diff --git a/advisories/unreviewed/2022/05/GHSA-5g9m-4pr5-x8v5/GHSA-5g9m-4pr5-x8v5.json b/advisories/unreviewed/2022/05/GHSA-5g9m-4pr5-x8v5/GHSA-5g9m-4pr5-x8v5.json index b802099dcbc..7ed9105d032 100644 --- a/advisories/unreviewed/2022/05/GHSA-5g9m-4pr5-x8v5/GHSA-5g9m-4pr5-x8v5.json +++ b/advisories/unreviewed/2022/05/GHSA-5g9m-4pr5-x8v5/GHSA-5g9m-4pr5-x8v5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5g9m-4pr5-x8v5", - "modified": "2022-05-17T04:07:32Z", + "modified": "2024-11-13T18:31:51Z", "published": "2022-05-17T04:07:32Z", "aliases": [ "CVE-2014-2120" ], "details": "Cross-site scripting (XSS) vulnerability in the WebVPN login page in Cisco Adaptive Security Appliance (ASA) Software allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCun19025.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ diff --git a/advisories/unreviewed/2023/10/GHSA-26rx-wm6q-f3g4/GHSA-26rx-wm6q-f3g4.json b/advisories/unreviewed/2023/10/GHSA-26rx-wm6q-f3g4/GHSA-26rx-wm6q-f3g4.json index b9e24872e15..c93a6668867 100644 --- a/advisories/unreviewed/2023/10/GHSA-26rx-wm6q-f3g4/GHSA-26rx-wm6q-f3g4.json +++ b/advisories/unreviewed/2023/10/GHSA-26rx-wm6q-f3g4/GHSA-26rx-wm6q-f3g4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-26rx-wm6q-f3g4", - "modified": "2024-04-04T08:46:52Z", + "modified": "2024-11-13T18:31:51Z", "published": "2023-10-19T00:30:19Z", "aliases": [ "CVE-2023-34437" @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-200" + "CWE-200", + "CWE-732" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/01/GHSA-wmcg-jxc8-7m7p/GHSA-wmcg-jxc8-7m7p.json b/advisories/unreviewed/2024/01/GHSA-wmcg-jxc8-7m7p/GHSA-wmcg-jxc8-7m7p.json index 77e979a1ffe..15d9481a49a 100644 --- a/advisories/unreviewed/2024/01/GHSA-wmcg-jxc8-7m7p/GHSA-wmcg-jxc8-7m7p.json +++ b/advisories/unreviewed/2024/01/GHSA-wmcg-jxc8-7m7p/GHSA-wmcg-jxc8-7m7p.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wmcg-jxc8-7m7p", - "modified": "2024-01-30T09:30:34Z", + "modified": "2024-11-13T18:31:51Z", "published": "2024-01-30T09:30:34Z", "aliases": [ "CVE-2023-7225" diff --git a/advisories/unreviewed/2024/02/GHSA-57p5-7r24-7vg9/GHSA-57p5-7r24-7vg9.json b/advisories/unreviewed/2024/02/GHSA-57p5-7r24-7vg9/GHSA-57p5-7r24-7vg9.json index 32b4f6e62a0..3d6ea46245d 100644 --- a/advisories/unreviewed/2024/02/GHSA-57p5-7r24-7vg9/GHSA-57p5-7r24-7vg9.json +++ b/advisories/unreviewed/2024/02/GHSA-57p5-7r24-7vg9/GHSA-57p5-7r24-7vg9.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-404" ], "severity": "LOW", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/03/GHSA-9q37-6mpp-rv7v/GHSA-9q37-6mpp-rv7v.json b/advisories/unreviewed/2024/03/GHSA-9q37-6mpp-rv7v/GHSA-9q37-6mpp-rv7v.json index 8951c54a243..563eb2b88c6 100644 --- a/advisories/unreviewed/2024/03/GHSA-9q37-6mpp-rv7v/GHSA-9q37-6mpp-rv7v.json +++ b/advisories/unreviewed/2024/03/GHSA-9q37-6mpp-rv7v/GHSA-9q37-6mpp-rv7v.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9q37-6mpp-rv7v", - "modified": "2024-03-13T21:31:03Z", + "modified": "2024-11-13T18:31:51Z", "published": "2024-03-13T21:31:03Z", "aliases": [ "CVE-2024-28662" ], "details": "A Cross Site Scripting vulnerability exists in Piwigo before 14.3.0 script because of missing sanitization in create_tag in admin/include/functions.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-13T21:16:01Z" diff --git a/advisories/unreviewed/2024/06/GHSA-vxf3-94jj-jhmp/GHSA-vxf3-94jj-jhmp.json b/advisories/unreviewed/2024/06/GHSA-vxf3-94jj-jhmp/GHSA-vxf3-94jj-jhmp.json index dd28e53b6a8..6b662d2d7b1 100644 --- a/advisories/unreviewed/2024/06/GHSA-vxf3-94jj-jhmp/GHSA-vxf3-94jj-jhmp.json +++ b/advisories/unreviewed/2024/06/GHSA-vxf3-94jj-jhmp/GHSA-vxf3-94jj-jhmp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vxf3-94jj-jhmp", - "modified": "2024-06-24T00:34:02Z", + "modified": "2024-11-13T18:31:52Z", "published": "2024-06-24T00:34:02Z", "aliases": [ "CVE-2024-39334" ], "details": "MENDELSON AS4 before 2024 B376 has a client-side vulnerability when a trading partner provides prepared XML data. When a victim opens the details of this transaction in the client, files can be written to the computer on which the client process is running. (The server process is not affected.)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-502" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-23T23:15:09Z" diff --git a/advisories/unreviewed/2024/07/GHSA-ccf5-hqv5-p85q/GHSA-ccf5-hqv5-p85q.json b/advisories/unreviewed/2024/07/GHSA-ccf5-hqv5-p85q/GHSA-ccf5-hqv5-p85q.json index db79580bff6..37dd528d838 100644 --- a/advisories/unreviewed/2024/07/GHSA-ccf5-hqv5-p85q/GHSA-ccf5-hqv5-p85q.json +++ b/advisories/unreviewed/2024/07/GHSA-ccf5-hqv5-p85q/GHSA-ccf5-hqv5-p85q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-ccf5-hqv5-p85q", - "modified": "2024-07-19T18:31:21Z", + "modified": "2024-11-13T18:31:52Z", "published": "2024-07-19T18:31:21Z", "aliases": [ "CVE-2024-29080" ], "details": "Potential vulnerabilities have been identified in the HP Display Control software component within the HP Application Enabling Software Driver which might allow escalation of privilege.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-281" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-19T17:15:03Z" diff --git a/advisories/unreviewed/2024/10/GHSA-64qp-9xf4-2pch/GHSA-64qp-9xf4-2pch.json b/advisories/unreviewed/2024/10/GHSA-64qp-9xf4-2pch/GHSA-64qp-9xf4-2pch.json index a21830edb6b..133114b81d1 100644 --- a/advisories/unreviewed/2024/10/GHSA-64qp-9xf4-2pch/GHSA-64qp-9xf4-2pch.json +++ b/advisories/unreviewed/2024/10/GHSA-64qp-9xf4-2pch/GHSA-64qp-9xf4-2pch.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-64qp-9xf4-2pch", - "modified": "2024-10-21T18:30:58Z", + "modified": "2024-11-13T18:31:52Z", "published": "2024-10-21T18:30:58Z", "aliases": [ "CVE-2024-49937" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: cfg80211: Set correct chandef when starting CAC\n\nWhen starting CAC in a mode other than AP mode, it return a\n\"WARNING: CPU: 0 PID: 63 at cfg80211_chandef_dfs_usable+0x20/0xaf [cfg80211]\"\ncaused by the chandef.chan being null at the end of CAC.\n\nSolution: Ensure the channel definition is set for the different modes\nwhen starting CAC to avoid getting a NULL 'chan' at the end of CAC.\n\n Call Trace:\n ? show_regs.part.0+0x14/0x16\n ? __warn+0x67/0xc0\n ? cfg80211_chandef_dfs_usable+0x20/0xaf [cfg80211]\n ? report_bug+0xa7/0x130\n ? exc_overflow+0x30/0x30\n ? handle_bug+0x27/0x50\n ? exc_invalid_op+0x18/0x60\n ? handle_exception+0xf6/0xf6\n ? exc_overflow+0x30/0x30\n ? cfg80211_chandef_dfs_usable+0x20/0xaf [cfg80211]\n ? exc_overflow+0x30/0x30\n ? cfg80211_chandef_dfs_usable+0x20/0xaf [cfg80211]\n ? regulatory_propagate_dfs_state.cold+0x1b/0x4c [cfg80211]\n ? cfg80211_propagate_cac_done_wk+0x1a/0x30 [cfg80211]\n ? process_one_work+0x165/0x280\n ? worker_thread+0x120/0x3f0\n ? kthread+0xc2/0xf0\n ? process_one_work+0x280/0x280\n ? kthread_complete_and_exit+0x20/0x20\n ? ret_from_fork+0x19/0x24\n\n[shorten subject, remove OCB, reorder cases to match previous list]", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -43,7 +46,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-10-21T18:15:15Z" diff --git a/advisories/unreviewed/2024/10/GHSA-r9vf-qqqr-747x/GHSA-r9vf-qqqr-747x.json b/advisories/unreviewed/2024/10/GHSA-r9vf-qqqr-747x/GHSA-r9vf-qqqr-747x.json index 6b7760624f8..823a4adc09c 100644 --- a/advisories/unreviewed/2024/10/GHSA-r9vf-qqqr-747x/GHSA-r9vf-qqqr-747x.json +++ b/advisories/unreviewed/2024/10/GHSA-r9vf-qqqr-747x/GHSA-r9vf-qqqr-747x.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-400" + "CWE-400", + "CWE-770" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/10/GHSA-w7r5-57r3-mcrc/GHSA-w7r5-57r3-mcrc.json b/advisories/unreviewed/2024/10/GHSA-w7r5-57r3-mcrc/GHSA-w7r5-57r3-mcrc.json index b5853abb73a..3a1c90e700b 100644 --- a/advisories/unreviewed/2024/10/GHSA-w7r5-57r3-mcrc/GHSA-w7r5-57r3-mcrc.json +++ b/advisories/unreviewed/2024/10/GHSA-w7r5-57r3-mcrc/GHSA-w7r5-57r3-mcrc.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-w7r5-57r3-mcrc", - "modified": "2024-10-21T18:30:58Z", + "modified": "2024-11-13T18:31:52Z", "published": "2024-10-21T18:30:58Z", "aliases": [ "CVE-2024-49939" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: rtw89: avoid to add interface to list twice when SER\n\nIf SER L2 occurs during the WoWLAN resume flow, the add interface flow\nis triggered by ieee80211_reconfig(). However, due to\nrtw89_wow_resume() return failure, it will cause the add interface flow\nto be executed again, resulting in a double add list and causing a kernel\npanic. Therefore, we have added a check to prevent double adding of the\nlist.\n\nlist_add double add: new=ffff99d6992e2010, prev=ffff99d6992e2010, next=ffff99d695302628.\n------------[ cut here ]------------\nkernel BUG at lib/list_debug.c:37!\ninvalid opcode: 0000 [#1] PREEMPT SMP NOPTI\nCPU: 0 PID: 9 Comm: kworker/0:1 Tainted: G W O 6.6.30-02659-gc18865c4dfbd #1 770df2933251a0e3c888ba69d1053a817a6376a7\nHardware name: HP Grunt/Grunt, BIOS Google_Grunt.11031.169.0 06/24/2021\nWorkqueue: events_freezable ieee80211_restart_work [mac80211]\nRIP: 0010:__list_add_valid_or_report+0x5e/0xb0\nCode: c7 74 18 48 39 ce 74 13 b0 01 59 5a 5e 5f 41 58 41 59 41 5a 5d e9 e2 d6 03 00 cc 48 c7 c7 8d 4f 17 83 48 89 c2 e8 02 c0 00 00 <0f> 0b 48 c7 c7 aa 8c 1c 83 e8 f4 bf 00 00 0f 0b 48 c7 c7 c8 bc 12\nRSP: 0018:ffffa91b8007bc50 EFLAGS: 00010246\nRAX: 0000000000000058 RBX: ffff99d6992e0900 RCX: a014d76c70ef3900\nRDX: ffffa91b8007bae8 RSI: 00000000ffffdfff RDI: 0000000000000001\nRBP: ffffa91b8007bc88 R08: 0000000000000000 R09: ffffa91b8007bae0\nR10: 00000000ffffdfff R11: ffffffff83a79800 R12: ffff99d695302060\nR13: ffff99d695300900 R14: ffff99d6992e1be0 R15: ffff99d6992e2010\nFS: 0000000000000000(0000) GS:ffff99d6aac00000(0000) knlGS:0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: 000078fbdba43480 CR3: 000000010e464000 CR4: 00000000001506f0\nCall Trace:\n \n ? __die_body+0x1f/0x70\n ? die+0x3d/0x60\n ? do_trap+0xa4/0x110\n ? __list_add_valid_or_report+0x5e/0xb0\n ? do_error_trap+0x6d/0x90\n ? __list_add_valid_or_report+0x5e/0xb0\n ? handle_invalid_op+0x30/0x40\n ? __list_add_valid_or_report+0x5e/0xb0\n ? exc_invalid_op+0x3c/0x50\n ? asm_exc_invalid_op+0x16/0x20\n ? __list_add_valid_or_report+0x5e/0xb0\n rtw89_ops_add_interface+0x309/0x310 [rtw89_core 7c32b1ee6854761c0321027c8a58c5160e41f48f]\n drv_add_interface+0x5c/0x130 [mac80211 83e989e6e616bd5b4b8a2b0a9f9352a2c385a3bc]\n ieee80211_reconfig+0x241/0x13d0 [mac80211 83e989e6e616bd5b4b8a2b0a9f9352a2c385a3bc]\n ? finish_wait+0x3e/0x90\n ? synchronize_rcu_expedited+0x174/0x260\n ? sync_rcu_exp_done_unlocked+0x50/0x50\n ? wake_bit_function+0x40/0x40\n ieee80211_restart_work+0xf0/0x140 [mac80211 83e989e6e616bd5b4b8a2b0a9f9352a2c385a3bc]\n process_scheduled_works+0x1e5/0x480\n worker_thread+0xea/0x1e0\n kthread+0xdb/0x110\n ? move_linked_works+0x90/0x90\n ? kthread_associate_blkcg+0xa0/0xa0\n ret_from_fork+0x3b/0x50\n ? kthread_associate_blkcg+0xa0/0xa0\n ret_from_fork_asm+0x11/0x20\n \nModules linked in: dm_integrity async_xor xor async_tx lz4 lz4_compress zstd zstd_compress zram zsmalloc rfcomm cmac uinput algif_hash algif_skcipher af_alg btusb btrtl iio_trig_hrtimer industrialio_sw_trigger btmtk industrialio_configfs btbcm btintel uvcvideo videobuf2_vmalloc iio_trig_sysfs videobuf2_memops videobuf2_v4l2 videobuf2_common uvc snd_hda_codec_hdmi veth snd_hda_intel snd_intel_dspcfg acpi_als snd_hda_codec industrialio_triggered_buffer kfifo_buf snd_hwdep industrialio i2c_piix4 snd_hda_core designware_i2s ip6table_nat snd_soc_max98357a xt_MASQUERADE xt_cgroup snd_soc_acp_rt5682_mach fuse rtw89_8922ae(O) rtw89_8922a(O) rtw89_pci(O) rtw89_core(O) 8021q mac80211(O) bluetooth ecdh_generic ecc cfg80211 r8152 mii joydev\ngsmi: Log Shutdown Reason 0x03\n---[ end trace 0000000000000000 ]---", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-10-21T18:15:15Z" diff --git a/advisories/unreviewed/2024/11/GHSA-225p-gh6f-c6xc/GHSA-225p-gh6f-c6xc.json b/advisories/unreviewed/2024/11/GHSA-225p-gh6f-c6xc/GHSA-225p-gh6f-c6xc.json new file mode 100644 index 00000000000..371983a8c05 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-225p-gh6f-c6xc/GHSA-225p-gh6f-c6xc.