + "modified": "2024-09-03T15:30:46Z", + "published": "2024-09-03T15:30:46Z", + "aliases": [ + "CVE-2024-34463" + ], + "details": "BPL Personal Weighing Scale PWS-01BT IND/09/18/599 devices send sensitive information in unencrypted BLE packets. (The packet data also lacks authentication and integrity protection.)", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34463" + }, + { + "type": "WEB", + "url": "https://github.com/yash-chandna/CVE-2024-34463" + }, + { + "type": "WEB", + "url": "https://www.bplmedicaltechnologies.com/product-details/weighing-scales/personal-weighing-scale-pws-01bt" + }, + { + "type": "WEB", + "url": "https://yashhchandna.medium.com/random-sunday-thought-turned-into-a-cve-09ca0c08343f" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-285" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-03T14:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-f2h5-3j7q-vp2p/GHSA-f2h5-3j7q-vp2p.json b/advisories/unreviewed/2024/09/GHSA-f2h5-3j7q-vp2p/GHSA-f2h5-3j7q-vp2p.json new file mode 100644 index 00000000000..909f9afb04d --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-f2h5-3j7q-vp2p/GHSA-f2h5-3j7q-vp2p.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f2h5-3j7q-vp2p", + "modified": "2024-09-03T15:30:46Z", + "published": "2024-09-03T15:30:46Z", + "aliases": [ + "CVE-2024-4259" + ], + "details": "Improper Privilege Management vulnerability in SAMPA? Holding AKOS allows Collect Data as Provided by Users.This issue affects AKOS: through 20240902. \n\nNOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4259" + }, + { + "type": "WEB", + "url": "https://www.usom.gov.tr/bildirim/tr-24-1377" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-269" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-03T14:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-f9gm-wm64-8rg3/GHSA-f9gm-wm64-8rg3.json b/advisories/unreviewed/2024/09/GHSA-f9gm-wm64-8rg3/GHSA-f9gm-wm64-8rg3.json index 34f861de74f..c5858571a8f 100644 --- a/advisories/unreviewed/2024/09/GHSA-f9gm-wm64-8rg3/GHSA-f9gm-wm64-8rg3.json +++ b/advisories/unreviewed/2024/09/GHSA-f9gm-wm64-8rg3/GHSA-f9gm-wm64-8rg3.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f9gm-wm64-8rg3", - "modified": "2024-09-03T12:30:32Z", + "modified": "2024-09-03T15:30:44Z", "published": "2024-09-03T12:30:32Z", "aliases": [ "CVE-2024-3655" ], "details": "Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user to make improper GPU memory processing operations to gain access to already freed memory.This issue affects Bifrost GPU Kernel Driver: from r43p0 through r49p0; Valhall GPU Kernel Driver: from r43p0 through r49p0; Arm 5th Gen GPU Architecture Kernel Driver: from r43p0 through r49p0.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-03T10:15:06Z" diff --git a/advisories/unreviewed/2024/09/GHSA-fgc8-q46c-35v5/GHSA-fgc8-q46c-35v5.json b/advisories/unreviewed/2024/09/GHSA-fgc8-q46c-35v5/GHSA-fgc8-q46c-35v5.json new file mode 100644 index 00000000000..08ee79eaec6 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-fgc8-q46c-35v5/GHSA-fgc8-q46c-35v5.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fgc8-q46c-35v5", + "modified": "2024-09-03T15:30:46Z", + "published": "2024-09-03T15:30:46Z", + "aliases": [ + "CVE-2024-7654" + ], + "details": "An ActiveMQ Discovery service was reachable by default from an OpenEdge Management installation when an OEE/OEM auto-discovery feature was activated.  Unauthorized access to the discovery service's UDP port allowed content injection into parts of the OEM web interface making it possible for other types of attack that could spoof or deceive web interface users.   Unauthorized use of the OEE/OEM discovery service was remediated by deactivating the discovery service by default.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-7654" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/Unauthenticated-Content-Injection-in-OpenEdge-Management-web-interface-via-ActiveMQ-discovery-service" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-03T15:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-h3jv-jqj2-3j68/GHSA-h3jv-jqj2-3j68.json b/advisories/unreviewed/2024/09/GHSA-h3jv-jqj2-3j68/GHSA-h3jv-jqj2-3j68.json index fc72f8221a2..30b66e7d549 100644 --- a/advisories/unreviewed/2024/09/GHSA-h3jv-jqj2-3j68/GHSA-h3jv-jqj2-3j68.json +++ b/advisories/unreviewed/2024/09/GHSA-h3jv-jqj2-3j68/GHSA-h3jv-jqj2-3j68.