diff --git a/advisories/unreviewed/2024/02/GHSA-62vc-2f72-vcj3/GHSA-62vc-2f72-vcj3.json b/advisories/unreviewed/2024/02/GHSA-62vc-2f72-vcj3/GHSA-62vc-2f72-vcj3.json index c8be2a50ab9..a7594177ce6 100644 --- a/advisories/unreviewed/2024/02/GHSA-62vc-2f72-vcj3/GHSA-62vc-2f72-vcj3.json +++ b/advisories/unreviewed/2024/02/GHSA-62vc-2f72-vcj3/GHSA-62vc-2f72-vcj3.json @@ -45,7 +45,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-119" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/02/GHSA-f27j-4f6g-jp27/GHSA-f27j-4f6g-jp27.json b/advisories/unreviewed/2024/02/GHSA-f27j-4f6g-jp27/GHSA-f27j-4f6g-jp27.json index abc0adc93df..994c5aab89a 100644 --- a/advisories/unreviewed/2024/02/GHSA-f27j-4f6g-jp27/GHSA-f27j-4f6g-jp27.json +++ b/advisories/unreviewed/2024/02/GHSA-f27j-4f6g-jp27/GHSA-f27j-4f6g-jp27.json @@ -34,6 +34,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-269", "CWE-94" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2024/02/GHSA-gpjf-f4mx-92px/GHSA-gpjf-f4mx-92px.json b/advisories/unreviewed/2024/02/GHSA-gpjf-f4mx-92px/GHSA-gpjf-f4mx-92px.json index 22a19037bd4..7c2a10419ba 100644 --- a/advisories/unreviewed/2024/02/GHSA-gpjf-f4mx-92px/GHSA-gpjf-f4mx-92px.json +++ b/advisories/unreviewed/2024/02/GHSA-gpjf-f4mx-92px/GHSA-gpjf-f4mx-92px.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-703" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/02/GHSA-gqvq-6r9g-ff5p/GHSA-gqvq-6r9g-ff5p.json b/advisories/unreviewed/2024/02/GHSA-gqvq-6r9g-ff5p/GHSA-gqvq-6r9g-ff5p.json index ab7b69ac582..bc1c75b652f 100644 --- a/advisories/unreviewed/2024/02/GHSA-gqvq-6r9g-ff5p/GHSA-gqvq-6r9g-ff5p.json +++ b/advisories/unreviewed/2024/02/GHSA-gqvq-6r9g-ff5p/GHSA-gqvq-6r9g-ff5p.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-120" + "CWE-120", + "CWE-125" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/02/GHSA-h9xw-259p-x86h/GHSA-h9xw-259p-x86h.json b/advisories/unreviewed/2024/02/GHSA-h9xw-259p-x86h/GHSA-h9xw-259p-x86h.json index 12446857011..224c71b2cbc 100644 --- a/advisories/unreviewed/2024/02/GHSA-h9xw-259p-x86h/GHSA-h9xw-259p-x86h.json +++ b/advisories/unreviewed/2024/02/GHSA-h9xw-259p-x86h/GHSA-h9xw-259p-x86h.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-732" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/02/GHSA-jrx7-rgwc-w944/GHSA-jrx7-rgwc-w944.json b/advisories/unreviewed/2024/02/GHSA-jrx7-rgwc-w944/GHSA-jrx7-rgwc-w944.json index 75de3ca2401..02253a081f5 100644 --- a/advisories/unreviewed/2024/02/GHSA-jrx7-rgwc-w944/GHSA-jrx7-rgwc-w944.json +++ b/advisories/unreviewed/2024/02/GHSA-jrx7-rgwc-w944/GHSA-jrx7-rgwc-w944.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-120" + "CWE-120", + "CWE-787" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/02/GHSA-rrxc-cq4j-w35w/GHSA-rrxc-cq4j-w35w.json b/advisories/unreviewed/2024/02/GHSA-rrxc-cq4j-w35w/GHSA-rrxc-cq4j-w35w.json index e14ec5ed582..84e022aa670 100644 --- a/advisories/unreviewed/2024/02/GHSA-rrxc-cq4j-w35w/GHSA-rrxc-cq4j-w35w.json +++ b/advisories/unreviewed/2024/02/GHSA-rrxc-cq4j-w35w/GHSA-rrxc-cq4j-w35w.json @@ -33,7 +33,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-284" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-3j55-px9j-gc5p/GHSA-3j55-px9j-gc5p.json b/advisories/unreviewed/2024/03/GHSA-3j55-px9j-gc5p/GHSA-3j55-px9j-gc5p.json index 87e64b6e405..a2a236c9de6 100644 --- a/advisories/unreviewed/2024/03/GHSA-3j55-px9j-gc5p/GHSA-3j55-px9j-gc5p.json +++ b/advisories/unreviewed/2024/03/GHSA-3j55-px9j-gc5p/GHSA-3j55-px9j-gc5p.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-352" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-9crf-rxmh-772m/GHSA-9crf-rxmh-772m.json b/advisories/unreviewed/2024/03/GHSA-9crf-rxmh-772m/GHSA-9crf-rxmh-772m.json index 48ae6a6d2c7..1c0137662af 100644 --- a/advisories/unreviewed/2024/03/GHSA-9crf-rxmh-772m/GHSA-9crf-rxmh-772m.json +++ b/advisories/unreviewed/2024/03/GHSA-9crf-rxmh-772m/GHSA-9crf-rxmh-772m.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-9crf-rxmh-772m", - "modified": "2024-03-25T18:30:57Z", + "modified": "2025-03-13T15:32:29Z", "published": "2024-03-19T12:30:41Z", "aliases": [ "CVE-2024-2608" ], "details": "`AppendEncodedAttributeValue(), ExtraSpaceNeededForAttrEncoding()` and `AppendEncodedCharacters()` could have experienced integer overflows, causing underallocation of an output buffer leading to an out of bounds write. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -43,7 +48,7 @@ "cwe_ids": [ "CWE-680" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-19T12:15:08Z" diff --git a/advisories/unreviewed/2024/03/GHSA-vgq4-3x26-93jq/GHSA-vgq4-3x26-93jq.json b/advisories/unreviewed/2024/03/GHSA-vgq4-3x26-93jq/GHSA-vgq4-3x26-93jq.json index 405d6699d9b..e4a73a534ac 100644 --- a/advisories/unreviewed/2024/03/GHSA-vgq4-3x26-93jq/GHSA-vgq4-3x26-93jq.json +++ b/advisories/unreviewed/2024/03/GHSA-vgq4-3x26-93jq/GHSA-vgq4-3x26-93jq.json @@ -45,7 +45,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-284" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-w6rw-5fh3-46gp/GHSA-w6rw-5fh3-46gp.json b/advisories/unreviewed/2024/03/GHSA-w6rw-5fh3-46gp/GHSA-w6rw-5fh3-46gp.json index 8ee24483c5f..af2080a6a13 100644 --- a/advisories/unreviewed/2024/03/GHSA-w6rw-5fh3-46gp/GHSA-w6rw-5fh3-46gp.json +++ b/advisories/unreviewed/2024/03/GHSA-w6rw-5fh3-46gp/GHSA-w6rw-5fh3-46gp.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-125" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-cf79-vgxj-c425/GHSA-cf79-vgxj-c425.json b/advisories/unreviewed/2024/04/GHSA-cf79-vgxj-c425/GHSA-cf79-vgxj-c425.json index 7a9fa5d1628..08d2196a4a3 100644 --- a/advisories/unreviewed/2024/04/GHSA-cf79-vgxj-c425/GHSA-cf79-vgxj-c425.json +++ b/advisories/unreviewed/2024/04/GHSA-cf79-vgxj-c425/GHSA-cf79-vgxj-c425.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-269" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-mj6g-39xm-96q9/GHSA-mj6g-39xm-96q9.json b/advisories/unreviewed/2024/04/GHSA-mj6g-39xm-96q9/GHSA-mj6g-39xm-96q9.json index a617f9062a1..abd5e9729f2 100644 --- a/advisories/unreviewed/2024/04/GHSA-mj6g-39xm-96q9/GHSA-mj6g-39xm-96q9.json +++ b/advisories/unreviewed/2024/04/GHSA-mj6g-39xm-96q9/GHSA-mj6g-39xm-96q9.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-mj6g-39xm-96q9", - "modified": "2024-04-09T15:30:36Z", + "modified": "2025-03-13T15:32:30Z", "published": "2024-04-09T00:30:41Z", "aliases": [ "CVE-2024-23584" ], - "details": "The NMAP Importer service​ may expose data store credentials to authorized users of the Windows Registry.\n", + "details": "The NMAP Importer service​ may expose data store credentials to authorized users of the Windows Registry.", "severity": [ { "type": "CVSS_V3", @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-312" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-mq6j-35mg-9rj6/GHSA-mq6j-35mg-9rj6.json b/advisories/unreviewed/2024/04/GHSA-mq6j-35mg-9rj6/GHSA-mq6j-35mg-9rj6.json index 97352995109..c4361fafa32 100644 --- a/advisories/unreviewed/2024/04/GHSA-mq6j-35mg-9rj6/GHSA-mq6j-35mg-9rj6.json +++ b/advisories/unreviewed/2024/04/GHSA-mq6j-35mg-9rj6/GHSA-mq6j-35mg-9rj6.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-391" + "CWE-391", + "CWE-475" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-p777-v2c9-7gxq/GHSA-p777-v2c9-7gxq.json b/advisories/unreviewed/2024/04/GHSA-p777-v2c9-7gxq/GHSA-p777-v2c9-7gxq.json index 9176abefeca..cede3beffa4 100644 --- a/advisories/unreviewed/2024/04/GHSA-p777-v2c9-7gxq/GHSA-p777-v2c9-7gxq.json +++ b/advisories/unreviewed/2024/04/GHSA-p777-v2c9-7gxq/GHSA-p777-v2c9-7gxq.json @@ -33,7 +33,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-352" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-v9hm-fcq5-j7h7/GHSA-v9hm-fcq5-j7h7.json b/advisories/unreviewed/2024/04/GHSA-v9hm-fcq5-j7h7/GHSA-v9hm-fcq5-j7h7.json index f75a5b5e725..7b4b2ab96e3 100644 --- a/advisories/unreviewed/2024/04/GHSA-v9hm-fcq5-j7h7/GHSA-v9hm-fcq5-j7h7.json +++ b/advisories/unreviewed/2024/04/GHSA-v9hm-fcq5-j7h7/GHSA-v9hm-fcq5-j7h7.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-75" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-8jh7-gcv4-cq6q/GHSA-8jh7-gcv4-cq6q.json b/advisories/unreviewed/2024/05/GHSA-8jh7-gcv4-cq6q/GHSA-8jh7-gcv4-cq6q.json index b2deae409a9..eb7245f6d30 100644 --- a/advisories/unreviewed/2024/05/GHSA-8jh7-gcv4-cq6q/GHSA-8jh7-gcv4-cq6q.json +++ b/advisories/unreviewed/2024/05/GHSA-8jh7-gcv4-cq6q/GHSA-8jh7-gcv4-cq6q.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8jh7-gcv4-cq6q", - "modified": "2025-03-07T18:30:58Z", + "modified": "2025-03-13T15:32:30Z", "published": "2024-05-01T06:31:42Z", "aliases": [ "CVE-2024-26982" @@ -19,6 +19,14 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-26982" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/32c114a58236fe67141634774559f21f1dc96fd7" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/4a1b6f89825e267e156ccaeba3d235edcac77f94" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/5b99dea79650b50909c50aba24fbae00f203f013" @@ -35,6 +43,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/be383effaee3d89034f0828038f95065b518772e" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/cf46f88b92cfc0e32bd8a21ba1273cff13b8745f" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4EZ6PJW7VOZ224TD7N4JZNU6KV32ZJ53" diff --git a/advisories/unreviewed/2024/05/GHSA-8w37-4wx3-mmg3/GHSA-8w37-4wx3-mmg3.json b/advisories/unreviewed/2024/05/GHSA-8w37-4wx3-mmg3/GHSA-8w37-4wx3-mmg3.json index 300b3419ce7..dd286ad4525 100644 --- a/advisories/unreviewed/2024/05/GHSA-8w37-4wx3-mmg3/GHSA-8w37-4wx3-mmg3.json +++ b/advisories/unreviewed/2024/05/GHSA-8w37-4wx3-mmg3/GHSA-8w37-4wx3-mmg3.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-269" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-c6r4-p8ch-2fm8/GHSA-c6r4-p8ch-2fm8.json b/advisories/unreviewed/2024/05/GHSA-c6r4-p8ch-2fm8/GHSA-c6r4-p8ch-2fm8.json index 0a092f8d875..01edd3a4ec4 100644 --- a/advisories/unreviewed/2024/05/GHSA-c6r4-p8ch-2fm8/GHSA-c6r4-p8ch-2fm8.json +++ b/advisories/unreviewed/2024/05/GHSA-c6r4-p8ch-2fm8/GHSA-c6r4-p8ch-2fm8.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-c6r4-p8ch-2fm8", - "modified": "2024-05-15T00:30:37Z", + "modified": "2025-03-13T15:32:31Z", "published": "2024-05-15T00:30:37Z", "aliases": [ "CVE-2024-31473" ], - "details": "There is a command injection vulnerability in the underlying deauthentication service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user on the underlying operating system.\n\n", + "details": "There is a command injection vulnerability in the underlying deauthentication service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user on the underlying operating system.", "severity": [ { "type": "CVSS_V3", @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-78" + ], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-m3m5-w4hq-w7x6/GHSA-m3m5-w4hq-w7x6.json b/advisories/unreviewed/2024/05/GHSA-m3m5-w4hq-w7x6/GHSA-m3m5-w4hq-w7x6.json index 2627bd3ba9c..64f81e938a7 100644 --- a/advisories/unreviewed/2024/05/GHSA-m3m5-w4hq-w7x6/GHSA-m3m5-w4hq-w7x6.json +++ b/advisories/unreviewed/2024/05/GHSA-m3m5-w4hq-w7x6/GHSA-m3m5-w4hq-w7x6.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-m3m5-w4hq-w7x6", - "modified": "2024-05-16T06:30:50Z", + "modified": "2025-03-13T15:32:31Z", "published": "2024-05-16T06:30:50Z", "aliases": [ "CVE-2024-3641" ], "details": "The Newsletter Popup WordPress plugin through 1.2 does not sanitise and escape some parameters, which could allow unauthenticated visitors to perform Cross-Site Scripting attacks against admins", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-16T06:15:08Z" diff --git a/advisories/unreviewed/2024/06/GHSA-26hp-vwv6-p4qg/GHSA-26hp-vwv6-p4qg.json b/advisories/unreviewed/2024/06/GHSA-26hp-vwv6-p4qg/GHSA-26hp-vwv6-p4qg.json index ea006134e13..a585b74d790 100644 --- a/advisories/unreviewed/2024/06/GHSA-26hp-vwv6-p4qg/GHSA-26hp-vwv6-p4qg.json +++ b/advisories/unreviewed/2024/06/GHSA-26hp-vwv6-p4qg/GHSA-26hp-vwv6-p4qg.json @@ -53,7 +53,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-284" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-6fj5-m574-p4w9/GHSA-6fj5-m574-p4w9.json b/advisories/unreviewed/2024/06/GHSA-6fj5-m574-p4w9/GHSA-6fj5-m574-p4w9.json index ea46fd654cb..24bd2e76270 100644 --- a/advisories/unreviewed/2024/06/GHSA-6fj5-m574-p4w9/GHSA-6fj5-m574-p4w9.json +++ b/advisories/unreviewed/2024/06/GHSA-6fj5-m574-p4w9/GHSA-6fj5-m574-p4w9.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-203" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-7333-wpqm-63v7/GHSA-7333-wpqm-63v7.json b/advisories/unreviewed/2024/06/GHSA-7333-wpqm-63v7/GHSA-7333-wpqm-63v7.json index 1f16bf7e236..324345dda7b 100644 --- a/advisories/unreviewed/2024/06/GHSA-7333-wpqm-63v7/GHSA-7333-wpqm-63v7.json +++ b/advisories/unreviewed/2024/06/GHSA-7333-wpqm-63v7/GHSA-7333-wpqm-63v7.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-1106" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-8pqc-r2rx-5hhc/GHSA-8pqc-r2rx-5hhc.json b/advisories/unreviewed/2024/06/GHSA-8pqc-r2rx-5hhc/GHSA-8pqc-r2rx-5hhc.json index 5ff10bc8669..d5a6963a8db 100644 --- a/advisories/unreviewed/2024/06/GHSA-8pqc-r2rx-5hhc/GHSA-8pqc-r2rx-5hhc.json +++ b/advisories/unreviewed/2024/06/GHSA-8pqc-r2rx-5hhc/GHSA-8pqc-r2rx-5hhc.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-284" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-cgq8-932w-rh8w/GHSA-cgq8-932w-rh8w.json b/advisories/unreviewed/2024/06/GHSA-cgq8-932w-rh8w/GHSA-cgq8-932w-rh8w.json index 94bb4e662a5..5a489f4f3fa 100644 --- a/advisories/unreviewed/2024/06/GHSA-cgq8-932w-rh8w/GHSA-cgq8-932w-rh8w.json +++ b/advisories/unreviewed/2024/06/GHSA-cgq8-932w-rh8w/GHSA-cgq8-932w-rh8w.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-125" + "CWE-125", + "CWE-20" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/06/GHSA-mw3w-f2gc-g47m/GHSA-mw3w-f2gc-g47m.json b/advisories/unreviewed/2024/06/GHSA-mw3w-f2gc-g47m/GHSA-mw3w-f2gc-g47m.json index fa09d77f240..efcabb0fd78 100644 --- a/advisories/unreviewed/2024/06/GHSA-mw3w-f2gc-g47m/GHSA-mw3w-f2gc-g47m.json +++ b/advisories/unreviewed/2024/06/GHSA-mw3w-f2gc-g47m/GHSA-mw3w-f2gc-g47m.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-122", "CWE-787" ], "severity": "CRITICAL", diff --git a/advisories/unreviewed/2024/06/GHSA-wvrw-2fv8-cjvx/GHSA-wvrw-2fv8-cjvx.json b/advisories/unreviewed/2024/06/GHSA-wvrw-2fv8-cjvx/GHSA-wvrw-2fv8-cjvx.json index 043f0f20a2f..3d2acb11bbc 100644 --- a/advisories/unreviewed/2024/06/GHSA-wvrw-2fv8-cjvx/GHSA-wvrw-2fv8-cjvx.json +++ b/advisories/unreviewed/2024/06/GHSA-wvrw-2fv8-cjvx/GHSA-wvrw-2fv8-cjvx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wvrw-2fv8-cjvx", - "modified": "2024-08-27T18:31:35Z", + "modified": "2025-03-13T15:32:34Z", "published": "2024-06-29T06:31:40Z", "aliases": [ "CVE-2024-37370" @@ -23,6 +23,10 @@ "type": "WEB", "url": "https://github.com/krb5/krb5/commit/55fbf435edbe2e92dd8101669b1ce7144bc96fef" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20241108-0007" + }, { "type": "WEB", "url": "https://web.mit.edu/kerberos/www/advisories" diff --git a/advisories/unreviewed/2024/07/GHSA-2938-5hf8-58m3/GHSA-2938-5hf8-58m3.json b/advisories/unreviewed/2024/07/GHSA-2938-5hf8-58m3/GHSA-2938-5hf8-58m3.json index 6b6ed91c45c..9110bc7e3d2 100644 --- a/advisories/unreviewed/2024/07/GHSA-2938-5hf8-58m3/GHSA-2938-5hf8-58m3.json +++ b/advisories/unreviewed/2024/07/GHSA-2938-5hf8-58m3/GHSA-2938-5hf8-58m3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-2938-5hf8-58m3", - "modified": "2024-12-14T21:31:31Z", + "modified": "2025-03-13T15:32:35Z", "published": "2024-07-12T15:31:26Z", "aliases": [ "CVE-2024-39494" @@ -23,6 +23,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/0b31e28fbd773aefb6164687e0767319b8199829" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/480afcbeb7aaaa22677d3dd48ec590b441eaac1a" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/7fb374981e31c193b1152ed8d3b0a95b671330d4" @@ -38,6 +42,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/dd431c3ac1fc34a9268580dd59ad3e3c76b32a8c" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/edf287bc610b18d7a9c0c0c1cb2e97b9348c71bb" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/07/GHSA-2pxv-xppx-4p3x/GHSA-2pxv-xppx-4p3x.json b/advisories/unreviewed/2024/07/GHSA-2pxv-xppx-4p3x/GHSA-2pxv-xppx-4p3x.json index f5b50588093..0ac3e4b7519 100644 --- a/advisories/unreviewed/2024/07/GHSA-2pxv-xppx-4p3x/GHSA-2pxv-xppx-4p3x.json +++ b/advisories/unreviewed/2024/07/GHSA-2pxv-xppx-4p3x/GHSA-2pxv-xppx-4p3x.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-352" + ], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-37mw-xfjf-m6pf/GHSA-37mw-xfjf-m6pf.json b/advisories/unreviewed/2024/07/GHSA-37mw-xfjf-m6pf/GHSA-37mw-xfjf-m6pf.json index 59dab87f86c..9a60727b538 100644 --- a/advisories/unreviewed/2024/07/GHSA-37mw-xfjf-m6pf/GHSA-37mw-xfjf-m6pf.json +++ b/advisories/unreviewed/2024/07/GHSA-37mw-xfjf-m6pf/GHSA-37mw-xfjf-m6pf.json @@ -49,7 +49,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-78" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-4mqw-v4pq-hg97/GHSA-4mqw-v4pq-hg97.json b/advisories/unreviewed/2024/07/GHSA-4mqw-v4pq-hg97/GHSA-4mqw-v4pq-hg97.json index a5c285c2a72..1ded13dae2c 100644 --- a/advisories/unreviewed/2024/07/GHSA-4mqw-v4pq-hg97/GHSA-4mqw-v4pq-hg97.json +++ b/advisories/unreviewed/2024/07/GHSA-4mqw-v4pq-hg97/GHSA-4mqw-v4pq-hg97.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-284" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-4pq6-fr2h-r495/GHSA-4pq6-fr2h-r495.json b/advisories/unreviewed/2024/07/GHSA-4pq6-fr2h-r495/GHSA-4pq6-fr2h-r495.json index 32343592574..f23d74d6b36 100644 --- a/advisories/unreviewed/2024/07/GHSA-4pq6-fr2h-r495/GHSA-4pq6-fr2h-r495.json +++ b/advisories/unreviewed/2024/07/GHSA-4pq6-fr2h-r495/GHSA-4pq6-fr2h-r495.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4pq6-fr2h-r495", - "modified": "2024-07-16T12:30:38Z", + "modified": "2025-03-13T15:32:35Z", "published": "2024-07-16T12:30:38Z", "aliases": [ "CVE-2024-6457" @@ -33,7 +33,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-89" + ], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-65hv-w3rj-w47m/GHSA-65hv-w3rj-w47m.json b/advisories/unreviewed/2024/07/GHSA-65hv-w3rj-w47m/GHSA-65hv-w3rj-w47m.json index 19171c2cd79..137242e0353 100644 --- a/advisories/unreviewed/2024/07/GHSA-65hv-w3rj-w47m/GHSA-65hv-w3rj-w47m.json +++ b/advisories/unreviewed/2024/07/GHSA-65hv-w3rj-w47m/GHSA-65hv-w3rj-w47m.json @@ -37,7 +37,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-269" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-6ggw-rwr9-p77h/GHSA-6ggw-rwr9-p77h.json b/advisories/unreviewed/2024/07/GHSA-6ggw-rwr9-p77h/GHSA-6ggw-rwr9-p77h.json index 402d4f4e299..8409a9c5ef3 100644 --- a/advisories/unreviewed/2024/07/GHSA-6ggw-rwr9-p77h/GHSA-6ggw-rwr9-p77h.json +++ b/advisories/unreviewed/2024/07/GHSA-6ggw-rwr9-p77h/GHSA-6ggw-rwr9-p77h.json @@ -33,7 +33,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-94" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-cmgf-649f-vw86/GHSA-cmgf-649f-vw86.json b/advisories/unreviewed/2024/07/GHSA-cmgf-649f-vw86/GHSA-cmgf-649f-vw86.json index fc64c2f4a49..be2c8b35c45 100644 --- a/advisories/unreviewed/2024/07/GHSA-cmgf-649f-vw86/GHSA-cmgf-649f-vw86.json +++ b/advisories/unreviewed/2024/07/GHSA-cmgf-649f-vw86/GHSA-cmgf-649f-vw86.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-352" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-f6rc-73vx-29h5/GHSA-f6rc-73vx-29h5.json b/advisories/unreviewed/2024/07/GHSA-f6rc-73vx-29h5/GHSA-f6rc-73vx-29h5.json index 80ca91e27e6..dedb5ce01f5 100644 --- a/advisories/unreviewed/2024/07/GHSA-f6rc-73vx-29h5/GHSA-f6rc-73vx-29h5.json +++ b/advisories/unreviewed/2024/07/GHSA-f6rc-73vx-29h5/GHSA-f6rc-73vx-29h5.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-295", "CWE-347" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2024/07/GHSA-f6x2-m86h-4v8w/GHSA-f6x2-m86h-4v8w.json b/advisories/unreviewed/2024/07/GHSA-f6x2-m86h-4v8w/GHSA-f6x2-m86h-4v8w.json index 777b2d9a4f1..1be5cbd7534 100644 --- a/advisories/unreviewed/2024/07/GHSA-f6x2-m86h-4v8w/GHSA-f6x2-m86h-4v8w.json +++ b/advisories/unreviewed/2024/07/GHSA-f6x2-m86h-4v8w/GHSA-f6x2-m86h-4v8w.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-284" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-j4rf-jc84-8583/GHSA-j4rf-jc84-8583.json b/advisories/unreviewed/2024/07/GHSA-j4rf-jc84-8583/GHSA-j4rf-jc84-8583.json index 364b05a1ea3..34f775e900b 100644 --- a/advisories/unreviewed/2024/07/GHSA-j4rf-jc84-8583/GHSA-j4rf-jc84-8583.json +++ b/advisories/unreviewed/2024/07/GHSA-j4rf-jc84-8583/GHSA-j4rf-jc84-8583.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-400" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-jhhr-8858-58w9/GHSA-jhhr-8858-58w9.json b/advisories/unreviewed/2024/07/GHSA-jhhr-8858-58w9/GHSA-jhhr-8858-58w9.json index f0a3903af18..df6bd610c14 100644 --- a/advisories/unreviewed/2024/07/GHSA-jhhr-8858-58w9/GHSA-jhhr-8858-58w9.json +++ b/advisories/unreviewed/2024/07/GHSA-jhhr-8858-58w9/GHSA-jhhr-8858-58w9.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-277", "CWE-378" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2024/07/GHSA-xp27-8r9x-g424/GHSA-xp27-8r9x-g424.json b/advisories/unreviewed/2024/07/GHSA-xp27-8r9x-g424/GHSA-xp27-8r9x-g424.json index 98258d56c2d..5a835c72076 100644 --- a/advisories/unreviewed/2024/07/GHSA-xp27-8r9x-g424/GHSA-xp27-8r9x-g424.json +++ b/advisories/unreviewed/2024/07/GHSA-xp27-8r9x-g424/GHSA-xp27-8r9x-g424.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-78" + ], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-xq4f-9xp4-279p/GHSA-xq4f-9xp4-279p.json b/advisories/unreviewed/2024/07/GHSA-xq4f-9xp4-279p/GHSA-xq4f-9xp4-279p.json index 26b79186321..9b50d70426b 100644 --- a/advisories/unreviewed/2024/07/GHSA-xq4f-9xp4-279p/GHSA-xq4f-9xp4-279p.json +++ b/advisories/unreviewed/2024/07/GHSA-xq4f-9xp4-279p/GHSA-xq4f-9xp4-279p.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-xq4f-9xp4-279p", - "modified": "2024-08-16T18:30:56Z", + "modified": "2025-03-13T15:32:36Z", "published": "2024-07-30T00:34:26Z", "aliases": [ "CVE-2024-27881" @@ -45,7 +45,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-359" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/08/GHSA-5hj8-xgx5-p37f/GHSA-5hj8-xgx5-p37f.json b/advisories/unreviewed/2024/08/GHSA-5hj8-xgx5-p37f/GHSA-5hj8-xgx5-p37f.json index 69e7765d0b3..e70143d1f1b 100644 --- a/advisories/unreviewed/2024/08/GHSA-5hj8-xgx5-p37f/GHSA-5hj8-xgx5-p37f.json +++ b/advisories/unreviewed/2024/08/GHSA-5hj8-xgx5-p37f/GHSA-5hj8-xgx5-p37f.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5hj8-xgx5-p37f", - "modified": "2024-08-30T18:30:37Z", + "modified": "2025-03-13T15:32:36Z", "published": "2024-08-05T12:31:15Z", "aliases": [ "CVE-2024-36448" @@ -22,6 +22,10 @@ { "type": "WEB", "url": "https://lists.apache.org/thread/d19p0vsm7nogp43q9m3tzm5jl6mzjj1x" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2024/08/05/1" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/08/GHSA-9h4x-2mmw-9488/GHSA-9h4x-2mmw-9488.json b/advisories/unreviewed/2024/08/GHSA-9h4x-2mmw-9488/GHSA-9h4x-2mmw-9488.json index ec1deeb411c..08afde0bf46 100644 --- a/advisories/unreviewed/2024/08/GHSA-9h4x-2mmw-9488/GHSA-9h4x-2mmw-9488.json +++ b/advisories/unreviewed/2024/08/GHSA-9h4x-2mmw-9488/GHSA-9h4x-2mmw-9488.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-400" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/08/GHSA-j26h-qjc9-68hh/GHSA-j26h-qjc9-68hh.json b/advisories/unreviewed/2024/08/GHSA-j26h-qjc9-68hh/GHSA-j26h-qjc9-68hh.json index bee398c2389..eddc394509c 100644 --- a/advisories/unreviewed/2024/08/GHSA-j26h-qjc9-68hh/GHSA-j26h-qjc9-68hh.json +++ b/advisories/unreviewed/2024/08/GHSA-j26h-qjc9-68hh/GHSA-j26h-qjc9-68hh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-j26h-qjc9-68hh", - "modified": "2024-08-27T18:31:37Z", + "modified": "2025-03-13T15:32:37Z", "published": "2024-08-26T15:31:15Z", "aliases": [ "CVE-2023-49582" @@ -22,6 +22,14 @@ { "type": "WEB", "url": "https://lists.apache.org/thread/sntjc04t1rvjhdzz2tzmtz2zdnmv7dc4" + }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20241101-0004" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2024/08/26/1" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/08/GHSA-mf66-hm23-7r53/GHSA-mf66-hm23-7r53.json b/advisories/unreviewed/2024/08/GHSA-mf66-hm23-7r53/GHSA-mf66-hm23-7r53.json index feb45f0224b..b1bfdd4f7b9 100644 --- a/advisories/unreviewed/2024/08/GHSA-mf66-hm23-7r53/GHSA-mf66-hm23-7r53.json +++ b/advisories/unreviewed/2024/08/GHSA-mf66-hm23-7r53/GHSA-mf66-hm23-7r53.