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-225p-gh6f-c6xc", + "modified": "2024-11-13T18:32:04Z", + "published": "2024-11-13T18:32:04Z", + "aliases": [ + "CVE-2023-35686" + ], + "details": "In PVRSRVRGXKickTA3DKM of rgxta3d.c, there is a possible arbitrary code execution due to improper input validation. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-35686" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:19Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-2m7j-4ff8-h52q/GHSA-2m7j-4ff8-h52q.json b/advisories/unreviewed/2024/11/GHSA-2m7j-4ff8-h52q/GHSA-2m7j-4ff8-h52q.json index fdaa105234d..61a1d51d303 100644 --- a/advisories/unreviewed/2024/11/GHSA-2m7j-4ff8-h52q/GHSA-2m7j-4ff8-h52q.json +++ b/advisories/unreviewed/2024/11/GHSA-2m7j-4ff8-h52q/GHSA-2m7j-4ff8-h52q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2m7j-4ff8-h52q", - "modified": "2024-11-08T18:30:50Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-08T18:30:50Z", "aliases": [ "CVE-2024-46948" ], "details": "Northern.tech Mender before 3.6.5 and 3.7.x before 3.7.5 has Incorrect Access Control.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-08T16:15:24Z" diff --git a/advisories/unreviewed/2024/11/GHSA-2p4v-cp2q-5hx3/GHSA-2p4v-cp2q-5hx3.json b/advisories/unreviewed/2024/11/GHSA-2p4v-cp2q-5hx3/GHSA-2p4v-cp2q-5hx3.json new file mode 100644 index 00000000000..fc0921b0aac --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-2p4v-cp2q-5hx3/GHSA-2p4v-cp2q-5hx3.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2p4v-cp2q-5hx3", + "modified": "2024-11-13T18:32:05Z", + "published": "2024-11-13T18:32:05Z", + "aliases": [ + "CVE-2024-43089" + ], + "details": "In updateInternal of MediaProvider.java , there is a possible access of another app's files due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43089" + }, + { + "type": "WEB", + "url": "https://android.googlesource.com/platform/packages/providers/MediaProvider/+/33ff6a663eea1fcdd2b422b98722c1dee48a7f6a" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:21Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-2q9p-fqxr-c55c/GHSA-2q9p-fqxr-c55c.json b/advisories/unreviewed/2024/11/GHSA-2q9p-fqxr-c55c/GHSA-2q9p-fqxr-c55c.json index 504f7848fee..e955fc23741 100644 --- a/advisories/unreviewed/2024/11/GHSA-2q9p-fqxr-c55c/GHSA-2q9p-fqxr-c55c.json +++ b/advisories/unreviewed/2024/11/GHSA-2q9p-fqxr-c55c/GHSA-2q9p-fqxr-c55c.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-88" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-2r7c-gmrp-mxwv/GHSA-2r7c-gmrp-mxwv.json b/advisories/unreviewed/2024/11/GHSA-2r7c-gmrp-mxwv/GHSA-2r7c-gmrp-mxwv.json index 1a1a998ec12..d371c336c1a 100644 --- a/advisories/unreviewed/2024/11/GHSA-2r7c-gmrp-mxwv/GHSA-2r7c-gmrp-mxwv.json +++ b/advisories/unreviewed/2024/11/GHSA-2r7c-gmrp-mxwv/GHSA-2r7c-gmrp-mxwv.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-2rff-9j4g-r9gc/GHSA-2rff-9j4g-r9gc.json b/advisories/unreviewed/2024/11/GHSA-2rff-9j4g-r9gc/GHSA-2rff-9j4g-r9gc.json new file mode 100644 index 00000000000..da3bedddb1a --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-2rff-9j4g-r9gc/GHSA-2rff-9j4g-r9gc.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2rff-9j4g-r9gc", + "modified": "2024-11-13T18:32:02Z", + "published": "2024-11-13T18:32:02Z", + "aliases": [ + "CVE-2024-50972" + ], + "details": "A SQL injection vulnerability in printtool.php of Itsourcecode Construction Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the borrow_id parameter.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50972" + }, + { + "type": "WEB", + "url": "https://github.com/Akhlak2511/CVE-2024-50972" + }, + { + "type": "WEB", + "url": "https://itsourcecode.com/free-projects/php-project/construction-management-system-project-in-php-with-source-code" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T16:15:19Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-34p7-67p6-m2pf/GHSA-34p7-67p6-m2pf.json b/advisories/unreviewed/2024/11/GHSA-34p7-67p6-m2pf/GHSA-34p7-67p6-m2pf.json index 0f97eda187a..c12e27c3ae0 100644 --- a/advisories/unreviewed/2024/11/GHSA-34p7-67p6-m2pf/GHSA-34p7-67p6-m2pf.json +++ b/advisories/unreviewed/2024/11/GHSA-34p7-67p6-m2pf/GHSA-34p7-67p6-m2pf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-34p7-67p6-m2pf", - "modified": "2024-11-12T15:30:43Z", + "modified": "2024-11-13T18:31:54Z", "published": "2024-11-12T15:30:43Z", "aliases": [ "CVE-2024-45289" ], "details": "The fetch(3) library uses environment variables for passing certain information, including the revocation file pathname. The environment variable name used by fetch(1) to pass the filename to the library was incorrect, in effect ignoring the option.\n\nFetch would still connect to a host presenting a certificate included in the revocation file passed to the --crl option.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ "CWE-665" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-12T15:15:10Z" diff --git a/advisories/unreviewed/2024/11/GHSA-3qg5-qhw5-vc9x/GHSA-3qg5-qhw5-vc9x.json b/advisories/unreviewed/2024/11/GHSA-3qg5-qhw5-vc9x/GHSA-3qg5-qhw5-vc9x.json new file mode 100644 index 00000000000..757b7c3c22d --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-3qg5-qhw5-vc9x/GHSA-3qg5-qhw5-vc9x.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3qg5-qhw5-vc9x", + "modified": "2024-11-13T18:32:05Z", + "published": "2024-11-13T18:32:04Z", + "aliases": [ + "CVE-2024-40661" + ], + "details": "In mayAdminGrantPermission of AdminRestrictedPermissionsUtils.java, there is a possible way to access the microphone due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-40661" + }, + { + "type": "WEB", + "url": "https://android.googlesource.com/platform/packages/modules/Permission/+/ffd81f212b5594b498f0ba07645c7a181540e494" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:20Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-3x82-hxvx-2rv2/GHSA-3x82-hxvx-2rv2.json b/advisories/unreviewed/2024/11/GHSA-3x82-hxvx-2rv2/GHSA-3x82-hxvx-2rv2.json index 72ed2c7da72..be0c289fc3e 100644 --- a/advisories/unreviewed/2024/11/GHSA-3x82-hxvx-2rv2/GHSA-3x82-hxvx-2rv2.json +++ b/advisories/unreviewed/2024/11/GHSA-3x82-hxvx-2rv2/GHSA-3x82-hxvx-2rv2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-3x82-hxvx-2rv2", - "modified": "2024-11-07T12:30:35Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-07T12:30:35Z", "aliases": [ "CVE-2024-50170" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: bcmasp: fix potential memory leak in bcmasp_xmit()\n\nThe bcmasp_xmit() returns NETDEV_TX_OK without freeing skb\nin case of mapping fails, add dev_kfree_skb() to fix it.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-401" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-07T10:15:08Z" diff --git a/advisories/unreviewed/2024/11/GHSA-4225-4fvr-rghw/GHSA-4225-4fvr-rghw.json b/advisories/unreviewed/2024/11/GHSA-4225-4fvr-rghw/GHSA-4225-4fvr-rghw.json index a37e2067207..23320ca99d3 100644 --- a/advisories/unreviewed/2024/11/GHSA-4225-4fvr-rghw/GHSA-4225-4fvr-rghw.json +++ b/advisories/unreviewed/2024/11/GHSA-4225-4fvr-rghw/GHSA-4225-4fvr-rghw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4225-4fvr-rghw", - "modified": "2024-11-12T21:30:55Z", + "modified": "2024-11-13T18:31:59Z", "published": "2024-11-12T21:30:55Z", "aliases": [ "CVE-2024-11111" ], "details": "Inappropriate implementation in Autofill in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-12T21:15:11Z" diff --git a/advisories/unreviewed/2024/11/GHSA-47xc-86q6-rh6j/GHSA-47xc-86q6-rh6j.json b/advisories/unreviewed/2024/11/GHSA-47xc-86q6-rh6j/GHSA-47xc-86q6-rh6j.json new file mode 100644 index 00000000000..f21456b6dd9 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-47xc-86q6-rh6j/GHSA-47xc-86q6-rh6j.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-47xc-86q6-rh6j", + "modified": "2024-11-13T18:32:04Z", + "published": "2024-11-13T18:32:04Z", + "aliases": [ + "CVE-2024-8049" + ], + "details": "In Progress Telerik Document Processing Libraries, versions prior to 2024 Q4 (2024.4.1106), importing a document with unsupported features can lead to excessive processing, leading to excessive use of computing resources leaving the application process unavailable.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8049" + }, + { + "type": "WEB", + "url": "https://docs.telerik.com/devtools/document-processing/knowledge-base/excessive-allocation-cve-2024-8049" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-834" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T16:15:21Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-4f7g-mqhx-8h4r/GHSA-4f7g-mqhx-8h4r.json b/advisories/unreviewed/2024/11/GHSA-4f7g-mqhx-8h4r/GHSA-4f7g-mqhx-8h4r.json index b244c0b4eaa..a4b7f5c514b 100644 --- a/advisories/unreviewed/2024/11/GHSA-4f7g-mqhx-8h4r/GHSA-4f7g-mqhx-8h4r.json +++ b/advisories/unreviewed/2024/11/GHSA-4f7g-mqhx-8h4r/GHSA-4f7g-mqhx-8h4r.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4f7g-mqhx-8h4r", - "modified": "2024-11-07T12:30:35Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-07T12:30:35Z", "aliases": [ "CVE-2024-50172" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/bnxt_re: Fix a possible memory leak\n\nIn bnxt_re_setup_chip_ctx() when bnxt_qplib_map_db_bar() fails\ndriver is not freeing the memory allocated for \"rdev->chip_ctx\".", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-401" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-07T10:15:08Z" diff --git a/advisories/unreviewed/2024/11/GHSA-4m65-6q77-h9mp/GHSA-4m65-6q77-h9mp.json b/advisories/unreviewed/2024/11/GHSA-4m65-6q77-h9mp/GHSA-4m65-6q77-h9mp.json new file mode 100644 index 00000000000..5c01d7bac38 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-4m65-6q77-h9mp/GHSA-4m65-6q77-h9mp.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4m65-6q77-h9mp", + "modified": "2024-11-13T18:32:04Z", + "published": "2024-11-13T18:32:04Z", + "aliases": [ + "CVE-2024-40671" + ], + "details": "In DevmemIntChangeSparse2 of devicemem_server.c, there is a possible way to achieve arbitrary code execution due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-40671" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:20Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-4mww-gp9h-h59m/GHSA-4mww-gp9h-h59m.json b/advisories/unreviewed/2024/11/GHSA-4mww-gp9h-h59m/GHSA-4mww-gp9h-h59m.json index 533c99bfc7e..117f77f60c6 100644 --- a/advisories/unreviewed/2024/11/GHSA-4mww-gp9h-h59m/GHSA-4mww-gp9h-h59m.json +++ b/advisories/unreviewed/2024/11/GHSA-4mww-gp9h-h59m/GHSA-4mww-gp9h-h59m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4mww-gp9h-h59m", - "modified": "2024-11-12T21:30:55Z", + "modified": "2024-11-13T18:31:59Z", "published": "2024-11-12T21:30:55Z", "aliases": [ "CVE-2024-11110" ], "details": "Inappropriate implementation in Extensions in Google Chrome prior to 131.0.6778.69 allowed a remote attacker to bypass site isolation via a crafted Chrome Extension. (Chromium security severity: High)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-12T21:15:10Z" diff --git a/advisories/unreviewed/2024/11/GHSA-556r-96q6-ppp2/GHSA-556r-96q6-ppp2.json b/advisories/unreviewed/2024/11/GHSA-556r-96q6-ppp2/GHSA-556r-96q6-ppp2.json new file mode 100644 index 00000000000..cf077369ea6 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-556r-96q6-ppp2/GHSA-556r-96q6-ppp2.