Advisory Database Sync

This commit is contained in:
advisory-database[bot]
2025-04-29 15:32:46 +00:00
parent 7b141ec2bb
commit 36370c2ec9
60 changed files with 1298 additions and 84 deletions
@@ -1,13 +1,18 @@
{
"schema_version": "1.4.0",
"id": "GHSA-wf85-g3p6-xf4h",
"modified": "2022-05-24T17:37:19Z",
"modified": "2025-04-29T15:31:13Z",
"published": "2022-05-24T17:37:19Z",
"aliases": [
"CVE-2020-29385"
],
"details": "GNOME gdk-pixbuf (aka GdkPixbuf) before 2.42.2 allows a denial of service (infinite loop) in lzw.c in the function write_indexes. if c->self_code equals 10, self->code_table[10].extends will assign the value 11 to c. The next execution in the loop will assign self->code_table[11].extends to c, which will give the value of 10. This will make the loop run infinitely. This bug can, for example, be triggered by calling this function with a GIF image with LZW compression that is crafted in a special way.",
"severity": [],
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
}
],
"affected": [],
"references": [
{
@@ -26,6 +31,18 @@
"type": "WEB",
"url": "https://gitlab.gnome.org/GNOME/gdk-pixbuf/-/issues/164"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/B5H3GNVWMZTYZR3JBYCK57PF7PFMQBNP"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BGZVCTH5O7WBJLYXZ2UOKLYNIFPVR55D"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EANWYODLOJDFLMBH6WEKJJMQ5PKLEWML"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/B5H3GNVWMZTYZR3JBYCK57PF7PFMQBNP"
@@ -26,7 +26,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-77"
"CWE-77",
"CWE-78"
],
"severity": "CRITICAL",
"github_reviewed": false,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-3vwh-4gr8-m2f4",
"modified": "2022-11-16T19:00:25Z",
"modified": "2025-04-29T15:31:13Z",
"published": "2022-11-12T12:00:29Z",
"aliases": [
"CVE-2022-45193"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-768r-2vmx-w6mf",
"modified": "2022-11-22T18:30:14Z",
"modified": "2025-04-29T15:31:14Z",
"published": "2022-11-18T00:30:20Z",
"aliases": [
"CVE-2022-44725"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-773f-hc4g-6h8g",
"modified": "2023-01-26T21:30:21Z",
"modified": "2025-04-29T15:31:19Z",
"published": "2022-11-27T06:30:24Z",
"aliases": [
"CVE-2022-45934"
@@ -31,6 +31,10 @@
"type": "WEB",
"url": "https://lists.debian.org/debian-lts-announce/2023/05/msg00006.html"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NDAKCGDW6CQ6G3RZWYZJO454R3L5CTQB"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/NDAKCGDW6CQ6G3RZWYZJO454R3L5CTQB"
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-248"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-j9xm-j63v-9g3x",
"modified": "2022-11-30T21:30:23Z",
"modified": "2025-04-29T15:31:18Z",
"published": "2022-11-25T18:30:24Z",
"aliases": [
"CVE-2022-45475"
@@ -30,6 +30,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-284",
"CWE-352"
],
"severity": "HIGH",
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-jhxp-cmcc-wrx8",
"modified": "2022-11-30T21:30:23Z",
"modified": "2025-04-29T15:31:18Z",
"published": "2022-11-25T18:30:24Z",
"aliases": [
"CVE-2022-45476"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-p7c9-5xv3-c4q4",
"modified": "2022-11-23T21:30:33Z",
"modified": "2025-04-29T15:31:16Z",
"published": "2022-11-22T15:30:26Z",
"aliases": [
"CVE-2022-41445"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-p8x3-m7c8-mcj5",
"modified": "2022-11-22T21:30:17Z",
"modified": "2025-04-29T15:31:14Z",
"published": "2022-11-19T00:30:56Z",
"aliases": [
"CVE-2021-37936"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-qqpw-wxfv-vfcg",
"modified": "2022-11-28T15:30:23Z",
"modified": "2025-04-29T15:31:14Z",
"published": "2022-11-19T00:30:55Z",
"aliases": [
"CVE-2022-30256"
@@ -23,6 +23,14 @@
"type": "WEB",
"url": "https://lists.debian.org/debian-lts-announce/2023/06/msg00019.html"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3VSMLJX25MXGQ6A7UPOGK7VPUVDESPHL"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NB7LDZM5AGWC5BHHQHW6CP5OFNBBKFOQ"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/3VSMLJX25MXGQ6A7UPOGK7VPUVDESPHL"
@@ -26,6 +26,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-306",
"CWE-862"
],
"severity": "HIGH",
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-rfgc-5r25-fw46",
"modified": "2022-11-30T18:30:19Z",
"modified": "2025-04-29T15:31:17Z",
"published": "2022-11-25T18:30:25Z",
"aliases": [
"CVE-2022-41712"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-vgp5-qc33-722h",
"modified": "2022-12-01T18:30:47Z",
"modified": "2025-04-29T15:31:18Z",
"published": "2022-11-25T21:30:26Z",
"aliases": [
"CVE-2022-45225"
@@ -19,6 +19,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2022-45225"
},
{
"type": "WEB",
"url": "https://medium.com/%40just0rg/book-store-management-system-1-0-unrestricted-input-leads-to-xss-74506d42492e"
},
{
"type": "WEB",
"url": "https://medium.com/@just0rg/book-store-management-system-1-0-unrestricted-input-leads-to-xss-74506d42492e"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-gfcp-5456-7q6c",
"modified": "2024-04-04T05:30:26Z",
"modified": "2025-04-29T15:31:14Z",
"published": "2023-07-06T19:24:04Z",
"aliases": [
"CVE-2022-36785"
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-79"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-79"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-79"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-79"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-352"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,

Some files were not shown because too many files have changed in this diff Show More