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mf66-hm23-7r53", - "modified": "2024-08-17T12:30:32Z", + "modified": "2025-03-13T15:32:37Z", "published": "2024-08-17T12:30:32Z", "aliases": [ "CVE-2024-43831" @@ -25,6 +25,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/cdf05ae76198c513836bde4eb55f099c44773280" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/dbd3e4adb98e50ede74f00b3fa956fa29ef95e6c" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/09/GHSA-97rq-m5jx-vcxq/GHSA-97rq-m5jx-vcxq.json b/advisories/unreviewed/2024/09/GHSA-97rq-m5jx-vcxq/GHSA-97rq-m5jx-vcxq.json index 0639150d1bc..2b203ed5783 100644 --- a/advisories/unreviewed/2024/09/GHSA-97rq-m5jx-vcxq/GHSA-97rq-m5jx-vcxq.json +++ b/advisories/unreviewed/2024/09/GHSA-97rq-m5jx-vcxq/GHSA-97rq-m5jx-vcxq.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-200" + ], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/09/GHSA-xr4c-mmrv-3h6c/GHSA-xr4c-mmrv-3h6c.json b/advisories/unreviewed/2024/09/GHSA-xr4c-mmrv-3h6c/GHSA-xr4c-mmrv-3h6c.json index 9b159140233..7018d652424 100644 --- a/advisories/unreviewed/2024/09/GHSA-xr4c-mmrv-3h6c/GHSA-xr4c-mmrv-3h6c.json +++ b/advisories/unreviewed/2024/09/GHSA-xr4c-mmrv-3h6c/GHSA-xr4c-mmrv-3h6c.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-269" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/10/GHSA-2hcc-cvcm-gcc5/GHSA-2hcc-cvcm-gcc5.json b/advisories/unreviewed/2024/10/GHSA-2hcc-cvcm-gcc5/GHSA-2hcc-cvcm-gcc5.json index b31b71ada6f..d5f43aee01a 100644 --- a/advisories/unreviewed/2024/10/GHSA-2hcc-cvcm-gcc5/GHSA-2hcc-cvcm-gcc5.json +++ b/advisories/unreviewed/2024/10/GHSA-2hcc-cvcm-gcc5/GHSA-2hcc-cvcm-gcc5.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-352" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/10/GHSA-5579-pjqg-g858/GHSA-5579-pjqg-g858.json b/advisories/unreviewed/2024/10/GHSA-5579-pjqg-g858/GHSA-5579-pjqg-g858.json index c5f7ded898a..ce0a715283f 100644 --- a/advisories/unreviewed/2024/10/GHSA-5579-pjqg-g858/GHSA-5579-pjqg-g858.json +++ b/advisories/unreviewed/2024/10/GHSA-5579-pjqg-g858/GHSA-5579-pjqg-g858.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-200" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/10/GHSA-6p2j-228c-wmvm/GHSA-6p2j-228c-wmvm.json b/advisories/unreviewed/2024/10/GHSA-6p2j-228c-wmvm/GHSA-6p2j-228c-wmvm.json index 863d2566364..229a3ff62f3 100644 --- a/advisories/unreviewed/2024/10/GHSA-6p2j-228c-wmvm/GHSA-6p2j-228c-wmvm.json +++ b/advisories/unreviewed/2024/10/GHSA-6p2j-228c-wmvm/GHSA-6p2j-228c-wmvm.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/10/GHSA-6vrv-p2wx-g2fg/GHSA-6vrv-p2wx-g2fg.json b/advisories/unreviewed/2024/10/GHSA-6vrv-p2wx-g2fg/GHSA-6vrv-p2wx-g2fg.json index 02ba27f6f44..fb018faa606 100644 --- a/advisories/unreviewed/2024/10/GHSA-6vrv-p2wx-g2fg/GHSA-6vrv-p2wx-g2fg.json +++ b/advisories/unreviewed/2024/10/GHSA-6vrv-p2wx-g2fg/GHSA-6vrv-p2wx-g2fg.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-400" + ], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/10/GHSA-6vx7-64w7-g847/GHSA-6vx7-64w7-g847.json b/advisories/unreviewed/2024/10/GHSA-6vx7-64w7-g847/GHSA-6vx7-64w7-g847.json index ff37a229367..402affb3f83 100644 --- a/advisories/unreviewed/2024/10/GHSA-6vx7-64w7-g847/GHSA-6vx7-64w7-g847.json +++ b/advisories/unreviewed/2024/10/GHSA-6vx7-64w7-g847/GHSA-6vx7-64w7-g847.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-1037" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/10/GHSA-8gw4-4gr2-h2mr/GHSA-8gw4-4gr2-h2mr.json b/advisories/unreviewed/2024/10/GHSA-8gw4-4gr2-h2mr/GHSA-8gw4-4gr2-h2mr.json index 9ef6cbf5fbf..97dd1168a71 100644 --- a/advisories/unreviewed/2024/10/GHSA-8gw4-4gr2-h2mr/GHSA-8gw4-4gr2-h2mr.json +++ b/advisories/unreviewed/2024/10/GHSA-8gw4-4gr2-h2mr/GHSA-8gw4-4gr2-h2mr.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-502" + ], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/10/GHSA-c83g-5qwq-vrfj/GHSA-c83g-5qwq-vrfj.json b/advisories/unreviewed/2024/10/GHSA-c83g-5qwq-vrfj/GHSA-c83g-5qwq-vrfj.json index ad45440ba61..6362bd50be5 100644 --- a/advisories/unreviewed/2024/10/GHSA-c83g-5qwq-vrfj/GHSA-c83g-5qwq-vrfj.json +++ b/advisories/unreviewed/2024/10/GHSA-c83g-5qwq-vrfj/GHSA-c83g-5qwq-vrfj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-c83g-5qwq-vrfj", - "modified": "2024-12-14T21:31:33Z", + "modified": "2025-03-13T15:32:40Z", "published": "2024-10-21T21:30:54Z", "aliases": [ "CVE-2024-50055" @@ -27,6 +27,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/5be4bc1c73ca389a96d418a52054d897c6fe6d21" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/87bc3cb23c56de2c5e14a58d87cf953e7a2508f8" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/9ce15f68abedfae7ae0a35e95895aeddfd0f0c6a" diff --git a/advisories/unreviewed/2024/10/GHSA-cj7p-fg4w-qrvh/GHSA-cj7p-fg4w-qrvh.json b/advisories/unreviewed/2024/10/GHSA-cj7p-fg4w-qrvh/GHSA-cj7p-fg4w-qrvh.json index c12aa411ce8..142ee2ee356 100644 --- a/advisories/unreviewed/2024/10/GHSA-cj7p-fg4w-qrvh/GHSA-cj7p-fg4w-qrvh.json +++ b/advisories/unreviewed/2024/10/GHSA-cj7p-fg4w-qrvh/GHSA-cj7p-fg4w-qrvh.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-400" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/10/GHSA-f5h4-685p-r266/GHSA-f5h4-685p-r266.json b/advisories/unreviewed/2024/10/GHSA-f5h4-685p-r266/GHSA-f5h4-685p-r266.json index 30eda4c0ea8..91d15ddbe80 100644 --- a/advisories/unreviewed/2024/10/GHSA-f5h4-685p-r266/GHSA-f5h4-685p-r266.json +++ b/advisories/unreviewed/2024/10/GHSA-f5h4-685p-r266/GHSA-f5h4-685p-r266.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-f5h4-685p-r266", - "modified": "2024-12-14T21:31:32Z", + "modified": "2025-03-13T15:32:40Z", "published": "2024-10-21T15:32:26Z", "aliases": [ "CVE-2024-47730" @@ -23,6 +23,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/801d64177faaec184cee1e1aa4d8487df1364a54" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/85e81103033324d7a271dafb584991da39554a89" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/98d3be34c9153eceadb56de50d9f9347e88d86e4" diff --git a/advisories/unreviewed/2024/10/GHSA-g4xm-rx7f-2jj3/GHSA-g4xm-rx7f-2jj3.json b/advisories/unreviewed/2024/10/GHSA-g4xm-rx7f-2jj3/GHSA-g4xm-rx7f-2jj3.json index 6bbd3719633..9312bf9cf42 100644 --- a/advisories/unreviewed/2024/10/GHSA-g4xm-rx7f-2jj3/GHSA-g4xm-rx7f-2jj3.json +++ b/advisories/unreviewed/2024/10/GHSA-g4xm-rx7f-2jj3/GHSA-g4xm-rx7f-2jj3.json @@ -34,6 +34,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-22", "CWE-352" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2024/10/GHSA-h25j-66v8-m35v/GHSA-h25j-66v8-m35v.json b/advisories/unreviewed/2024/10/GHSA-h25j-66v8-m35v/GHSA-h25j-66v8-m35v.json index b649b6d73d5..90005fe21e8 100644 --- a/advisories/unreviewed/2024/10/GHSA-h25j-66v8-m35v/GHSA-h25j-66v8-m35v.json +++ b/advisories/unreviewed/2024/10/GHSA-h25j-66v8-m35v/GHSA-h25j-66v8-m35v.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-h25j-66v8-m35v", - "modified": "2024-10-08T12:30:22Z", + "modified": "2025-03-13T15:32:39Z", "published": "2024-10-08T12:30:22Z", "aliases": [ "CVE-2024-9005" @@ -11,6 +11,10 @@ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], "affected": [], diff --git a/advisories/unreviewed/2024/10/GHSA-hj6p-xwh2-fc4f/GHSA-hj6p-xwh2-fc4f.json b/advisories/unreviewed/2024/10/GHSA-hj6p-xwh2-fc4f/GHSA-hj6p-xwh2-fc4f.json index e95de1e2c5b..b24aa98be03 100644 --- a/advisories/unreviewed/2024/10/GHSA-hj6p-xwh2-fc4f/GHSA-hj6p-xwh2-fc4f.json +++ b/advisories/unreviewed/2024/10/GHSA-hj6p-xwh2-fc4f/GHSA-hj6p-xwh2-fc4f.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-404" + ], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/10/GHSA-j9m2-gxgg-6g4q/GHSA-j9m2-gxgg-6g4q.json b/advisories/unreviewed/2024/10/GHSA-j9m2-gxgg-6g4q/GHSA-j9m2-gxgg-6g4q.json index 355ccd91994..c5ad53cb347 100644 --- a/advisories/unreviewed/2024/10/GHSA-j9m2-gxgg-6g4q/GHSA-j9m2-gxgg-6g4q.json +++ b/advisories/unreviewed/2024/10/GHSA-j9m2-gxgg-6g4q/GHSA-j9m2-gxgg-6g4q.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-200" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/10/GHSA-jv2x-g26c-46cq/GHSA-jv2x-g26c-46cq.json b/advisories/unreviewed/2024/10/GHSA-jv2x-g26c-46cq/GHSA-jv2x-g26c-46cq.json index 82eaf1dfca2..c2421228c40 100644 --- a/advisories/unreviewed/2024/10/GHSA-jv2x-g26c-46cq/GHSA-jv2x-g26c-46cq.json +++ b/advisories/unreviewed/2024/10/GHSA-jv2x-g26c-46cq/GHSA-jv2x-g26c-46cq.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-400" + ], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/10/GHSA-m2x9-pvwq-m49p/GHSA-m2x9-pvwq-m49p.json b/advisories/unreviewed/2024/10/GHSA-m2x9-pvwq-m49p/GHSA-m2x9-pvwq-m49p.json index 4508ea82003..cd12bea7206 100644 --- a/advisories/unreviewed/2024/10/GHSA-m2x9-pvwq-m49p/GHSA-m2x9-pvwq-m49p.json +++ b/advisories/unreviewed/2024/10/GHSA-m2x9-pvwq-m49p/GHSA-m2x9-pvwq-m49p.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-400" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/10/GHSA-m3v4-26gh-289c/GHSA-m3v4-26gh-289c.json b/advisories/unreviewed/2024/10/GHSA-m3v4-26gh-289c/GHSA-m3v4-26gh-289c.json index d660dda4c71..8dbce62bbb4 100644 --- a/advisories/unreviewed/2024/10/GHSA-m3v4-26gh-289c/GHSA-m3v4-26gh-289c.json +++ b/advisories/unreviewed/2024/10/GHSA-m3v4-26gh-289c/GHSA-m3v4-26gh-289c.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-m3v4-26gh-289c", - "modified": "2025-02-21T15:31:57Z", + "modified": "2025-03-13T15:32:40Z", "published": "2024-10-21T15:32:26Z", "aliases": [ "CVE-2024-47726" @@ -19,6 +19,14 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47726" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/3aa5254d80969cb576601fb9fec7a188cc8dc169" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7be13b73409b553d9d9a6cbb042b4d19e2631cc7" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/96cfeb0389530ae32ade8a48ae3ae1ac3b6c009d" diff --git a/advisories/unreviewed/2024/10/GHSA-pgfm-49cm-23cx/GHSA-pgfm-49cm-23cx.json b/advisories/unreviewed/2024/10/GHSA-pgfm-49cm-23cx/GHSA-pgfm-49cm-23cx.json index 279ebccf28e..49c0d30d803 100644 --- a/advisories/unreviewed/2024/10/GHSA-pgfm-49cm-23cx/GHSA-pgfm-49cm-23cx.json +++ b/advisories/unreviewed/2024/10/GHSA-pgfm-49cm-23cx/GHSA-pgfm-49cm-23cx.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-269" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/10/GHSA-phgw-9rj7-xgp6/GHSA-phgw-9rj7-xgp6.json b/advisories/unreviewed/2024/10/GHSA-phgw-9rj7-xgp6/GHSA-phgw-9rj7-xgp6.json index 03fe1584552..f4da9fd4458 100644 --- a/advisories/unreviewed/2024/10/GHSA-phgw-9rj7-xgp6/GHSA-phgw-9rj7-xgp6.json +++ b/advisories/unreviewed/2024/10/GHSA-phgw-9rj7-xgp6/GHSA-phgw-9rj7-xgp6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-phgw-9rj7-xgp6", - "modified": "2024-10-15T21:30:38Z", + "modified": "2025-03-13T15:32:40Z", "published": "2024-10-15T21:30:38Z", "aliases": [ "CVE-2024-21207" @@ -19,13 +19,19 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21207" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20241025-0007" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpuoct2024.html" } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-400" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/11/GHSA-2w8j-8xc6-4wcx/GHSA-2w8j-8xc6-4wcx.json b/advisories/unreviewed/2024/11/GHSA-2w8j-8xc6-4wcx/GHSA-2w8j-8xc6-4wcx.json index f0b49fee4de..80ca1f6590e 100644 --- a/advisories/unreviewed/2024/11/GHSA-2w8j-8xc6-4wcx/GHSA-2w8j-8xc6-4wcx.json +++ b/advisories/unreviewed/2024/11/GHSA-2w8j-8xc6-4wcx/GHSA-2w8j-8xc6-4wcx.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-89" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/11/GHSA-3q2f-pq2q-f9qf/GHSA-3q2f-pq2q-f9qf.json b/advisories/unreviewed/2024/11/GHSA-3q2f-pq2q-f9qf/GHSA-3q2f-pq2q-f9qf.json index 48c873f93d0..c2bfbabe3a2 100644 --- a/advisories/unreviewed/2024/11/GHSA-3q2f-pq2q-f9qf/GHSA-3q2f-pq2q-f9qf.json +++ b/advisories/unreviewed/2024/11/GHSA-3q2f-pq2q-f9qf/GHSA-3q2f-pq2q-f9qf.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-3q2f-pq2q-f9qf", - "modified": "2024-11-26T18:38:52Z", + "modified": "2025-03-13T15:32:41Z", "published": "2024-11-26T18:38:52Z", "aliases": [ "CVE-2024-48288" ], "details": "TP-Link TL-IPC42C V4.0_20211227_1.0.16 is vulnerable to command injection due to the lack of malicious code verification on both the frontend and backend.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -27,7 +32,7 @@ "cwe_ids": [ "CWE-77" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-21T18:15:10Z" diff --git a/advisories/unreviewed/2024/11/GHSA-7866-w9g3-g699/GHSA-7866-w9g3-g699.json b/advisories/unreviewed/2024/11/GHSA-7866-w9g3-g699/GHSA-7866-w9g3-g699.json index fa32165b75d..f10986a1e75 100644 --- a/advisories/unreviewed/2024/11/GHSA-7866-w9g3-g699/GHSA-7866-w9g3-g699.json +++ b/advisories/unreviewed/2024/11/GHSA-7866-w9g3-g699/GHSA-7866-w9g3-g699.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7866-w9g3-g699", - "modified": "2024-11-25T18:33:25Z", + "modified": "2025-03-13T15:32:41Z", "published": "2024-11-19T18:31:07Z", "aliases": [ "CVE-2024-53075" @@ -26,6 +26,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/37233169a6ea912020c572f870075a63293b786a" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/80aec5a855106c668b5978c48e789f010198b832" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/11/GHSA-9j72-p63r-h27h/GHSA-9j72-p63r-h27h.json b/advisories/unreviewed/2024/11/GHSA-9j72-p63r-h27h/GHSA-9j72-p63r-h27h.json index 1e5d9bcb1dd..84537f58975 100644 --- a/advisories/unreviewed/2024/11/GHSA-9j72-p63r-h27h/GHSA-9j72-p63r-h27h.json +++ b/advisories/unreviewed/2024/11/GHSA-9j72-p63r-h27h/GHSA-9j72-p63r-h27h.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-9j72-p63r-h27h", - "modified": "2024-11-22T21:32:15Z", + "modified": "2025-03-13T15:32:41Z", "published": "2024-11-22T21:32:15Z", "aliases": [ "CVE-2024-44786" ], "details": "Incorrect access control in Meabilis CMS 1.0 allows attackers to access other users' address books via unspecified vectors.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], "affected": [], "references": [ { @@ -23,7 +28,7 @@ "cwe_ids": [ "CWE-276" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-22T17:15:08Z" diff --git a/advisories/unreviewed/2024/11/GHSA-r5p5-4qgc-2xcp/GHSA-r5p5-4qgc-2xcp.json b/advisories/unreviewed/2024/11/GHSA-r5p5-4qgc-2xcp/GHSA-r5p5-4qgc-2xcp.json index 83f40d8edad..77ab824d8ea 100644 --- a/advisories/unreviewed/2024/11/GHSA-r5p5-4qgc-2xcp/GHSA-r5p5-4qgc-2xcp.json +++ b/advisories/unreviewed/2024/11/GHSA-r5p5-4qgc-2xcp/GHSA-r5p5-4qgc-2xcp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-r5p5-4qgc-2xcp", - "modified": "2024-11-13T18:31:54Z", + "modified": "2025-03-13T15:32:40Z", "published": "2024-11-09T12:30:49Z", "aliases": [ "CVE-2024-50246" @@ -30,6 +30,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/e91fbb21f248bdd8140f343dac32b77b9bc10fec" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/effac690913af9a6c3d6cd967281a34e47ed3e4c" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/12/GHSA-6mqv-9qvr-xhfq/GHSA-6mqv-9qvr-xhfq.json b/advisories/unreviewed/2024/12/GHSA-6mqv-9qvr-xhfq/GHSA-6mqv-9qvr-xhfq.json index bd25e015d74..7d6be911012 100644 --- a/advisories/unreviewed/2024/12/GHSA-6mqv-9qvr-xhfq/GHSA-6mqv-9qvr-xhfq.json +++ b/advisories/unreviewed/2024/12/GHSA-6mqv-9qvr-xhfq/GHSA-6mqv-9qvr-xhfq.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-732" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/01/GHSA-432f-m59q-xvcj/GHSA-432f-m59q-xvcj.json b/advisories/unreviewed/2025/01/GHSA-432f-m59q-xvcj/GHSA-432f-m59q-xvcj.json index 20365bc6c32..d5a873fc018 100644 --- a/advisories/unreviewed/2025/01/GHSA-432f-m59q-xvcj/GHSA-432f-m59q-xvcj.json +++ b/advisories/unreviewed/2025/01/GHSA-432f-m59q-xvcj/GHSA-432f-m59q-xvcj.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-1390" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/01/GHSA-47vg-m9gm-cf5m/GHSA-47vg-m9gm-cf5m.json b/advisories/unreviewed/2025/01/GHSA-47vg-m9gm-cf5m/GHSA-47vg-m9gm-cf5m.json index 69a59d387a2..40ad77b304d 100644 --- a/advisories/unreviewed/2025/01/GHSA-47vg-m9gm-cf5m/GHSA-47vg-m9gm-cf5m.json +++ b/advisories/unreviewed/2025/01/GHSA-47vg-m9gm-cf5m/GHSA-47vg-m9gm-cf5m.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-352" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/01/GHSA-5ggv-wq69-w49q/GHSA-5ggv-wq69-w49q.json b/advisories/unreviewed/2025/01/GHSA-5ggv-wq69-w49q/GHSA-5ggv-wq69-w49q.json index 1d5bea53cf8..1bd1d4c08ef 100644 --- a/advisories/unreviewed/2025/01/GHSA-5ggv-wq69-w49q/GHSA-5ggv-wq69-w49q.json +++ b/advisories/unreviewed/2025/01/GHSA-5ggv-wq69-w49q/GHSA-5ggv-wq69-w49q.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-287", "CWE-863" ], "severity": "CRITICAL", diff --git a/advisories/unreviewed/2025/01/GHSA-5pwm-738f-25mv/GHSA-5pwm-738f-25mv.json b/advisories/unreviewed/2025/01/GHSA-5pwm-738f-25mv/GHSA-5pwm-738f-25mv.json index 98b75a39073..864604790bb 100644 --- a/advisories/unreviewed/2025/01/GHSA-5pwm-738f-25mv/GHSA-5pwm-738f-25mv.json +++ b/advisories/unreviewed/2025/01/GHSA-5pwm-738f-25mv/GHSA-5pwm-738f-25mv.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-269", "CWE-276", "CWE-862" ], diff --git a/advisories/unreviewed/2025/01/GHSA-7x89-hg32-8xpm/GHSA-7x89-hg32-8xpm.json b/advisories/unreviewed/2025/01/GHSA-7x89-hg32-8xpm/GHSA-7x89-hg32-8xpm.json index ffcdfcedc5f..c535e772835 100644 --- a/advisories/unreviewed/2025/01/GHSA-7x89-hg32-8xpm/GHSA-7x89-hg32-8xpm.json +++ b/advisories/unreviewed/2025/01/GHSA-7x89-hg32-8xpm/GHSA-7x89-hg32-8xpm.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-863" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/01/GHSA-9h7m-pf82-g666/GHSA-9h7m-pf82-g666.json b/advisories/unreviewed/2025/01/GHSA-9h7m-pf82-g666/GHSA-9h7m-pf82-g666.json index 02f5d4b4f13..04d922945f6 100644 --- a/advisories/unreviewed/2025/01/GHSA-9h7m-pf82-g666/GHSA-9h7m-pf82-g666.json +++ b/advisories/unreviewed/2025/01/GHSA-9h7m-pf82-g666/GHSA-9h7m-pf82-g666.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-9h7m-pf82-g666", - "modified": "2025-01-30T18:32:07Z", + "modified": "2025-03-13T15:32:45Z", "published": "2025-01-30T18:32:07Z", "aliases": [ "CVE-2025-22222" @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-497" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/01/GHSA-chv5-gcx2-vw99/GHSA-chv5-gcx2-vw99.json b/advisories/unreviewed/2025/01/GHSA-chv5-gcx2-vw99/GHSA-chv5-gcx2-vw99.json index ede039094c5..9027f426a65 100644 --- a/advisories/unreviewed/2025/01/GHSA-chv5-gcx2-vw99/GHSA-chv5-gcx2-vw99.json +++ b/advisories/unreviewed/2025/01/GHSA-chv5-gcx2-vw99/GHSA-chv5-gcx2-vw99.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-chv5-gcx2-vw99", - "modified": "2025-02-18T21:32:29Z", + "modified": "2025-03-13T15:32:45Z", "published": "2025-01-28T00:32:13Z", "aliases": [ "CVE-2024-54475" @@ -33,7 +33,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-200" + ], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/01/GHSA-cpff-m354-g6jw/GHSA-cpff-m354-g6jw.json b/advisories/unreviewed/2025/01/GHSA-cpff-m354-g6jw/GHSA-cpff-m354-g6jw.json index 536c1035d8b..c6585f34489 100644 --- a/advisories/unreviewed/2025/01/GHSA-cpff-m354-g6jw/GHSA-cpff-m354-g6jw.json +++ b/advisories/unreviewed/2025/01/GHSA-cpff-m354-g6jw/GHSA-cpff-m354-g6jw.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-269", "CWE-611" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2025/01/GHSA-fg8c-8f5r-r5m9/GHSA-fg8c-8f5r-r5m9.json b/advisories/unreviewed/2025/01/GHSA-fg8c-8f5r-r5m9/GHSA-fg8c-8f5r-r5m9.json index eb8be49e1d3..0a69018b3c1 100644 --- a/advisories/unreviewed/2025/01/GHSA-fg8c-8f5r-r5m9/GHSA-fg8c-8f5r-r5m9.json +++ b/advisories/unreviewed/2025/01/GHSA-fg8c-8f5r-r5m9/GHSA-fg8c-8f5r-r5m9.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-863" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/01/GHSA-fh4m-mf33-3fv8/GHSA-fh4m-mf33-3fv8.json b/advisories/unreviewed/2025/01/GHSA-fh4m-mf33-3fv8/GHSA-fh4m-mf33-3fv8.json index 5727df24c3f..ee430a9c910 100644 --- a/advisories/unreviewed/2025/01/GHSA-fh4m-mf33-3fv8/GHSA-fh4m-mf33-3fv8.json +++ b/advisories/unreviewed/2025/01/GHSA-fh4m-mf33-3fv8/GHSA-fh4m-mf33-3fv8.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-284", "CWE-94" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2025/01/GHSA-fw54-qxpm-m379/GHSA-fw54-qxpm-m379.json b/advisories/unreviewed/2025/01/GHSA-fw54-qxpm-m379/GHSA-fw54-qxpm-m379.json index c234dce62ae..e7819384031 100644 --- a/advisories/unreviewed/2025/01/GHSA-fw54-qxpm-m379/GHSA-fw54-qxpm-m379.json +++ b/advisories/unreviewed/2025/01/GHSA-fw54-qxpm-m379/GHSA-fw54-qxpm-m379.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-352" + ], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/01/GHSA-hx7v-449x-8wpm/GHSA-hx7v-449x-8wpm.json b/advisories/unreviewed/2025/01/GHSA-hx7v-449x-8wpm/GHSA-hx7v-449x-8wpm.json index cd7276025a3..98a5b5031d4 100644 --- a/advisories/unreviewed/2025/01/GHSA-hx7v-449x-8wpm/GHSA-hx7v-449x-8wpm.json +++ b/advisories/unreviewed/2025/01/GHSA-hx7v-449x-8wpm/GHSA-hx7v-449x-8wpm.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/01/GHSA-j2g7-wj3p-j9c9/GHSA-j2g7-wj3p-j9c9.json b/advisories/unreviewed/2025/01/GHSA-j2g7-wj3p-j9c9/GHSA-j2g7-wj3p-j9c9.json index bcdad5c4c49..16e87d29adf 100644 --- a/advisories/unreviewed/2025/01/GHSA-j2g7-wj3p-j9c9/GHSA-j2g7-wj3p-j9c9.json +++ b/advisories/unreviewed/2025/01/GHSA-j2g7-wj3p-j9c9/GHSA-j2g7-wj3p-j9c9.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-j2g7-wj3p-j9c9", - "modified": "2025-01-19T12:31:25Z", + "modified": "2025-03-13T15:32:44Z", "published": "2025-01-19T12:31:25Z", "aliases": [ "CVE-2025-21647" @@ -18,6 +18,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/27202e2e8721c3b23831563c36ed5ac7818641ba" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/44fe1efb4961c1a5ccab16bb579dfc6b308ad58b" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/737d4d91d35b5f7fa5bb442651472277318b0bfd" @@ -29,6 +33,14 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/a777e06dfc72bed73c05dcb437d7c27ad5f90f3f" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b1a1743aaa4906c41c426eda97e2e2586f79246d" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/bb0245fa72b783cb23a9949c5048781341e91423" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/01/GHSA-jq8v-x7gq-gghc/GHSA-jq8v-x7gq-gghc.json b/advisories/unreviewed/2025/01/GHSA-jq8v-x7gq-gghc/GHSA-jq8v-x7gq-gghc.json index 827b1d088a4..c48f949274b 100644 --- a/advisories/unreviewed/2025/01/GHSA-jq8v-x7gq-gghc/GHSA-jq8v-x7gq-gghc.json +++ b/advisories/unreviewed/2025/01/GHSA-jq8v-x7gq-gghc/GHSA-jq8v-x7gq-gghc.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-783" + ], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/01/GHSA-qrcx-78jp-35gm/GHSA-qrcx-78jp-35gm.json b/advisories/unreviewed/2025/01/GHSA-qrcx-78jp-35gm/GHSA-qrcx-78jp-35gm.json index 1a2060b9a8c..7b090d6f4e0 100644 --- a/advisories/unreviewed/2025/01/GHSA-qrcx-78jp-35gm/GHSA-qrcx-78jp-35gm.json +++ b/advisories/unreviewed/2025/01/GHSA-qrcx-78jp-35gm/GHSA-qrcx-78jp-35gm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qrcx-78jp-35gm", - "modified": "2025-01-30T18:32:07Z", + "modified": "2025-03-13T15:32:45Z", "published": "2025-01-30T18:32:07Z", "aliases": [ "CVE-2025-22221" @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/01/GHSA-r4rm-r3rr-w99w/GHSA-r4rm-r3rr-w99w.json b/advisories/unreviewed/2025/01/GHSA-r4rm-r3rr-w99w/GHSA-r4rm-r3rr-w99w.json index 073c0bf1326..4b9eb934cca 100644 --- a/advisories/unreviewed/2025/01/GHSA-r4rm-r3rr-w99w/GHSA-r4rm-r3rr-w99w.json +++ b/advisories/unreviewed/2025/01/GHSA-r4rm-r3rr-w99w/GHSA-r4rm-r3rr-w99w.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/01/GHSA-vqf8-5rpg-55xx/GHSA-vqf8-5rpg-55xx.json b/advisories/unreviewed/2025/01/GHSA-vqf8-5rpg-55xx/GHSA-vqf8-5rpg-55xx.json index c6b078045c6..0845be056f2 100644 --- a/advisories/unreviewed/2025/01/GHSA-vqf8-5rpg-55xx/GHSA-vqf8-5rpg-55xx.json +++ b/advisories/unreviewed/2025/01/GHSA-vqf8-5rpg-55xx/GHSA-vqf8-5rpg-55xx.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/01/GHSA-x9mf-2j92-52jm/GHSA-x9mf-2j92-52jm.json b/advisories/unreviewed/2025/01/GHSA-x9mf-2j92-52jm/GHSA-x9mf-2j92-52jm.json index ca3d2968334..7b0e85fdfd8 100644 --- a/advisories/unreviewed/2025/01/GHSA-x9mf-2j92-52jm/GHSA-x9mf-2j92-52jm.json +++ b/advisories/unreviewed/2025/01/GHSA-x9mf-2j92-52jm/GHSA-x9mf-2j92-52jm.json @@ -27,6 +27,7 @@ "database_specific": { "cwe_ids": [ "CWE-120", + "CWE-78", "CWE-787" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2025/02/GHSA-268v-p5rc-rhmv/GHSA-268v-p5rc-rhmv.json b/advisories/unreviewed/2025/02/GHSA-268v-p5rc-rhmv/GHSA-268v-p5rc-rhmv.json index a1c92c268f7..cdc47659080 100644 --- a/advisories/unreviewed/2025/02/GHSA-268v-p5rc-rhmv/GHSA-268v-p5rc-rhmv.json +++ b/advisories/unreviewed/2025/02/GHSA-268v-p5rc-rhmv/GHSA-268v-p5rc-rhmv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-268v-p5rc-rhmv", - "modified": "2025-02-21T15:32:00Z", + "modified": "2025-03-13T15:32:46Z", "published": "2025-02-13T15:31:27Z", "aliases": [ "CVE-2025-21701" @@ -18,6 +18,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/12e070eb6964b341b41677fd260af5a305316a1f" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/26bc6076798aa4dc83a07d0a386f9e57c94e8517" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/2f29127e94ae9fdc7497331003d6860e9551cdf3" diff --git a/advisories/unreviewed/2025/02/GHSA-28xg-m4x8-c54q/GHSA-28xg-m4x8-c54q.json b/advisories/unreviewed/2025/02/GHSA-28xg-m4x8-c54q/GHSA-28xg-m4x8-c54q.json index 4ccfde95914..3949f08178f 100644 --- a/advisories/unreviewed/2025/02/GHSA-28xg-m4x8-c54q/GHSA-28xg-m4x8-c54q.json +++ b/advisories/unreviewed/2025/02/GHSA-28xg-m4x8-c54q/GHSA-28xg-m4x8-c54q.