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-556r-96q6-ppp2", + "modified": "2024-11-13T18:32:04Z", + "published": "2024-11-13T18:32:04Z", + "aliases": [ + "CVE-2024-9413" + ], + "details": "The transport_message_handler function in SCP-Firmware release versions 2.11.0-2.15.0 does not properly handle errors, potentially allowing an Application Processor (AP) to cause a buffer overflow in System Control Processor (SCP) firmware.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9413" + }, + { + "type": "WEB", + "url": "https://developer.arm.com/Arm%20Security%20Center/SCP-Firmware%20Vulnerability" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-755" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T17:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-56rv-pwm3-v8q5/GHSA-56rv-pwm3-v8q5.json b/advisories/unreviewed/2024/11/GHSA-56rv-pwm3-v8q5/GHSA-56rv-pwm3-v8q5.json index ed576d93bb7..003f3f5daba 100644 --- a/advisories/unreviewed/2024/11/GHSA-56rv-pwm3-v8q5/GHSA-56rv-pwm3-v8q5.json +++ b/advisories/unreviewed/2024/11/GHSA-56rv-pwm3-v8q5/GHSA-56rv-pwm3-v8q5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-56rv-pwm3-v8q5", - "modified": "2024-11-09T12:30:49Z", + "modified": "2024-11-13T18:31:54Z", "published": "2024-11-09T12:30:49Z", "aliases": [ "CVE-2024-50233" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nstaging: iio: frequency: ad9832: fix division by zero in ad9832_calc_freqreg()\n\nIn the ad9832_write_frequency() function, clk_get_rate() might return 0.\nThis can lead to a division by zero when calling ad9832_calc_freqreg().\nThe check if (fout > (clk_get_rate(st->mclk) / 2)) does not protect\nagainst the case when fout is 0. The ad9832_write_frequency() function\nis called from ad9832_write(), and fout is derived from a text buffer,\nwhich can contain any value.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -49,9 +52,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-369" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-09T11:15:09Z" diff --git a/advisories/unreviewed/2024/11/GHSA-56xh-m8w2-qh6f/GHSA-56xh-m8w2-qh6f.json b/advisories/unreviewed/2024/11/GHSA-56xh-m8w2-qh6f/GHSA-56xh-m8w2-qh6f.json index 366a5b3e9b1..40adacbd35e 100644 --- a/advisories/unreviewed/2024/11/GHSA-56xh-m8w2-qh6f/GHSA-56xh-m8w2-qh6f.json +++ b/advisories/unreviewed/2024/11/GHSA-56xh-m8w2-qh6f/GHSA-56xh-m8w2-qh6f.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-5fjh-75hm-33xj/GHSA-5fjh-75hm-33xj.json b/advisories/unreviewed/2024/11/GHSA-5fjh-75hm-33xj/GHSA-5fjh-75hm-33xj.json new file mode 100644 index 00000000000..75c79e66841 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-5fjh-75hm-33xj/GHSA-5fjh-75hm-33xj.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5fjh-75hm-33xj", + "modified": "2024-11-13T18:32:01Z", + "published": "2024-11-13T18:32:01Z", + "aliases": [ + "CVE-2024-11175" + ], + "details": "A vulnerability was found in Public CMS 5.202406.d and classified as problematic. This issue affects some unknown processing of the file /admin/cmsVote/save of the component Voting Management. The manipulation leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The patch is named b9530b9cc1f5cfdad4b637874f59029a6283a65c. It is recommended to apply a patch to fix this issue.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11175" + }, + { + "type": "WEB", + "url": "https://gitee.com/sanluan/PublicCMS/commit/b9530b9cc1f5cfdad4b637874f59029a6283a65c" + }, + { + "type": "WEB", + "url": "https://gitee.com/sanluan/PublicCMS/issues/IB2BUV" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.284351" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.284351" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T16:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-5g36-2x7r-j898/GHSA-5g36-2x7r-j898.json b/advisories/unreviewed/2024/11/GHSA-5g36-2x7r-j898/GHSA-5g36-2x7r-j898.json index 4e6bb83dbf1..968e38d2aff 100644 --- a/advisories/unreviewed/2024/11/GHSA-5g36-2x7r-j898/GHSA-5g36-2x7r-j898.json +++ b/advisories/unreviewed/2024/11/GHSA-5g36-2x7r-j898/GHSA-5g36-2x7r-j898.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-5jf7-53jh-gpxm/GHSA-5jf7-53jh-gpxm.json b/advisories/unreviewed/2024/11/GHSA-5jf7-53jh-gpxm/GHSA-5jf7-53jh-gpxm.json index 076468c079e..01f38419b88 100644 --- a/advisories/unreviewed/2024/11/GHSA-5jf7-53jh-gpxm/GHSA-5jf7-53jh-gpxm.json +++ b/advisories/unreviewed/2024/11/GHSA-5jf7-53jh-gpxm/GHSA-5jf7-53jh-gpxm.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5jf7-53jh-gpxm", - "modified": "2024-11-13T00:30:48Z", + "modified": "2024-11-13T18:31:59Z", "published": "2024-11-13T00:30:48Z", "aliases": [ "CVE-2024-28728" ], "details": "Cross Site Scripting vulnerability in DLink DWR 2000M 5G CPE With Wifi 6 Ax1800 and Dlink DWR 5G CPE DWR-2000M_1.34ME allows a local attacker to obtain sensitive information via a crafted payload to the WiFi SSID Name field.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-12T23:15:04Z" diff --git a/advisories/unreviewed/2024/11/GHSA-62j5-qc8j-5cjx/GHSA-62j5-qc8j-5cjx.json b/advisories/unreviewed/2024/11/GHSA-62j5-qc8j-5cjx/GHSA-62j5-qc8j-5cjx.json index 27b8ad08162..a3b8db6bbfd 100644 --- a/advisories/unreviewed/2024/11/GHSA-62j5-qc8j-5cjx/GHSA-62j5-qc8j-5cjx.json +++ b/advisories/unreviewed/2024/11/GHSA-62j5-qc8j-5cjx/GHSA-62j5-qc8j-5cjx.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-6vgq-8qjq-h578/GHSA-6vgq-8qjq-h578.json b/advisories/unreviewed/2024/11/GHSA-6vgq-8qjq-h578/GHSA-6vgq-8qjq-h578.json index 1c8017b96d8..bdf6320dedb 100644 --- a/advisories/unreviewed/2024/11/GHSA-6vgq-8qjq-h578/GHSA-6vgq-8qjq-h578.json +++ b/advisories/unreviewed/2024/11/GHSA-6vgq-8qjq-h578/GHSA-6vgq-8qjq-h578.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6vgq-8qjq-h578", - "modified": "2024-11-13T12:32:12Z", + "modified": "2024-11-13T18:32:00Z", "published": "2024-11-13T12:32:12Z", "aliases": [ "CVE-2024-4741" ], "details": "Issue summary: Calling the OpenSSL API function SSL_free_buffers may cause\nmemory to be accessed that was previously freed in some situations\n\nImpact summary: A use after free can have a range of potential consequences such\nas the corruption of valid data, crashes or execution of arbitrary code.\nHowever, only applications that directly call the SSL_free_buffers function are\naffected by this issue. Applications that do not call this function are not\nvulnerable. Our investigations indicate that this function is rarely used by\napplications.\n\nThe SSL_free_buffers function is used to free the internal OpenSSL buffer used\nwhen processing an incoming record from the network. The call is only expected\nto succeed if the buffer is not currently in use. However, two scenarios have\nbeen identified where the buffer is freed even when still in use.\n\nThe first scenario occurs where a record header has been received from the\nnetwork and processed by OpenSSL, but the full record body has not yet arrived.\nIn this case calling SSL_free_buffers will succeed even though a record has only\nbeen partially processed and the buffer is still in use.\n\nThe second scenario occurs where a full record containing application data has\nbeen received and processed by OpenSSL but the application has only read part of\nthis data. Again a call to SSL_free_buffers will succeed even though the buffer\nis still in use.\n\nWhile these scenarios could occur accidentally during normal operation a\nmalicious attacker could attempt to engineer a stituation where this occurs.\nWe are not aware of this issue being actively exploited.\n\nThe FIPS modules in 3.3, 3.2, 3.1 and 3.0 are not affected by this issue.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -47,7 +50,7 @@ "cwe_ids": [ "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-13T11:15:04Z" diff --git a/advisories/unreviewed/2024/11/GHSA-7343-r6j5-pcf7/GHSA-7343-r6j5-pcf7.json b/advisories/unreviewed/2024/11/GHSA-7343-r6j5-pcf7/GHSA-7343-r6j5-pcf7.json new file mode 100644 index 00000000000..fc5b43cb981 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-7343-r6j5-pcf7/GHSA-7343-r6j5-pcf7.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7343-r6j5-pcf7", + "modified": "2024-11-13T18:32:04Z", + "published": "2024-11-13T18:32:04Z", + "aliases": [ + "CVE-2024-23715" + ], + "details": "In PMRWritePMPageList of pmr.c, there is a possible out of bounds write due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-23715" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:20Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-73jc-g6m2-j62g/GHSA-73jc-g6m2-j62g.json b/advisories/unreviewed/2024/11/GHSA-73jc-g6m2-j62g/GHSA-73jc-g6m2-j62g.json index 94a2a891f0d..9ed6eb2ed93 100644 --- a/advisories/unreviewed/2024/11/GHSA-73jc-g6m2-j62g/GHSA-73jc-g6m2-j62g.json +++ b/advisories/unreviewed/2024/11/GHSA-73jc-g6m2-j62g/GHSA-73jc-g6m2-j62g.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-73jc-g6m2-j62g", - "modified": "2024-11-09T12:30:49Z", + "modified": "2024-11-13T18:31:54Z", "published": "2024-11-09T12:30:49Z", "aliases": [ "CVE-2024-50248" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nntfs3: Add bounds checking to mi_enum_attr()\n\nAdded bounds checking to make sure that every attr don't stray beyond\nvalid memory region.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-119" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-09T11:15:10Z" diff --git a/advisories/unreviewed/2024/11/GHSA-7pmr-m2q5-rp82/GHSA-7pmr-m2q5-rp82.json b/advisories/unreviewed/2024/11/GHSA-7pmr-m2q5-rp82/GHSA-7pmr-m2q5-rp82.json index 3413648a83f..374de34b84e 100644 --- a/advisories/unreviewed/2024/11/GHSA-7pmr-m2q5-rp82/GHSA-7pmr-m2q5-rp82.json +++ b/advisories/unreviewed/2024/11/GHSA-7pmr-m2q5-rp82/GHSA-7pmr-m2q5-rp82.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-7xp3-xc7q-7r4h/GHSA-7xp3-xc7q-7r4h.json b/advisories/unreviewed/2024/11/GHSA-7xp3-xc7q-7r4h/GHSA-7xp3-xc7q-7r4h.json new file mode 100644 index 00000000000..1961a143148 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-7xp3-xc7q-7r4h/GHSA-7xp3-xc7q-7r4h.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7xp3-xc7q-7r4h", + "modified": "2024-11-13T18:32:04Z", + "published": "2024-11-13T18:32:04Z", + "aliases": [ + "CVE-2024-34719" + ], + "details": "In multiple locations, there is a possible permissions bypass due to a missing null check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34719" + }, + { + "type": "WEB", + "url": "https://android.googlesource.com/platform/packages/modules/Bluetooth/+/b0e4375577ba7e21bd40edac5990bea418ecdc8c" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:20Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-8cgv-6qhm-jgp2/GHSA-8cgv-6qhm-jgp2.json b/advisories/unreviewed/2024/11/GHSA-8cgv-6qhm-jgp2/GHSA-8cgv-6qhm-jgp2.json index f66b506dd18..7c1ecffcac0 100644 --- a/advisories/unreviewed/2024/11/GHSA-8cgv-6qhm-jgp2/GHSA-8cgv-6qhm-jgp2.json +++ b/advisories/unreviewed/2024/11/GHSA-8cgv-6qhm-jgp2/GHSA-8cgv-6qhm-jgp2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8cgv-6qhm-jgp2", - "modified": "2024-11-09T12:30:48Z", + "modified": "2024-11-13T18:31:54Z", "published": "2024-11-09T12:30:48Z", "aliases": [ "CVE-2024-50232" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\niio: adc: ad7124: fix division by zero in ad7124_set_channel_odr()\n\nIn the ad7124_write_raw() function, parameter val can potentially\nbe zero. This may lead to a division by zero when DIV_ROUND_CLOSEST()\nis called within ad7124_set_channel_odr(). The ad7124_write_raw()\nfunction is invoked through the sequence: iio_write_channel_raw() ->\niio_write_channel_attribute() -> iio_channel_write(), with no checks\nin place to ensure val is non-zero.