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-h3jv-jqj2-3j68", - "modified": "2024-09-02T09:30:45Z", + "modified": "2024-09-03T15:30:43Z", "published": "2024-09-02T09:30:45Z", "aliases": [ "CVE-2024-7354" ], "details": "The Ninja Forms WordPress plugin before 3.8.11 does not escape an URL before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-02T08:15:06Z" diff --git a/advisories/unreviewed/2024/09/GHSA-j3m3-gfhr-jmqf/GHSA-j3m3-gfhr-jmqf.json b/advisories/unreviewed/2024/09/GHSA-j3m3-gfhr-jmqf/GHSA-j3m3-gfhr-jmqf.json new file mode 100644 index 00000000000..ba14c62b83d --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-j3m3-gfhr-jmqf/GHSA-j3m3-gfhr-jmqf.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j3m3-gfhr-jmqf", + "modified": "2024-09-03T15:30:46Z", + "published": "2024-09-03T15:30:46Z", + "aliases": [ + "CVE-2024-8385" + ], + "details": "A difference in the handling of StructFields and ArrayTypes in WASM could be used to trigger an exploitable type confusion vulnerability. This vulnerability affects Firefox < 130 and Firefox ESR < 128.2.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8385" + }, + { + "type": "WEB", + "url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1911909" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-39" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-40" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-03T13:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-j755-mmjr-g7rh/GHSA-j755-mmjr-g7rh.json b/advisories/unreviewed/2024/09/GHSA-j755-mmjr-g7rh/GHSA-j755-mmjr-g7rh.json new file mode 100644 index 00000000000..19477a29f7c --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-j755-mmjr-g7rh/GHSA-j755-mmjr-g7rh.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j755-mmjr-g7rh", + "modified": "2024-09-03T15:30:46Z", + "published": "2024-09-03T15:30:46Z", + "aliases": [ + "CVE-2024-8388" + ], + "details": "Multiple prompts and panels from both Firefox and the Android OS could be used to obscure the notification announcing the transition to fullscreen mode after the fix for CVE-2023-6870 in Firefox 121. This could lead to spoofing the browser UI if the sudden appearance of the prompt distracted the user from noticing the visual transition happening behind the prompt. These notifications now use the Android Toast feature. \n*This bug only affects Firefox on Android. Other operating systems are unaffected.* This vulnerability affects Firefox < 130.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8388" + }, + { + "type": "WEB", + "url": "https://bugzilla.mozilla.org/buglist.cgi?bug_id=1839074%2C1865413%2C1868970%2C1873367%2C1877820%2C1884642%2C1886469%2C1894326%2C1894891%2C1897648" + }, + { + "type": "WEB", + "url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1902996" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-39" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-03T13:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-jw9p-3gc4-84rw/GHSA-jw9p-3gc4-84rw.json b/advisories/unreviewed/2024/09/GHSA-jw9p-3gc4-84rw/GHSA-jw9p-3gc4-84rw.json new file mode 100644 index 00000000000..b82c46af56b --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-jw9p-3gc4-84rw/GHSA-jw9p-3gc4-84rw.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jw9p-3gc4-84rw", + "modified": "2024-09-03T15:30:46Z", + "published": "2024-09-03T15:30:46Z", + "aliases": [ + "CVE-2024-7346" + ], + "details": "Host name validation for TLS certificates is bypassed when the installed OpenEdge default certificates are used to perform the TLS handshake for a networked connection.  This has been corrected so that default certificates are no longer capable of overriding host name validation and will need to be replaced where full TLS certificate validation is needed for network security.  The existing certificates should be replaced with CA-signed certificates from a recognized certificate authority that contain the necessary information to support host name validation.