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-28xg-m4x8-c54q", - "modified": "2025-02-27T03:34:00Z", + "modified": "2025-03-13T15:32:47Z", "published": "2025-02-27T03:33:59Z", "aliases": [ "CVE-2024-57986" @@ -14,10 +14,22 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-57986" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/05dd7d10675b540b8b7b31035c0a8abb6e6f3b88" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/3a002e4029230d9a6be89f869b2328b258612f5c" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/64f2657b579343cf923aa933f08074e6258eb07b" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a32ea3f982b389ea43a41ce77b6fb70d74006d9b" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/a5498f1f864ea26f4c613c77f54409c776a95a90" diff --git a/advisories/unreviewed/2025/02/GHSA-2fvw-qmcc-8m37/GHSA-2fvw-qmcc-8m37.json b/advisories/unreviewed/2025/02/GHSA-2fvw-qmcc-8m37/GHSA-2fvw-qmcc-8m37.json index 0ef7968c9ee..f956d52313f 100644 --- a/advisories/unreviewed/2025/02/GHSA-2fvw-qmcc-8m37/GHSA-2fvw-qmcc-8m37.json +++ b/advisories/unreviewed/2025/02/GHSA-2fvw-qmcc-8m37/GHSA-2fvw-qmcc-8m37.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-770" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/02/GHSA-2mg6-cgrh-mg4j/GHSA-2mg6-cgrh-mg4j.json b/advisories/unreviewed/2025/02/GHSA-2mg6-cgrh-mg4j/GHSA-2mg6-cgrh-mg4j.json index b5836ae8de7..a8827942494 100644 --- a/advisories/unreviewed/2025/02/GHSA-2mg6-cgrh-mg4j/GHSA-2mg6-cgrh-mg4j.json +++ b/advisories/unreviewed/2025/02/GHSA-2mg6-cgrh-mg4j/GHSA-2mg6-cgrh-mg4j.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-2mg6-cgrh-mg4j", - "modified": "2025-03-07T21:31:04Z", + "modified": "2025-03-13T15:32:47Z", "published": "2025-02-27T03:33:59Z", "aliases": [ "CVE-2024-57980" @@ -19,10 +19,18 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-57980" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/3ba8884a56a3eb97c22f0ce0e4dd410d4ca4c277" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/6c36dcd662ec5276782838660f8533a7cb26be49" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/87522ef165e5b6de8ef98cc318f3335166a1512c" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/9232719ac9ce4d5c213cebda23d72aec3e1c4c0d" @@ -35,6 +43,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/d1f8e69eec91d5a75ef079778a5d0151db2a7f22" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d6e5ba2516c5bef87c1fcb8189b6f3cad7c64b2d" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/d8e63dd7b6683969d3d47c7b8e9635f96d554ad4" diff --git a/advisories/unreviewed/2025/02/GHSA-2qfv-5w3v-jvfv/GHSA-2qfv-5w3v-jvfv.json b/advisories/unreviewed/2025/02/GHSA-2qfv-5w3v-jvfv/GHSA-2qfv-5w3v-jvfv.json index d1ca495067d..720bc4990f5 100644 --- a/advisories/unreviewed/2025/02/GHSA-2qfv-5w3v-jvfv/GHSA-2qfv-5w3v-jvfv.json +++ b/advisories/unreviewed/2025/02/GHSA-2qfv-5w3v-jvfv/GHSA-2qfv-5w3v-jvfv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-2qfv-5w3v-jvfv", - "modified": "2025-02-27T18:31:10Z", + "modified": "2025-03-13T15:32:49Z", "published": "2025-02-27T03:34:02Z", "aliases": [ "CVE-2025-21731" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21731" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6bef6222a3f6c7adb6396f77f25a3579d821b09a" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/844b8cdc681612ff24df62cdefddeab5772fadf1" @@ -35,6 +39,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/d208d2c52b652913b5eefc8ca434b0d6b757f68f" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e3be8862d73cac833e0fb7602636c19c6cb94b11" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e70a578487a47d7cf058904141e586684d1c3381" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/e7343fa33751cb07c1c56b666bf37cfca357130e" diff --git a/advisories/unreviewed/2025/02/GHSA-3vhc-4mgh-2vvp/GHSA-3vhc-4mgh-2vvp.json b/advisories/unreviewed/2025/02/GHSA-3vhc-4mgh-2vvp/GHSA-3vhc-4mgh-2vvp.json index 36a03c4bb0c..a8eaf7a6380 100644 --- a/advisories/unreviewed/2025/02/GHSA-3vhc-4mgh-2vvp/GHSA-3vhc-4mgh-2vvp.json +++ b/advisories/unreviewed/2025/02/GHSA-3vhc-4mgh-2vvp/GHSA-3vhc-4mgh-2vvp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3vhc-4mgh-2vvp", - "modified": "2025-02-27T18:31:11Z", + "modified": "2025-03-13T15:32:51Z", "published": "2025-02-27T03:34:05Z", "aliases": [ "CVE-2025-21762" @@ -23,14 +23,26 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/01d1b5c9abcaff29a43f1d17a19c33eec92c7dbe" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/10f555e3f573d004ae9d89b3276abb58c4ede5c3" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/2c331718d3389b6c5f6855078ab7171849e016bd" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/307cd1e2d3cb1cbc6c40c679cada6d7168b18431" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/a42b69f692165ec39db42d595f4f65a4c8f42e44" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d9366ac2f956a1948b68c0500f84a3462ff2ed8a" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/e9f4dee534eb1b225b0a120395ad9bc2afe164d3" diff --git a/advisories/unreviewed/2025/02/GHSA-425c-353w-6mvg/GHSA-425c-353w-6mvg.json b/advisories/unreviewed/2025/02/GHSA-425c-353w-6mvg/GHSA-425c-353w-6mvg.json index 173c08e8dff..197ff326f31 100644 --- a/advisories/unreviewed/2025/02/GHSA-425c-353w-6mvg/GHSA-425c-353w-6mvg.json +++ b/advisories/unreviewed/2025/02/GHSA-425c-353w-6mvg/GHSA-425c-353w-6mvg.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-425c-353w-6mvg", - "modified": "2025-02-27T21:32:16Z", + "modified": "2025-03-13T15:32:52Z", "published": "2025-02-27T21:32:16Z", "aliases": [ "CVE-2025-21802" @@ -14,10 +14,18 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21802" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/622d92a67656e5c4d2d6ccac02d688ed995418c6" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/82736bb83fb0221319c85c2e9917d0189cd84e1e" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/8c640dd3d900cc8988a39c007591f1deee776df4" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/92e5995773774a3e70257e9c95ea03518268bea5" diff --git a/advisories/unreviewed/2025/02/GHSA-4678-fmrh-j2fj/GHSA-4678-fmrh-j2fj.json b/advisories/unreviewed/2025/02/GHSA-4678-fmrh-j2fj/GHSA-4678-fmrh-j2fj.json index 7515340e916..4bef50a7aea 100644 --- a/advisories/unreviewed/2025/02/GHSA-4678-fmrh-j2fj/GHSA-4678-fmrh-j2fj.json +++ b/advisories/unreviewed/2025/02/GHSA-4678-fmrh-j2fj/GHSA-4678-fmrh-j2fj.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-120" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/02/GHSA-48g3-w2gf-xjrv/GHSA-48g3-w2gf-xjrv.json b/advisories/unreviewed/2025/02/GHSA-48g3-w2gf-xjrv/GHSA-48g3-w2gf-xjrv.json index 74805260d82..92fc41497e5 100644 --- a/advisories/unreviewed/2025/02/GHSA-48g3-w2gf-xjrv/GHSA-48g3-w2gf-xjrv.json +++ b/advisories/unreviewed/2025/02/GHSA-48g3-w2gf-xjrv/GHSA-48g3-w2gf-xjrv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-48g3-w2gf-xjrv", - "modified": "2025-02-22T12:30:29Z", + "modified": "2025-03-13T15:32:46Z", "published": "2025-02-22T12:30:29Z", "aliases": [ "CVE-2025-21704" @@ -26,6 +26,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/7828e9363ac4d23b02419bf2a45b9f1d9fb35646" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/871619c2b78fdfe05afb4e8ba548678687beb812" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/90dd2f1b7342b9a671a5ea4160f408037b92b118" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a4e1ae5c0533964170197e4fb4f33bc8c1db5cd2" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/e563b01208f4d1f609bcab13333b6c0e24ce6a01" diff --git a/advisories/unreviewed/2025/02/GHSA-4gxw-5w55-6f5h/GHSA-4gxw-5w55-6f5h.json b/advisories/unreviewed/2025/02/GHSA-4gxw-5w55-6f5h/GHSA-4gxw-5w55-6f5h.json index 8209fa2f97b..996c341b113 100644 --- a/advisories/unreviewed/2025/02/GHSA-4gxw-5w55-6f5h/GHSA-4gxw-5w55-6f5h.json +++ b/advisories/unreviewed/2025/02/GHSA-4gxw-5w55-6f5h/GHSA-4gxw-5w55-6f5h.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4gxw-5w55-6f5h", - "modified": "2025-02-27T18:31:09Z", + "modified": "2025-03-13T15:32:48Z", "published": "2025-02-27T03:34:02Z", "aliases": [ "CVE-2025-21726" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21726" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/4c6209efea2208597dbd3e52dc87a0d1a8f2dbe1" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/6f45ef616775b0ce7889b0f6077fc8d681ab30bc" @@ -38,6 +42,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/dd7d37ccf6b11f3d95e797ebe4e9e886d0332600" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f4f1b1169fc3694f9bc3e28c6c68dbbf4cc744c0" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-4r7g-qqxf-m6v8/GHSA-4r7g-qqxf-m6v8.json b/advisories/unreviewed/2025/02/GHSA-4r7g-qqxf-m6v8/GHSA-4r7g-qqxf-m6v8.json index 134e03994c3..ca38b48f596 100644 --- a/advisories/unreviewed/2025/02/GHSA-4r7g-qqxf-m6v8/GHSA-4r7g-qqxf-m6v8.json +++ b/advisories/unreviewed/2025/02/GHSA-4r7g-qqxf-m6v8/GHSA-4r7g-qqxf-m6v8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4r7g-qqxf-m6v8", - "modified": "2025-03-05T21:32:07Z", + "modified": "2025-03-13T15:32:51Z", "published": "2025-02-27T03:34:06Z", "aliases": [ "CVE-2025-21776" @@ -23,6 +23,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/2240fed37afbcdb5e8b627bc7ad986891100e05d" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/49f077106fa07919a6a6dda99bb490dd1d1a8218" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/5b9778e1fe715700993ce436c152dc3b7df0b490" @@ -35,6 +39,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/c3720b04df84b5459050ae4e03ec7d545652f897" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d343fe0fad5c1d689775f2dda24a85ce98e29566" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d3a67adb365cdfdac4620daf38a82e57ca45806c" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/e905a0fca7bff0855d312c16f71e60e1773b393e" diff --git a/advisories/unreviewed/2025/02/GHSA-572c-4f8h-65c4/GHSA-572c-4f8h-65c4.json b/advisories/unreviewed/2025/02/GHSA-572c-4f8h-65c4/GHSA-572c-4f8h-65c4.json index e5a03ff576d..f0aa84cb230 100644 --- a/advisories/unreviewed/2025/02/GHSA-572c-4f8h-65c4/GHSA-572c-4f8h-65c4.json +++ b/advisories/unreviewed/2025/02/GHSA-572c-4f8h-65c4/GHSA-572c-4f8h-65c4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-572c-4f8h-65c4", - "modified": "2025-03-06T12:30:41Z", + "modified": "2025-03-13T15:32:49Z", "published": "2025-02-27T03:34:03Z", "aliases": [ "CVE-2024-58017" @@ -35,9 +35,21 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/4acf6bab775dbd22a9a799030a808a7305e01d63" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/54c14022fa2ba427dc543455c2cf9225903a7174" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/9a6d43844de2479a3ff8d674c3e2a16172e01598" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/bb8ff054e19fe27f4e5eaac1b05e462894cfe9b1" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/dfb7b179741ee09506dc7719d92f9e1cea01f10e" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-579q-3q2m-34fw/GHSA-579q-3q2m-34fw.json b/advisories/unreviewed/2025/02/GHSA-579q-3q2m-34fw/GHSA-579q-3q2m-34fw.json index 5565eeeab7b..56a302a7094 100644 --- a/advisories/unreviewed/2025/02/GHSA-579q-3q2m-34fw/GHSA-579q-3q2m-34fw.json +++ b/advisories/unreviewed/2025/02/GHSA-579q-3q2m-34fw/GHSA-579q-3q2m-34fw.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-579q-3q2m-34fw", - "modified": "2025-02-27T21:32:15Z", + "modified": "2025-03-13T15:32:47Z", "published": "2025-02-27T03:33:59Z", "aliases": [ "CVE-2024-57979" @@ -19,6 +19,14 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-57979" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1a7735ab2cb9747518a7416fb5929e85442dec62" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/785c78ed0d39d1717cca3ef931d3e51337b5e90e" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/7e5ee3281dc09014367f5112b6d566ba36ea2d49" @@ -31,6 +39,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/91932db1d96b2952299ce30c1c693d834d10ace6" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/c4041b6b0a7a3def8cf3f3d6120ff337bc4c40f7" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/c79a39dc8d060b9e64e8b0fa9d245d44befeefbe" diff --git a/advisories/unreviewed/2025/02/GHSA-5828-2c94-235c/GHSA-5828-2c94-235c.json b/advisories/unreviewed/2025/02/GHSA-5828-2c94-235c/GHSA-5828-2c94-235c.json index b0b606a9ab0..b1eb352d62e 100644 --- a/advisories/unreviewed/2025/02/GHSA-5828-2c94-235c/GHSA-5828-2c94-235c.json +++ b/advisories/unreviewed/2025/02/GHSA-5828-2c94-235c/GHSA-5828-2c94-235c.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5828-2c94-235c", - "modified": "2025-02-27T21:32:15Z", + "modified": "2025-03-13T15:32:50Z", "published": "2025-02-27T03:34:05Z", "aliases": [ "CVE-2025-21756" @@ -23,6 +23,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/3f43540166128951cc1be7ab1ce6b7f05c670d8b" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/42b33381e5e1f2b967dc4fb4221ddb9aaf10d197" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/645ce25aa0e67895b11d89f27bb86c9d444c40f8" @@ -31,6 +35,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/b1afd40321f1c243cffbcf40ea7ca41aca87fa5e" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e48fcb403c2d0e574c19683f09399ab4cf67809c" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e7754d564579a5db9c5c9f74228df5d6dd6f1173" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/fcdd2242c0231032fc84e1404315c245ae56322a" diff --git a/advisories/unreviewed/2025/02/GHSA-595v-ghj9-chj5/GHSA-595v-ghj9-chj5.json b/advisories/unreviewed/2025/02/GHSA-595v-ghj9-chj5/GHSA-595v-ghj9-chj5.json index 27ddafc37d9..95155595b40 100644 --- a/advisories/unreviewed/2025/02/GHSA-595v-ghj9-chj5/GHSA-595v-ghj9-chj5.json +++ b/advisories/unreviewed/2025/02/GHSA-595v-ghj9-chj5/GHSA-595v-ghj9-chj5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-595v-ghj9-chj5", - "modified": "2025-02-27T21:32:15Z", + "modified": "2025-03-13T15:32:50Z", "published": "2025-02-27T03:34:04Z", "aliases": [ "CVE-2025-21753" @@ -23,6 +23,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/6ba4663ada6c6315af23a6669d386146634808ec" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7e954b6bb95d67ae4d1a20e9cfd83c182cf929bc" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/86d71a026a7f63da905db9add845c8ee88801eca" @@ -31,10 +35,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/8f5cff471039caa2b088060c074c2bf2081bcb01" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/c7a53757717e68af94a56929d57f1e6daff220ec" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/ce628048390dad80320d5a1f74de6ca1e1be91e7" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/cee55b1219568c80bf0d5dc55066e4a859baf753" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/e2f0943cf37305dbdeaf9846e3c941451bcdef63" diff --git a/advisories/unreviewed/2025/02/GHSA-5v2w-fx47-6rq2/GHSA-5v2w-fx47-6rq2.json b/advisories/unreviewed/2025/02/GHSA-5v2w-fx47-6rq2/GHSA-5v2w-fx47-6rq2.json index c59c3e2ee72..688348a9134 100644 --- a/advisories/unreviewed/2025/02/GHSA-5v2w-fx47-6rq2/GHSA-5v2w-fx47-6rq2.json +++ b/advisories/unreviewed/2025/02/GHSA-5v2w-fx47-6rq2/GHSA-5v2w-fx47-6rq2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5v2w-fx47-6rq2", - "modified": "2025-02-27T03:34:06Z", + "modified": "2025-03-13T15:32:52Z", "published": "2025-02-27T03:34:06Z", "aliases": [ "CVE-2025-21781" @@ -18,6 +18,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/072b2787321903287a126c148e8db87dd7ef96fe" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/167422a07096a6006599067c8b55884064fa0b72" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/2c3fb7df4cc6d043f70d4a8a10f8b915bbfb75e7" @@ -33,6 +37,14 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/ccb7276a6d26d6f8416e315b43b45e15ee7f29e2" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ce3f1545bf8fa28bd05ec113679e8e6cd23af577" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f0a16c6c79768180333f3e41ce63f32730e3c3af" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-63p9-c49j-px3q/GHSA-63p9-c49j-px3q.json b/advisories/unreviewed/2025/02/GHSA-63p9-c49j-px3q/GHSA-63p9-c49j-px3q.json index 77f9e9cedcc..95e0c7a5576 100644 --- a/advisories/unreviewed/2025/02/GHSA-63p9-c49j-px3q/GHSA-63p9-c49j-px3q.json +++ b/advisories/unreviewed/2025/02/GHSA-63p9-c49j-px3q/GHSA-63p9-c49j-px3q.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-63p9-c49j-px3q", - "modified": "2025-03-06T12:30:41Z", + "modified": "2025-03-13T15:32:50Z", "published": "2025-02-27T03:34:04Z", "aliases": [ "CVE-2025-21735" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21735" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/10b3f947b609713e04022101f492d288a014ddfa" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/110b43ef05342d5a11284cc8b21582b698b4ef1c" @@ -35,6 +39,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/59c7ed20217c0939862fbf8145bc49d5b3a13f4f" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/674e17c5933779a8bf5c15d596fdfcb5ccdebbc2" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/bd249109d266f1d52548c46634a15b71656e0d44" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/d5a461c315e5ff92657f84d8ba50caa5abf5c22a" diff --git a/advisories/unreviewed/2025/02/GHSA-654w-x4w9-5262/GHSA-654w-x4w9-5262.json b/advisories/unreviewed/2025/02/GHSA-654w-x4w9-5262/GHSA-654w-x4w9-5262.json index e8738570778..ed525525ec8 100644 --- a/advisories/unreviewed/2025/02/GHSA-654w-x4w9-5262/GHSA-654w-x4w9-5262.json +++ b/advisories/unreviewed/2025/02/GHSA-654w-x4w9-5262/GHSA-654w-x4w9-5262.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-248" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/02/GHSA-6g66-96c8-x7cw/GHSA-6g66-96c8-x7cw.json b/advisories/unreviewed/2025/02/GHSA-6g66-96c8-x7cw/GHSA-6g66-96c8-x7cw.json index 384bc35dc25..885138bc7b1 100644 --- a/advisories/unreviewed/2025/02/GHSA-6g66-96c8-x7cw/GHSA-6g66-96c8-x7cw.json +++ b/advisories/unreviewed/2025/02/GHSA-6g66-96c8-x7cw/GHSA-6g66-96c8-x7cw.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6g66-96c8-x7cw", - "modified": "2025-02-27T21:32:15Z", + "modified": "2025-03-13T15:32:48Z", "published": "2025-02-27T03:34:02Z", "aliases": [ "CVE-2025-21722" @@ -27,13 +27,25 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/19296737024cd220a1d6590bf4c092bca8c99497" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/4d042811c72f71be7c14726db2c72b67025a7cb5" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/557ccf5e49f1fb848a29698585bcab2e50a597ef" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7d0544bacc11d6aa26ecd7debf9353193c7a3328" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/ca76bb226bf47ff04c782cacbd299f12ddee1ec1" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f51ff43c4c5a6c8e72d0aca89e4d5e688938412f" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-6hjx-r579-83fp/GHSA-6hjx-r579-83fp.json b/advisories/unreviewed/2025/02/GHSA-6hjx-r579-83fp/GHSA-6hjx-r579-83fp.json index f698ea9bba7..e6bccf2907c 100644 --- a/advisories/unreviewed/2025/02/GHSA-6hjx-r579-83fp/GHSA-6hjx-r579-83fp.json +++ b/advisories/unreviewed/2025/02/GHSA-6hjx-r579-83fp/GHSA-6hjx-r579-83fp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6hjx-r579-83fp", - "modified": "2025-03-05T21:32:05Z", + "modified": "2025-03-13T15:32:50Z", "published": "2025-02-27T03:34:04Z", "aliases": [ "CVE-2025-21748" @@ -38,6 +38,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/ecb9947fa7c99a77b04d43404c6988a0d326e4a0" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f3b9fb2764591d792d160f375851013665a9e820" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-6hq3-frr2-vjp4/GHSA-6hq3-frr2-vjp4.json b/advisories/unreviewed/2025/02/GHSA-6hq3-frr2-vjp4/GHSA-6hq3-frr2-vjp4.json index c89a9d0bcb9..269d01eb45b 100644 --- a/advisories/unreviewed/2025/02/GHSA-6hq3-frr2-vjp4/GHSA-6hq3-frr2-vjp4.json +++ b/advisories/unreviewed/2025/02/GHSA-6hq3-frr2-vjp4/GHSA-6hq3-frr2-vjp4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6hq3-frr2-vjp4", - "modified": "2025-03-06T15:34:42Z", + "modified": "2025-03-13T15:32:49Z", "published": "2025-02-27T03:34:03Z", "aliases": [ "CVE-2024-58010" @@ -19,10 +19,18 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58010" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0b6be54d7386b7addbf9e5947366f94aad046938" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/55cf2f4b945f6a6416cc2524ba740b83cc9af25a" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6fb98e0576ea155267e206286413dcb3a3d55c12" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/8e8cd712bb06a507b26efd2a56155076aa454345" @@ -35,6 +43,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/a009378af674b808efcca1e2e67916e79ce866b3" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/bc8ca18b8ef4648532c001bd6c8151143b569275" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/d17ca8f2dfcf423c439859995910a20e38b86f00" diff --git a/advisories/unreviewed/2025/02/GHSA-6x53-8wjp-mwv4/GHSA-6x53-8wjp-mwv4.json b/advisories/unreviewed/2025/02/GHSA-6x53-8wjp-mwv4/GHSA-6x53-8wjp-mwv4.json index 69bbf205f76..768f92b7d92 100644 --- a/advisories/unreviewed/2025/02/GHSA-6x53-8wjp-mwv4/GHSA-6x53-8wjp-mwv4.json +++ b/advisories/unreviewed/2025/02/GHSA-6x53-8wjp-mwv4/GHSA-6x53-8wjp-mwv4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6x53-8wjp-mwv4", - "modified": "2025-02-27T15:31:51Z", + "modified": "2025-03-13T15:32:48Z", "published": "2025-02-27T03:34:02Z", "aliases": [ "CVE-2025-21721" @@ -14,14 +14,26 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21721" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1ee2d454baa361d2964e3e2f2cca9ee3f769d93c" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/481136234dfe96c7f92770829bec6111c7c5f5dd" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/607dc724b162f4452dc768865e578c1a509a1c8c" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/7891ac3b0a5c56f7148af507306308ab841cdc31" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b38c6c260c2415c7f0968871305e7a093daabb4c" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/eddd3176b8c4c83a46ab974574cda7c3dfe09388" @@ -29,6 +41,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/ee70999a988b8abc3490609142f50ebaa8344432" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f70bd2d8ca454e0ed78970f72147ca321dbaa015" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-798h-hm78-q979/GHSA-798h-hm78-q979.json b/advisories/unreviewed/2025/02/GHSA-798h-hm78-q979/GHSA-798h-hm78-q979.json index eacb5afc889..517c9446294 100644 --- a/advisories/unreviewed/2025/02/GHSA-798h-hm78-q979/GHSA-798h-hm78-q979.json +++ b/advisories/unreviewed/2025/02/GHSA-798h-hm78-q979/GHSA-798h-hm78-q979.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-798h-hm78-q979", - "modified": "2025-02-27T18:31:11Z", + "modified": "2025-03-13T15:32:51Z", "published": "2025-02-27T03:34:05Z", "aliases": [ "CVE-2025-21763" @@ -23,6 +23,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/1cbb2aa90cd3fba15ad7efb5cdda28f3d1082379" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/40d8f2f2a373b6c294ffac394d2bb814b572ead1" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/559307d25235e24b5424778c7332451b6c741159" @@ -31,6 +35,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/784eb2376270e086f7db136d154b8404edacf97b" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/8666e9aab801328c1408a19fbf4070609dc0695a" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/becbd5850c03ed33b232083dd66c6e38c0c0e569" @@ -38,6 +46,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/cdd5c2a12ddad8a77ce1838ff9f29aa587de82df" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e1aed6be381bcd7f46d4ca9d7ef0f5f3d6a1be32" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-7r26-6h4q-5x56/GHSA-7r26-6h4q-5x56.json b/advisories/unreviewed/2025/02/GHSA-7r26-6h4q-5x56/GHSA-7r26-6h4q-5x56.json index 04b4dd411a4..b5cb411ca24 100644 --- a/advisories/unreviewed/2025/02/GHSA-7r26-6h4q-5x56/GHSA-7r26-6h4q-5x56.json +++ b/advisories/unreviewed/2025/02/GHSA-7r26-6h4q-5x56/GHSA-7r26-6h4q-5x56.