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -41,9 +44,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-369" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-09T11:15:09Z" diff --git a/advisories/unreviewed/2024/11/GHSA-8g5x-cxhr-gr43/GHSA-8g5x-cxhr-gr43.json b/advisories/unreviewed/2024/11/GHSA-8g5x-cxhr-gr43/GHSA-8g5x-cxhr-gr43.json index a16f249414f..abc1bffc655 100644 --- a/advisories/unreviewed/2024/11/GHSA-8g5x-cxhr-gr43/GHSA-8g5x-cxhr-gr43.json +++ b/advisories/unreviewed/2024/11/GHSA-8g5x-cxhr-gr43/GHSA-8g5x-cxhr-gr43.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8g5x-cxhr-gr43", - "modified": "2024-11-12T21:30:55Z", + "modified": "2024-11-13T18:31:59Z", "published": "2024-11-12T21:30:55Z", "aliases": [ "CVE-2024-11116" ], "details": "Inappropriate implementation in Blink in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-12T21:15:11Z" diff --git a/advisories/unreviewed/2024/11/GHSA-8m6r-7r42-49x3/GHSA-8m6r-7r42-49x3.json b/advisories/unreviewed/2024/11/GHSA-8m6r-7r42-49x3/GHSA-8m6r-7r42-49x3.json index f5c051ef943..330ad4824a1 100644 --- a/advisories/unreviewed/2024/11/GHSA-8m6r-7r42-49x3/GHSA-8m6r-7r42-49x3.json +++ b/advisories/unreviewed/2024/11/GHSA-8m6r-7r42-49x3/GHSA-8m6r-7r42-49x3.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-22" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-8r37-8jq6-q9m7/GHSA-8r37-8jq6-q9m7.json b/advisories/unreviewed/2024/11/GHSA-8r37-8jq6-q9m7/GHSA-8r37-8jq6-q9m7.json index 70a2ef363df..7869f83a3b3 100644 --- a/advisories/unreviewed/2024/11/GHSA-8r37-8jq6-q9m7/GHSA-8r37-8jq6-q9m7.json +++ b/advisories/unreviewed/2024/11/GHSA-8r37-8jq6-q9m7/GHSA-8r37-8jq6-q9m7.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8r37-8jq6-q9m7", - "modified": "2024-11-08T21:33:57Z", + "modified": "2024-11-13T18:31:52Z", "published": "2024-11-07T12:30:35Z", "aliases": [ "CVE-2024-50159" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nfirmware: arm_scmi: Fix the double free in scmi_debugfs_common_setup()\n\nClang static checker(scan-build) throws below warning:\n | drivers/firmware/arm_scmi/driver.c:line 2915, column 2\n | Attempt to free released memory.\n\nWhen devm_add_action_or_reset() fails, scmi_debugfs_common_cleanup()\nwill run twice which causes double free of 'dbg->name'.\n\nRemove the redundant scmi_debugfs_common_cleanup() to fix this problem.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-415" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-07T10:15:07Z" diff --git a/advisories/unreviewed/2024/11/GHSA-93r2-p5rq-7xr3/GHSA-93r2-p5rq-7xr3.json b/advisories/unreviewed/2024/11/GHSA-93r2-p5rq-7xr3/GHSA-93r2-p5rq-7xr3.json new file mode 100644 index 00000000000..f997cfa31c9 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-93r2-p5rq-7xr3/GHSA-93r2-p5rq-7xr3.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-93r2-p5rq-7xr3", + "modified": "2024-11-13T18:32:04Z", + "published": "2024-11-13T18:32:04Z", + "aliases": [ + "CVE-2024-31337" + ], + "details": "In PVRSRVRGXKickTA3DKM of rgxta3d.c, there is a possible arbitrary code execution due to improper input validation. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-31337" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:20Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-947h-mmrh-w9vx/GHSA-947h-mmrh-w9vx.json b/advisories/unreviewed/2024/11/GHSA-947h-mmrh-w9vx/GHSA-947h-mmrh-w9vx.json index 5ba76cf3d3a..4a5a39b4693 100644 --- a/advisories/unreviewed/2024/11/GHSA-947h-mmrh-w9vx/GHSA-947h-mmrh-w9vx.json +++ b/advisories/unreviewed/2024/11/GHSA-947h-mmrh-w9vx/GHSA-947h-mmrh-w9vx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-947h-mmrh-w9vx", - "modified": "2024-11-08T21:33:57Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-08T21:33:57Z", "aliases": [ "CVE-2024-51055" ], "details": "An issue Hoosk v1.7.1 allows a remote attacker to execute arbitrary code via a crafted script to the config.php component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-08T19:15:06Z" diff --git a/advisories/unreviewed/2024/11/GHSA-952m-vgvv-fj9g/GHSA-952m-vgvv-fj9g.json b/advisories/unreviewed/2024/11/GHSA-952m-vgvv-fj9g/GHSA-952m-vgvv-fj9g.json index 6b337602914..a1751b58f6e 100644 --- a/advisories/unreviewed/2024/11/GHSA-952m-vgvv-fj9g/GHSA-952m-vgvv-fj9g.json +++ b/advisories/unreviewed/2024/11/GHSA-952m-vgvv-fj9g/GHSA-952m-vgvv-fj9g.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-9g9p-59w9-vqqc/GHSA-9g9p-59w9-vqqc.json b/advisories/unreviewed/2024/11/GHSA-9g9p-59w9-vqqc/GHSA-9g9p-59w9-vqqc.json new file mode 100644 index 00000000000..aead845545d --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-9g9p-59w9-vqqc/GHSA-9g9p-59w9-vqqc.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9g9p-59w9-vqqc", + "modified": "2024-11-13T18:32:05Z", + "published": "2024-11-13T18:32:05Z", + "aliases": [ + "CVE-2024-43093" + ], + "details": "In shouldHideDocument of ExternalStorageProvider.java, there is a possible bypass of a file path filter designed to prevent access to sensitive directories due to incorrect unicode normalization. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43093" + }, + { + "type": "WEB", + "url": "https://android.googlesource.com/platform/frameworks/base/+/67d6e08322019f7ed8e3f80bd6cd16f8bcb809ed" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:21Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-9rpw-xqxw-pc63/GHSA-9rpw-xqxw-pc63.json b/advisories/unreviewed/2024/11/GHSA-9rpw-xqxw-pc63/GHSA-9rpw-xqxw-pc63.json new file mode 100644 index 00000000000..f55fa557f6a --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-9rpw-xqxw-pc63/GHSA-9rpw-xqxw-pc63.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9rpw-xqxw-pc63", + "modified": "2024-11-13T18:32:01Z", + "published": "2024-11-13T18:32:01Z", + "aliases": [ + "CVE-2024-50970" + ], + "details": "A SQL injection vulnerability in orderview1.php of Itsourcecode Online Furniture Shopping Project 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50970" + }, + { + "type": "WEB", + "url": "https://github.com/Akhlak2511/CVE-2024-50970" + }, + { + "type": "WEB", + "url": "https://itsourcecode.com/free-projects/php-project/online-furniture-shop-in-php-projects-free-source-code-and-database" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T16:15:19Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-9v7m-qxhx-ff4q/GHSA-9v7m-qxhx-ff4q.json b/advisories/unreviewed/2024/11/GHSA-9v7m-qxhx-ff4q/GHSA-9v7m-qxhx-ff4q.json new file mode 100644 index 00000000000..e55814c67ba --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-9v7m-qxhx-ff4q/GHSA-9v7m-qxhx-ff4q.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9v7m-qxhx-ff4q", + "modified": "2024-11-13T18:32:05Z", + "published": "2024-11-13T18:32:05Z", + "aliases": [ + "CVE-2024-43081" + ], + "details": "In installExistingPackageAsUser of InstallPackageHelper.java, there is a possible carrier restriction bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43081" + }, + { + "type": "WEB", + "url": "https://android.googlesource.com/platform/frameworks/base/+/31c098c4271ad4fdfb3809e05017ead8d9f6580f" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:20Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-9wrc-jcvc-7hxx/GHSA-9wrc-jcvc-7hxx.json b/advisories/unreviewed/2024/11/GHSA-9wrc-jcvc-7hxx/GHSA-9wrc-jcvc-7hxx.json index 2df10efa9d4..cce22996ae5 100644 --- a/advisories/unreviewed/2024/11/GHSA-9wrc-jcvc-7hxx/GHSA-9wrc-jcvc-7hxx.json +++ b/advisories/unreviewed/2024/11/GHSA-9wrc-jcvc-7hxx/GHSA-9wrc-jcvc-7hxx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9wrc-jcvc-7hxx", - "modified": "2024-11-07T12:30:35Z", + "modified": "2024-11-13T18:31:52Z", "published": "2024-11-07T12:30:35Z", "aliases": [ "CVE-2024-50161" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Check the remaining info_cnt before repeating btf fields\n\nWhen trying to repeat the btf fields for array of nested struct, it\ndoesn't check the remaining info_cnt. The following splat will be\nreported when the value of ret * nelems is greater than BTF_FIELDS_MAX:\n\n ------------[ cut here ]------------\n UBSAN: array-index-out-of-bounds in ../kernel/bpf/btf.c:3951:49\n index 11 is out of range for type 'btf_field_info [11]'\n CPU: 6 UID: 0 PID: 411 Comm: test_progs ...... 6.11.0-rc4+ #1\n Tainted: [O]=OOT_MODULE\n Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS ...\n Call Trace:\n \n dump_stack_lvl+0x57/0x70\n dump_stack+0x10/0x20\n ubsan_epilogue+0x9/0x40\n __ubsan_handle_out_of_bounds+0x6f/0x80\n ? kallsyms_lookup_name+0x48/0xb0\n btf_parse_fields+0x992/0xce0\n map_create+0x591/0x770\n __sys_bpf+0x229/0x2410\n __x64_sys_bpf+0x1f/0x30\n x64_sys_call+0x199/0x9f0\n do_syscall_64+0x3b/0xc0\n entry_SYSCALL_64_after_hwframe+0x4b/0x53\n RIP: 0033:0x7fea56f2cc5d\n ......\n \n ---[ end trace ]---\n\nFix it by checking the remaining info_cnt in btf_repeat_fields() before\nrepeating the btf fields.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-129" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-07T10:15:07Z" diff --git a/advisories/unreviewed/2024/11/GHSA-crxp-pw8g-fqxp/GHSA-crxp-pw8g-fqxp.json b/advisories/unreviewed/2024/11/GHSA-crxp-pw8g-fqxp/GHSA-crxp-pw8g-fqxp.json index 7e7b7894825..7e1b23b6dd1 100644 --- a/advisories/unreviewed/2024/11/GHSA-crxp-pw8g-fqxp/GHSA-crxp-pw8g-fqxp.json +++ b/advisories/unreviewed/2024/11/GHSA-crxp-pw8g-fqxp/GHSA-crxp-pw8g-fqxp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-crxp-pw8g-fqxp", - "modified": "2024-11-07T12:30:35Z", + "modified": "2024-11-13T18:31:52Z", "published": "2024-11-07T12:30:35Z", "aliases": [ "CVE-2024-50160" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: hda/cs8409: Fix possible NULL dereference\n\nIf snd_hda_gen_add_kctl fails to allocate memory and returns NULL, then\nNULL pointer dereference will occur in the next line.\n\nSince dolphin_fixups function is a hda_fixup function which is not supposed\nto return any errors, add simple check before dereference, ignore the fail.\n\nFound by Linux Verification Center (linuxtesting.org) with SVACE.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -41,9 +44,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-07T10:15:07Z" diff --git a/advisories/unreviewed/2024/11/GHSA-f49x-gh9g-45wp/GHSA-f49x-gh9g-45wp.json b/advisories/unreviewed/2024/11/GHSA-f49x-gh9g-45wp/GHSA-f49x-gh9g-45wp.json index 539c2215e4f..687eda0138b 100644 --- a/advisories/unreviewed/2024/11/GHSA-f49x-gh9g-45wp/GHSA-f49x-gh9g-45wp.json +++ b/advisories/unreviewed/2024/11/GHSA-f49x-gh9g-45wp/GHSA-f49x-gh9g-45wp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f49x-gh9g-45wp", - "modified": "2024-11-09T12:30:49Z", + "modified": "2024-11-13T18:31:54Z", "published": "2024-11-09T12:30:49Z", "aliases": [ "CVE-2024-50244" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nfs/ntfs3: Additional check in ni_clear()\n\nChecking of NTFS_FLAGS_LOG_REPLAYING added to prevent access to\nuninitialized bitmap during replay process.