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-7346" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/Client-connections-using-default-TLS-certificates-from-OpenEdge-may-bypass-TLS-host-name-validation" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-297" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-03T15:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-m294-4vh4-9qwg/GHSA-m294-4vh4-9qwg.json b/advisories/unreviewed/2024/09/GHSA-m294-4vh4-9qwg/GHSA-m294-4vh4-9qwg.json new file mode 100644 index 00000000000..f548280216a --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-m294-4vh4-9qwg/GHSA-m294-4vh4-9qwg.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-m294-4vh4-9qwg", + "modified": "2024-09-03T15:30:46Z", + "published": "2024-09-03T15:30:46Z", + "aliases": [ + "CVE-2024-8387" + ], + "details": "Memory safety bugs present in Firefox 129, Firefox ESR 128.1, and Thunderbird 128.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 130 and Firefox ESR < 128.2.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8387" + }, + { + "type": "WEB", + "url": "https://bugzilla.mozilla.org/buglist.cgi?bug_id=1857607%2C1911858%2C1914009" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-39" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-40" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-03T13:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-mmm5-wgvp-wp8r/GHSA-mmm5-wgvp-wp8r.json b/advisories/unreviewed/2024/09/GHSA-mmm5-wgvp-wp8r/GHSA-mmm5-wgvp-wp8r.json new file mode 100644 index 00000000000..8bdd8cf011b --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-mmm5-wgvp-wp8r/GHSA-mmm5-wgvp-wp8r.json @@ -0,0 +1,59 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mmm5-wgvp-wp8r", + "modified": "2024-09-03T15:30:44Z", + "published": "2024-09-03T15:30:44Z", + "aliases": [ + "CVE-2024-6232" + ], + "details": "There is a MEDIUM severity vulnerability affecting CPython.\n\n\n\n\n\nRegular expressions that allowed excessive backtracking during tarfile.TarFile header parsing are vulnerable to ReDoS via specifically-crafted tar archives.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6232" + }, + { + "type": "WEB", + "url": "https://github.com/python/cpython/issues/121285" + }, + { + "type": "WEB", + "url": "https://github.com/python/cpython/pull/121286" + }, + { + "type": "WEB", + "url": "https://github.com/python/cpython/commit/4eaf4891c12589e3c7bdad5f5b076e4c8392dd06" + }, + { + "type": "WEB", + "url": "https://github.com/python/cpython/commit/743acbe872485dc18df4d8ab2dc7895187f062c4" + }, + { + "type": "WEB", + "url": "https://github.com/python/cpython/commit/d449caf8a179e3b954268b3a88eb9170be3c8fbf" + }, + { + "type": "WEB", + "url": "https://github.com/python/cpython/commit/ed3a49ea734ada357ff4442996fd4ae71d253373" + }, + { + "type": "WEB", + "url": "https://mail.python.org/archives/list/security-announce@python.org/thread/JRYFTPRHZRTLMZLWQEUHZSJXNHM4ACTY" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-1333" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-03T13:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-p34f-6xg6-mcrp/GHSA-p34f-6xg6-mcrp.json b/advisories/unreviewed/2024/09/GHSA-p34f-6xg6-mcrp/GHSA-p34f-6xg6-mcrp.json new file mode 100644 index 00000000000..b6650a885f5 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-p34f-6xg6-mcrp/GHSA-p34f-6xg6-mcrp.json @@ -0,0 +1,51 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p34f-6xg6-mcrp", + "modified": "2024-09-03T15:30:46Z", + "published": "2024-09-03T15:30:46Z", + "aliases": [ + "CVE-2024-8386" + ], + "details": "If a site had been granted the permission to open popup windows, it could cause Select elements to appear on top of another site to perform a spoofing attack. This vulnerability affects Firefox < 130 and Firefox ESR < 128.2.