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7r26-6h4q-5x56", - "modified": "2025-02-27T03:34:05Z", + "modified": "2025-03-13T15:32:51Z", "published": "2025-02-27T03:34:05Z", "aliases": [ "CVE-2025-21766" @@ -30,6 +30,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/a39f61d212d822b3062d7f70fa0588e50e55664e" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ce3c6165fce0f06305c806696882a3ad4b90e33f" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/ea07480b23225942208f1b754fea1e7ec486d37e" diff --git a/advisories/unreviewed/2025/02/GHSA-7wv9-64j8-g396/GHSA-7wv9-64j8-g396.json b/advisories/unreviewed/2025/02/GHSA-7wv9-64j8-g396/GHSA-7wv9-64j8-g396.json index 3cf4f84369f..5198d06b249 100644 --- a/advisories/unreviewed/2025/02/GHSA-7wv9-64j8-g396/GHSA-7wv9-64j8-g396.json +++ b/advisories/unreviewed/2025/02/GHSA-7wv9-64j8-g396/GHSA-7wv9-64j8-g396.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7wv9-64j8-g396", - "modified": "2025-03-07T21:31:04Z", + "modified": "2025-03-13T15:32:47Z", "published": "2025-02-27T03:33:58Z", "aliases": [ "CVE-2024-57973" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-57973" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/2b759f78b83221f4a1cae3aeb20b500e375f3ee6" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/4422f452d028850b9cc4fd8f1cf45a8ff91855eb" @@ -31,6 +35,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/bd96a3935e89486304461a21752f824fc25e0f0b" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d64148a10a85952352de6091ceed99fb9ce2d3ee" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/dd352107f22bfbecbbf3b74bde14f3f932296309" @@ -38,6 +46,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/de8d88b68d0cfd41152a7a63d6aec0ed3e1b837a" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e53ca458f543aa352d09b484550de173cb9085c2" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-8pq8-wmv3-g27x/GHSA-8pq8-wmv3-g27x.json b/advisories/unreviewed/2025/02/GHSA-8pq8-wmv3-g27x/GHSA-8pq8-wmv3-g27x.json index 902339ce096..a87a68a652f 100644 --- a/advisories/unreviewed/2025/02/GHSA-8pq8-wmv3-g27x/GHSA-8pq8-wmv3-g27x.json +++ b/advisories/unreviewed/2025/02/GHSA-8pq8-wmv3-g27x/GHSA-8pq8-wmv3-g27x.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-8pq8-wmv3-g27x", - "modified": "2025-02-27T03:34:04Z", + "modified": "2025-03-13T15:32:50Z", "published": "2025-02-27T03:34:04Z", "aliases": [ "CVE-2025-21749" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: rose: lock the socket in rose_bind()\n\nsyzbot reported a soft lockup in rose_loopback_timer(),\nwith a repro calling bind() from multiple threads.\n\nrose_bind() must lock the socket to avoid this issue.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -30,14 +35,28 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/a1300691aed9ee852b0a9192e29e2bdc2411a7e6" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b8bf5c3fb778bbb1f3ff7d98ec577c969f687513" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d308661a0f4e7c8e86dfc7074a55ee5894c61538" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/e0384efd45f615603e6869205b72040c209e69cc" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ed00c5f907d08a647b8bf987514ad8c6b17971a7" } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-667" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-27T03:15:15Z" diff --git a/advisories/unreviewed/2025/02/GHSA-8w2r-337g-j83r/GHSA-8w2r-337g-j83r.json b/advisories/unreviewed/2025/02/GHSA-8w2r-337g-j83r/GHSA-8w2r-337g-j83r.json index d778316f19b..7386bcf6b56 100644 --- a/advisories/unreviewed/2025/02/GHSA-8w2r-337g-j83r/GHSA-8w2r-337g-j83r.json +++ b/advisories/unreviewed/2025/02/GHSA-8w2r-337g-j83r/GHSA-8w2r-337g-j83r.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8w2r-337g-j83r", - "modified": "2025-02-27T21:32:16Z", + "modified": "2025-03-13T15:32:52Z", "published": "2025-02-27T21:32:16Z", "aliases": [ "CVE-2025-21804" @@ -30,6 +30,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/44708208c2a4b828a57a2abe7799c9d3962e7eaa" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6987e021b64cbb49981d140bb72d9d1466f191c4" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7a47e14c5fb0b6dba7073be7b0119fb8fe864e01" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/9ff46b0bfeb6e0724a4ace015aa7a0b887cdb7c1" diff --git a/advisories/unreviewed/2025/02/GHSA-9cf9-vw76-83rq/GHSA-9cf9-vw76-83rq.json b/advisories/unreviewed/2025/02/GHSA-9cf9-vw76-83rq/GHSA-9cf9-vw76-83rq.json index c0e67f856d7..4b3074804b8 100644 --- a/advisories/unreviewed/2025/02/GHSA-9cf9-vw76-83rq/GHSA-9cf9-vw76-83rq.json +++ b/advisories/unreviewed/2025/02/GHSA-9cf9-vw76-83rq/GHSA-9cf9-vw76-83rq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-9cf9-vw76-83rq", - "modified": "2025-03-06T12:30:41Z", + "modified": "2025-03-13T15:32:50Z", "published": "2025-02-27T03:34:03Z", "aliases": [ "CVE-2024-58020" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58020" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/2052b44cd0a62b6fdbe3371e5ba6029c56c400ca" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/4e7113f591163d99adc7cbcd7295030c8c5d3fc7" @@ -35,6 +39,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/9b8e2220d3a052a690b1d1b23019673e612494c5" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a04d96ef67a42165f93194eef22a270acba4b74c" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a6bfd3856e9f3da083f177753c623d58ba935e0a" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/aa879ef6d3acf96fa2c7122d0632061d4ea58d48" diff --git a/advisories/unreviewed/2025/02/GHSA-9vgr-8wff-x9vq/GHSA-9vgr-8wff-x9vq.json b/advisories/unreviewed/2025/02/GHSA-9vgr-8wff-x9vq/GHSA-9vgr-8wff-x9vq.json index 192ba08c3b6..48a1f2be982 100644 --- a/advisories/unreviewed/2025/02/GHSA-9vgr-8wff-x9vq/GHSA-9vgr-8wff-x9vq.json +++ b/advisories/unreviewed/2025/02/GHSA-9vgr-8wff-x9vq/GHSA-9vgr-8wff-x9vq.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-248" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/02/GHSA-c82f-pmfx-x3vv/GHSA-c82f-pmfx-x3vv.json b/advisories/unreviewed/2025/02/GHSA-c82f-pmfx-x3vv/GHSA-c82f-pmfx-x3vv.json index e7450f05717..a9d7e0d7e96 100644 --- a/advisories/unreviewed/2025/02/GHSA-c82f-pmfx-x3vv/GHSA-c82f-pmfx-x3vv.json +++ b/advisories/unreviewed/2025/02/GHSA-c82f-pmfx-x3vv/GHSA-c82f-pmfx-x3vv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-c82f-pmfx-x3vv", - "modified": "2025-03-07T18:31:03Z", + "modified": "2025-03-13T15:32:46Z", "published": "2025-02-18T15:31:08Z", "aliases": [ "CVE-2025-21702" @@ -22,6 +22,22 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/647cef20e649c576dff271e018d5d15d998b629d" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/78285b53266d6d51fa4ff504a23df03852eba84e" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/79a955ea4a2e5ddf4a36328959de0de496419888" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7a9723ec27aff5674f1fd4934608937f1d650980" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a56a6e8589a9b98d8171611fbcc1e45a15fd2455" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/b6a079c3b6f95378f26e2aeda520cb3176f7067b" diff --git a/advisories/unreviewed/2025/02/GHSA-c9m4-5j2c-cq69/GHSA-c9m4-5j2c-cq69.json b/advisories/unreviewed/2025/02/GHSA-c9m4-5j2c-cq69/GHSA-c9m4-5j2c-cq69.json index 1b2eea3ec0d..5c4616b26f7 100644 --- a/advisories/unreviewed/2025/02/GHSA-c9m4-5j2c-cq69/GHSA-c9m4-5j2c-cq69.json +++ b/advisories/unreviewed/2025/02/GHSA-c9m4-5j2c-cq69/GHSA-c9m4-5j2c-cq69.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-c9m4-5j2c-cq69", - "modified": "2025-02-27T03:34:03Z", + "modified": "2025-03-13T15:32:49Z", "published": "2025-02-27T03:34:03Z", "aliases": [ "CVE-2024-58014" @@ -18,6 +18,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/093286c33409bf38896f2dab0c0bb6ca388afb33" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0a457223cb2b9ca46bae7de387d0f4c093b0220d" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/13ef16c4fe384b1e70277bbe1d87934ee6c81e12" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/3f4a0948c3524ae50f166dbc6572a3296b014e62" @@ -33,6 +41,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/c27ce584d274f6ad3cba2294497de824a3c66646" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d280a12e9b87819a8a209639d600b48a2d6d65dc" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-cfq6-3hq6-2p95/GHSA-cfq6-3hq6-2p95.json b/advisories/unreviewed/2025/02/GHSA-cfq6-3hq6-2p95/GHSA-cfq6-3hq6-2p95.json index b4429a66c43..69e2cb54797 100644 --- a/advisories/unreviewed/2025/02/GHSA-cfq6-3hq6-2p95/GHSA-cfq6-3hq6-2p95.json +++ b/advisories/unreviewed/2025/02/GHSA-cfq6-3hq6-2p95/GHSA-cfq6-3hq6-2p95.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cfq6-3hq6-2p95", - "modified": "2025-02-27T03:34:05Z", + "modified": "2025-03-13T15:32:51Z", "published": "2025-02-27T03:34:05Z", "aliases": [ "CVE-2025-21765" @@ -14,6 +14,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21765" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/28de355b63ad42309ed5a03ee7c436c90512265b" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/3c8ffcd248da34fc41e52a46e51505900115fc2a" @@ -30,9 +34,17 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/713a40c892f40300d63691d9f85b2a23b48fe1e8" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/78ad057472d8c76e0602402269222f9f9c698790" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/84212387caadb211cd9dadd6fd5563bd37dc1f5e" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d02f30d220ef9511568a48dba8a9004c65f8d904" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-cg86-m5xc-jqrm/GHSA-cg86-m5xc-jqrm.json b/advisories/unreviewed/2025/02/GHSA-cg86-m5xc-jqrm/GHSA-cg86-m5xc-jqrm.json index 786ab083c08..089084a28cd 100644 --- a/advisories/unreviewed/2025/02/GHSA-cg86-m5xc-jqrm/GHSA-cg86-m5xc-jqrm.json +++ b/advisories/unreviewed/2025/02/GHSA-cg86-m5xc-jqrm/GHSA-cg86-m5xc-jqrm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cg86-m5xc-jqrm", - "modified": "2025-02-21T15:32:02Z", + "modified": "2025-03-13T15:32:46Z", "published": "2025-02-18T15:31:09Z", "aliases": [ "CVE-2025-21703" @@ -35,9 +35,21 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/7b79ca9a1de6a428d486ff52fb3d602321c08f55" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7f31d74fcc556a9166b1bb20515542de7bb939d1" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/839ecc583fa00fab785fde1c85a326743657fd32" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/98a2c685293aae122f688cde11d9334dddc5d207" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e395fec75ac2dbffc99b4bce57b7f1f3c5449f2c" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-cmvg-6vcw-642h/GHSA-cmvg-6vcw-642h.json b/advisories/unreviewed/2025/02/GHSA-cmvg-6vcw-642h/GHSA-cmvg-6vcw-642h.json index a799ba2e857..7fc2a802003 100644 --- a/advisories/unreviewed/2025/02/GHSA-cmvg-6vcw-642h/GHSA-cmvg-6vcw-642h.json +++ b/advisories/unreviewed/2025/02/GHSA-cmvg-6vcw-642h/GHSA-cmvg-6vcw-642h.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cmvg-6vcw-642h", - "modified": "2025-02-27T18:31:09Z", + "modified": "2025-03-13T15:32:48Z", "published": "2025-02-27T03:34:01Z", "aliases": [ "CVE-2025-21715" @@ -31,6 +31,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/5a54367a7c2378c65aaa4d3cfd952f26adef7aa7" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7d7d201eb3b766abe590ac0dda7a508b7db3e357" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a53cb72043443ac787ec0b5fa17bb3f8ff3d462b" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/c411f9a5fdc9158e8f7c57eac961d3df3eb4d8ca" @@ -38,6 +46,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/c94ab07edc2843e2f3d46dbd82e5c681503aaadf" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/db79e982c5f9e39ab710cbce55b05f2f5e6f1ca9" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-cq4r-9fv8-53r2/GHSA-cq4r-9fv8-53r2.json b/advisories/unreviewed/2025/02/GHSA-cq4r-9fv8-53r2/GHSA-cq4r-9fv8-53r2.json index a7eea4f01fc..6e62ffc460f 100644 --- a/advisories/unreviewed/2025/02/GHSA-cq4r-9fv8-53r2/GHSA-cq4r-9fv8-53r2.json +++ b/advisories/unreviewed/2025/02/GHSA-cq4r-9fv8-53r2/GHSA-cq4r-9fv8-53r2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cq4r-9fv8-53r2", - "modified": "2025-02-27T21:32:17Z", + "modified": "2025-03-13T15:32:53Z", "published": "2025-02-27T21:32:17Z", "aliases": [ "CVE-2025-21823" @@ -18,6 +18,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/0fdc3c166ac17b26014313fa2b93696354511b24" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1c334629176c2d644befc31a20d4bf75542f7631" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/3c0e0aecb78cb2a2ca1dc701982d08fedb088dc6" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/781a06fd265a8151f7601122d9c2e985663828ff" @@ -26,6 +34,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/8c8ecc98f5c65947b0070a24bac11e12e47cc65d" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a0019971f340ae02ba54cf1861f72da7e03e6b66" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/a7aa2317285806640c844acd4cd2cd768e395264" diff --git a/advisories/unreviewed/2025/02/GHSA-cvf5-p5mj-6r49/GHSA-cvf5-p5mj-6r49.json b/advisories/unreviewed/2025/02/GHSA-cvf5-p5mj-6r49/GHSA-cvf5-p5mj-6r49.json index 798dfae9caa..c9ef9c7ab4c 100644 --- a/advisories/unreviewed/2025/02/GHSA-cvf5-p5mj-6r49/GHSA-cvf5-p5mj-6r49.json +++ b/advisories/unreviewed/2025/02/GHSA-cvf5-p5mj-6r49/GHSA-cvf5-p5mj-6r49.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cvf5-p5mj-6r49", - "modified": "2025-02-27T03:34:02Z", + "modified": "2025-03-13T15:32:48Z", "published": "2025-02-27T03:34:01Z", "aliases": [ "CVE-2025-21719" @@ -22,10 +22,22 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/26bb7d991f04eeef47dfad23e533834995c26f7a" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/53df27fd38f84bd3cd6b004eb4ff3c4903114f1d" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/547ef7e8cbb98f966c8719a3e15d4e078aaa9b47" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/57177c5f47a8da852f8d76cf6945cf803f8bb9e5" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/71a0fcb68c0a5f3ec912b540cd5d72148e6ee5f1" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/a099834a51ccf9bbba3de86a251b3433539abfde" diff --git a/advisories/unreviewed/2025/02/GHSA-f23q-rhxc-p26p/GHSA-f23q-rhxc-p26p.json b/advisories/unreviewed/2025/02/GHSA-f23q-rhxc-p26p/GHSA-f23q-rhxc-p26p.json index 09ad0ba2bb8..509b5deb7a3 100644 --- a/advisories/unreviewed/2025/02/GHSA-f23q-rhxc-p26p/GHSA-f23q-rhxc-p26p.json +++ b/advisories/unreviewed/2025/02/GHSA-f23q-rhxc-p26p/GHSA-f23q-rhxc-p26p.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-f23q-rhxc-p26p", - "modified": "2025-02-27T03:34:03Z", + "modified": "2025-03-13T15:32:49Z", "published": "2025-02-27T03:34:03Z", "aliases": [ "CVE-2024-58007" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nsoc: qcom: socinfo: Avoid out of bounds read of serial number\n\nOn MSM8916 devices, the serial number exposed in sysfs is constant and does\nnot change across individual devices. It's always:\n\n db410c:/sys/devices/soc0$ cat serial_number\n 2644893864\n\nThe firmware used on MSM8916 exposes SOCINFO_VERSION(0, 8), which does not\nhave support for the serial_num field in the socinfo struct. There is an\nexisting check to avoid exposing the serial number in that case, but it's\nnot correct: When checking the item_size returned by SMEM, we need to make\nsure the *end* of the serial_num is within bounds, instead of comparing\nwith the *start* offset. The serial_number currently exposed on MSM8916\ndevices is just an out of bounds read of whatever comes after the socinfo\nstruct in SMEM.\n\nFix this by changing offsetof() to offsetofend(), so that the size of the\nfield is also taken into account.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -22,6 +27,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/22cf4fae6660b6e1a583a41cbf84e3046ca9ccd0" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/2495c6598731b6d7f565140f2bd63ef4bc36ce7d" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/2d09d3c9afa2fc422ac3df7c9b8534f350ee19dd" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/407c928305c1a37232a63811c400ef616f85ccbc" @@ -30,14 +43,20 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/47470acd719d45c4c8c418c07962f74cc995652b" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7445fa05317534bbd8b373c0eff8319187916030" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/9c88b3a3fae4d60641c3a45be66269d00eff33cd" } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-125" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-27T03:15:11Z" diff --git a/advisories/unreviewed/2025/02/GHSA-f32m-f53g-3875/GHSA-f32m-f53g-3875.json b/advisories/unreviewed/2025/02/GHSA-f32m-f53g-3875/GHSA-f32m-f53g-3875.json index c91ed6d36d8..d0b51dee9f1 100644 --- a/advisories/unreviewed/2025/02/GHSA-f32m-f53g-3875/GHSA-f32m-f53g-3875.json +++ b/advisories/unreviewed/2025/02/GHSA-f32m-f53g-3875/GHSA-f32m-f53g-3875.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-f32m-f53g-3875", - "modified": "2025-02-27T03:34:03Z", + "modified": "2025-03-13T15:32:49Z", "published": "2025-02-27T03:34:03Z", "aliases": [ "CVE-2024-58016" @@ -22,6 +22,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/96fae5bd1589731592d30b3953a90a77ef3928a6" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/976284b94f2021df09829e37a367e19b84d9e5f3" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/a0dec65f88c8d9290dfa1d2ca1e897abe54c5881" @@ -30,6 +34,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/c71d35676d46090c891b6419f253fb92a1a9f4eb" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ecf6a4a558097920447a6fb84dfdb279e2ac749a" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/f09ff307c7299392f1c88f763299e24bc99811c7" diff --git a/advisories/unreviewed/2025/02/GHSA-f47w-fp34-vr9h/GHSA-f47w-fp34-vr9h.json b/advisories/unreviewed/2025/02/GHSA-f47w-fp34-vr9h/GHSA-f47w-fp34-vr9h.json index 4866aa58881..f02ce1d03dc 100644 --- a/advisories/unreviewed/2025/02/GHSA-f47w-fp34-vr9h/GHSA-f47w-fp34-vr9h.json +++ b/advisories/unreviewed/2025/02/GHSA-f47w-fp34-vr9h/GHSA-f47w-fp34-vr9h.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-f47w-fp34-vr9h", - "modified": "2025-02-27T03:34:02Z", + "modified": "2025-03-13T15:32:48Z", "published": "2025-02-27T03:34:02Z", "aliases": [ "CVE-2025-21728" @@ -30,9 +30,21 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/be42a09fe898635b0093c0c8dac1bfabe225c240" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ce51eab2070e295d298f42a2f1db269cd1b56d55" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e306eaaa3d78b462db5f5b11e0171f9d2b6ca3f4" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/eeef8e65041a031bd8a747a392c14b76a123a12c" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/feba1308bc5e8e04cee751d39fae8a9b407a9034" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-f4jq-8gqc-63v2/GHSA-f4jq-8gqc-63v2.json b/advisories/unreviewed/2025/02/GHSA-f4jq-8gqc-63v2/GHSA-f4jq-8gqc-63v2.json index 33b12283f18..0a482c2294b 100644 --- a/advisories/unreviewed/2025/02/GHSA-f4jq-8gqc-63v2/GHSA-f4jq-8gqc-63v2.json +++ b/advisories/unreviewed/2025/02/GHSA-f4jq-8gqc-63v2/GHSA-f4jq-8gqc-63v2.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-400", "CWE-770" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2025/02/GHSA-f76m-gm5c-xx2m/GHSA-f76m-gm5c-xx2m.json b/advisories/unreviewed/2025/02/GHSA-f76m-gm5c-xx2m/GHSA-f76m-gm5c-xx2m.json index e2b38d6e6dc..c49ac3abf0d 100644 --- a/advisories/unreviewed/2025/02/GHSA-f76m-gm5c-xx2m/GHSA-f76m-gm5c-xx2m.json +++ b/advisories/unreviewed/2025/02/GHSA-f76m-gm5c-xx2m/GHSA-f76m-gm5c-xx2m.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-f76m-gm5c-xx2m", - "modified": "2025-02-27T03:34:05Z", + "modified": "2025-03-13T15:32:50Z", "published": "2025-02-27T03:34:05Z", "aliases": [ "CVE-2025-21757" @@ -18,10 +18,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/2248b8145053eb2ae35ca4cf694b885a086719bb" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/bf500b0d0cfe92ee62dfd4c2ace7f6353cf3a4c8" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/c71a192976ded2f2f416d03c4f595cdd4478b825" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/cb9950eaaf9cc76dfe490c06aa11f185b3c7f22b" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/d90f8f930c3053bb11f5def9aff5310a70429260" diff --git a/advisories/unreviewed/2025/02/GHSA-fg9r-rh56-7jcv/GHSA-fg9r-rh56-7jcv.json b/advisories/unreviewed/2025/02/GHSA-fg9r-rh56-7jcv/GHSA-fg9r-rh56-7jcv.json index cf7a31e817c..55f73a85bf4 100644 --- a/advisories/unreviewed/2025/02/GHSA-fg9r-rh56-7jcv/GHSA-fg9r-rh56-7jcv.json +++ b/advisories/unreviewed/2025/02/GHSA-fg9r-rh56-7jcv/GHSA-fg9r-rh56-7jcv.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-248" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/02/GHSA-fhjf-w34g-fcvp/GHSA-fhjf-w34g-fcvp.json b/advisories/unreviewed/2025/02/GHSA-fhjf-w34g-fcvp/GHSA-fhjf-w34g-fcvp.json index 55784f5474b..a3381f0690d 100644 --- a/advisories/unreviewed/2025/02/GHSA-fhjf-w34g-fcvp/GHSA-fhjf-w34g-fcvp.json +++ b/advisories/unreviewed/2025/02/GHSA-fhjf-w34g-fcvp/GHSA-fhjf-w34g-fcvp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-fhjf-w34g-fcvp", - "modified": "2025-03-04T18:33:26Z", + "modified": "2025-03-13T15:32:52Z", "published": "2025-02-27T21:32:16Z", "aliases": [ "CVE-2024-58034" @@ -35,6 +35,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/c144423cb07e4e227a8572d5742ca2b36ada770d" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/c3def10c610ae046aaa61d00528e7bd15e4ad8d3" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/e9d07e91de140679eeaf275f47ad154467cb9e05" diff --git a/advisories/unreviewed/2025/02/GHSA-gf66-v569-23vx/GHSA-gf66-v569-23vx.json b/advisories/unreviewed/2025/02/GHSA-gf66-v569-23vx/GHSA-gf66-v569-23vx.json index d09b3f7cb48..e262af06dad 100644 --- a/advisories/unreviewed/2025/02/GHSA-gf66-v569-23vx/GHSA-gf66-v569-23vx.json +++ b/advisories/unreviewed/2025/02/GHSA-gf66-v569-23vx/GHSA-gf66-v569-23vx.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-74", "CWE-77" ], "severity": "CRITICAL", diff --git a/advisories/unreviewed/2025/02/GHSA-gghq-qp34-gqg8/GHSA-gghq-qp34-gqg8.json b/advisories/unreviewed/2025/02/GHSA-gghq-qp34-gqg8/GHSA-gghq-qp34-gqg8.json index cde2186541c..683aeb90e4c 100644 --- a/advisories/unreviewed/2025/02/GHSA-gghq-qp34-gqg8/GHSA-gghq-qp34-gqg8.json +++ b/advisories/unreviewed/2025/02/GHSA-gghq-qp34-gqg8/GHSA-gghq-qp34-gqg8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-gghq-qp34-gqg8", - "modified": "2025-03-04T09:30:39Z", + "modified": "2025-03-13T15:32:46Z", "published": "2025-02-12T15:32:02Z", "aliases": [ "CVE-2025-1244" @@ -59,6 +59,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2025:2195" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2025:2754" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2025-1244" diff --git a/advisories/unreviewed/2025/02/GHSA-gpg5-528w-fhh8/GHSA-gpg5-528w-fhh8.json b/advisories/unreviewed/2025/02/GHSA-gpg5-528w-fhh8/GHSA-gpg5-528w-fhh8.json index 933fba78eba..558308cd659 100644 --- a/advisories/unreviewed/2025/02/GHSA-gpg5-528w-fhh8/GHSA-gpg5-528w-fhh8.json +++ b/advisories/unreviewed/2025/02/GHSA-gpg5-528w-fhh8/GHSA-gpg5-528w-fhh8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-gpg5-528w-fhh8", - "modified": "2025-02-27T21:32:16Z", + "modified": "2025-03-13T15:32:52Z", "published": "2025-02-27T21:32:16Z", "aliases": [ "CVE-2025-21799" @@ -14,6 +14,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21799" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/321990fdf4f1bb64e818c7140688bf33d129e48d" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/4395a44acb15850e492dd1de9ec4b6479d96bc80" @@ -33,6 +37,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/aea5cca681d268f794fa2385f9ec26a5cce025cd" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ed8c0300f302338c36edb06bca99051e5be6fb2f" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-h8gw-9qqq-m7gv/GHSA-h8gw-9qqq-m7gv.json b/advisories/unreviewed/2025/02/GHSA-h8gw-9qqq-m7gv/GHSA-h8gw-9qqq-m7gv.json index 0e4692a886d..37210b3c7f6 100644 --- a/advisories/unreviewed/2025/02/GHSA-h8gw-9qqq-m7gv/GHSA-h8gw-9qqq-m7gv.json +++ b/advisories/unreviewed/2025/02/GHSA-h8gw-9qqq-m7gv/GHSA-h8gw-9qqq-m7gv.