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -43,7 +46,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-09T11:15:10Z" diff --git a/advisories/unreviewed/2024/11/GHSA-frfw-f98c-6jvj/GHSA-frfw-f98c-6jvj.json b/advisories/unreviewed/2024/11/GHSA-frfw-f98c-6jvj/GHSA-frfw-f98c-6jvj.json index 98691173c5b..883a499834e 100644 --- a/advisories/unreviewed/2024/11/GHSA-frfw-f98c-6jvj/GHSA-frfw-f98c-6jvj.json +++ b/advisories/unreviewed/2024/11/GHSA-frfw-f98c-6jvj/GHSA-frfw-f98c-6jvj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-frfw-f98c-6jvj", - "modified": "2024-11-09T12:30:47Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-09T12:30:47Z", "aliases": [ "CVE-2024-50215" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnvmet-auth: assign dh_key to NULL after kfree_sensitive\n\nctrl->dh_key might be used across multiple calls to nvmet_setup_dhgroup()\nfor the same controller. So it's better to nullify it after release on\nerror path in order to avoid double free later in nvmet_destroy_auth().\n\nFound by Linux Verification Center (linuxtesting.org) with Svace.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-415" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-09T11:15:06Z" diff --git a/advisories/unreviewed/2024/11/GHSA-fvrc-whm3-2jqq/GHSA-fvrc-whm3-2jqq.json b/advisories/unreviewed/2024/11/GHSA-fvrc-whm3-2jqq/GHSA-fvrc-whm3-2jqq.json new file mode 100644 index 00000000000..a51aa9bcbe4 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-fvrc-whm3-2jqq/GHSA-fvrc-whm3-2jqq.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fvrc-whm3-2jqq", + "modified": "2024-11-13T18:32:05Z", + "published": "2024-11-13T18:32:05Z", + "aliases": [ + "CVE-2024-43083" + ], + "details": "In validate of WifiConfigurationUtil.java , there is a possible persistent denial of service due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43083" + }, + { + "type": "WEB", + "url": "https://android.googlesource.com/platform/packages/modules/Wifi/+/62f61e19524e9a55cadd1116c9448ff34b977e50" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:21Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-g488-86p5-88vr/GHSA-g488-86p5-88vr.json b/advisories/unreviewed/2024/11/GHSA-g488-86p5-88vr/GHSA-g488-86p5-88vr.json index 82e9677751a..437afb4ef7f 100644 --- a/advisories/unreviewed/2024/11/GHSA-g488-86p5-88vr/GHSA-g488-86p5-88vr.json +++ b/advisories/unreviewed/2024/11/GHSA-g488-86p5-88vr/GHSA-g488-86p5-88vr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-g488-86p5-88vr", - "modified": "2024-11-13T03:30:45Z", + "modified": "2024-11-13T18:31:59Z", "published": "2024-11-13T03:30:45Z", "aliases": [ "CVE-2024-10577" diff --git a/advisories/unreviewed/2024/11/GHSA-g5x8-hfc7-9rv7/GHSA-g5x8-hfc7-9rv7.json b/advisories/unreviewed/2024/11/GHSA-g5x8-hfc7-9rv7/GHSA-g5x8-hfc7-9rv7.json index 8ca61e4cdd2..5c7731a9a1e 100644 --- a/advisories/unreviewed/2024/11/GHSA-g5x8-hfc7-9rv7/GHSA-g5x8-hfc7-9rv7.json +++ b/advisories/unreviewed/2024/11/GHSA-g5x8-hfc7-9rv7/GHSA-g5x8-hfc7-9rv7.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-g5x8-hfc7-9rv7", - "modified": "2024-11-08T18:30:50Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-08T18:30:50Z", "aliases": [ "CVE-2024-51030" ], "details": "A SQL injection vulnerability in manage_client.php and view_cab.php of Sourcecodester Cab Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter, leading to unauthorized access and potential compromise of sensitive data within the database.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-08T18:15:17Z" diff --git a/advisories/unreviewed/2024/11/GHSA-g6rq-jhmf-jr8x/GHSA-g6rq-jhmf-jr8x.json b/advisories/unreviewed/2024/11/GHSA-g6rq-jhmf-jr8x/GHSA-g6rq-jhmf-jr8x.json index c9d3219562e..74e23e705df 100644 --- a/advisories/unreviewed/2024/11/GHSA-g6rq-jhmf-jr8x/GHSA-g6rq-jhmf-jr8x.json +++ b/advisories/unreviewed/2024/11/GHSA-g6rq-jhmf-jr8x/GHSA-g6rq-jhmf-jr8x.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-gf29-gwj9-7xvj/GHSA-gf29-gwj9-7xvj.json b/advisories/unreviewed/2024/11/GHSA-gf29-gwj9-7xvj/GHSA-gf29-gwj9-7xvj.json index 7e5d5615796..6b8f27151ec 100644 --- a/advisories/unreviewed/2024/11/GHSA-gf29-gwj9-7xvj/GHSA-gf29-gwj9-7xvj.json +++ b/advisories/unreviewed/2024/11/GHSA-gf29-gwj9-7xvj/GHSA-gf29-gwj9-7xvj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gf29-gwj9-7xvj", - "modified": "2024-11-08T18:30:50Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-08T18:30:50Z", "aliases": [ "CVE-2024-25431" ], "details": "An issue in bytecodealliance wasm-micro-runtime before v.b3f728c and fixed in commit 06df58f allows a remote attacker to escalate privileges via a crafted file to the check_was_abi_compatibility function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-08T17:15:06Z" diff --git a/advisories/unreviewed/2024/11/GHSA-ghff-7r8p-2pr4/GHSA-ghff-7r8p-2pr4.json b/advisories/unreviewed/2024/11/GHSA-ghff-7r8p-2pr4/GHSA-ghff-7r8p-2pr4.json index 7dcb16cfcb3..60f8ceaa44c 100644 --- a/advisories/unreviewed/2024/11/GHSA-ghff-7r8p-2pr4/GHSA-ghff-7r8p-2pr4.json +++ b/advisories/unreviewed/2024/11/GHSA-ghff-7r8p-2pr4/GHSA-ghff-7r8p-2pr4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-ghff-7r8p-2pr4", - "modified": "2024-11-09T12:30:48Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-09T12:30:48Z", "aliases": [ "CVE-2024-50231" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\niio: gts-helper: Fix memory leaks in iio_gts_build_avail_scale_table()\n\nmodprobe iio-test-gts and rmmod it, then the following memory leak\noccurs:\n\n\tunreferenced object 0xffffff80c810be00 (size 64):\n\t comm \"kunit_try_catch\", pid 1654, jiffies 4294913981\n\t hex dump (first 32 bytes):\n\t 02 00 00 00 08 00 00 00 20 00 00 00 40 00 00 00 ........ ...@...\n\t 80 00 00 00 00 02 00 00 00 04 00 00 00 08 00 00 ................\n\t backtrace (crc a63d875e):\n\t [<0000000028c1b3c2>] kmemleak_alloc+0x34/0x40\n\t [<000000001d6ecc87>] __kmalloc_noprof+0x2bc/0x3c0\n\t [<00000000393795c1>] devm_iio_init_iio_gts+0x4b4/0x16f4\n\t [<0000000071bb4b09>] 0xffffffdf052a62e0\n\t [<000000000315bc18>] 0xffffffdf052a6488\n\t [<00000000f9dc55b5>] kunit_try_run_case+0x13c/0x3ac\n\t [<00000000175a3fd4>] kunit_generic_run_threadfn_adapter+0x80/0xec\n\t [<00000000f505065d>] kthread+0x2e8/0x374\n\t [<00000000bbfb0e5d>] ret_from_fork+0x10/0x20\n\tunreferenced object 0xffffff80cbfe9e70 (size 16):\n\t comm \"kunit_try_catch\", pid 1658, jiffies 4294914015\n\t hex dump (first 16 bytes):\n\t 10 00 00 00 40 00 00 00 80 00 00 00 00 00 00 00 ....@...........\n\t backtrace (crc 857f0cb4):\n\t [<0000000028c1b3c2>] kmemleak_alloc+0x34/0x40\n\t [<000000001d6ecc87>] __kmalloc_noprof+0x2bc/0x3c0\n\t [<00000000393795c1>] devm_iio_init_iio_gts+0x4b4/0x16f4\n\t [<0000000071bb4b09>] 0xffffffdf052a62e0\n\t [<000000007d089d45>] 0xffffffdf052a6864\n\t [<00000000f9dc55b5>] kunit_try_run_case+0x13c/0x3ac\n\t [<00000000175a3fd4>] kunit_generic_run_threadfn_adapter+0x80/0xec\n\t [<00000000f505065d>] kthread+0x2e8/0x374\n\t [<00000000bbfb0e5d>] ret_from_fork+0x10/0x20\n\t......\n\nIt includes 5*5 times \"size 64\" memory leaks, which correspond to 5 times\ntest_init_iio_gain_scale() calls with gts_test_gains size 10 (10*size(int))\nand gts_test_itimes size 5. It also includes 5*1 times \"size 16\"\nmemory leak, which correspond to one time __test_init_iio_gain_scale()\ncall with gts_test_gains_gain_low size 3 (3*size(int)) and gts_test_itimes\nsize 5.\n\nThe reason is that the per_time_gains[i] is not freed which is allocated in\nthe \"gts->num_itime\" for loop in iio_gts_build_avail_scale_table().", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-401" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-09T11:15:09Z" diff --git a/advisories/unreviewed/2024/11/GHSA-gv8f-7qqp-f8mr/GHSA-gv8f-7qqp-f8mr.json b/advisories/unreviewed/2024/11/GHSA-gv8f-7qqp-f8mr/GHSA-gv8f-7qqp-f8mr.json new file mode 100644 index 00000000000..d143eeafb1b --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-gv8f-7qqp-f8mr/GHSA-gv8f-7qqp-f8mr.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gv8f-7qqp-f8mr", + "modified": "2024-11-13T18:32:05Z", + "published": "2024-11-13T18:32:05Z", + "aliases": [ + "CVE-2024-43090" + ], + "details": "In multiple locations, there is a possible cross-user image read due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43090" + }, + { + "type": "WEB", + "url": "https://android.googlesource.com/platform/frameworks/base/+/4677d3ee0ec2d31acc6108fea7be6cced971da37" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:21Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-gxmf-6vg5-f87h/GHSA-gxmf-6vg5-f87h.json b/advisories/unreviewed/2024/11/GHSA-gxmf-6vg5-f87h/GHSA-gxmf-6vg5-f87h.json new file mode 100644 index 00000000000..f1820a8ed1e --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-gxmf-6vg5-f87h/GHSA-gxmf-6vg5-f87h.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gxmf-6vg5-f87h", + "modified": "2024-11-13T18:32:01Z", + "published": "2024-11-13T18:32:01Z", + "aliases": [ + "CVE-2024-10013" + ], + "details": "In Progress Telerik UI for WinForms versions prior to 2024 Q4 (2024.4.1113), a code execution attack is possible through an insecure deserialization vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10013" + }, + { + "type": "WEB", + "url": "https://docs.telerik.com/devtools/winforms/knowledge-base/unsafe-deserialization-cve-2024-10013" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-502" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T16:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-h493-wm58-vgvj/GHSA-h493-wm58-vgvj.json b/advisories/unreviewed/2024/11/GHSA-h493-wm58-vgvj/GHSA-h493-wm58-vgvj.json new file mode 100644 index 00000000000..562a66eda8d --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-h493-wm58-vgvj/GHSA-h493-wm58-vgvj.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h493-wm58-vgvj", + "modified": "2024-11-13T18:32:04Z", + "published": "2024-11-13T18:32:04Z", + "aliases": [ + "CVE-2024-9476" + ], + "details": "A vulnerability in Grafana Labs Grafana OSS and Enterprise allows Privilege Escalation allows users to gain access to resources from other organizations within the same Grafana instance via the Grafana Cloud Migration Assistant.This vulnerability will only affect users who utilize the Organizations feature to isolate resources on their Grafana instance.