From 560df358c1cd2f3537579d5de62f1347199febce Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Sat, 22 Feb 2025 03:32:02 +0000 Subject: [PATCH] Publish Advisories GHSA-c9vm-r7mj-wm49 GHSA-v8m7-99rg-xp5c GHSA-xrw3-jj6f-ghmf --- .../GHSA-c9vm-r7mj-wm49.json | 36 +++++++++++++++++++ .../GHSA-v8m7-99rg-xp5c.json | 10 +++++- .../GHSA-xrw3-jj6f-ghmf.json | 25 +++++++++++++ 3 files changed, 70 insertions(+), 1 deletion(-) create mode 100644 advisories/unreviewed/2025/02/GHSA-c9vm-r7mj-wm49/GHSA-c9vm-r7mj-wm49.json create mode 100644 advisories/unreviewed/2025/02/GHSA-xrw3-jj6f-ghmf/GHSA-xrw3-jj6f-ghmf.json diff --git a/advisories/unreviewed/2025/02/GHSA-c9vm-r7mj-wm49/GHSA-c9vm-r7mj-wm49.json b/advisories/unreviewed/2025/02/GHSA-c9vm-r7mj-wm49/GHSA-c9vm-r7mj-wm49.json new file mode 100644 index 00000000000..648ceb5ab0c --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-c9vm-r7mj-wm49/GHSA-c9vm-r7mj-wm49.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c9vm-r7mj-wm49", + "modified": "2025-02-22T03:30:37Z", + "published": "2025-02-22T03:30:37Z", + "aliases": [ + "CVE-2024-22341" + ], + "details": "IBM Watson Query on Cloud Pak for Data 4.0.0 through 4.0.9, 4.5.0 through 4.5.3, 4.6.0 through 4.6.6, 4.7.0 through 4.7.4, and 4.8.0 through 4.8.7 could allow unauthorized data access from a remote data source object due to improper privilege management.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-22341" + }, + { + "type": "WEB", + "url": "https://www.ibm.com/support/pages/node/7183851" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-269" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-22T01:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-v8m7-99rg-xp5c/GHSA-v8m7-99rg-xp5c.json b/advisories/unreviewed/2025/02/GHSA-v8m7-99rg-xp5c/GHSA-v8m7-99rg-xp5c.json index 3f2a26a7155..352db703a42 100644 --- a/advisories/unreviewed/2025/02/GHSA-v8m7-99rg-xp5c/GHSA-v8m7-99rg-xp5c.json +++ b/advisories/unreviewed/2025/02/GHSA-v8m7-99rg-xp5c/GHSA-v8m7-99rg-xp5c.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-v8m7-99rg-xp5c", - "modified": "2025-02-21T21:32:07Z", + "modified": "2025-02-22T03:30:37Z", "published": "2025-02-21T15:32:02Z", "aliases": [ "CVE-2025-26794" @@ -50,6 +50,14 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2025/02/19/1" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2025/02/21/4" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2025/02/21/5" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-xrw3-jj6f-ghmf/GHSA-xrw3-jj6f-ghmf.json b/advisories/unreviewed/2025/02/GHSA-xrw3-jj6f-ghmf/GHSA-xrw3-jj6f-ghmf.json new file mode 100644 index 00000000000..382fd1bdf21 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-xrw3-jj6f-ghmf/GHSA-xrw3-jj6f-ghmf.json @@ -0,0 +1,25 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xrw3-jj6f-ghmf", + "modified": "2025-02-22T03:30:37Z", + "published": "2025-02-22T03:30:37Z", + "aliases": [ + "CVE-2023-4261" + ], + "details": "Rejected reason: This CVE ID is Rejected because the issue was not a vulnerability. The data field reported is not attacker controlled.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-4261" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-22T03:15:22Z" + } +} \ No newline at end of file