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-319" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/02/GHSA-h97w-34cr-4pxx/GHSA-h97w-34cr-4pxx.json b/advisories/unreviewed/2025/02/GHSA-h97w-34cr-4pxx/GHSA-h97w-34cr-4pxx.json index e449bc28abe..812a0e206c0 100644 --- a/advisories/unreviewed/2025/02/GHSA-h97w-34cr-4pxx/GHSA-h97w-34cr-4pxx.json +++ b/advisories/unreviewed/2025/02/GHSA-h97w-34cr-4pxx/GHSA-h97w-34cr-4pxx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-h97w-34cr-4pxx", - "modified": "2025-02-27T03:34:05Z", + "modified": "2025-03-13T15:32:51Z", "published": "2025-02-27T03:34:05Z", "aliases": [ "CVE-2025-21767" @@ -18,6 +18,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/0fb534187d2355f6c8f995321e76d1ccd1262ac1" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/60f54f0d4ea530950549a8263e6fdd70a40490a4" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/6bb05a33337b2c842373857b63de5c9bf1ae2a09" @@ -33,6 +37,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/cc3d79e7c806cb57d71c28a4a35e7d7fb3265faa" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d9c217fadfcff7a8df58567517d1e4253f3fd243" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-hfgc-7c7c-g6r6/GHSA-hfgc-7c7c-g6r6.json b/advisories/unreviewed/2025/02/GHSA-hfgc-7c7c-g6r6/GHSA-hfgc-7c7c-g6r6.json index badfc829a49..707fd854f18 100644 --- a/advisories/unreviewed/2025/02/GHSA-hfgc-7c7c-g6r6/GHSA-hfgc-7c7c-g6r6.json +++ b/advisories/unreviewed/2025/02/GHSA-hfgc-7c7c-g6r6/GHSA-hfgc-7c7c-g6r6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hfgc-7c7c-g6r6", - "modified": "2025-03-05T21:32:05Z", + "modified": "2025-03-13T15:32:50Z", "published": "2025-02-27T03:34:04Z", "aliases": [ "CVE-2025-21745" @@ -23,6 +23,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/2ce09aabe009453d641a2ceb79e6461a2d4f3876" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/38287f779b34dfe959b4b681e909f2d3d52b88be" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/431b6ef2714be4d5babb802114987541a88b43b0" @@ -38,6 +42,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/d1248436cbef1f924c04255367ff4845ccd9025e" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ffb494f1e7a047bd7a41b13796fcfb08fe5beafb" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-hgrx-p3hg-cw72/GHSA-hgrx-p3hg-cw72.json b/advisories/unreviewed/2025/02/GHSA-hgrx-p3hg-cw72/GHSA-hgrx-p3hg-cw72.json index 3048bdde370..3aac8953386 100644 --- a/advisories/unreviewed/2025/02/GHSA-hgrx-p3hg-cw72/GHSA-hgrx-p3hg-cw72.json +++ b/advisories/unreviewed/2025/02/GHSA-hgrx-p3hg-cw72/GHSA-hgrx-p3hg-cw72.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hgrx-p3hg-cw72", - "modified": "2025-02-27T18:31:12Z", + "modified": "2025-03-13T15:32:52Z", "published": "2025-02-27T03:34:07Z", "aliases": [ "CVE-2025-21796" @@ -31,10 +31,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/55d947315fb5f67a35e4e1d3e01bb886b9c6decf" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6f7cfee1a316891890c505563aa54f3476db52fd" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/7faf14a7b0366f153284db0ad3347c457ea70136" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/8a1737ae42c928384ab6447f6ee1a882510e85fa" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/f8d871523142f7895f250a856f8c4a4181614510" diff --git a/advisories/unreviewed/2025/02/GHSA-j2gc-738w-q744/GHSA-j2gc-738w-q744.json b/advisories/unreviewed/2025/02/GHSA-j2gc-738w-q744/GHSA-j2gc-738w-q744.json index 9f53db222d1..def05902a0e 100644 --- a/advisories/unreviewed/2025/02/GHSA-j2gc-738w-q744/GHSA-j2gc-738w-q744.json +++ b/advisories/unreviewed/2025/02/GHSA-j2gc-738w-q744/GHSA-j2gc-738w-q744.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-j2gc-738w-q744", - "modified": "2025-03-04T18:33:26Z", + "modified": "2025-03-13T15:32:53Z", "published": "2025-02-27T21:32:17Z", "aliases": [ "CVE-2025-21811" @@ -31,6 +31,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/58c27fa7a610b6e8d44e6220e7dbddfbaccaf439" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/72cf688d0ce7e642b12ddc9b2a42524737ec1b4a" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/8e1b9201c9a24638cf09c6e1c9f224157328010b" @@ -38,6 +42,14 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/c437dfac9f7a5a46ac2a5e6d6acd3059e9f68188" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d8ff250e085a4c4cdda4ad1cdd234ed110393143" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e1fc4a90a90ea8514246c45435662531975937d9" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-j57h-g9hv-4p44/GHSA-j57h-g9hv-4p44.json b/advisories/unreviewed/2025/02/GHSA-j57h-g9hv-4p44/GHSA-j57h-g9hv-4p44.json index a545d4a16e0..908c6049c3d 100644 --- a/advisories/unreviewed/2025/02/GHSA-j57h-g9hv-4p44/GHSA-j57h-g9hv-4p44.json +++ b/advisories/unreviewed/2025/02/GHSA-j57h-g9hv-4p44/GHSA-j57h-g9hv-4p44.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-295" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/02/GHSA-j6gc-v552-cf9v/GHSA-j6gc-v552-cf9v.json b/advisories/unreviewed/2025/02/GHSA-j6gc-v552-cf9v/GHSA-j6gc-v552-cf9v.json index 8c4ca52ea02..23c23625f52 100644 --- a/advisories/unreviewed/2025/02/GHSA-j6gc-v552-cf9v/GHSA-j6gc-v552-cf9v.json +++ b/advisories/unreviewed/2025/02/GHSA-j6gc-v552-cf9v/GHSA-j6gc-v552-cf9v.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-j6gc-v552-cf9v", - "modified": "2025-03-07T21:31:04Z", + "modified": "2025-03-13T15:32:47Z", "published": "2025-02-27T03:33:59Z", "aliases": [ "CVE-2024-57978" @@ -31,6 +31,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/6e601a64f7777e2f78c02db1a8b5ba3b7c5e9e31" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a32ba399a030853f2db45a90ba5474fdd3494aad" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/f0b8535a7885ed4fd0b11625addb5476cae0f845" diff --git a/advisories/unreviewed/2025/02/GHSA-j8mq-pfgm-36r2/GHSA-j8mq-pfgm-36r2.json b/advisories/unreviewed/2025/02/GHSA-j8mq-pfgm-36r2/GHSA-j8mq-pfgm-36r2.json index 52d38bcaccb..8663c917912 100644 --- a/advisories/unreviewed/2025/02/GHSA-j8mq-pfgm-36r2/GHSA-j8mq-pfgm-36r2.json +++ b/advisories/unreviewed/2025/02/GHSA-j8mq-pfgm-36r2/GHSA-j8mq-pfgm-36r2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-j8mq-pfgm-36r2", - "modified": "2025-02-27T18:31:11Z", + "modified": "2025-03-13T15:32:51Z", "published": "2025-02-27T03:34:05Z", "aliases": [ "CVE-2025-21764" @@ -27,14 +27,26 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/628e6d18930bbd21f2d4562228afe27694f66da9" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/96fc896d0e5b37c12808df797397fb16f3080879" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/9e0ec817eb41a55327a46cd3ce331a9868d60304" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b870256dd2a5648d5ed2f22316b3ac29a7e5ed63" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/bbec88e4108e8d6fb468d3817fa652140a44ff28" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/c30893ef3d9cde8e7e8e4fd06b53d2c935bbccb1" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/cd1065f92eb7ff21b9ba5308a86f33d1670bf926" diff --git a/advisories/unreviewed/2025/02/GHSA-j98h-85cg-gvmj/GHSA-j98h-85cg-gvmj.json b/advisories/unreviewed/2025/02/GHSA-j98h-85cg-gvmj/GHSA-j98h-85cg-gvmj.json index a19b04c05c4..9817dcc071a 100644 --- a/advisories/unreviewed/2025/02/GHSA-j98h-85cg-gvmj/GHSA-j98h-85cg-gvmj.json +++ b/advisories/unreviewed/2025/02/GHSA-j98h-85cg-gvmj/GHSA-j98h-85cg-gvmj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-j98h-85cg-gvmj", - "modified": "2025-03-07T21:31:04Z", + "modified": "2025-03-13T15:32:47Z", "published": "2025-02-27T03:33:58Z", "aliases": [ "CVE-2024-57977" @@ -23,14 +23,26 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/0a09d56e1682c951046bf15542b3e9553046c9f6" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/110399858194c71f11afefad6e7be9e3876b284f" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/46576834291869457d4772bb7df72d7c2bb3d57f" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/72f2c0b7c152c2983ed51d48c3272cab4f34d965" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/972486d37169fe85035e81b8c5dff21f70df1173" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a9042dbc1ed4bf25a5f5c699d10c3d676abf8ca2" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/ade81479c7dda1ce3eedb215c78bc615bbd04f06" diff --git a/advisories/unreviewed/2025/02/GHSA-j992-gmv8-p6vw/GHSA-j992-gmv8-p6vw.json b/advisories/unreviewed/2025/02/GHSA-j992-gmv8-p6vw/GHSA-j992-gmv8-p6vw.json index 4ce0997c9e3..d516be1f6ee 100644 --- a/advisories/unreviewed/2025/02/GHSA-j992-gmv8-p6vw/GHSA-j992-gmv8-p6vw.json +++ b/advisories/unreviewed/2025/02/GHSA-j992-gmv8-p6vw/GHSA-j992-gmv8-p6vw.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-j992-gmv8-p6vw", - "modified": "2025-03-07T18:31:03Z", + "modified": "2025-03-13T15:32:49Z", "published": "2025-02-27T03:34:03Z", "aliases": [ "CVE-2024-58005" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58005" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0621d2599d6e02d05c85d6bbd58eaea2f15b3503" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/422d7f4e8d817be467986589c7968d3ea402f7da" @@ -38,6 +42,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/a3a860bc0fd6c07332e4911cf9a238d20de90173" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a676c0401de59548a5bc1b7aaf98f556ae8ea6db" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-jj6f-649q-27mh/GHSA-jj6f-649q-27mh.json b/advisories/unreviewed/2025/02/GHSA-jj6f-649q-27mh/GHSA-jj6f-649q-27mh.json index df2b7ede1c3..1b99d5d64f2 100644 --- a/advisories/unreviewed/2025/02/GHSA-jj6f-649q-27mh/GHSA-jj6f-649q-27mh.json +++ b/advisories/unreviewed/2025/02/GHSA-jj6f-649q-27mh/GHSA-jj6f-649q-27mh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-jj6f-649q-27mh", - "modified": "2025-03-06T12:30:41Z", + "modified": "2025-03-13T15:32:50Z", "published": "2025-02-27T03:34:04Z", "aliases": [ "CVE-2025-21736" @@ -23,10 +23,22 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/250423300b4b0335918be187ef3cade248c06e6a" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/58b1c6881081f5ddfb9a14dc241a74732c0f855c" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/6438ef381c183444f7f9d1de18f22661cba1e946" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7649937987fed51ed09985da4019d50189fc534e" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/8f41df5fd4c11d26e929a85f7239799641f92da7" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/b9495a9109abc31d3170f7aad7d48aa64610a1a2" diff --git a/advisories/unreviewed/2025/02/GHSA-m4w5-f9xf-8fgr/GHSA-m4w5-f9xf-8fgr.json b/advisories/unreviewed/2025/02/GHSA-m4w5-f9xf-8fgr/GHSA-m4w5-f9xf-8fgr.json index d8c06e63d7a..e32bce426ca 100644 --- a/advisories/unreviewed/2025/02/GHSA-m4w5-f9xf-8fgr/GHSA-m4w5-f9xf-8fgr.json +++ b/advisories/unreviewed/2025/02/GHSA-m4w5-f9xf-8fgr/GHSA-m4w5-f9xf-8fgr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-m4w5-f9xf-8fgr", - "modified": "2025-02-21T15:31:59Z", + "modified": "2025-03-13T15:32:46Z", "published": "2025-02-09T12:30:53Z", "aliases": [ "CVE-2025-21684" @@ -31,6 +31,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/b0111650ee596219bb5defa0ce1a1308e6e77ccf" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d25041d4a3b2af64c888cf762362b2528ba59294" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/f0ed2d0abc021f56fa27dc6d0770535c1851a43b" diff --git a/advisories/unreviewed/2025/02/GHSA-mcqw-w66r-84mp/GHSA-mcqw-w66r-84mp.json b/advisories/unreviewed/2025/02/GHSA-mcqw-w66r-84mp/GHSA-mcqw-w66r-84mp.json index 8208cf2e4cf..3415f2914f1 100644 --- a/advisories/unreviewed/2025/02/GHSA-mcqw-w66r-84mp/GHSA-mcqw-w66r-84mp.json +++ b/advisories/unreviewed/2025/02/GHSA-mcqw-w66r-84mp/GHSA-mcqw-w66r-84mp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mcqw-w66r-84mp", - "modified": "2025-03-07T12:31:57Z", + "modified": "2025-03-13T15:32:47Z", "published": "2025-02-27T03:34:01Z", "aliases": [ "CVE-2025-21707" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21707" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/3a7fda57b0f91f7ea34476b165f91a92feb17c96" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/3b5332d416d151a15742d1b16e7319368e3cc5c6" diff --git a/advisories/unreviewed/2025/02/GHSA-mh6r-68r2-78qw/GHSA-mh6r-68r2-78qw.json b/advisories/unreviewed/2025/02/GHSA-mh6r-68r2-78qw/GHSA-mh6r-68r2-78qw.json index 1090c750e91..d227aa7bd13 100644 --- a/advisories/unreviewed/2025/02/GHSA-mh6r-68r2-78qw/GHSA-mh6r-68r2-78qw.json +++ b/advisories/unreviewed/2025/02/GHSA-mh6r-68r2-78qw/GHSA-mh6r-68r2-78qw.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-mh6r-68r2-78qw", - "modified": "2025-02-27T03:34:06Z", + "modified": "2025-03-13T15:32:52Z", "published": "2025-02-27T03:34:06Z", "aliases": [ "CVE-2025-21787" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nteam: better TEAM_OPTION_TYPE_STRING validation\n\nsyzbot reported following splat [1]\n\nMake sure user-provided data contains one nul byte.\n\n[1]\n BUG: KMSAN: uninit-value in string_nocheck lib/vsprintf.c:633 [inline]\n BUG: KMSAN: uninit-value in string+0x3ec/0x5f0 lib/vsprintf.c:714\n string_nocheck lib/vsprintf.c:633 [inline]\n string+0x3ec/0x5f0 lib/vsprintf.c:714\n vsnprintf+0xa5d/0x1960 lib/vsprintf.c:2843\n __request_module+0x252/0x9f0 kernel/module/kmod.c:149\n team_mode_get drivers/net/team/team_core.c:480 [inline]\n team_change_mode drivers/net/team/team_core.c:607 [inline]\n team_mode_option_set+0x437/0x970 drivers/net/team/team_core.c:1401\n team_option_set drivers/net/team/team_core.c:375 [inline]\n team_nl_options_set_doit+0x1339/0x1f90 drivers/net/team/team_core.c:2662\n genl_family_rcv_msg_doit net/netlink/genetlink.c:1115 [inline]\n genl_family_rcv_msg net/netlink/genetlink.c:1195 [inline]\n genl_rcv_msg+0x1214/0x12c0 net/netlink/genetlink.c:1210\n netlink_rcv_skb+0x375/0x650 net/netlink/af_netlink.c:2543\n genl_rcv+0x40/0x60 net/netlink/genetlink.c:1219\n netlink_unicast_kernel net/netlink/af_netlink.c:1322 [inline]\n netlink_unicast+0xf52/0x1260 net/netlink/af_netlink.c:1348\n netlink_sendmsg+0x10da/0x11e0 net/netlink/af_netlink.c:1892\n sock_sendmsg_nosec net/socket.c:718 [inline]\n __sock_sendmsg+0x30f/0x380 net/socket.c:733\n ____sys_sendmsg+0x877/0xb60 net/socket.c:2573\n ___sys_sendmsg+0x28d/0x3c0 net/socket.c:2627\n __sys_sendmsg net/socket.c:2659 [inline]\n __do_sys_sendmsg net/socket.c:2664 [inline]\n __se_sys_sendmsg net/socket.c:2662 [inline]\n __x64_sys_sendmsg+0x212/0x3c0 net/socket.c:2662\n x64_sys_call+0x2ed6/0x3c30 arch/x86/include/generated/asm/syscalls_64.h:47\n do_syscall_x64 arch/x86/entry/common.c:52 [inline]\n do_syscall_64+0xcd/0x1e0 arch/x86/entry/common.c:83\n entry_SYSCALL_64_after_hwframe+0x77/0x7f", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -26,6 +31,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/5bef3ac184b5626ea62385d6b82a1992b89d7940" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7c30483d0f6bdb2230e10e3e4be5167927eac7a0" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7f5af50f3aa0af8cbef9fb76fffeed69e8143f59" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/8401cade1918281177974b32c925afdce750d292" @@ -33,11 +46,17 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/d071a91fa614ecdf760c29f61f6a7bfb7df796d6" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f443687ad20c70320d1248f35f57bf46cac8df0a" } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-908" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-27T03:15:19Z" diff --git a/advisories/unreviewed/2025/02/GHSA-mmj4-6ppp-mqr2/GHSA-mmj4-6ppp-mqr2.json b/advisories/unreviewed/2025/02/GHSA-mmj4-6ppp-mqr2/GHSA-mmj4-6ppp-mqr2.json index 82e7facd8a7..7887458bac2 100644 --- a/advisories/unreviewed/2025/02/GHSA-mmj4-6ppp-mqr2/GHSA-mmj4-6ppp-mqr2.json +++ b/advisories/unreviewed/2025/02/GHSA-mmj4-6ppp-mqr2/GHSA-mmj4-6ppp-mqr2.json @@ -1,19 +1,28 @@ { "schema_version": "1.4.0", "id": "GHSA-mmj4-6ppp-mqr2", - "modified": "2025-02-27T03:34:06Z", + "modified": "2025-03-13T15:32:51Z", "published": "2025-02-27T03:34:06Z", "aliases": [ "CVE-2025-21779" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: x86: Reject Hyper-V's SEND_IPI hypercalls if local APIC isn't in-kernel\n\nAdvertise support for Hyper-V's SEND_IPI and SEND_IPI_EX hypercalls if and\nonly if the local API is emulated/virtualized by KVM, and explicitly reject\nsaid hypercalls if the local APIC is emulated in userspace, i.e. don't rely\non userspace to opt-in to KVM_CAP_HYPERV_ENFORCE_CPUID.\n\nRejecting SEND_IPI and SEND_IPI_EX fixes a NULL-pointer dereference if\nHyper-V enlightenments are exposed to the guest without an in-kernel local\nAPIC:\n\n dump_stack+0xbe/0xfd\n __kasan_report.cold+0x34/0x84\n kasan_report+0x3a/0x50\n __apic_accept_irq+0x3a/0x5c0\n kvm_hv_send_ipi.isra.0+0x34e/0x820\n kvm_hv_hypercall+0x8d9/0x9d0\n kvm_emulate_hypercall+0x506/0x7e0\n __vmx_handle_exit+0x283/0xb60\n vmx_handle_exit+0x1d/0xd0\n vcpu_enter_guest+0x16b0/0x24c0\n vcpu_run+0xc0/0x550\n kvm_arch_vcpu_ioctl_run+0x170/0x6d0\n kvm_vcpu_ioctl+0x413/0xb20\n __se_sys_ioctl+0x111/0x160\n do_syscal1_64+0x30/0x40\n entry_SYSCALL_64_after_hwframe+0x67/0xd1\n\nNote, checking the sending vCPU is sufficient, as the per-VM irqchip_mode\ncan't be modified after vCPUs are created, i.e. if one vCPU has an\nin-kernel local APIC, then all vCPUs have an in-kernel local APIC.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21779" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/45fa526b0f5a34492ed0536c3cdf88b78380e4de" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/5393cf22312418262679eaadb130d608c75fe690" @@ -36,8 +45,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-476" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-27T03:15:18Z" diff --git a/advisories/unreviewed/2025/02/GHSA-mq27-r9q4-8847/GHSA-mq27-r9q4-8847.json b/advisories/unreviewed/2025/02/GHSA-mq27-r9q4-8847/GHSA-mq27-r9q4-8847.json index a07b5ad8c3d..2f2cf49bfd8 100644 --- a/advisories/unreviewed/2025/02/GHSA-mq27-r9q4-8847/GHSA-mq27-r9q4-8847.json +++ b/advisories/unreviewed/2025/02/GHSA-mq27-r9q4-8847/GHSA-mq27-r9q4-8847.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-mq27-r9q4-8847", - "modified": "2025-02-27T03:33:59Z", + "modified": "2025-03-13T15:32:47Z", "published": "2025-02-27T03:33:59Z", "aliases": [ "CVE-2024-57981" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: xhci: Fix NULL pointer dereference on certain command aborts\n\nIf a command is queued to the final usable TRB of a ring segment, the\nenqueue pointer is advanced to the subsequent link TRB and no further.\nIf the command is later aborted, when the abort completion is handled\nthe dequeue pointer is advanced to the first TRB of the next segment.\n\nIf no further commands are queued, xhci_handle_stopped_cmd_ring() sees\nthe ring pointers unequal and assumes that there is a pending command,\nso it calls xhci_mod_cmd_timer() which crashes if cur_cmd was NULL.\n\nDon't attempt timer setup if cur_cmd is NULL. The subsequent doorbell\nring likely is unnecessary too, but it's harmless. Leave it alone.\n\nThis is probably Bug 219532, but no confirmation has been received.\n\nThe issue has been independently reproduced and confirmed fixed using\na USB MCU programmed to NAK the Status stage of SET_ADDRESS forever.\nEverything continued working normally after several prevented crashes.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -30,14 +35,28 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/ae069cd2ba09a2bd6a87a68c59ef0b7ea39cd641" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b44253956407046e5907d4d72c8fa5b93ae94485" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/b649f0d5bc256f691c7d234c3986685d54053de1" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/cf30300a216a4f8dce94e11781a866a09d4b50d4" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/fd8bfaeba4a85b14427899adec0efb3954300653" } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-476" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-27T02:15:11Z" diff --git a/advisories/unreviewed/2025/02/GHSA-mq5p-7q76-276p/GHSA-mq5p-7q76-276p.json b/advisories/unreviewed/2025/02/GHSA-mq5p-7q76-276p/GHSA-mq5p-7q76-276p.json index 56696942b97..a956df0ae2c 100644 --- a/advisories/unreviewed/2025/02/GHSA-mq5p-7q76-276p/GHSA-mq5p-7q76-276p.json +++ b/advisories/unreviewed/2025/02/GHSA-mq5p-7q76-276p/GHSA-mq5p-7q76-276p.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mq5p-7q76-276p", - "modified": "2025-02-27T21:32:16Z", + "modified": "2025-03-13T15:32:53Z", "published": "2025-02-27T21:32:16Z", "aliases": [ "CVE-2025-21806" @@ -14,6 +14,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21806" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0e2f1d93d287d544d26f8ff293ea820a8079b9f8" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/1489824e5226a26841c70639ebd2d1aed390764b" @@ -30,6 +34,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/6ce38b5a6a49e65bad163162a54cb3f104c40b48" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/c337c08819a4ec49edfdcd8fc46fbee120d8a5b2" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d0e0f9c8218826926d7692980c98236d9f21fd3c" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/d1f9f79fa2af8e3b45cffdeef66e05833480148a" diff --git a/advisories/unreviewed/2025/02/GHSA-mqqf-qf5c-jg26/GHSA-mqqf-qf5c-jg26.json b/advisories/unreviewed/2025/02/GHSA-mqqf-qf5c-jg26/GHSA-mqqf-qf5c-jg26.json index a86ff268433..778a721354b 100644 --- a/advisories/unreviewed/2025/02/GHSA-mqqf-qf5c-jg26/GHSA-mqqf-qf5c-jg26.json +++ b/advisories/unreviewed/2025/02/GHSA-mqqf-qf5c-jg26/GHSA-mqqf-qf5c-jg26.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mqqf-qf5c-jg26", - "modified": "2025-02-27T03:34:03Z", + "modified": "2025-03-13T15:32:49Z", "published": "2025-02-27T03:34:03Z", "aliases": [ "CVE-2024-58009" @@ -33,6 +33,18 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/691218a50c3139f7f57ffa79fb89d932eda9571e" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/8e605f580a97530e5a3583beea458a3fa4cbefbd" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a9a7672fc1a0fe18502493936ccb06413ab89ea6" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/cf601a24120c674cd7c907ea695f92617af6abd0" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-p3f4-6ggh-xpgq/GHSA-p3f4-6ggh-xpgq.json b/advisories/unreviewed/2025/02/GHSA-p3f4-6ggh-xpgq/GHSA-p3f4-6ggh-xpgq.json index 1de4ae9db0e..166eb118464 100644 --- a/advisories/unreviewed/2025/02/GHSA-p3f4-6ggh-xpgq/GHSA-p3f4-6ggh-xpgq.json +++ b/advisories/unreviewed/2025/02/GHSA-p3f4-6ggh-xpgq/GHSA-p3f4-6ggh-xpgq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-p3f4-6ggh-xpgq", - "modified": "2025-03-07T12:31:57Z", + "modified": "2025-03-13T15:32:48Z", "published": "2025-02-27T03:34:01Z", "aliases": [ "CVE-2025-21711" @@ -23,10 +23,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/352daa50946c3bbb662432e8daf54d6760796589" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/4bdd449977e2364a53d0b2a5427e71beb1cd702d" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/9bdee49ad6bbd26ab5e13cc6731e54fb1b6c1dca" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b8583b54455cbec2fc038fa32b6700890b369815" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/d08f4074f9c69f7e95502587eb1b258a965ba7f0" diff --git a/advisories/unreviewed/2025/02/GHSA-pf6p-pjxv-jwqh/GHSA-pf6p-pjxv-jwqh.json b/advisories/unreviewed/2025/02/GHSA-pf6p-pjxv-jwqh/GHSA-pf6p-pjxv-jwqh.json index d413addc579..5241ed5c99e 100644 --- a/advisories/unreviewed/2025/02/GHSA-pf6p-pjxv-jwqh/GHSA-pf6p-pjxv-jwqh.json +++ b/advisories/unreviewed/2025/02/GHSA-pf6p-pjxv-jwqh/GHSA-pf6p-pjxv-jwqh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pf6p-pjxv-jwqh", - "modified": "2025-03-05T21:32:06Z", + "modified": "2025-03-13T15:32:50Z", "published": "2025-02-27T03:34:05Z", "aliases": [ "CVE-2025-21755" @@ -23,6 +23,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/3a866f8376f0a5c848dcb59cd26df845fffbe6d8" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/631e00fdac7acca676103d6cbc96eb152625f449" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/78dafe1cf3afa02ed71084b350713b07e72a18fb" @@ -31,6 +35,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/94d81870eec7ad2dd7af80bffd314ded26caea1a" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/bab61f41c942a20ef7b4feea50e9d36d19ad1a26" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/c6acb650a73d5705a93b9c5a2cd5e9c8161f0be3" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/f3b8e9d3414b2eb083d8293be25a949fe480897b" diff --git a/advisories/unreviewed/2025/02/GHSA-pgjm-rqqp-m93m/GHSA-pgjm-rqqp-m93m.json b/advisories/unreviewed/2025/02/GHSA-pgjm-rqqp-m93m/GHSA-pgjm-rqqp-m93m.json index 438cabd74ca..185a13f52e4 100644 --- a/advisories/unreviewed/2025/02/GHSA-pgjm-rqqp-m93m/GHSA-pgjm-rqqp-m93m.json +++ b/advisories/unreviewed/2025/02/GHSA-pgjm-rqqp-m93m/GHSA-pgjm-rqqp-m93m.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pgjm-rqqp-m93m", - "modified": "2025-03-05T15:30:51Z", + "modified": "2025-03-13T15:32:53Z", "published": "2025-02-27T21:32:17Z", "aliases": [ "CVE-2025-21820" @@ -38,6 +38,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/de5bd24197bd9ee37ec1e379a3d882bbd15c5065" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e22a97700901ba5e8bf8db68056a0d50f9440cae" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-pqvw-v4j9-3frp/GHSA-pqvw-v4j9-3frp.json b/advisories/unreviewed/2025/02/GHSA-pqvw-v4j9-3frp/GHSA-pqvw-v4j9-3frp.json index e4d02b20711..d8a46e8f411 100644 --- a/advisories/unreviewed/2025/02/GHSA-pqvw-v4j9-3frp/GHSA-pqvw-v4j9-3frp.json +++ b/advisories/unreviewed/2025/02/GHSA-pqvw-v4j9-3frp/GHSA-pqvw-v4j9-3frp.json @@ -1,19 +1,32 @@ { "schema_version": "1.4.0", "id": "GHSA-pqvw-v4j9-3frp", - "modified": "2025-02-27T03:34:06Z", + "modified": "2025-03-13T15:32:52Z", "published": "2025-02-27T03:34:06Z", "aliases": [ "CVE-2025-21782" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\norangefs: fix a oob in orangefs_debug_write\n\nI got a syzbot report: slab-out-of-bounds Read in\norangefs_debug_write... several people suggested fixes,\nI tested Al Viro's suggestion and made this patch.