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:A/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9476" + }, + { + "type": "WEB", + "url": "https://grafana.com/blog/2024/11/12/grafana-security-release-medium-severity-security-fix-for-cve-2024-9476" + }, + { + "type": "WEB", + "url": "https://grafana.com/security/security-advisories/cve-2024-9476" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-266" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T17:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-j6wf-wwwg-83hx/GHSA-j6wf-wwwg-83hx.json b/advisories/unreviewed/2024/11/GHSA-j6wf-wwwg-83hx/GHSA-j6wf-wwwg-83hx.json index 3a488107a09..1f4688a8c18 100644 --- a/advisories/unreviewed/2024/11/GHSA-j6wf-wwwg-83hx/GHSA-j6wf-wwwg-83hx.json +++ b/advisories/unreviewed/2024/11/GHSA-j6wf-wwwg-83hx/GHSA-j6wf-wwwg-83hx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-j6wf-wwwg-83hx", - "modified": "2024-11-13T00:30:48Z", + "modified": "2024-11-13T18:31:59Z", "published": "2024-11-13T00:30:48Z", "aliases": [ "CVE-2024-28726" ], "details": "An issue in DLink DWR 2000M 5G CPE With Wifi 6 Ax1800 and Dlink DWR 5G CPE DWR-2000M_1.34ME allows a local attacker to execute arbitrary code via a crafted payload to the Diagnostics function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-77" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-12T23:15:04Z" diff --git a/advisories/unreviewed/2024/11/GHSA-j8q3-w84x-4phr/GHSA-j8q3-w84x-4phr.json b/advisories/unreviewed/2024/11/GHSA-j8q3-w84x-4phr/GHSA-j8q3-w84x-4phr.json index c60ba3e8a0e..986851d6e23 100644 --- a/advisories/unreviewed/2024/11/GHSA-j8q3-w84x-4phr/GHSA-j8q3-w84x-4phr.json +++ b/advisories/unreviewed/2024/11/GHSA-j8q3-w84x-4phr/GHSA-j8q3-w84x-4phr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-j8q3-w84x-4phr", - "modified": "2024-11-08T18:30:50Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-08T18:30:50Z", "aliases": [ "CVE-2024-40240" ], "details": "An incorrect access control issue in HomeServe Home Repair' android app - 3.3.4 allows a physically proximate attacker to escalate privileges via the fingerprint authentication function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-08T18:15:17Z" diff --git a/advisories/unreviewed/2024/11/GHSA-jv8w-8mj7-43gf/GHSA-jv8w-8mj7-43gf.json b/advisories/unreviewed/2024/11/GHSA-jv8w-8mj7-43gf/GHSA-jv8w-8mj7-43gf.json index 58777d17fdc..753517ab57a 100644 --- a/advisories/unreviewed/2024/11/GHSA-jv8w-8mj7-43gf/GHSA-jv8w-8mj7-43gf.json +++ b/advisories/unreviewed/2024/11/GHSA-jv8w-8mj7-43gf/GHSA-jv8w-8mj7-43gf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jv8w-8mj7-43gf", - "modified": "2024-11-09T12:30:49Z", + "modified": "2024-11-13T18:31:54Z", "published": "2024-11-09T12:30:49Z", "aliases": [ "CVE-2024-50247" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nfs/ntfs3: Check if more than chunk-size bytes are written\n\nA incorrectly formatted chunk may decompress into\nmore than LZNT_CHUNK_SIZE bytes and a index out of bounds\nwill occur in s_max_off.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H" + } ], "affected": [ @@ -41,9 +44,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-09T11:15:10Z" diff --git a/advisories/unreviewed/2024/11/GHSA-jxjx-p54m-47jc/GHSA-jxjx-p54m-47jc.json b/advisories/unreviewed/2024/11/GHSA-jxjx-p54m-47jc/GHSA-jxjx-p54m-47jc.json index c0312e2b6b5..169d57ffb4d 100644 --- a/advisories/unreviewed/2024/11/GHSA-jxjx-p54m-47jc/GHSA-jxjx-p54m-47jc.json +++ b/advisories/unreviewed/2024/11/GHSA-jxjx-p54m-47jc/GHSA-jxjx-p54m-47jc.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-m4g4-rwxc-376v/GHSA-m4g4-rwxc-376v.json b/advisories/unreviewed/2024/11/GHSA-m4g4-rwxc-376v/GHSA-m4g4-rwxc-376v.json index f167094342f..9a983d8b895 100644 --- a/advisories/unreviewed/2024/11/GHSA-m4g4-rwxc-376v/GHSA-m4g4-rwxc-376v.json +++ b/advisories/unreviewed/2024/11/GHSA-m4g4-rwxc-376v/GHSA-m4g4-rwxc-376v.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-m4g4-rwxc-376v", - "modified": "2024-11-09T12:30:48Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-09T12:30:48Z", "aliases": [ "CVE-2024-50230" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnilfs2: fix kernel bug due to missing clearing of checked flag\n\nSyzbot reported that in directory operations after nilfs2 detects\nfilesystem corruption and degrades to read-only,\n__block_write_begin_int(), which is called to prepare block writes, may\nfail the BUG_ON check for accesses exceeding the folio/page size,\ntriggering a kernel bug.\n\nThis was found to be because the \"checked\" flag of a page/folio was not\ncleared when it was discarded by nilfs2's own routine, which causes the\nsanity check of directory entries to be skipped when the directory\npage/folio is reloaded. So, fix that.\n\nThis was necessary when the use of nilfs2's own page discard routine was\napplied to more than just metadata files.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-787" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-09T11:15:08Z" diff --git a/advisories/unreviewed/2024/11/GHSA-m7p9-qq2j-2h4p/GHSA-m7p9-qq2j-2h4p.json b/advisories/unreviewed/2024/11/GHSA-m7p9-qq2j-2h4p/GHSA-m7p9-qq2j-2h4p.json index ba06c9e50bc..9c85be6e136 100644 --- a/advisories/unreviewed/2024/11/GHSA-m7p9-qq2j-2h4p/GHSA-m7p9-qq2j-2h4p.json +++ b/advisories/unreviewed/2024/11/GHSA-m7p9-qq2j-2h4p/GHSA-m7p9-qq2j-2h4p.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-m84v-65mj-hw78/GHSA-m84v-65mj-hw78.json b/advisories/unreviewed/2024/11/GHSA-m84v-65mj-hw78/GHSA-m84v-65mj-hw78.json index afd80e1c0c8..79e35032edb 100644 --- a/advisories/unreviewed/2024/11/GHSA-m84v-65mj-hw78/GHSA-m84v-65mj-hw78.json +++ b/advisories/unreviewed/2024/11/GHSA-m84v-65mj-hw78/GHSA-m84v-65mj-hw78.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-m84v-65mj-hw78", - "modified": "2024-11-12T21:30:55Z", + "modified": "2024-11-13T18:31:59Z", "published": "2024-11-12T21:30:55Z", "aliases": [ "CVE-2024-11115" ], "details": "Insufficient policy enforcement in Navigation in Google Chrome on iOS prior to 131.0.6778.69 allowed a remote attacker to perform privilege escalation via a series of UI gestures. (Chromium security severity: Medium)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-12T21:15:11Z" diff --git a/advisories/unreviewed/2024/11/GHSA-mmv8-59h2-5hqj/GHSA-mmv8-59h2-5hqj.json b/advisories/unreviewed/2024/11/GHSA-mmv8-59h2-5hqj/GHSA-mmv8-59h2-5hqj.json index cbb87abe705..da26cbb5c76 100644 --- a/advisories/unreviewed/2024/11/GHSA-mmv8-59h2-5hqj/GHSA-mmv8-59h2-5hqj.json +++ b/advisories/unreviewed/2024/11/GHSA-mmv8-59h2-5hqj/GHSA-mmv8-59h2-5hqj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mmv8-59h2-5hqj", - "modified": "2024-11-08T18:30:50Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-08T18:30:50Z", "aliases": [ "CVE-2024-50634" ], "details": "A vulnerability in a weak JWT token in Watcharr v1.43.0 and below allows attackers to perform privilege escalation using a crafted JWT token. This vulnerability is not limited to privilege escalation but also affects all functions that require authentication.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-319" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-08T17:15:06Z" diff --git a/advisories/unreviewed/2024/11/GHSA-mmxq-gq3m-xgpf/GHSA-mmxq-gq3m-xgpf.json b/advisories/unreviewed/2024/11/GHSA-mmxq-gq3m-xgpf/GHSA-mmxq-gq3m-xgpf.json index 94937b0d0ef..f8b8228caa9 100644 --- a/advisories/unreviewed/2024/11/GHSA-mmxq-gq3m-xgpf/GHSA-mmxq-gq3m-xgpf.json +++ b/advisories/unreviewed/2024/11/GHSA-mmxq-gq3m-xgpf/GHSA-mmxq-gq3m-xgpf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mmxq-gq3m-xgpf", - "modified": "2024-11-08T18:30:50Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-08T18:30:50Z", "aliases": [ "CVE-2024-40239" ], "details": "An incorrect access control issue in Life: Personal Diary, Journal android app 17.5.0 allows a physically proximate attacker to escalate privileges via the fingerprint authentication function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-08T18:15:17Z" diff --git a/advisories/unreviewed/2024/11/GHSA-mpgp-f7xr-fr3m/GHSA-mpgp-f7xr-fr3m.json b/advisories/unreviewed/2024/11/GHSA-mpgp-f7xr-fr3m/GHSA-mpgp-f7xr-fr3m.json new file mode 100644 index 00000000000..9f201a7e661 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-mpgp-f7xr-fr3m/GHSA-mpgp-f7xr-fr3m.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mpgp-f7xr-fr3m", + "modified": "2024-11-13T18:32:05Z", + "published": "2024-11-13T18:32:05Z", + "aliases": [ + "CVE-2024-43082" + ], + "details": "In onActivityResult of EditUserPhotoController.java, there is a possible cross-user media read due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43082" + }, + { + "type": "WEB", + "url": "https://android.googlesource.com/platform/frameworks/base/+/6aa1b4fbf5936a1ff5bdbb79397c94910a6ed8f5" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:20Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-mpxg-m884-58ff/GHSA-mpxg-m884-58ff.json b/advisories/unreviewed/2024/11/GHSA-mpxg-m884-58ff/GHSA-mpxg-m884-58ff.json new file mode 100644 index 00000000000..9ebeeabc8dc --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-mpxg-m884-58ff/GHSA-mpxg-m884-58ff.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mpxg-m884-58ff", + "modified": "2024-11-13T18:32:05Z", + "published": "2024-11-13T18:32:05Z", + "aliases": [ + "CVE-2024-43084" + ], + "details": "In visitUris of multiple files, there is a possible information disclosure due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43084" + }, + { + "type": "WEB", + "url": "https://android.googlesource.com/platform/frameworks/base/+/50eec20b570cd4cbbe8c5971af4c9dda3ddcb858" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:21Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-mqg6-vqf5-9pf3/GHSA-mqg6-vqf5-9pf3.json b/advisories/unreviewed/2024/11/GHSA-mqg6-vqf5-9pf3/GHSA-mqg6-vqf5-9pf3.json new file mode 100644 index 00000000000..a1d9344c805 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-mqg6-vqf5-9pf3/GHSA-mqg6-vqf5-9pf3.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mqg6-vqf5-9pf3", + "modified": "2024-11-13T18:32:05Z", + "published": "2024-11-13T18:32:05Z", + "aliases": [ + "CVE-2024-43087" + ], + "details": "In getInstalledAccessibilityPreferences of AccessibilitySettings.java, there is a possible way to hide an enabled accessibility service in the accessibility service settings due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43087" + }, + { + "type": "WEB", + "url": "https://android.googlesource.com/platform/packages/apps/Settings/+/6253b87704bb097ad9963941bdddf3b86906a73e" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:21Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-mqp6-pw26-w368/GHSA-mqp6-pw26-w368.json b/advisories/unreviewed/2024/11/GHSA-mqp6-pw26-w368/GHSA-mqp6-pw26-w368.json index 27f7bb76964..7952b0dbb8c 100644 --- a/advisories/unreviewed/2024/11/GHSA-mqp6-pw26-w368/GHSA-mqp6-pw26-w368.json +++ b/advisories/unreviewed/2024/11/GHSA-mqp6-pw26-w368/GHSA-mqp6-pw26-w368.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-mv5r-7xhv-c4gx/GHSA-mv5r-7xhv-c4gx.json b/advisories/unreviewed/2024/11/GHSA-mv5r-7xhv-c4gx/GHSA-mv5r-7xhv-c4gx.json new file mode 100644 index 00000000000..3a354f93600 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-mv5r-7xhv-c4gx/GHSA-mv5r-7xhv-c4gx.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mv5r-7xhv-c4gx", + "modified": "2024-11-13T18:32:04Z", + "published": "2024-11-13T18:32:04Z", + "aliases": [ + "CVE-2023-35659" + ], + "details": "In DevmemIntChangeSparse of devicemem_server.c, there is a possible arbitrary code execution due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-35659" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:19Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-mx28-rfqr-gwv8/GHSA-mx28-rfqr-gwv8.json b/advisories/unreviewed/2024/11/GHSA-mx28-rfqr-gwv8/GHSA-mx28-rfqr-gwv8.json index 66dcf66a884..74d8d1b6757 100644 --- a/advisories/unreviewed/2024/11/GHSA-mx28-rfqr-gwv8/GHSA-mx28-rfqr-gwv8.json +++ b/advisories/unreviewed/2024/11/GHSA-mx28-rfqr-gwv8/GHSA-mx28-rfqr-gwv8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mx28-rfqr-gwv8", - "modified": "2024-11-08T18:30:48Z", + "modified": "2024-11-13T18:31:52Z", "published": "2024-11-05T18:32:11Z", "aliases": [ "CVE-2024-50089" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nunicode: Don't special case ignorable code points\n\nWe don't need to handle them separately. Instead, just let them\ndecompose/casefold to themselves.