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8386" + }, + { + "type": "WEB", + "url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1907032" + }, + { + "type": "WEB", + "url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1909163" + }, + { + "type": "WEB", + "url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1909529" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-39" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-40" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-03T13:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-ph32-hgpc-r5j4/GHSA-ph32-hgpc-r5j4.json b/advisories/unreviewed/2024/09/GHSA-ph32-hgpc-r5j4/GHSA-ph32-hgpc-r5j4.json new file mode 100644 index 00000000000..5c0fff0da4e --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-ph32-hgpc-r5j4/GHSA-ph32-hgpc-r5j4.json @@ -0,0 +1,47 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-ph32-hgpc-r5j4", + "modified": "2024-09-03T15:30:45Z", + "published": "2024-09-03T15:30:45Z", + "aliases": [ + "CVE-2024-8382" + ], + "details": "Internal browser event interfaces were exposed to web content when privileged EventHandler listener callbacks ran for those events. Web content that tried to use those interfaces would not be able to use them with elevated privileges, but their presence would indicate certain browser features had been used, such as when a user opened the Dev Tools console. This vulnerability affects Firefox < 130, Firefox ESR < 128.2, and Firefox ESR < 115.15.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8382" + }, + { + "type": "WEB", + "url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1906744" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-39" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-40" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-41" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-03T13:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-pm7g-mpjq-33gr/GHSA-pm7g-mpjq-33gr.json b/advisories/unreviewed/2024/09/GHSA-pm7g-mpjq-33gr/GHSA-pm7g-mpjq-33gr.json new file mode 100644 index 00000000000..6debd442be3 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-pm7g-mpjq-33gr/GHSA-pm7g-mpjq-33gr.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pm7g-mpjq-33gr", + "modified": "2024-09-03T15:30:46Z", + "published": "2024-09-03T15:30:46Z", + "aliases": [ + "CVE-2024-8389" + ], + "details": "Memory safety bugs present in Firefox 129. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 130.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8389" + }, + { + "type": "WEB", + "url": "https://bugzilla.mozilla.org/buglist.cgi?bug_id=1907230%2C1909367" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-39" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-03T13:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-v6f8-qv9p-xgc4/GHSA-v6f8-qv9p-xgc4.json b/advisories/unreviewed/2024/09/GHSA-v6f8-qv9p-xgc4/GHSA-v6f8-qv9p-xgc4.json new file mode 100644 index 00000000000..91092c50992 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-v6f8-qv9p-xgc4/GHSA-v6f8-qv9p-xgc4.json @@ -0,0 +1,31 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v6f8-qv9p-xgc4", + "modified": "2024-09-03T15:30:44Z", + "published": "2024-09-03T15:30:44Z", + "aliases": [ + "CVE-2024-8371" + ], + "details": "Rejected reason: Duplicate of CVE-2024-45305.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8371" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-03T13:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-x565-97fv-jfr5/GHSA-x565-97fv-jfr5.json b/advisories/unreviewed/2024/09/GHSA-x565-97fv-jfr5/GHSA-x565-97fv-jfr5.json new file mode 100644 index 00000000000..f1f5e66905c --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-x565-97fv-jfr5/GHSA-x565-97fv-jfr5.json @@ -0,0 +1,47 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x565-97fv-jfr5", + "modified": "2024-09-03T15:30:45Z", + "published": "2024-09-03T15:30:45Z", + "aliases": [ + "CVE-2024-8381" + ], + "details": "A potentially exploitable type confusion could be triggered when looking up a property name on an object being used as the `with` environment. This vulnerability affects Firefox < 130, Firefox ESR < 128.2, and Firefox ESR < 115.15.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8381" + }, + { + "type": "WEB", + "url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1912715" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-39" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-40" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-41" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-03T13:15:05Z" + } +} \ No newline at end of file