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H" + } + ], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21782" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/09d472a18c0ee1d5b83612cb919e33a1610fea16" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/18b7f841109f697840fe8633cf7ed7d32bd3f91b" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/1c5244299241cf49d8ae7b5054e299cc8faa4e09" @@ -26,6 +39,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/2b84a231910cef2e0a16d29294afabfb69112087" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/8725882b0f691f8113b230aea9df0256030a63a6" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/897f496b946fdcfab5983c983e4b513ab6682364" @@ -36,8 +53,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-125" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-27T03:15:19Z" diff --git a/advisories/unreviewed/2025/02/GHSA-q3hh-qh22-77x8/GHSA-q3hh-qh22-77x8.json b/advisories/unreviewed/2025/02/GHSA-q3hh-qh22-77x8/GHSA-q3hh-qh22-77x8.json index a33eb21b496..096af4d99e3 100644 --- a/advisories/unreviewed/2025/02/GHSA-q3hh-qh22-77x8/GHSA-q3hh-qh22-77x8.json +++ b/advisories/unreviewed/2025/02/GHSA-q3hh-qh22-77x8/GHSA-q3hh-qh22-77x8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-q3hh-qh22-77x8", - "modified": "2025-02-21T18:31:08Z", + "modified": "2025-03-13T15:32:46Z", "published": "2025-02-10T18:30:47Z", "aliases": [ "CVE-2025-21687" @@ -47,6 +47,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/92340e6c5122d823ad064984ef7513eba9204048" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/9377cdc118cf327248f1a9dde7b87de067681dc9" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/a20fcaa230f7472456d12cf761ed13938e320ac3" @@ -63,9 +67,17 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/d19a8650fd3d7aed8d1af1d9a77f979a8430eba1" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ed81d82bb6e9df3a137f2c343ed689e6c68268ef" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/f21636f24b6786c8b13f1af4319fa75ffcf17f38" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f65ce06387f8c1fb54bd59e18a8428248ec68eaf" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-q3rr-g46f-jgqr/GHSA-q3rr-g46f-jgqr.json b/advisories/unreviewed/2025/02/GHSA-q3rr-g46f-jgqr/GHSA-q3rr-g46f-jgqr.json index d07e7097afc..77006d213d4 100644 --- a/advisories/unreviewed/2025/02/GHSA-q3rr-g46f-jgqr/GHSA-q3rr-g46f-jgqr.json +++ b/advisories/unreviewed/2025/02/GHSA-q3rr-g46f-jgqr/GHSA-q3rr-g46f-jgqr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-q3rr-g46f-jgqr", - "modified": "2025-03-12T12:30:56Z", + "modified": "2025-03-13T15:32:46Z", "published": "2025-02-19T21:31:38Z", "aliases": [ "CVE-2025-0624" @@ -35,6 +35,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2025:2675" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2025:2784" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2025-0624" diff --git a/advisories/unreviewed/2025/02/GHSA-q6cq-g5qv-hwc8/GHSA-q6cq-g5qv-hwc8.json b/advisories/unreviewed/2025/02/GHSA-q6cq-g5qv-hwc8/GHSA-q6cq-g5qv-hwc8.json index 2afeed08787..097504a759d 100644 --- a/advisories/unreviewed/2025/02/GHSA-q6cq-g5qv-hwc8/GHSA-q6cq-g5qv-hwc8.json +++ b/advisories/unreviewed/2025/02/GHSA-q6cq-g5qv-hwc8/GHSA-q6cq-g5qv-hwc8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-q6cq-g5qv-hwc8", - "modified": "2025-02-27T18:31:11Z", + "modified": "2025-03-13T15:32:51Z", "published": "2025-02-27T03:34:05Z", "aliases": [ "CVE-2025-21761" @@ -38,6 +38,18 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/a849a10de5e04d798f7f286a2f1ca174719a617a" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a8816b3f1f151373fd30f1996f00480126c8bb11" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a884f57600e463f69d7b279c4598b865260b62a1" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e85a25d1a9985645e796039e843d1de581d2de1e" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-q799-96gw-fjvp/GHSA-q799-96gw-fjvp.json b/advisories/unreviewed/2025/02/GHSA-q799-96gw-fjvp/GHSA-q799-96gw-fjvp.json index 96f3b5a03d7..dd1bed30f28 100644 --- a/advisories/unreviewed/2025/02/GHSA-q799-96gw-fjvp/GHSA-q799-96gw-fjvp.json +++ b/advisories/unreviewed/2025/02/GHSA-q799-96gw-fjvp/GHSA-q799-96gw-fjvp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-q799-96gw-fjvp", - "modified": "2025-02-28T21:32:14Z", + "modified": "2025-03-13T15:32:46Z", "published": "2025-02-11T18:31:35Z", "aliases": [ "CVE-2019-15002" @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-352" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/02/GHSA-qc22-v4cr-4rv7/GHSA-qc22-v4cr-4rv7.json b/advisories/unreviewed/2025/02/GHSA-qc22-v4cr-4rv7/GHSA-qc22-v4cr-4rv7.json index e71b87e0aff..b3abe20e2c2 100644 --- a/advisories/unreviewed/2025/02/GHSA-qc22-v4cr-4rv7/GHSA-qc22-v4cr-4rv7.json +++ b/advisories/unreviewed/2025/02/GHSA-qc22-v4cr-4rv7/GHSA-qc22-v4cr-4rv7.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qc22-v4cr-4rv7", - "modified": "2025-03-07T18:31:03Z", + "modified": "2025-03-13T15:32:49Z", "published": "2025-02-27T03:34:02Z", "aliases": [ "CVE-2024-58002" @@ -19,10 +19,18 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58002" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/117f7a2975baa4b7d702d3f4830d5a4ebd0c6d50" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/221cd51efe4565501a3dbf04cc011b537dcce7fb" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/2a29413ace64627e178fd422dd8a5d95219a2c0b" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/438bda062b2c40ddd7df23b932e29ffe0a448cac" @@ -31,6 +39,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/4dbaa738c583a0e947803c69e8996e88cf98d971" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/653993f46861f2971e95e9a0e36a34b49dec542c" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/9edc7d25f7e49c33a1ce7a5ffadea2222065516c" diff --git a/advisories/unreviewed/2025/02/GHSA-qh7w-ppc3-hj63/GHSA-qh7w-ppc3-hj63.json b/advisories/unreviewed/2025/02/GHSA-qh7w-ppc3-hj63/GHSA-qh7w-ppc3-hj63.json index 41f8b76a418..738f84c8cc0 100644 --- a/advisories/unreviewed/2025/02/GHSA-qh7w-ppc3-hj63/GHSA-qh7w-ppc3-hj63.json +++ b/advisories/unreviewed/2025/02/GHSA-qh7w-ppc3-hj63/GHSA-qh7w-ppc3-hj63.json @@ -1,19 +1,32 @@ { "schema_version": "1.4.0", "id": "GHSA-qh7w-ppc3-hj63", - "modified": "2025-02-27T03:34:02Z", + "modified": "2025-03-13T15:32:48Z", "published": "2025-02-27T03:34:01Z", "aliases": [ "CVE-2025-21718" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: rose: fix timer races against user threads\n\nRose timers only acquire the socket spinlock, without\nchecking if the socket is owned by one user thread.\n\nAdd a check and rearm the timers if needed.\n\nBUG: KASAN: slab-use-after-free in rose_timer_expiry+0x31d/0x360 net/rose/rose_timer.c:174\nRead of size 2 at addr ffff88802f09b82a by task swapper/0/0\n\nCPU: 0 UID: 0 PID: 0 Comm: swapper/0 Not tainted 6.13.0-rc5-syzkaller-00172-gd1bf27c4e176 #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 09/13/2024\nCall Trace:\n \n __dump_stack lib/dump_stack.c:94 [inline]\n dump_stack_lvl+0x241/0x360 lib/dump_stack.c:120\n print_address_description mm/kasan/report.c:378 [inline]\n print_report+0x169/0x550 mm/kasan/report.c:489\n kasan_report+0x143/0x180 mm/kasan/report.c:602\n rose_timer_expiry+0x31d/0x360 net/rose/rose_timer.c:174\n call_timer_fn+0x187/0x650 kernel/time/timer.c:1793\n expire_timers kernel/time/timer.c:1844 [inline]\n __run_timers kernel/time/timer.c:2418 [inline]\n __run_timer_base+0x66a/0x8e0 kernel/time/timer.c:2430\n run_timer_base kernel/time/timer.c:2439 [inline]\n run_timer_softirq+0xb7/0x170 kernel/time/timer.c:2449\n handle_softirqs+0x2d4/0x9b0 kernel/softirq.c:561\n __do_softirq kernel/softirq.c:595 [inline]\n invoke_softirq kernel/softirq.c:435 [inline]\n __irq_exit_rcu+0xf7/0x220 kernel/softirq.c:662\n irq_exit_rcu+0x9/0x30 kernel/softirq.c:678\n instr_sysvec_apic_timer_interrupt arch/x86/kernel/apic/apic.c:1049 [inline]\n sysvec_apic_timer_interrupt+0xa6/0xc0 arch/x86/kernel/apic/apic.c:1049\n ", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21718" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0d5bca3be27bfcf8f980f2fed49b6cbb7dafe4a1" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1409b45d4690308c502c6caf22f01c3c205b4717" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/1992fb261c90e9827cf5dc3115d89bb0853252c9" @@ -22,6 +35,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/51c128ba038cf1b79d605cbee325919b45ab95a5" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/52f5aff33ca73b2c2fa93f40a3de308012e63cf4" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/58051a284ac18a3bb815aac6289a679903ddcc3f" @@ -36,8 +53,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-362" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-27T02:15:15Z" diff --git a/advisories/unreviewed/2025/02/GHSA-r5rf-wpwj-h23p/GHSA-r5rf-wpwj-h23p.json b/advisories/unreviewed/2025/02/GHSA-r5rf-wpwj-h23p/GHSA-r5rf-wpwj-h23p.json index fc6961360a5..1c61a00011e 100644 --- a/advisories/unreviewed/2025/02/GHSA-r5rf-wpwj-h23p/GHSA-r5rf-wpwj-h23p.json +++ b/advisories/unreviewed/2025/02/GHSA-r5rf-wpwj-h23p/GHSA-r5rf-wpwj-h23p.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-r5rf-wpwj-h23p", - "modified": "2025-02-27T03:34:01Z", + "modified": "2025-03-13T15:32:48Z", "published": "2025-02-27T03:34:01Z", "aliases": [ "CVE-2025-21708" @@ -18,6 +18,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/3c706829ceb6e347bd4ddfd17f1d3048acd69da2" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/431be4f78220d34ce21d67a6b843b7ca81bd82e9" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/8f78a2b9ed4cb1e62c60d0a8905d9a37bc18c20d" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/90b7f2961798793275b4844348619b622f983907" @@ -26,6 +34,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/c843515ad2be7349dd6b60e5fd299d0da0b8458b" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d42168f109f96b5d18812a789086015a435ee667" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/e10b392a7495a5dbbb25247e2c17d380d9899263" diff --git a/advisories/unreviewed/2025/02/GHSA-r79j-x479-2vhw/GHSA-r79j-x479-2vhw.json b/advisories/unreviewed/2025/02/GHSA-r79j-x479-2vhw/GHSA-r79j-x479-2vhw.json index e565104b5b2..a042882fc41 100644 --- a/advisories/unreviewed/2025/02/GHSA-r79j-x479-2vhw/GHSA-r79j-x479-2vhw.json +++ b/advisories/unreviewed/2025/02/GHSA-r79j-x479-2vhw/GHSA-r79j-x479-2vhw.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-r79j-x479-2vhw", - "modified": "2025-02-21T15:32:00Z", + "modified": "2025-03-13T15:32:46Z", "published": "2025-02-13T12:31:07Z", "aliases": [ "CVE-2025-21700" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21700" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/38646749d6e12f9d80a08d21ca39f0beca20230d" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/46c59ec33ec98aba20c15117630cae43a01404cc" @@ -35,9 +39,17 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/bc50835e83f60f56e9bec2b392fb5544f250fb6f" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/cd796e269123e1994bfc4e99dd76680ba0946a97" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/deda09c0543a66fa51554abc5ffd723d99b191bf" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/fe18c21d67dc7d1bcce1bba56515b1b0306db19b" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-rwf4-wmp4-834q/GHSA-rwf4-wmp4-834q.json b/advisories/unreviewed/2025/02/GHSA-rwf4-wmp4-834q/GHSA-rwf4-wmp4-834q.json index 003a92dee5e..d0b56e39417 100644 --- a/advisories/unreviewed/2025/02/GHSA-rwf4-wmp4-834q/GHSA-rwf4-wmp4-834q.json +++ b/advisories/unreviewed/2025/02/GHSA-rwf4-wmp4-834q/GHSA-rwf4-wmp4-834q.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-rwf4-wmp4-834q", - "modified": "2025-02-27T03:34:05Z", + "modified": "2025-03-13T15:32:51Z", "published": "2025-02-27T03:34:05Z", "aliases": [ "CVE-2025-21772" @@ -14,10 +14,18 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21772" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/213ba5bd81b7e97ac6e6190b8f3bc6ba76123625" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/27a39d006f85e869be68c1d5d2ce05e5d6445bf5" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/40a35d14f3c0dc72b689061ec72fc9b193f37d1f" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/6578717ebca91678131d2b1f4ba4258e60536e9f" @@ -33,6 +41,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/92527100be38ede924768f4277450dfe8a40e16b" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a3e77da9f843e4ab93917d30c314f0283e28c124" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-v47h-hxgq-326f/GHSA-v47h-hxgq-326f.json b/advisories/unreviewed/2025/02/GHSA-v47h-hxgq-326f/GHSA-v47h-hxgq-326f.json index b6d349319a7..42a5523daea 100644 --- a/advisories/unreviewed/2025/02/GHSA-v47h-hxgq-326f/GHSA-v47h-hxgq-326f.json +++ b/advisories/unreviewed/2025/02/GHSA-v47h-hxgq-326f/GHSA-v47h-hxgq-326f.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-v47h-hxgq-326f", - "modified": "2025-02-27T03:34:07Z", + "modified": "2025-03-13T15:32:52Z", "published": "2025-02-27T03:34:07Z", "aliases": [ "CVE-2025-21795" @@ -26,6 +26,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/38d345f612503b850c2973e5a879f88e441b34d7" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/abed68027ea3ab893ac85cc46a00e2e64a324239" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/cedfbb92cf97a6bff3d25633001d9c44442ee854" @@ -33,6 +37,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/e88d2451cd42e025465d6b51fd716a47b0b3800d" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/efa8a261c575f816c7e79a87aeb3ef8a0bd6b221" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-vhj8-f69q-35j6/GHSA-vhj8-f69q-35j6.json b/advisories/unreviewed/2025/02/GHSA-vhj8-f69q-35j6/GHSA-vhj8-f69q-35j6.json index be9c5e719f1..bcc5c8c1d8d 100644 --- a/advisories/unreviewed/2025/02/GHSA-vhj8-f69q-35j6/GHSA-vhj8-f69q-35j6.json +++ b/advisories/unreviewed/2025/02/GHSA-vhj8-f69q-35j6/GHSA-vhj8-f69q-35j6.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-1390" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/02/GHSA-vjph-w72m-276x/GHSA-vjph-w72m-276x.json b/advisories/unreviewed/2025/02/GHSA-vjph-w72m-276x/GHSA-vjph-w72m-276x.json index 38d33865c38..a6d984a98fc 100644 --- a/advisories/unreviewed/2025/02/GHSA-vjph-w72m-276x/GHSA-vjph-w72m-276x.json +++ b/advisories/unreviewed/2025/02/GHSA-vjph-w72m-276x/GHSA-vjph-w72m-276x.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vjph-w72m-276x", - "modified": "2025-02-07T21:31:02Z", + "modified": "2025-03-13T15:32:46Z", "published": "2025-02-07T21:31:02Z", "aliases": [ "CVE-2021-41527" @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-94" + ], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/02/GHSA-vr2w-w74g-r822/GHSA-vr2w-w74g-r822.json b/advisories/unreviewed/2025/02/GHSA-vr2w-w74g-r822/GHSA-vr2w-w74g-r822.json index fd9fc8b6c72..7bb19dc924b 100644 --- a/advisories/unreviewed/2025/02/GHSA-vr2w-w74g-r822/GHSA-vr2w-w74g-r822.json +++ b/advisories/unreviewed/2025/02/GHSA-vr2w-w74g-r822/GHSA-vr2w-w74g-r822.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vr2w-w74g-r822", - "modified": "2025-02-27T18:31:11Z", + "modified": "2025-03-13T15:32:52Z", "published": "2025-02-27T03:34:06Z", "aliases": [ "CVE-2025-21791" @@ -23,6 +23,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/022cac1c693add610ae76ede03adf4d9d5a2cf21" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/20a3489b396764cc9376e32a9172bee26a89dc3b" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/5bb4228c32261d06e4fbece37ec3828bcc005b6b" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6ccaa5797f5362a2aad6baa6ddaf4715ac2dd51e" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/6d0ce46a93135d96b7fa075a94a88fe0da8e8773" diff --git a/advisories/unreviewed/2025/02/GHSA-wj2h-7vcx-3r7w/GHSA-wj2h-7vcx-3r7w.json b/advisories/unreviewed/2025/02/GHSA-wj2h-7vcx-3r7w/GHSA-wj2h-7vcx-3r7w.json index 7ae15df9803..b6cf54559e7 100644 --- a/advisories/unreviewed/2025/02/GHSA-wj2h-7vcx-3r7w/GHSA-wj2h-7vcx-3r7w.json +++ b/advisories/unreviewed/2025/02/GHSA-wj2h-7vcx-3r7w/GHSA-wj2h-7vcx-3r7w.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wj2h-7vcx-3r7w", - "modified": "2025-02-27T03:34:03Z", + "modified": "2025-03-13T15:32:49Z", "published": "2025-02-27T03:34:02Z", "aliases": [ "CVE-2024-58001" @@ -30,9 +30,21 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/6e143eb4ab83c24e7ad3e3d8e7daa241d9c38377" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/8aee4184c5b79e486598c15aa80687c77f6f6e6e" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/afa8003f8db62e46c4b171cbf4cec2824148b4f7" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/b6833b38984d1e9f20dd80f9ec9050c10d687f30" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/cd3e22b206189cbb4a94229002141e1529f83746" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-wm97-xp23-f4x4/GHSA-wm97-xp23-f4x4.json b/advisories/unreviewed/2025/02/GHSA-wm97-xp23-f4x4/GHSA-wm97-xp23-f4x4.json index df89cd724ff..83c18714348 100644 --- a/advisories/unreviewed/2025/02/GHSA-wm97-xp23-f4x4/GHSA-wm97-xp23-f4x4.json +++ b/advisories/unreviewed/2025/02/GHSA-wm97-xp23-f4x4/GHSA-wm97-xp23-f4x4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wm97-xp23-f4x4", - "modified": "2025-02-27T18:31:10Z", + "modified": "2025-03-13T15:32:51Z", "published": "2025-02-27T03:34:05Z", "aliases": [ "CVE-2025-21760" @@ -23,6 +23,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/04e05112f10354ffc3bb6cc796d553bab161594c" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/10a1f3fece2f0d23a3a618b72b2b4e6f408ef7d1" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/4d576202b90b1b95a7c428a80b536f91b8201bcc" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/789230e5a8c1097301afc802e242c79bc8835c67" @@ -35,6 +43,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/ae38982f521621c216fc2f5182cd091f4734641d" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e24d225e4cb8cf108bde00b76594499b98f0a74d" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/ed6ae1f325d3c43966ec1b62ac1459e2b8e45640" diff --git a/advisories/unreviewed/2025/02/GHSA-wvmf-xh97-gmfr/GHSA-wvmf-xh97-gmfr.json b/advisories/unreviewed/2025/02/GHSA-wvmf-xh97-gmfr/GHSA-wvmf-xh97-gmfr.json index cc9a96c594d..094b899b2c1 100644 --- a/advisories/unreviewed/2025/02/GHSA-wvmf-xh97-gmfr/GHSA-wvmf-xh97-gmfr.json +++ b/advisories/unreviewed/2025/02/GHSA-wvmf-xh97-gmfr/GHSA-wvmf-xh97-gmfr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wvmf-xh97-gmfr", - "modified": "2025-02-27T18:31:09Z", + "modified": "2025-03-13T15:32:48Z", "published": "2025-02-27T03:34:02Z", "aliases": [ "CVE-2025-21727" @@ -38,6 +38,14 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/e01780ea4661172734118d2a5f41bc9720765668" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f3e0b9f790f8e8065d59e67b565a83154d9f3079" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f78170bee51469734b1a306a74fc5f777bb22ba6" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-xgjf-869w-4cgj/GHSA-xgjf-869w-4cgj.json b/advisories/unreviewed/2025/02/GHSA-xgjf-869w-4cgj/GHSA-xgjf-869w-4cgj.json index 249878cf231..769be15c96c 100644 --- a/advisories/unreviewed/2025/02/GHSA-xgjf-869w-4cgj/GHSA-xgjf-869w-4cgj.json +++ b/advisories/unreviewed/2025/02/GHSA-xgjf-869w-4cgj/GHSA-xgjf-869w-4cgj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-xgjf-869w-4cgj", - "modified": "2025-03-06T15:34:42Z", + "modified": "2025-03-13T15:32:49Z", "published": "2025-02-27T03:34:02Z", "aliases": [ "CVE-2024-57834" @@ -27,6 +27,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/2c5601b99d79d196fe4a37159e3dfb38e778ea18" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/52d3512f9a7a52ef92864679b1e8e8aa16202c6a" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/59a707ad952eb2ea8d59457d662b6f4138f17b08" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/86307e443c5844f38e1b98e2c51a4195c55576cd" diff --git a/advisories/unreviewed/2025/02/GHSA-xqj4-x748-chwg/GHSA-xqj4-x748-chwg.json b/advisories/unreviewed/2025/02/GHSA-xqj4-x748-chwg/GHSA-xqj4-x748-chwg.json index 976fdee0655..f885fc21df5 100644 --- a/advisories/unreviewed/2025/02/GHSA-xqj4-x748-chwg/GHSA-xqj4-x748-chwg.json +++ b/advisories/unreviewed/2025/02/GHSA-xqj4-x748-chwg/GHSA-xqj4-x748-chwg.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-xqj4-x748-chwg", - "modified": "2025-03-05T21:32:05Z", + "modified": "2025-03-13T15:32:50Z", "published": "2025-02-27T03:34:04Z", "aliases": [ "CVE-2025-21744" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21744" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/2326e19190e176fd72bb542b837a9d2b7fcb8693" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/3877fc67bd3d5566cc12763bce39710ceb74a97d" @@ -27,6 +31,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/4e51d6d093e763348916e69d06d87e0a5593661b" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/59ff4fa653ff6db07c61152516ffba79c2a74bda" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/61541d9b5a23df33934fcc620a3a81f246b1b240" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/68abd0c4ebf24cd499841a488b97a6873d5efabb" diff --git a/advisories/unreviewed/2025/02/GHSA-xqw5-f5f6-22vf/GHSA-xqw5-f5f6-22vf.json b/advisories/unreviewed/2025/02/GHSA-xqw5-f5f6-22vf/GHSA-xqw5-f5f6-22vf.json index a42448cb57e..2f01a73ac48 100644 --- a/advisories/unreviewed/2025/02/GHSA-xqw5-f5f6-22vf/GHSA-xqw5-f5f6-22vf.json +++ b/advisories/unreviewed/2025/02/GHSA-xqw5-f5f6-22vf/GHSA-xqw5-f5f6-22vf.json @@ -1,19 +1,28 @@ { "schema_version": "1.4.0", "id": "GHSA-xqw5-f5f6-22vf", - "modified": "2025-02-27T03:34:06Z", + "modified": "2025-03-13T15:32:52Z", "published": "2025-02-27T03:34:06Z", "aliases": [ "CVE-2025-21785" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\narm64: cacheinfo: Avoid out-of-bounds write to cacheinfo array\n\nThe loop that detects/populates cache information already has a bounds\ncheck on the array size but does not account for cache levels with\nseparate data/instructions cache. Fix this by incrementing the index\nfor any populated leaf (instead of any populated level).", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21785" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/4371ac7b494e933fffee2bd6265d18d73c4f05aa" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/4ff25f0b18d1d0174c105e4620428bcdc1213860" @@ -30,14 +39,24 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/875d742cf5327c93cba1f11e12b08d3cce7a88d2" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/88a3e6afaf002250220793df99404977d343db14" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/ab90894f33c15b14c1cee6959ab6c8dcb09127f8" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e4fde33107351ec33f1a64188612fbc6ca659284" } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-787" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-27T03:15:19Z" diff --git a/advisories/unreviewed/2025/02/GHSA-xv46-47mw-9vxc/GHSA-xv46-47mw-9vxc.json b/advisories/unreviewed/2025/02/GHSA-xv46-47mw-9vxc/GHSA-xv46-47mw-9vxc.json index 31b47d60453..faddf3ca833 100644 --- a/advisories/unreviewed/2025/02/GHSA-xv46-47mw-9vxc/GHSA-xv46-47mw-9vxc.json +++ b/advisories/unreviewed/2025/02/GHSA-xv46-47mw-9vxc/GHSA-xv46-47mw-9vxc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-xv46-47mw-9vxc", - "modified": "2025-02-27T03:34:05Z", + "modified": "2025-03-13T15:32:51Z", "published": "2025-02-27T03:34:05Z", "aliases": [ "CVE-2025-21758" @@ -22,6 +22,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/25195f9d5ffcc8079ad743a50c0409dbdc48d98a" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/29fa42197f26a97cde29fa8c40beddf44ea5c8f3" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/a527750d877fd334de87eef81f1cb5f0f0ca3373" diff --git a/advisories/unreviewed/2025/02/GHSA-xxp9-gm8j-w4c9/GHSA-xxp9-gm8j-w4c9.json b/advisories/unreviewed/2025/02/GHSA-xxp9-gm8j-w4c9/GHSA-xxp9-gm8j-w4c9.json index 6acc0ba2006..e86e9ebc229 100644 --- a/advisories/unreviewed/2025/02/GHSA-xxp9-gm8j-w4c9/GHSA-xxp9-gm8j-w4c9.json +++ b/advisories/unreviewed/2025/02/GHSA-xxp9-gm8j-w4c9/GHSA-xxp9-gm8j-w4c9.