From 5886347b699dfb85514d87afffa68228fc44f888 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Wed, 28 Feb 2024 01:15:45 +0000 Subject: [PATCH] Publish Advisories GHSA-2wpx-v6qf-p32x GHSA-rq69-pg5q-r2x8 --- .../04/GHSA-2wpx-v6qf-p32x/GHSA-2wpx-v6qf-p32x.json | 11 +++++++---- .../04/GHSA-rq69-pg5q-r2x8/GHSA-rq69-pg5q-r2x8.json | 11 +++++++---- 2 files changed, 14 insertions(+), 8 deletions(-) diff --git a/advisories/unreviewed/2022/04/GHSA-2wpx-v6qf-p32x/GHSA-2wpx-v6qf-p32x.json b/advisories/unreviewed/2022/04/GHSA-2wpx-v6qf-p32x/GHSA-2wpx-v6qf-p32x.json index f1ad86e8874..29dfb6ec7de 100644 --- a/advisories/unreviewed/2022/04/GHSA-2wpx-v6qf-p32x/GHSA-2wpx-v6qf-p32x.json +++ b/advisories/unreviewed/2022/04/GHSA-2wpx-v6qf-p32x/GHSA-2wpx-v6qf-p32x.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2wpx-v6qf-p32x", - "modified": "2022-04-21T01:57:53Z", + "modified": "2024-02-28T01:13:41Z", "published": "2022-04-21T01:57:53Z", "aliases": [ "CVE-2010-5304" ], "details": "A NULL pointer dereference flaw was found in the way LibVNCServer before 0.9.9 handled certain ClientCutText message. A remote attacker could use this flaw to crash the VNC server by sending a specially crafted ClientCutText message from a VNC client.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2020-02-05T20:15:00Z" diff --git a/advisories/unreviewed/2022/04/GHSA-rq69-pg5q-r2x8/GHSA-rq69-pg5q-r2x8.json b/advisories/unreviewed/2022/04/GHSA-rq69-pg5q-r2x8/GHSA-rq69-pg5q-r2x8.json index 1bd6fab76ee..13a91cf6afd 100644 --- a/advisories/unreviewed/2022/04/GHSA-rq69-pg5q-r2x8/GHSA-rq69-pg5q-r2x8.json +++ b/advisories/unreviewed/2022/04/GHSA-rq69-pg5q-r2x8/GHSA-rq69-pg5q-r2x8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-rq69-pg5q-r2x8", - "modified": "2022-04-21T01:57:53Z", + "modified": "2024-02-28T01:13:35Z", "published": "2022-04-21T01:57:53Z", "aliases": [ "CVE-2010-3048" ], "details": "Cisco Unified Personal Communicator 7.0 (1.13056) does not free allocated memory for received data and does not perform validation if memory allocation is successful, causing a remote denial of service condition.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2020-01-16T18:15:00Z"