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -51,7 +54,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-05T17:15:06Z" diff --git a/advisories/unreviewed/2024/11/GHSA-p299-525g-4h76/GHSA-p299-525g-4h76.json b/advisories/unreviewed/2024/11/GHSA-p299-525g-4h76/GHSA-p299-525g-4h76.json index f6854ecca0b..53a66fed6cb 100644 --- a/advisories/unreviewed/2024/11/GHSA-p299-525g-4h76/GHSA-p299-525g-4h76.json +++ b/advisories/unreviewed/2024/11/GHSA-p299-525g-4h76/GHSA-p299-525g-4h76.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-p299-525g-4h76", - "modified": "2024-11-09T12:30:47Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-09T12:30:47Z", "aliases": [ "CVE-2024-50213" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/tests: hdmi: Fix memory leaks in drm_display_mode_from_cea_vic()\n\nmodprobe drm_hdmi_state_helper_test and then rmmod it, the following\nmemory leak occurs.\n\nThe `mode` allocated in drm_mode_duplicate() called by\ndrm_display_mode_from_cea_vic() is not freed, which cause the memory leak:\n\n\tunreferenced object 0xffffff80ccd18100 (size 128):\n\t comm \"kunit_try_catch\", pid 1851, jiffies 4295059695\n\t hex dump (first 32 bytes):\n\t 57 62 00 00 80 02 90 02 f0 02 20 03 00 00 e0 01 Wb........ .....\n\t ea 01 ec 01 0d 02 00 00 0a 00 00 00 00 00 00 00 ................\n\t backtrace (crc c2f1aa95):\n\t [<000000000f10b11b>] kmemleak_alloc+0x34/0x40\n\t [<000000001cd4cf73>] __kmalloc_cache_noprof+0x26c/0x2f4\n\t [<00000000f1f3cffa>] drm_mode_duplicate+0x44/0x19c\n\t [<000000008cbeef13>] drm_display_mode_from_cea_vic+0x88/0x98\n\t [<0000000019daaacf>] 0xffffffedc11ae69c\n\t [<000000000aad0f85>] kunit_try_run_case+0x13c/0x3ac\n\t [<00000000a9210bac>] kunit_generic_run_threadfn_adapter+0x80/0xec\n\t [<000000000a0b2e9e>] kthread+0x2e8/0x374\n\t [<00000000bd668858>] ret_from_fork+0x10/0x20\n\t......\n\nFree `mode` by using drm_kunit_display_mode_from_cea_vic()\nto fix it.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-401" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-09T11:15:06Z" diff --git a/advisories/unreviewed/2024/11/GHSA-p2fh-w83x-vrm3/GHSA-p2fh-w83x-vrm3.json b/advisories/unreviewed/2024/11/GHSA-p2fh-w83x-vrm3/GHSA-p2fh-w83x-vrm3.json new file mode 100644 index 00000000000..2aef72f4147 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-p2fh-w83x-vrm3/GHSA-p2fh-w83x-vrm3.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p2fh-w83x-vrm3", + "modified": "2024-11-13T18:32:01Z", + "published": "2024-11-13T18:32:01Z", + "aliases": [ + "CVE-2024-10012" + ], + "details": "In Progress Telerik UI for WPF versions prior to 2024 Q4 (2024.4.1111), a code execution attack is possible through an insecure deserialization vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10012" + }, + { + "type": "WEB", + "url": "https://docs.telerik.com/devtools/wpf/knowledge-base/kb-security-unsafe-deserialization-cve-2024-10012" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-502" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T16:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-p3xf-gp9j-6r3v/GHSA-p3xf-gp9j-6r3v.json b/advisories/unreviewed/2024/11/GHSA-p3xf-gp9j-6r3v/GHSA-p3xf-gp9j-6r3v.json new file mode 100644 index 00000000000..53b3709527e --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-p3xf-gp9j-6r3v/GHSA-p3xf-gp9j-6r3v.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p3xf-gp9j-6r3v", + "modified": "2024-11-13T18:32:05Z", + "published": "2024-11-13T18:32:05Z", + "aliases": [ + "CVE-2024-43091" + ], + "details": "In filterMask of SkEmbossMaskFilter.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43091" + }, + { + "type": "WEB", + "url": "https://android.googlesource.com/platform/external/skia/+/0b628a960e74197ace9831ef0727f5ba7ab6ac10" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:21Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-p472-9pqh-9gj9/GHSA-p472-9pqh-9gj9.json b/advisories/unreviewed/2024/11/GHSA-p472-9pqh-9gj9/GHSA-p472-9pqh-9gj9.json new file mode 100644 index 00000000000..74d0a0beb61 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-p472-9pqh-9gj9/GHSA-p472-9pqh-9gj9.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p472-9pqh-9gj9", + "modified": "2024-11-13T18:32:05Z", + "published": "2024-11-13T18:32:05Z", + "aliases": [ + "CVE-2024-43085" + ], + "details": "In handleMessage of UsbDeviceManager.java, there is a possible method to access device contents over USB without unlocking the device due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43085" + }, + { + "type": "WEB", + "url": "https://android.googlesource.com/platform/frameworks/base/+/2457d4e459ee6ffd099b9ff7cce9c83119c3ce66" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:21Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-pfv7-6gr3-pf99/GHSA-pfv7-6gr3-pf99.json b/advisories/unreviewed/2024/11/GHSA-pfv7-6gr3-pf99/GHSA-pfv7-6gr3-pf99.json index 543c2cabedc..238ff86d3ab 100644 --- a/advisories/unreviewed/2024/11/GHSA-pfv7-6gr3-pf99/GHSA-pfv7-6gr3-pf99.json +++ b/advisories/unreviewed/2024/11/GHSA-pfv7-6gr3-pf99/GHSA-pfv7-6gr3-pf99.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-pfv7-6gr3-pf99", - "modified": "2024-11-08T18:30:49Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-07T12:30:35Z", "aliases": [ "CVE-2024-50168" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sun3_82586: fix potential memory leak in sun3_82586_send_packet()\n\nThe sun3_82586_send_packet() returns NETDEV_TX_OK without freeing skb\nin case of skb->len being too long, add dev_kfree_skb() to fix it.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-401" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-07T10:15:07Z" diff --git a/advisories/unreviewed/2024/11/GHSA-ph2w-6fm5-ghpx/GHSA-ph2w-6fm5-ghpx.json b/advisories/unreviewed/2024/11/GHSA-ph2w-6fm5-ghpx/GHSA-ph2w-6fm5-ghpx.json new file mode 100644 index 00000000000..f3f641919b7 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-ph2w-6fm5-ghpx/GHSA-ph2w-6fm5-ghpx.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-ph2w-6fm5-ghpx", + "modified": "2024-11-13T18:32:05Z", + "published": "2024-11-13T18:32:05Z", + "aliases": [ + "CVE-2024-43088" + ], + "details": "In multiple functions in AppInfoBase.java, there is a possible way to manipulate app permission settings belonging to another user on the device due to a missing permission check. This could lead to local escalation of privilege across user boundaries with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43088" + }, + { + "type": "WEB", + "url": "https://android.googlesource.com/platform/packages/apps/Settings/+/975c28535419be1cc45f66712f41e4a7a40e6001" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:21Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-pv2f-qqxf-mjq7/GHSA-pv2f-qqxf-mjq7.json b/advisories/unreviewed/2024/11/GHSA-pv2f-qqxf-mjq7/GHSA-pv2f-qqxf-mjq7.json new file mode 100644 index 00000000000..03c7c1beefd --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-pv2f-qqxf-mjq7/GHSA-pv2f-qqxf-mjq7.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pv2f-qqxf-mjq7", + "modified": "2024-11-13T18:32:01Z", + "published": "2024-11-13T18:32:01Z", + "aliases": [ + "CVE-2024-50969" + ], + "details": "A Reflected cross-site scripting (XSS) vulnerability in browse.php of Code-projects Jonnys Liquor 1.0 allows remote attackers to inject arbitrary web scripts or HTML via the search parameter.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50969" + }, + { + "type": "WEB", + "url": "https://code-projects.org/jonnys-liquor-in-php-css-javascript-and-mysql-free-download" + }, + { + "type": "WEB", + "url": "https://github.com/Akhlak2511/CVE-2024-50969" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T16:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-pvg7-86fr-gvjh/GHSA-pvg7-86fr-gvjh.json b/advisories/unreviewed/2024/11/GHSA-pvg7-86fr-gvjh/GHSA-pvg7-86fr-gvjh.json new file mode 100644 index 00000000000..1c216026e85 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-pvg7-86fr-gvjh/GHSA-pvg7-86fr-gvjh.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pvg7-86fr-gvjh", + "modified": "2024-11-13T18:32:04Z", + "published": "2024-11-13T18:32:04Z", + "aliases": [ + "CVE-2024-34747" + ], + "details": "In DevmemXIntMapPages of devicemem_server.c, there is a possible use-after-free due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34747" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:20Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-q6j5-v2c9-2998/GHSA-q6j5-v2c9-2998.json b/advisories/unreviewed/2024/11/GHSA-q6j5-v2c9-2998/GHSA-q6j5-v2c9-2998.json new file mode 100644 index 00000000000..c51bf946997 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-q6j5-v2c9-2998/GHSA-q6j5-v2c9-2998.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q6j5-v2c9-2998", + "modified": "2024-11-13T18:32:05Z", + "published": "2024-11-13T18:32:04Z", + "aliases": [ + "CVE-2024-40660" + ], + "details": "In setTransactionState of SurfaceFlinger.cpp, there is a possible way to change protected display attributes due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-40660" + }, + { + "type": "WEB", + "url": "https://android.googlesource.com/platform/frameworks/native/+/064ce6e3235b6318be1e41f1bac9595a98e4aafa" + }, + { + "type": "WEB", + "url": "https://android.googlesource.com/platform/frameworks/native/+/b6ddf525be3c2abbde59ae1533494b18a7961087" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:20Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-q7j7-7r72-9h66/GHSA-q7j7-7r72-9h66.json b/advisories/unreviewed/2024/11/GHSA-q7j7-7r72-9h66/GHSA-q7j7-7r72-9h66.json index ede10b34ff6..d97574d5c10 100644 --- a/advisories/unreviewed/2024/11/GHSA-q7j7-7r72-9h66/GHSA-q7j7-7r72-9h66.json +++ b/advisories/unreviewed/2024/11/GHSA-q7j7-7r72-9h66/GHSA-q7j7-7r72-9h66.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-q7j7-7r72-9h66", - "modified": "2024-11-12T21:30:54Z", + "modified": "2024-11-13T18:31:59Z", "published": "2024-11-12T21:30:54Z", "aliases": [ "CVE-2024-7516" ], "details": "A vulnerability in Brocade Fabric OS versions before 9.2.2 could allow man-in-the-middle attackers to conduct remote Service Session Hijacking that may arise from the attacker's ability to forge an SSH key while the Brocade Fabric OS Switch is performing various remote operations initiated by a switch admin.", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:A/AC:H/AT:P/PR:N/UI:P/VC:L/VI:L/VA:H/SC:H/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" diff --git a/advisories/unreviewed/2024/11/GHSA-qxg5-mcmp-m3m9/GHSA-qxg5-mcmp-m3m9.json b/advisories/unreviewed/2024/11/GHSA-qxg5-mcmp-m3m9/GHSA-qxg5-mcmp-m3m9.json index 95f77eebf15..8d21a9f54cb 100644 --- a/advisories/unreviewed/2024/11/GHSA-qxg5-mcmp-m3m9/GHSA-qxg5-mcmp-m3m9.json +++ b/advisories/unreviewed/2024/11/GHSA-qxg5-mcmp-m3m9/GHSA-qxg5-mcmp-m3m9.json @@ -44,7 +44,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-918" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-r4h2-76cg-69rf/GHSA-r4h2-76cg-69rf.json b/advisories/unreviewed/2024/11/GHSA-r4h2-76cg-69rf/GHSA-r4h2-76cg-69rf.json new file mode 100644 index 00000000000..e61678a483c --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-r4h2-76cg-69rf/GHSA-r4h2-76cg-69rf.