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-xxp9-gm8j-w4c9", - "modified": "2025-03-05T15:30:51Z", + "modified": "2025-03-13T15:32:53Z", "published": "2025-02-27T21:32:17Z", "aliases": [ "CVE-2025-21814" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21814" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1334c64a5d1de6666e0c9f984db6745083df1eb4" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/5d1041c76de656f9f8d5a192218039a9acf9bd00" @@ -35,9 +39,17 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/8441aea46445252df5d2eed6deb6d5246fc24002" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/9df3a9284f39bfd51a9f72a6a165c79e2aa5066b" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/fd53aa40e65f518453115b6f56183b0c201db26b" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/fdc1e72487781dd7705bcbe30878bee7d5d1f3e8" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/03/GHSA-29c7-cgjr-6jrv/GHSA-29c7-cgjr-6jrv.json b/advisories/unreviewed/2025/03/GHSA-29c7-cgjr-6jrv/GHSA-29c7-cgjr-6jrv.json new file mode 100644 index 00000000000..779635c346c --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-29c7-cgjr-6jrv/GHSA-29c7-cgjr-6jrv.json @@ -0,0 +1,31 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-29c7-cgjr-6jrv", + "modified": "2025-03-13T15:32:58Z", + "published": "2025-03-13T15:32:58Z", + "aliases": [ + "CVE-2025-2280" + ], + "details": "Improper access control in web extension restriction feature in Devolutions Server 2024.3.13 and earlier allows an authenticated user to bypass the browser extension restriction feature.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2280" + }, + { + "type": "WEB", + "url": "https://devolutions.net/security/advisories/DEVO-2025-0004" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-284" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T13:15:58Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-2x4w-2j26-p5hx/GHSA-2x4w-2j26-p5hx.json b/advisories/unreviewed/2025/03/GHSA-2x4w-2j26-p5hx/GHSA-2x4w-2j26-p5hx.json index 72a84a4f25f..7caf42f38f1 100644 --- a/advisories/unreviewed/2025/03/GHSA-2x4w-2j26-p5hx/GHSA-2x4w-2j26-p5hx.json +++ b/advisories/unreviewed/2025/03/GHSA-2x4w-2j26-p5hx/GHSA-2x4w-2j26-p5hx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-2x4w-2j26-p5hx", - "modified": "2025-03-07T09:30:35Z", + "modified": "2025-03-13T15:32:55Z", "published": "2025-03-07T09:30:35Z", "aliases": [ "CVE-2025-21835" @@ -14,6 +14,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21835" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/3a983390d14e8498f303fc5cb23ab7d696b815db" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/6ae6dee9f005a2f3b739b85abb6f14a0935699e0" @@ -22,6 +26,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/6b16761a928796e4b49e89a0b1ac284155172726" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/9f36a89dcb78cb7e37f487b04a16396ac18c0636" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/9f6860a9c11301b052225ca8825f8d2b1a5825bf" @@ -30,6 +38,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/a2d0694e1f111379c1efdf439dadd3cfd959fe9d" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d8e86700c8a8cf415e300a0921acd6a8f9b494f8" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/da1668997052ed1cb00322e1f3b63702615c9429" diff --git a/advisories/unreviewed/2025/03/GHSA-3ffg-fcmm-x4pp/GHSA-3ffg-fcmm-x4pp.json b/advisories/unreviewed/2025/03/GHSA-3ffg-fcmm-x4pp/GHSA-3ffg-fcmm-x4pp.json index e25590f6496..d95d57fef13 100644 --- a/advisories/unreviewed/2025/03/GHSA-3ffg-fcmm-x4pp/GHSA-3ffg-fcmm-x4pp.json +++ b/advisories/unreviewed/2025/03/GHSA-3ffg-fcmm-x4pp/GHSA-3ffg-fcmm-x4pp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3ffg-fcmm-x4pp", - "modified": "2025-03-12T12:30:58Z", + "modified": "2025-03-13T15:32:56Z", "published": "2025-03-12T12:30:58Z", "aliases": [ "CVE-2025-21848" @@ -30,9 +30,21 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/897c32cd763fd11d0b6ed024c52f44d2475bb820" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/924b239f9704566e0d86abd894d2d64bd73c11eb" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/bd97f60750bb581f07051f98e31dfda59d3a783b" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d64c6ca420019712e194fe095b55f87363e22a9a" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e976ea6c5e1b005c64467cbf94a8577aae9c7d81" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/03/GHSA-3fpr-88w3-v99m/GHSA-3fpr-88w3-v99m.json b/advisories/unreviewed/2025/03/GHSA-3fpr-88w3-v99m/GHSA-3fpr-88w3-v99m.json index 6e29cae7f67..5cb2b2f033e 100644 --- a/advisories/unreviewed/2025/03/GHSA-3fpr-88w3-v99m/GHSA-3fpr-88w3-v99m.json +++ b/advisories/unreviewed/2025/03/GHSA-3fpr-88w3-v99m/GHSA-3fpr-88w3-v99m.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3fpr-88w3-v99m", - "modified": "2025-03-06T18:31:10Z", + "modified": "2025-03-13T15:32:54Z", "published": "2025-03-06T18:31:10Z", "aliases": [ "CVE-2024-58071" @@ -14,6 +14,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58071" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0a7794b9ca78c8e7d001c583bf05736169de3f20" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/184a564e6000b41582f160a5be9a9b5aabe22ac1" @@ -26,10 +30,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/3fff5da4ca2164bb4d0f1e6cd33f6eb8a0e73e50" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/62ff1615815d565448c37cb8a7a2a076492ec471" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/adff6ac889e16d97abd1e4543f533221127e978a" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/bd099a2fa9be983ba0e90a57a59484fe9d520ba8" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/d9bce1310c0e2a55888e3e08c9f69d8377b3a377" diff --git a/advisories/unreviewed/2025/03/GHSA-45ff-v9gq-xww8/GHSA-45ff-v9gq-xww8.json b/advisories/unreviewed/2025/03/GHSA-45ff-v9gq-xww8/GHSA-45ff-v9gq-xww8.json index 06941c076c2..a37038d6ec2 100644 --- a/advisories/unreviewed/2025/03/GHSA-45ff-v9gq-xww8/GHSA-45ff-v9gq-xww8.json +++ b/advisories/unreviewed/2025/03/GHSA-45ff-v9gq-xww8/GHSA-45ff-v9gq-xww8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-45ff-v9gq-xww8", - "modified": "2025-03-12T12:30:57Z", + "modified": "2025-03-13T15:32:56Z", "published": "2025-03-12T12:30:57Z", "aliases": [ "CVE-2025-21844" @@ -33,6 +33,14 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/a9b0b4b29877cb4dc5d0842b59b5ccbacddb85bd" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f277e479eea3d1aa18bc712abe1d2bf3dece2e30" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f618aeb6cad2307e48a641379db610abcf593edf" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/03/GHSA-4cfm-6q3x-wgvm/GHSA-4cfm-6q3x-wgvm.json b/advisories/unreviewed/2025/03/GHSA-4cfm-6q3x-wgvm/GHSA-4cfm-6q3x-wgvm.json new file mode 100644 index 00000000000..ed404e20d7f --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-4cfm-6q3x-wgvm/GHSA-4cfm-6q3x-wgvm.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4cfm-6q3x-wgvm", + "modified": "2025-03-13T15:32:58Z", + "published": "2025-03-13T15:32:58Z", + "aliases": [ + "CVE-2024-28803" + ], + "details": "Cross-site scripting (XSS) vulnerability in Italtel S.p.A. i-MCS NFV v.12.1.0-20211215 allows unauthenticated remote attackers to inject arbitrary web script or HTML into HTTP/POST parameter", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-28803" + }, + { + "type": "WEB", + "url": "https://www.gruppotim.it/it/footer/red-team.html" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T14:15:24Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-4gfx-6626-vp83/GHSA-4gfx-6626-vp83.json b/advisories/unreviewed/2025/03/GHSA-4gfx-6626-vp83/GHSA-4gfx-6626-vp83.json new file mode 100644 index 00000000000..b0452379dd3 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-4gfx-6626-vp83/GHSA-4gfx-6626-vp83.json @@ -0,0 +1,31 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4gfx-6626-vp83", + "modified": "2025-03-13T15:32:57Z", + "published": "2025-03-13T15:32:57Z", + "aliases": [ + "CVE-2025-1636" + ], + "details": "Exposure of sensitive information in My Personnal Credentials password history component in Devolutions Remote Desktop Manager 2024.3.29 and earlier on Windows allows an authenticated user to inadvertently leak the My Personnal Credentials in a shared vault via the clear history feature due to faulty business logic.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1636" + }, + { + "type": "WEB", + "url": "https://devolutions.net/security/advisories/DEVO-2025-0004" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T13:15:46Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-55m7-vg72-9vx3/GHSA-55m7-vg72-9vx3.json b/advisories/unreviewed/2025/03/GHSA-55m7-vg72-9vx3/GHSA-55m7-vg72-9vx3.json index d8748762cd4..0e69352ab38 100644 --- a/advisories/unreviewed/2025/03/GHSA-55m7-vg72-9vx3/GHSA-55m7-vg72-9vx3.json +++ b/advisories/unreviewed/2025/03/GHSA-55m7-vg72-9vx3/GHSA-55m7-vg72-9vx3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-55m7-vg72-9vx3", - "modified": "2025-03-12T12:30:59Z", + "modified": "2025-03-13T15:32:57Z", "published": "2025-03-12T12:30:59Z", "aliases": [ "CVE-2025-21865" @@ -14,6 +14,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21865" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/33eb925c0c26e86ca540a08254806512bf911f22" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/37e7644b961600ef0beb01d3970c3034a62913af" @@ -22,6 +26,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/4ccacf86491d33d2486b62d4d44864d7101b299d" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7f86fb07db65a470d0c11f79da551bd9466357dc" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/9d03e7e37187ae140e716377599493987fb20c5b" @@ -30,6 +38,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/b70fa591b066d52b141fc430ffdee35b6cc87a66" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/cb15bb1bde0ba97cbbed9508e45210dcafec3657" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/ff81b14010362f6188ca26fec22ff05e4da45595" diff --git a/advisories/unreviewed/2025/03/GHSA-62xc-8hfg-r382/GHSA-62xc-8hfg-r382.json b/advisories/unreviewed/2025/03/GHSA-62xc-8hfg-r382/GHSA-62xc-8hfg-r382.json new file mode 100644 index 00000000000..65cf6bf0a36 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-62xc-8hfg-r382/GHSA-62xc-8hfg-r382.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-62xc-8hfg-r382", + "modified": "2025-03-13T15:32:59Z", + "published": "2025-03-13T15:32:59Z", + "aliases": [ + "CVE-2025-29360" + ], + "details": "Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the time and timeZone parameters at /goform/SetSysTimeCfg. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-29360" + }, + { + "type": "WEB", + "url": "https://github.com/2664521593/mycve/blob/main/Tenda/RX3/tenda_rx3_bof_1.pdf" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T14:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-6rjg-2hv4-xq68/GHSA-6rjg-2hv4-xq68.json b/advisories/unreviewed/2025/03/GHSA-6rjg-2hv4-xq68/GHSA-6rjg-2hv4-xq68.json new file mode 100644 index 00000000000..4dedbfa771b --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-6rjg-2hv4-xq68/GHSA-6rjg-2hv4-xq68.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6rjg-2hv4-xq68", + "modified": "2025-03-13T15:33:00Z", + "published": "2025-03-13T15:33:00Z", + "aliases": [ + "CVE-2024-55198" + ], + "details": "User Enumeration via Discrepancies in Error Messages in the Celk Sistemas Celk Saude v.3.1.252.1 password recovery functionality which allows a remote attacker to enumerate users through discrepancies in the responses.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-55198" + }, + { + "type": "WEB", + "url": "https://cheatsheetseries.owasp.org/cheatsheets/Authentication_Cheat_Sheet.html" + }, + { + "type": "WEB", + "url": "https://github.com/gabriel-bri/vulnerability-research/tree/main/CVE-2024-55198" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T15:15:49Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-76rj-p843-mfr6/GHSA-76rj-p843-mfr6.json b/advisories/unreviewed/2025/03/GHSA-76rj-p843-mfr6/GHSA-76rj-p843-mfr6.json new file mode 100644 index 00000000000..a8ce6af995d --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-76rj-p843-mfr6/GHSA-76rj-p843-mfr6.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-76rj-p843-mfr6", + "modified": "2025-03-13T15:32:57Z", + "published": "2025-03-13T15:32:57Z", + "aliases": [ + "CVE-2024-10942" + ], + "details": "The All-in-One WP Migration and Backup plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 7.89 via deserialization of untrusted input in the 'replace_serialized_values' function. This makes it possible for unauthenticated attackers to inject a PHP Object. No known POP chain is present in the vulnerable software. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code. An administrator must export and restore a backup in order to trigger the exploit.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10942" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/all-in-one-wp-migration/trunk/lib/vendor/servmask/database/class-ai1wm-database-utility.php#L97" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3253940" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/0823d1d9-4f3b-4ac0-8cd1-ad208ebc325f?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-502" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T13:15:39Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-8376-779w-5hcf/GHSA-8376-779w-5hcf.json b/advisories/unreviewed/2025/03/GHSA-8376-779w-5hcf/GHSA-8376-779w-5hcf.json index 365aadf2ff5..18ec5bfa312 100644 --- a/advisories/unreviewed/2025/03/GHSA-8376-779w-5hcf/GHSA-8376-779w-5hcf.json +++ b/advisories/unreviewed/2025/03/GHSA-8376-779w-5hcf/GHSA-8376-779w-5hcf.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8376-779w-5hcf", - "modified": "2025-03-06T18:31:10Z", + "modified": "2025-03-13T15:32:54Z", "published": "2025-03-06T18:31:10Z", "aliases": [ "CVE-2025-21826" @@ -26,6 +26,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/49b7182b97bafbd5645414aff054b4a65d05823d" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/5083a7ae45003456c253e981b30a43f71230b4a3" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6b467c8feac759f4c5c86d708beca2aa2b29584f" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/82e491e085719068179ff6a5466b7387cc4bbf32" diff --git a/advisories/unreviewed/2025/03/GHSA-862r-fq3j-wqqx/GHSA-862r-fq3j-wqqx.json b/advisories/unreviewed/2025/03/GHSA-862r-fq3j-wqqx/GHSA-862r-fq3j-wqqx.json index 1ed402814a0..a0e7fc42a2c 100644 --- a/advisories/unreviewed/2025/03/GHSA-862r-fq3j-wqqx/GHSA-862r-fq3j-wqqx.json +++ b/advisories/unreviewed/2025/03/GHSA-862r-fq3j-wqqx/GHSA-862r-fq3j-wqqx.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-564" + "CWE-564", + "CWE-89" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/03/GHSA-873c-2c5r-x992/GHSA-873c-2c5r-x992.json b/advisories/unreviewed/2025/03/GHSA-873c-2c5r-x992/GHSA-873c-2c5r-x992.json index 9e1b856cb21..9da54ccbd43 100644 --- a/advisories/unreviewed/2025/03/GHSA-873c-2c5r-x992/GHSA-873c-2c5r-x992.json +++ b/advisories/unreviewed/2025/03/GHSA-873c-2c5r-x992/GHSA-873c-2c5r-x992.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-873c-2c5r-x992", - "modified": "2025-03-08T12:30:31Z", + "modified": "2025-03-13T15:32:56Z", "published": "2025-03-08T12:30:30Z", "aliases": [ "CVE-2025-1322" @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-200" + "CWE-200", + "CWE-22" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/03/GHSA-99wr-49f2-r3c7/GHSA-99wr-49f2-r3c7.json b/advisories/unreviewed/2025/03/GHSA-99wr-49f2-r3c7/GHSA-99wr-49f2-r3c7.json index 35657bc651d..6d5f0e446f7 100644 --- a/advisories/unreviewed/2025/03/GHSA-99wr-49f2-r3c7/GHSA-99wr-49f2-r3c7.json +++ b/advisories/unreviewed/2025/03/GHSA-99wr-49f2-r3c7/GHSA-99wr-49f2-r3c7.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-99wr-49f2-r3c7", - "modified": "2025-03-08T06:30:42Z", + "modified": "2025-03-13T15:32:55Z", "published": "2025-03-08T06:30:42Z", "aliases": [ "CVE-2024-12119" diff --git a/advisories/unreviewed/2025/03/GHSA-9gjv-m28f-8973/GHSA-9gjv-m28f-8973.json b/advisories/unreviewed/2025/03/GHSA-9gjv-m28f-8973/GHSA-9gjv-m28f-8973.json index 325cd3220e0..e3db119babc 100644 --- a/advisories/unreviewed/2025/03/GHSA-9gjv-m28f-8973/GHSA-9gjv-m28f-8973.json +++ b/advisories/unreviewed/2025/03/GHSA-9gjv-m28f-8973/GHSA-9gjv-m28f-8973.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-288" + "CWE-288", + "CWE-306" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/03/GHSA-9rqm-2mph-f72f/GHSA-9rqm-2mph-f72f.json b/advisories/unreviewed/2025/03/GHSA-9rqm-2mph-f72f/GHSA-9rqm-2mph-f72f.json new file mode 100644 index 00000000000..49c4c34fcb4 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-9rqm-2mph-f72f/GHSA-9rqm-2mph-f72f.json @@ -0,0 +1,31 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9rqm-2mph-f72f", + "modified": "2025-03-13T15:32:57Z", + "published": "2025-03-13T15:32:57Z", + "aliases": [ + "CVE-2025-2278" + ], + "details": "Improper access control in temporary access requests and checkout requests endpoints in Devolutions Server 2024.3.13 and earlier allows an authenticated user to access information about these requests via a known request ID.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2278" + }, + { + "type": "WEB", + "url": "https://devolutions.net/security/advisories/DEVO-2025-0004" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-284" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T13:15:58Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-cmmh-wcp2-3fxf/GHSA-cmmh-wcp2-3fxf.json b/advisories/unreviewed/2025/03/GHSA-cmmh-wcp2-3fxf/GHSA-cmmh-wcp2-3fxf.json index eca07918bca..0d101d27419 100644 --- a/advisories/unreviewed/2025/03/GHSA-cmmh-wcp2-3fxf/GHSA-cmmh-wcp2-3fxf.json +++ b/advisories/unreviewed/2025/03/GHSA-cmmh-wcp2-3fxf/GHSA-cmmh-wcp2-3fxf.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cmmh-wcp2-3fxf", - "modified": "2025-03-06T18:31:09Z", + "modified": "2025-03-13T15:32:53Z", "published": "2025-03-06T18:31:09Z", "aliases": [ "CVE-2024-58051" @@ -14,6 +14,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58051" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1a8a17c5ce9cb5a82797602bff9819ac732d2ff5" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/2378bd0b264ad3a1f76bd957caf33ee0c7945351" @@ -30,9 +34,17 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/a63284d415d4d114abd8be6e66a9558f3ca0702d" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/caac520350546e736894d14e051b64a9edb3600c" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/e529fbcf1f35f5fc3c839df7f06c3e3d02579715" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/eb288ab33fd87579789cb331209ff09e988ff4f7" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/03/GHSA-f33w-26qx-6hvm/GHSA-f33w-26qx-6hvm.json b/advisories/unreviewed/2025/03/GHSA-f33w-26qx-6hvm/GHSA-f33w-26qx-6hvm.json index 97d36d4a941..e749d8c0ff8 100644 --- a/advisories/unreviewed/2025/03/GHSA-f33w-26qx-6hvm/GHSA-f33w-26qx-6hvm.json +++ b/advisories/unreviewed/2025/03/GHSA-f33w-26qx-6hvm/GHSA-f33w-26qx-6hvm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-f33w-26qx-6hvm", - "modified": "2025-03-06T18:31:09Z", + "modified": "2025-03-13T15:32:53Z", "published": "2025-03-06T18:31:09Z", "aliases": [ "CVE-2024-58052" @@ -18,6 +18,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/0b97cd8a61b2b40fd73cf92a4bb2256462d22adb" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/2396bc91935c6da0588ce07850d07897974bd350" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/357445e28ff004d7f10967aa93ddb4bffa5c3688" @@ -30,9 +34,17 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/6a30634a2e0f1dd3c6b39fd0f114c32893a9907a" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a713ba7167c2d74c477dd7764dbbdbe3199f17f4" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/ae522ad211ec4b72eaf742b25f24b0a406afcba1" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/c47066ed7c8f3b320ef87fa6217a2b8b24e127cc" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/03/GHSA-f5cq-p3m3-57vm/GHSA-f5cq-p3m3-57vm.json b/advisories/unreviewed/2025/03/GHSA-f5cq-p3m3-57vm/GHSA-f5cq-p3m3-57vm.json new file mode 100644 index 00000000000..95258635d4d --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-f5cq-p3m3-57vm/GHSA-f5cq-p3m3-57vm.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f5cq-p3m3-57vm", + "modified": "2025-03-13T15:32:59Z", + "published": "2025-03-13T15:32:59Z", + "aliases": [ + "CVE-2025-29361" + ], + "details": "Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the list parameter at /goform/SetVirtualServerCfg. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-29361" + }, + { + "type": "WEB", + "url": "https://github.com/2664521593/mycve/blob/main/Tenda/RX3/tenda_rx3_bof_5.pdf" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T14:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-f7g9-932q-g34j/GHSA-f7g9-932q-g34j.json b/advisories/unreviewed/2025/03/GHSA-f7g9-932q-g34j/GHSA-f7g9-932q-g34j.json new file mode 100644 index 00000000000..57c9fbde71f --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-f7g9-932q-g34j/GHSA-f7g9-932q-g34j.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f7g9-932q-g34j", + "modified": "2025-03-13T15:32:58Z", + "published": "2025-03-13T15:32:58Z", + "aliases": [ + "CVE-2025-29358" + ], + "details": "Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the firewallEn parameter at /goform/SetFirewallCfg. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-29358" + }, + { + "type": "WEB", + "url": "https://github.com/2664521593/mycve/blob/main/Tenda/RX3/tenda_rx3_bof_2.pdf" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T14:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-fgjx-56hm-4qrp/GHSA-fgjx-56hm-4qrp.json b/advisories/unreviewed/2025/03/GHSA-fgjx-56hm-4qrp/GHSA-fgjx-56hm-4qrp.json index cbd941a8718..10ac2df32d1 100644 --- a/advisories/unreviewed/2025/03/GHSA-fgjx-56hm-4qrp/GHSA-fgjx-56hm-4qrp.json +++ b/advisories/unreviewed/2025/03/GHSA-fgjx-56hm-4qrp/GHSA-fgjx-56hm-4qrp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-fgjx-56hm-4qrp", - "modified": "2025-03-07T18:31:04Z", + "modified": "2025-03-13T15:32:54Z", "published": "2025-03-06T18:31:11Z", "aliases": [ "CVE-2024-58079" @@ -18,6 +18,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/0b5e0445bc8384c18bd35cb9fe87f6258c6271d9" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0fdd7cc593385e46e92e180b71e264fc9c195298" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/3c00e94d00ca079bef7906d6f39d1091bccfedd3" diff --git a/advisories/unreviewed/2025/03/GHSA-fh4m-wrmp-8q2f/GHSA-fh4m-wrmp-8q2f.json b/advisories/unreviewed/2025/03/GHSA-fh4m-wrmp-8q2f/GHSA-fh4m-wrmp-8q2f.json index 90060313437..0290c283043 100644 --- a/advisories/unreviewed/2025/03/GHSA-fh4m-wrmp-8q2f/GHSA-fh4m-wrmp-8q2f.json +++ b/advisories/unreviewed/2025/03/GHSA-fh4m-wrmp-8q2f/GHSA-fh4m-wrmp-8q2f.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-fh4m-wrmp-8q2f", - "modified": "2025-03-06T18:31:12Z", + "modified": "2025-03-13T15:32:55Z", "published": "2025-03-06T18:31:11Z", "aliases": [ "CVE-2025-21830" @@ -33,6 +33,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/7d6121228959ddf44a4b9b6a177384ac7854e2f9" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a1fccf6b72b56343dd4f2d96b008147f9951eebd" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/03/GHSA-fm2g-8747-78cm/GHSA-fm2g-8747-78cm.json b/advisories/unreviewed/2025/03/GHSA-fm2g-8747-78cm/GHSA-fm2g-8747-78cm.json new file mode 100644 index 00000000000..b95556bcf57 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-fm2g-8747-78cm/GHSA-fm2g-8747-78cm.json @@ -0,0 +1,31 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fm2g-8747-78cm", + "modified": "2025-03-13T15:32:57Z", + "published": "2025-03-13T15:32:57Z", + "aliases": [ + "CVE-2025-2277" + ], + "details": "Exposure of password in web-based SSH authentication component in Devolutions Server 2024.3.13 and earlier allows a user to unadvertently leak his SSH password due to missing password masking.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2277" + }, + { + "type": "WEB", + "url": "https://devolutions.net/security/advisories/DEVO-2025-0004" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T13:15:58Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-fm6j-mfpf-prfq/GHSA-fm6j-mfpf-prfq.json b/advisories/unreviewed/2025/03/GHSA-fm6j-mfpf-prfq/GHSA-fm6j-mfpf-prfq.json index 7f742c988b2..110d948a74c 100644 --- a/advisories/unreviewed/2025/03/GHSA-fm6j-mfpf-prfq/GHSA-fm6j-mfpf-prfq.json +++ b/advisories/unreviewed/2025/03/GHSA-fm6j-mfpf-prfq/GHSA-fm6j-mfpf-prfq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-fm6j-mfpf-prfq", - "modified": "2025-03-12T12:30:59Z", + "modified": "2025-03-13T15:32:57Z", "published": "2025-03-12T12:30:59Z", "aliases": [ "CVE-2025-21862" @@ -26,6 +26,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/219a47d0e6195bd202f22855e35f25bd15bc4d58" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/29f9cdcab3d96d5207a5c92b52c40ad75e5915d8" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6e9e0f224ffd8b819da3ea247dda404795fdd182" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/872c7c7e57a746046796ddfead529c9d37b9f6b4" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/b7859e8643e75619b2705b4fcac93ffd94d72b4a" diff --git a/advisories/unreviewed/2025/03/GHSA-ghpv-8q38-9qmg/GHSA-ghpv-8q38-9qmg.json b/advisories/unreviewed/2025/03/GHSA-ghpv-8q38-9qmg/GHSA-ghpv-8q38-9qmg.json new file mode 100644 index 00000000000..ffab6551cdc --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-ghpv-8q38-9qmg/GHSA-ghpv-8q38-9qmg.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-ghpv-8q38-9qmg", + "modified": "2025-03-13T15:32:59Z", + "published": "2025-03-13T15:32:59Z", + "aliases": [ + "CVE-2025-29362" + ], + "details": "Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the list parameter at /goform/setPptpUserList. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-29362" + }, + { + "type": "WEB", + "url": "https://github.com/2664521593/mycve/blob/main/Tenda/RX3/tenda_rx3_bof_3.pdf" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T14:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-gw27-9x3h-33gj/GHSA-gw27-9x3h-33gj.json b/advisories/unreviewed/2025/03/GHSA-gw27-9x3h-33gj/GHSA-gw27-9x3h-33gj.json index 7ea547d8766..23eff621fce 100644 --- a/advisories/unreviewed/2025/03/GHSA-gw27-9x3h-33gj/GHSA-gw27-9x3h-33gj.json +++ b/advisories/unreviewed/2025/03/GHSA-gw27-9x3h-33gj/GHSA-gw27-9x3h-33gj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-gw27-9x3h-33gj", - "modified": "2025-03-06T18:31:11Z", + "modified": "2025-03-13T15:32:54Z", "published": "2025-03-06T18:31:11Z", "aliases": [ "CVE-2024-58083" @@ -14,6 +14,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58083" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/09d50ccf0b2d739db4a485b08afe7520a4402a63" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/125da53b3c0c9d7f58353aea0076e9efd6498ba7" @@ -22,6 +26,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/1e7381f3617d14b3c11da80ff5f8a93ab14cfc46" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/5cce2ed69b00e022b5cdf0c49c82986abd2941a8" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7c4899239d0f70f88ac42665b3da51678d122480" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/ca8da90ed1432ff3d000de4f1e2275d4e7d21b96" diff --git a/advisories/unreviewed/2025/03/GHSA-hr43-3hq8-ggg4/GHSA-hr43-3hq8-ggg4.json b/advisories/unreviewed/2025/03/GHSA-hr43-3hq8-ggg4/GHSA-hr43-3hq8-ggg4.json index d96f0a24892..56438bc1fab 100644 --- a/advisories/unreviewed/2025/03/GHSA-hr43-3hq8-ggg4/GHSA-hr43-3hq8-ggg4.json +++ b/advisories/unreviewed/2025/03/GHSA-hr43-3hq8-ggg4/GHSA-hr43-3hq8-ggg4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hr43-3hq8-ggg4", - "modified": "2025-03-06T18:31:12Z", + "modified": "2025-03-13T15:32:54Z", "published": "2025-03-06T18:31:12Z", "aliases": [ "CVE-2024-58085" @@ -26,10 +26,22 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/a01c200fa7eb59da4d2dbbb48b61f4a0d196c09f" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b2bd5857a0d6973ebbcb4d9831ddcaebbd257be1" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/c67efabddc73171c7771d3ffe4ffa1e503ee533e" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/c9382f380e8d09209b8e5c0def0545852168be25" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f6b37b3e12de638753bce79a2858070b9c4a4ad3" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/fe1c021eb03dae0dc9dce55e81f77a60e419a27a" diff --git a/advisories/unreviewed/2025/03/GHSA-j2pq-j692-qx87/GHSA-j2pq-j692-qx87.json b/advisories/unreviewed/2025/03/GHSA-j2pq-j692-qx87/GHSA-j2pq-j692-qx87.json index 302a6e2c77c..a02ea48a055 100644 --- a/advisories/unreviewed/2025/03/GHSA-j2pq-j692-qx87/GHSA-j2pq-j692-qx87.json +++ b/advisories/unreviewed/2025/03/GHSA-j2pq-j692-qx87/GHSA-j2pq-j692-qx87.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-j2pq-j692-qx87", - "modified": "2025-03-06T18:31:11Z", + "modified": "2025-03-13T15:32:54Z", "published": "2025-03-06T18:31:11Z", "aliases": [ "CVE-2024-58076" @@ -18,6 +18,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/08b77ed7cfaac62bba51ac7a0487409ec9fcbc84" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/175af15551ed5aa6af16ff97aff75cfffb42da21" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/39336edd14a59dc086fb19957655e0f340bb28e8" diff --git a/advisories/unreviewed/2025/03/GHSA-m23v-c5w7-vq6c/GHSA-m23v-c5w7-vq6c.json b/advisories/unreviewed/2025/03/GHSA-m23v-c5w7-vq6c/GHSA-m23v-c5w7-vq6c.json index 2b088f67956..fc6374dfc49 100644 --- a/advisories/unreviewed/2025/03/GHSA-m23v-c5w7-vq6c/GHSA-m23v-c5w7-vq6c.json +++ b/advisories/unreviewed/2025/03/GHSA-m23v-c5w7-vq6c/GHSA-m23v-c5w7-vq6c.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-m23v-c5w7-vq6c", - "modified": "2025-03-08T06:30:43Z", + "modified": "2025-03-13T15:32:55Z", "published": "2025-03-08T06:30:42Z", "aliases": [ "CVE-2024-13844" diff --git a/advisories/unreviewed/2025/03/GHSA-p487-32h6-758c/GHSA-p487-32h6-758c.json b/advisories/unreviewed/2025/03/GHSA-p487-32h6-758c/GHSA-p487-32h6-758c.json new file mode 100644 index 00000000000..f9468250190 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-p487-32h6-758c/GHSA-p487-32h6-758c.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p487-32h6-758c", + "modified": "2025-03-13T15:32:58Z", + "published": "2025-03-13T15:32:58Z", + "aliases": [ + "CVE-2025-29357" + ], + "details": "Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the startIp and endIp parameters at /goform/SetPptpServerCfg. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-29357" + }, + { + "type": "WEB", + "url": "https://github.com/2664521593/mycve/blob/main/Tenda/RX3/tenda_rx3_bof_4.pdf" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T14:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-p4mq-5hwr-hc6r/GHSA-p4mq-5hwr-hc6r.json b/advisories/unreviewed/2025/03/GHSA-p4mq-5hwr-hc6r/GHSA-p4mq-5hwr-hc6r.json index a24aec916f0..78bbefd55d1 100644 --- a/advisories/unreviewed/2025/03/GHSA-p4mq-5hwr-hc6r/GHSA-p4mq-5hwr-hc6r.json +++ b/advisories/unreviewed/2025/03/GHSA-p4mq-5hwr-hc6r/GHSA-p4mq-5hwr-hc6r.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-p4mq-5hwr-hc6r", - "modified": "2025-03-12T12:30:59Z", + "modified": "2025-03-13T15:32:57Z", "published": "2025-03-12T12:30:59Z", "aliases": [ "CVE-2025-21866" @@ -22,10 +22,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/2e6c80423f201405fd65254e52decd21663896f3" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6847b3e40bb963e57b61d1cc6fe84cb37b9d3d4c" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/8d06e9208184b2851fa79a3a39d6860320c8bdf8" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/97de5852058a299ba447cd9782fe96488d30108b" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/c905a3053518212a1017e50bd2be3bee59305bb0" @@ -33,6 +41,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/d262a192d38e527faa5984629aabda2e0d1c4f54" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f8d4c5b653c1bc0df56e15658bbf64fc359adc4e" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/03/GHSA-p7j9-4392-6r7p/GHSA-p7j9-4392-6r7p.json b/advisories/unreviewed/2025/03/GHSA-p7j9-4392-6r7p/GHSA-p7j9-4392-6r7p.json index 6c9e5b485cc..724a92c97e2 100644 --- a/advisories/unreviewed/2025/03/GHSA-p7j9-4392-6r7p/GHSA-p7j9-4392-6r7p.json +++ b/advisories/unreviewed/2025/03/GHSA-p7j9-4392-6r7p/GHSA-p7j9-4392-6r7p.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-p7j9-4392-6r7p", - "modified": "2025-03-06T18:31:10Z", + "modified": "2025-03-13T15:32:54Z", "published": "2025-03-06T18:31:10Z", "aliases": [ "CVE-2024-58069" @@ -14,6 +14,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58069" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/21cd59fcb9952eb7505da2bdfc1eb9c619df3ff4" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/3ab8c5ed4f84fa20cd16794fe8dc31f633fbc70c" @@ -22,6 +26,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/517aedb365f2c94e2d7e0b908ac7127df76203a1" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6f2a8ca9a0a38589f52a7f0fb9425b9ba987ae7c" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/9adefa7b9559d0f21034a5d5ec1b55840c9348b9" @@ -30,6 +38,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/c72b7a474d3f445bf0c5bcf8ffed332c78eb28a1" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e5536677da803ed54a29a446515c28dce7d3d574" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/e5e06455760f2995b16a176033909347929d1128" diff --git a/advisories/unreviewed/2025/03/GHSA-p9px-9grx-vp7w/GHSA-p9px-9grx-vp7w.json b/advisories/unreviewed/2025/03/GHSA-p9px-9grx-vp7w/GHSA-p9px-9grx-vp7w.json new file mode 100644 index 00000000000..c8e69fa4668 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-p9px-9grx-vp7w/GHSA-p9px-9grx-vp7w.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p9px-9grx-vp7w", + "modified": "2025-03-13T15:33:00Z", + "published": "2025-03-13T15:33:00Z", + "aliases": [ + "CVE-2025-29363" + ], + "details": "Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to buffer overflow via the schedStartTime and schedEndTime parameters at /goform/saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-29363" + }, + { + "type": "WEB", + "url": "https://github.com/2664521593/mycve/blob/main/Tenda/RX3/tenda_rx3_bof_7.pdf" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T14:15:37Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-pjpx-9xrf-qmh6/GHSA-pjpx-9xrf-qmh6.json b/advisories/unreviewed/2025/03/GHSA-pjpx-9xrf-qmh6/GHSA-pjpx-9xrf-qmh6.json index a7f6148dadc..5a2ac503307 100644 --- a/advisories/unreviewed/2025/03/GHSA-pjpx-9xrf-qmh6/GHSA-pjpx-9xrf-qmh6.json +++ b/advisories/unreviewed/2025/03/GHSA-pjpx-9xrf-qmh6/GHSA-pjpx-9xrf-qmh6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pjpx-9xrf-qmh6", - "modified": "2025-03-06T18:31:10Z", + "modified": "2025-03-13T15:32:54Z", "published": "2025-03-06T18:31:10Z", "aliases": [ "CVE-2024-58072" @@ -18,6 +18,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/006e803af7408c3fc815b0654fc5ab43d34f0154" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1b9cbd8a9ae68b32099fbb03b2d5ffa0c5e0dcc9" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/1e39b0486cdb496cdfba3bc89886150e46acf6f4" @@ -33,6 +37,14 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/543e3e9f2e9e47ded774c74e680f28a0ca362aee" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/8e2fcc68fbaab3ad9f5671fee2be0956134b740a" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f801e754efa21bd61b3cc15ec7565696165b272f" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/03/GHSA-pw7x-jp78-x4mj/GHSA-pw7x-jp78-x4mj.json b/advisories/unreviewed/2025/03/GHSA-pw7x-jp78-x4mj/GHSA-pw7x-jp78-x4mj.json index b53fcf5600d..98a208c91a2 100644 --- a/advisories/unreviewed/2025/03/GHSA-pw7x-jp78-x4mj/GHSA-pw7x-jp78-x4mj.json +++ b/advisories/unreviewed/2025/03/GHSA-pw7x-jp78-x4mj/GHSA-pw7x-jp78-x4mj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pw7x-jp78-x4mj", - "modified": "2025-03-06T18:31:11Z", + "modified": "2025-03-13T15:32:54Z", "published": "2025-03-06T18:31:11Z", "aliases": [ "CVE-2024-58086" @@ -22,6 +22,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/21f1435b1e6b012a07c42f36b206d2b66fc8f13b" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/22e19c8c5f6b709f4ae40227392a30d57bac187d" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/95036d4c01167568166108d42c2b0e9f8dbd7d2b" diff --git a/advisories/unreviewed/2025/03/GHSA-q4g4-gmvw-9fqc/GHSA-q4g4-gmvw-9fqc.json b/advisories/unreviewed/2025/03/GHSA-q4g4-gmvw-9fqc/GHSA-q4g4-gmvw-9fqc.json index 7263b4d3ed4..8f9eaf205f0 100644 --- a/advisories/unreviewed/2025/03/GHSA-q4g4-gmvw-9fqc/GHSA-q4g4-gmvw-9fqc.json +++ b/advisories/unreviewed/2025/03/GHSA-q4g4-gmvw-9fqc/GHSA-q4g4-gmvw-9fqc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-q4g4-gmvw-9fqc", - "modified": "2025-03-06T18:31:09Z", + "modified": "2025-03-13T15:32:53Z", "published": "2025-03-06T18:31:09Z", "aliases": [ "CVE-2024-58055" @@ -18,10 +18,22 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/16907219ad6763f401700e1b57b2da4f3e07f047" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/38229c35a6d7875697dfb293356407330cfcd23e" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7cb72dc08ed8da60fd6d1f6adf13bf0e6ee0f694" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/929b69810eec132b284ffd19047a85d961df9e4d" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/bbb7f49839b57d66ccaf7b5752d9b63d3031dd0a" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/c225d006a31949d673e646d585d9569bc28feeb9" diff --git a/advisories/unreviewed/2025/03/GHSA-r2jh-h942-fgww/GHSA-r2jh-h942-fgww.json b/advisories/unreviewed/2025/03/GHSA-r2jh-h942-fgww/GHSA-r2jh-h942-fgww.json index 685ee1a18ae..d2740a34724 100644 --- a/advisories/unreviewed/2025/03/GHSA-r2jh-h942-fgww/GHSA-r2jh-h942-fgww.json +++ b/advisories/unreviewed/2025/03/GHSA-r2jh-h942-fgww/GHSA-r2jh-h942-fgww.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-r2jh-h942-fgww", - "modified": "2025-03-07T09:30:36Z", + "modified": "2025-03-13T15:32:55Z", "published": "2025-03-07T09:30:36Z", "aliases": [ "CVE-2025-21843" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/panthor: avoid garbage value in panthor_ioctl_dev_query()\n\n'priorities_info' is uninitialized, and the uninitialized value is copied\nto user object when calling PANTHOR_UOBJ_SET(). Using memset to initialize\n'priorities_info' to avoid this garbage value problem.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-908" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-03-07T09:15:17Z" diff --git a/advisories/unreviewed/2025/03/GHSA-r56m-2mw8-qf27/GHSA-r56m-2mw8-qf27.json b/advisories/unreviewed/2025/03/GHSA-r56m-2mw8-qf27/GHSA-r56m-2mw8-qf27.json new file mode 100644 index 00000000000..33bffcb0532 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-r56m-2mw8-qf27/GHSA-r56m-2mw8-qf27.json @@ -0,0 +1,31 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r56m-2mw8-qf27", + "modified": "2025-03-13T15:32:57Z", + "published": "2025-03-13T15:32:57Z", + "aliases": [ + "CVE-2025-1635" + ], + "details": "Exposure of sensitive information in hub data source export feature in Devolutions Remote Desktop Manager 2024.3.29 and earlier on Windows allows a user exporting a hub data source to include his authenticated session in the export due to faulty business logic.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1635" + }, + { + "type": "WEB", + "url": "https://devolutions.net/security/advisories/DEVO-2025-0004" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T13:15:46Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-r5hj-8p6x-9rq8/GHSA-r5hj-8p6x-9rq8.json b/advisories/unreviewed/2025/03/GHSA-r5hj-8p6x-9rq8/GHSA-r5hj-8p6x-9rq8.json index 3f23c4f33c5..2c09244a340 100644 --- a/advisories/unreviewed/2025/03/GHSA-r5hj-8p6x-9rq8/GHSA-r5hj-8p6x-9rq8.json +++ b/advisories/unreviewed/2025/03/GHSA-r5hj-8p6x-9rq8/GHSA-r5hj-8p6x-9rq8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-r5hj-8p6x-9rq8", - "modified": "2025-03-12T12:30:59Z", + "modified": "2025-03-13T15:32:57Z", "published": "2025-03-12T12:30:59Z", "aliases": [ "CVE-2025-21859" @@ -14,6 +14,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-21859" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1f10923404705a94891e612dff3b75e828a78368" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/24a942610ee9bafb2692a456ae850c5b2e409b05" @@ -22,10 +26,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/4ab37fcb42832cdd3e9d5e50653285ca84d6686f" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/727dee0857946b85232526de4f5a957fe163e89a" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/8aa6b4be1f4efccbfc533e6ec8841d26e4fa8dba" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b09957657d7767d164b3432af2129bd72947553c" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/deeee3adb2c01eedab32c3b4519337689ad02e8a" diff --git a/advisories/unreviewed/2025/03/GHSA-r8qx-v69g-vm92/GHSA-r8qx-v69g-vm92.json b/advisories/unreviewed/2025/03/GHSA-r8qx-v69g-vm92/GHSA-r8qx-v69g-vm92.json new file mode 100644 index 00000000000..ba35a9bb97c --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-r8qx-v69g-vm92/GHSA-r8qx-v69g-vm92.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r8qx-v69g-vm92", + "modified": "2025-03-13T15:33:00Z", + "published": "2025-03-13T15:33:00Z", + "aliases": [ + "CVE-2025-25625" + ], + "details": "FS Inc S3150 8T2F Switch s3150-8t2f-switch-fsos-220d_118101 has a stored cross-site scripting (XSS) vulnerability in the web management interface.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25625" + }, + { + "type": "WEB", + "url": "https://github.com/whitewhale-dmb/Vulnerability-Research/tree/main/CVE-2025-25625" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T15:15:53Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-r9xq-fh23-wm6f/GHSA-r9xq-fh23-wm6f.json b/advisories/unreviewed/2025/03/GHSA-r9xq-fh23-wm6f/GHSA-r9xq-fh23-wm6f.json index 0a494e61459..f9d4e5c112d 100644 --- a/advisories/unreviewed/2025/03/GHSA-r9xq-fh23-wm6f/GHSA-r9xq-fh23-wm6f.json +++ b/advisories/unreviewed/2025/03/GHSA-r9xq-fh23-wm6f/GHSA-r9xq-fh23-wm6f.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-r9xq-fh23-wm6f", - "modified": "2025-03-12T15:32:05Z", + "modified": "2025-03-13T15:32:56Z", "published": "2025-03-12T12:30:59Z", "aliases": [ "CVE-2025-21858" @@ -23,6 +23,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/3ce92ca990cfac88a87c61df3cc0b5880e688ecf" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/5a0538ac6826807d6919f6aecbb8996c2865af2c" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/788dbca056a8783ec063da3c9d49a3a71c76c283" @@ -35,9 +39,17 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/9593172d93b9f91c362baec4643003dc29802929" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d5e86e27de0936f3cb0a299ce519d993e9cf3886" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/da9b0ae47f084014b1e4b3f31f70a0defd047ff3" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f74f6560146714241c6e167b03165ee77a86e316" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/03/GHSA-rgfv-pm9m-qwf8/GHSA-rgfv-pm9m-qwf8.json b/advisories/unreviewed/2025/03/GHSA-rgfv-pm9m-qwf8/GHSA-rgfv-pm9m-qwf8.json new file mode 100644 index 00000000000..92abf2a60d6 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-rgfv-pm9m-qwf8/GHSA-rgfv-pm9m-qwf8.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rgfv-pm9m-qwf8", + "modified": "2025-03-13T15:32:58Z", + "published": "2025-03-13T15:32:58Z", + "aliases": [ + "CVE-2024-22880" + ], + "details": "Cross Site Scripting vulnerability in Zadarma Zadarma extension v.1.0.11 allows a remote attacker to execute a arbitrary code via a crafted script to the webchat component.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-22880" + }, + { + "type": "WEB", + "url": "https://gist.github.com/sAjibuu/372fd7d103218dabac95bf12580adbe4" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T14:15:22Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-rh4p-q4f7-8gmr/GHSA-rh4p-q4f7-8gmr.json b/advisories/unreviewed/2025/03/GHSA-rh4p-q4f7-8gmr/GHSA-rh4p-q4f7-8gmr.json index 9c03d3af6a8..acff7ae725f 100644 --- a/advisories/unreviewed/2025/03/GHSA-rh4p-q4f7-8gmr/GHSA-rh4p-q4f7-8gmr.json +++ b/advisories/unreviewed/2025/03/GHSA-rh4p-q4f7-8gmr/GHSA-rh4p-q4f7-8gmr.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-288" + "CWE-288", + "CWE-306" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/03/GHSA-vp5v-47wj-p5r2/GHSA-vp5v-47wj-p5r2.json b/advisories/unreviewed/2025/03/GHSA-vp5v-47wj-p5r2/GHSA-vp5v-47wj-p5r2.json index 884e7f17df0..57dee266ad0 100644 --- a/advisories/unreviewed/2025/03/GHSA-vp5v-47wj-p5r2/GHSA-vp5v-47wj-p5r2.json +++ b/advisories/unreviewed/2025/03/GHSA-vp5v-47wj-p5r2/GHSA-vp5v-47wj-p5r2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vp5v-47wj-p5r2", - "modified": "2025-03-06T18:31:09Z", + "modified": "2025-03-13T15:32:53Z", "published": "2025-03-06T18:31:09Z", "aliases": [ "CVE-2024-58063" @@ -18,6 +18,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/32acebca0a51f5e372536bfdc0d7d332ab749013" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/455e0f40b5352186a9095f2135d5c89255e7c39a" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/624cea89a0865a2bc3e00182a6b0f954a94328b4" @@ -26,6 +30,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/6b76bab5c257463302c9e97f5d84d524457468eb" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/85b67b4c4a0f8a6fb20cf4ef7684ff2b0cf559df" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b96371339fd9cac90f5ee4ac17ee5c4cbbdfa6f7" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/e7ceefbfd8d447abc8aca8ab993a942803522c06" diff --git a/advisories/unreviewed/2025/03/GHSA-w7x2-7963-ff8f/GHSA-w7x2-7963-ff8f.json b/advisories/unreviewed/2025/03/GHSA-w7x2-7963-ff8f/GHSA-w7x2-7963-ff8f.json new file mode 100644 index 00000000000..22d3cd952b2 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-w7x2-7963-ff8f/GHSA-w7x2-7963-ff8f.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w7x2-7963-ff8f", + "modified": "2025-03-13T15:32:58Z", + "published": "2025-03-13T15:32:58Z", + "aliases": [ + "CVE-2025-29359" + ], + "details": "Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the deviceId parameter at /goform/saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-29359" + }, + { + "type": "WEB", + "url": "https://github.com/2664521593/mycve/blob/main/Tenda/RX3/tenda_rx3_bof_6.pdf" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T14:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-wg7v-626p-h26r/GHSA-wg7v-626p-h26r.json b/advisories/unreviewed/2025/03/GHSA-wg7v-626p-h26r/GHSA-wg7v-626p-h26r.json index 8211a518c3a..54d31382dc0 100644 --- a/advisories/unreviewed/2025/03/GHSA-wg7v-626p-h26r/GHSA-wg7v-626p-h26r.json +++ b/advisories/unreviewed/2025/03/GHSA-wg7v-626p-h26r/GHSA-wg7v-626p-h26r.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wg7v-626p-h26r", - "modified": "2025-03-12T12:30:58Z", + "modified": "2025-03-13T15:32:56Z", "published": "2025-03-12T12:30:58Z", "aliases": [ "CVE-2025-21846" @@ -26,13 +26,25 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/5c928e14a2ccd99462f2351ead627b58075bb736" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/5d5b936cfa4b0d5670ca7420ef165a074bc008eb" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/5ee8da9bea70dda492d61f075658939af33d8410" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/8acbf4a88c6a98c8ed00afd1a7d1abcca9b4735e" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/a8136afca090412a36429cb6c2543c714d9c0f84" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b03782ae707cc45e65242c7cddd8e28f1c22cde5" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/03/GHSA-wxgw-xr8v-5p75/GHSA-wxgw-xr8v-5p75.json b/advisories/unreviewed/2025/03/GHSA-wxgw-xr8v-5p75/GHSA-wxgw-xr8v-5p75.json index 16227676346..fd377e06241 100644 --- a/advisories/unreviewed/2025/03/GHSA-wxgw-xr8v-5p75/GHSA-wxgw-xr8v-5p75.json +++ b/advisories/unreviewed/2025/03/GHSA-wxgw-xr8v-5p75/GHSA-wxgw-xr8v-5p75.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wxgw-xr8v-5p75", - "modified": "2025-03-06T18:31:10Z", + "modified": "2025-03-13T15:32:54Z", "published": "2025-03-06T18:31:10Z", "aliases": [ "CVE-2024-58058" @@ -14,6 +14,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58058" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1787cd67bb94b106555ffe64f887f6aa24b47010" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/2a987950df825d0144370e700dc5fb337684ffba" @@ -22,6 +26,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/40e25a3c0063935763717877bb2a814c081509ff" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/428aff8f7cfb0d9a8854477648022cef96bcab28" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6211c11fc20424bbc6d79c835c7c212b553ae898" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/77e5266e3d3faa6bdcf20d9c68a8972f6aa06522" diff --git a/advisories/unreviewed/2025/03/GHSA-xrv5-vhqh-hwxh/GHSA-xrv5-vhqh-hwxh.json b/advisories/unreviewed/2025/03/GHSA-xrv5-vhqh-hwxh/GHSA-xrv5-vhqh-hwxh.json new file mode 100644 index 00000000000..91e3f58fd35 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-xrv5-vhqh-hwxh/GHSA-xrv5-vhqh-hwxh.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xrv5-vhqh-hwxh", + "modified": "2025-03-13T15:32:58Z", + "published": "2025-03-13T15:32:58Z", + "aliases": [ + "CVE-2024-57348" + ], + "details": "Cross Site Scripting vulnerability in PecanProject pecan v.1.7.2 allows a remote attacker to execute arbitrary code via the crafted payload to the hostname, sitegroupid, lat, lon and sitename parameters.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-57348" + }, + { + "type": "WEB", + "url": "https://github.com/PecanProject/pecan/issues/3400" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-13T14:15:34Z" + } +} \ No newline at end of file