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r4h2-76cg-69rf", + "modified": "2024-11-13T18:32:02Z", + "published": "2024-11-13T18:32:02Z", + "aliases": [ + "CVE-2024-50971" + ], + "details": "A SQL injection vulnerability in print.php of Itsourcecode Construction Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the map_id parameter.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50971" + }, + { + "type": "WEB", + "url": "https://github.com/Akhlak2511/CVE-2024-50971" + }, + { + "type": "WEB", + "url": "https://itsourcecode.com/free-projects/php-project/construction-management-system-project-in-php-with-source-code" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T16:15:19Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-r5p5-4qgc-2xcp/GHSA-r5p5-4qgc-2xcp.json b/advisories/unreviewed/2024/11/GHSA-r5p5-4qgc-2xcp/GHSA-r5p5-4qgc-2xcp.json index 3fdca24ef79..52135eb552f 100644 --- a/advisories/unreviewed/2024/11/GHSA-r5p5-4qgc-2xcp/GHSA-r5p5-4qgc-2xcp.json +++ b/advisories/unreviewed/2024/11/GHSA-r5p5-4qgc-2xcp/GHSA-r5p5-4qgc-2xcp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r5p5-4qgc-2xcp", - "modified": "2024-11-09T12:30:49Z", + "modified": "2024-11-13T18:31:54Z", "published": "2024-11-09T12:30:49Z", "aliases": [ "CVE-2024-50246" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nfs/ntfs3: Add rough attr alloc_size check", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-09T11:15:10Z" diff --git a/advisories/unreviewed/2024/11/GHSA-r72q-6ch6-cc79/GHSA-r72q-6ch6-cc79.json b/advisories/unreviewed/2024/11/GHSA-r72q-6ch6-cc79/GHSA-r72q-6ch6-cc79.json new file mode 100644 index 00000000000..2e645be85e7 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-r72q-6ch6-cc79/GHSA-r72q-6ch6-cc79.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r72q-6ch6-cc79", + "modified": "2024-11-13T18:32:04Z", + "published": "2024-11-13T18:32:04Z", + "aliases": [ + "CVE-2024-43080" + ], + "details": "In onReceive of AppRestrictionsFragment.java, there is a possible escalation of privilege due to unsafe deserialization. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43080" + }, + { + "type": "WEB", + "url": "https://android.googlesource.com/platform/packages/apps/Settings/+/26ce013dfd7e59a451acc66e7f05564e0884d46b" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:20Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-r8vx-grx7-h7xj/GHSA-r8vx-grx7-h7xj.json b/advisories/unreviewed/2024/11/GHSA-r8vx-grx7-h7xj/GHSA-r8vx-grx7-h7xj.json new file mode 100644 index 00000000000..0010c0bcaca --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-r8vx-grx7-h7xj/GHSA-r8vx-grx7-h7xj.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r8vx-grx7-h7xj", + "modified": "2024-11-13T18:32:04Z", + "published": "2024-11-13T18:32:04Z", + "aliases": [ + "CVE-2024-34729" + ], + "details": "In multiple locations, there is a possible arbitrary code execution due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34729" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:20Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-r9cc-7xcq-fpxg/GHSA-r9cc-7xcq-fpxg.json b/advisories/unreviewed/2024/11/GHSA-r9cc-7xcq-fpxg/GHSA-r9cc-7xcq-fpxg.json index 1a20de111d2..1a2a0de6078 100644 --- a/advisories/unreviewed/2024/11/GHSA-r9cc-7xcq-fpxg/GHSA-r9cc-7xcq-fpxg.json +++ b/advisories/unreviewed/2024/11/GHSA-r9cc-7xcq-fpxg/GHSA-r9cc-7xcq-fpxg.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r9cc-7xcq-fpxg", - "modified": "2024-11-07T12:30:35Z", + "modified": "2024-11-13T18:31:52Z", "published": "2024-11-07T12:30:35Z", "aliases": [ "CVE-2024-50154" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ntcp/dccp: Don't use timer_pending() in reqsk_queue_unlink().\n\nMartin KaFai Lau reported use-after-free [0] in reqsk_timer_handler().\n\n \"\"\"\n We are seeing a use-after-free from a bpf prog attached to\n trace_tcp_retransmit_synack. The program passes the req->sk to the\n bpf_sk_storage_get_tracing kernel helper which does check for null\n before using it.\n \"\"\"\n\nThe commit 83fccfc3940c (\"inet: fix potential deadlock in\nreqsk_queue_unlink()\") added timer_pending() in reqsk_queue_unlink() not\nto call del_timer_sync() from reqsk_timer_handler(), but it introduced a\nsmall race window.\n\nBefore the timer is called, expire_timers() calls detach_timer(timer, true)\nto clear timer->entry.pprev and marks it as not pending.\n\nIf reqsk_queue_unlink() checks timer_pending() just after expire_timers()\ncalls detach_timer(), TCP will miss del_timer_sync(); the reqsk timer will\ncontinue running and send multiple SYN+ACKs until it expires.\n\nThe reported UAF could happen if req->sk is close()d earlier than the timer\nexpiration, which is 63s by default.\n\nThe scenario would be\n\n 1. inet_csk_complete_hashdance() calls inet_csk_reqsk_queue_drop(),\n but del_timer_sync() is missed\n\n 2. reqsk timer is executed and scheduled again\n\n 3. req->sk is accept()ed and reqsk_put() decrements rsk_refcnt, but\n reqsk timer still has another one, and inet_csk_accept() does not\n clear req->sk for non-TFO sockets\n\n 4. sk is close()d\n\n 5. reqsk timer is executed again, and BPF touches req->sk\n\nLet's not use timer_pending() by passing the caller context to\n__inet_csk_reqsk_queue_drop().\n\nNote that reqsk timer is pinned, so the issue does not happen in most\nuse cases. [1]\n\n[0]\nBUG: KFENCE: use-after-free read in bpf_sk_storage_get_tracing+0x2e/0x1b0\n\nUse-after-free read at 0x00000000a891fb3a (in kfence-#1):\nbpf_sk_storage_get_tracing+0x2e/0x1b0\nbpf_prog_5ea3e95db6da0438_tcp_retransmit_synack+0x1d20/0x1dda\nbpf_trace_run2+0x4c/0xc0\ntcp_rtx_synack+0xf9/0x100\nreqsk_timer_handler+0xda/0x3d0\nrun_timer_softirq+0x292/0x8a0\nirq_exit_rcu+0xf5/0x320\nsysvec_apic_timer_interrupt+0x6d/0x80\nasm_sysvec_apic_timer_interrupt+0x16/0x20\nintel_idle_irq+0x5a/0xa0\ncpuidle_enter_state+0x94/0x273\ncpu_startup_entry+0x15e/0x260\nstart_secondary+0x8a/0x90\nsecondary_startup_64_no_verify+0xfa/0xfb\n\nkfence-#1: 0x00000000a72cc7b6-0x00000000d97616d9, size=2376, cache=TCPv6\n\nallocated by task 0 on cpu 9 at 260507.901592s:\nsk_prot_alloc+0x35/0x140\nsk_clone_lock+0x1f/0x3f0\ninet_csk_clone_lock+0x15/0x160\ntcp_create_openreq_child+0x1f/0x410\ntcp_v6_syn_recv_sock+0x1da/0x700\ntcp_check_req+0x1fb/0x510\ntcp_v6_rcv+0x98b/0x1420\nipv6_list_rcv+0x2258/0x26e0\nnapi_complete_done+0x5b1/0x2990\nmlx5e_napi_poll+0x2ae/0x8d0\nnet_rx_action+0x13e/0x590\nirq_exit_rcu+0xf5/0x320\ncommon_interrupt+0x80/0x90\nasm_common_interrupt+0x22/0x40\ncpuidle_enter_state+0xfb/0x273\ncpu_startup_entry+0x15e/0x260\nstart_secondary+0x8a/0x90\nsecondary_startup_64_no_verify+0xfa/0xfb\n\nfreed by task 0 on cpu 9 at 260507.927527s:\nrcu_core_si+0x4ff/0xf10\nirq_exit_rcu+0xf5/0x320\nsysvec_apic_timer_interrupt+0x6d/0x80\nasm_sysvec_apic_timer_interrupt+0x16/0x20\ncpuidle_enter_state+0xfb/0x273\ncpu_startup_entry+0x15e/0x260\nstart_secondary+0x8a/0x90\nsecondary_startup_64_no_verify+0xfa/0xfb", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -41,9 +44,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-07T10:15:06Z" diff --git a/advisories/unreviewed/2024/11/GHSA-rj97-2r59-3w68/GHSA-rj97-2r59-3w68.json b/advisories/unreviewed/2024/11/GHSA-rj97-2r59-3w68/GHSA-rj97-2r59-3w68.json index e4a73287c37..93d24828be1 100644 --- a/advisories/unreviewed/2024/11/GHSA-rj97-2r59-3w68/GHSA-rj97-2r59-3w68.json +++ b/advisories/unreviewed/2024/11/GHSA-rj97-2r59-3w68/GHSA-rj97-2r59-3w68.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-88" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-rrv9-xfv2-43m6/GHSA-rrv9-xfv2-43m6.json b/advisories/unreviewed/2024/11/GHSA-rrv9-xfv2-43m6/GHSA-rrv9-xfv2-43m6.json index f749ed6e1cd..5eb9db133db 100644 --- a/advisories/unreviewed/2024/11/GHSA-rrv9-xfv2-43m6/GHSA-rrv9-xfv2-43m6.json +++ b/advisories/unreviewed/2024/11/GHSA-rrv9-xfv2-43m6/GHSA-rrv9-xfv2-43m6.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-rrv9-xfv2-43m6", - "modified": "2024-11-09T12:30:49Z", + "modified": "2024-11-13T18:31:54Z", "published": "2024-11-09T12:30:49Z", "aliases": [ "CVE-2024-50243" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nfs/ntfs3: Fix general protection fault in run_is_mapped_full\n\nFixed deleating of a non-resident attribute in ntfs_create_inode()\nrollback.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-09T11:15:10Z" diff --git a/advisories/unreviewed/2024/11/GHSA-rvw7-mvc2-hwvc/GHSA-rvw7-mvc2-hwvc.json b/advisories/unreviewed/2024/11/GHSA-rvw7-mvc2-hwvc/GHSA-rvw7-mvc2-hwvc.json index bb60ec03e1c..99dd972cc63 100644 --- a/advisories/unreviewed/2024/11/GHSA-rvw7-mvc2-hwvc/GHSA-rvw7-mvc2-hwvc.json +++ b/advisories/unreviewed/2024/11/GHSA-rvw7-mvc2-hwvc/GHSA-rvw7-mvc2-hwvc.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-w26w-xhj2-cfxj/GHSA-w26w-xhj2-cfxj.json b/advisories/unreviewed/2024/11/GHSA-w26w-xhj2-cfxj/GHSA-w26w-xhj2-cfxj.json index ad0ea171e2a..131429fce7f 100644 --- a/advisories/unreviewed/2024/11/GHSA-w26w-xhj2-cfxj/GHSA-w26w-xhj2-cfxj.json +++ b/advisories/unreviewed/2024/11/GHSA-w26w-xhj2-cfxj/GHSA-w26w-xhj2-cfxj.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-400" + "CWE-400", + "CWE-770" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-w2hm-jj7v-qvjx/GHSA-w2hm-jj7v-qvjx.json b/advisories/unreviewed/2024/11/GHSA-w2hm-jj7v-qvjx/GHSA-w2hm-jj7v-qvjx.json index 3bbe9a34c70..f70fe24f86e 100644 --- a/advisories/unreviewed/2024/11/GHSA-w2hm-jj7v-qvjx/GHSA-w2hm-jj7v-qvjx.json +++ b/advisories/unreviewed/2024/11/GHSA-w2hm-jj7v-qvjx/GHSA-w2hm-jj7v-qvjx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-w2hm-jj7v-qvjx", - "modified": "2024-11-08T06:30:49Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-08T06:30:49Z", "aliases": [ "CVE-2024-50206" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: ethernet: mtk_eth_soc: fix memory corruption during fq dma init\n\nThe loop responsible for allocating up to MTK_FQ_DMA_LENGTH buffers must\nonly touch as many descriptors, otherwise it ends up corrupting unrelated\nmemory. Fix the loop iteration count accordingly.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-787" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-08T06:15:16Z" diff --git a/advisories/unreviewed/2024/11/GHSA-w77m-f2hf-vg8m/GHSA-w77m-f2hf-vg8m.json b/advisories/unreviewed/2024/11/GHSA-w77m-f2hf-vg8m/GHSA-w77m-f2hf-vg8m.json new file mode 100644 index 00000000000..27f927af887 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-w77m-f2hf-vg8m/GHSA-w77m-f2hf-vg8m.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w77m-f2hf-vg8m", + "modified": "2024-11-13T18:32:05Z", + "published": "2024-11-13T18:32:05Z", + "aliases": [ + "CVE-2024-43086" + ], + "details": "In validateAccountsInternal of AccountManagerService.java, there is a possible way to leak account credentials to a third party app due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43086" + }, + { + "type": "WEB", + "url": "https://android.googlesource.com/platform/frameworks/base/+/55a3d36701bb874358f685d3ac3381eda10fcff0" + }, + { + "type": "WEB", + "url": "https://source.android.com/security/bulletin/2024-11-01" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T18:15:21Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-w7cf-g3rh-q9hc/GHSA-w7cf-g3rh-q9hc.json b/advisories/unreviewed/2024/11/GHSA-w7cf-g3rh-q9hc/GHSA-w7cf-g3rh-q9hc.json index 6fe4b97c29a..7fba103dd2f 100644 --- a/advisories/unreviewed/2024/11/GHSA-w7cf-g3rh-q9hc/GHSA-w7cf-g3rh-q9hc.json +++ b/advisories/unreviewed/2024/11/GHSA-w7cf-g3rh-q9hc/GHSA-w7cf-g3rh-q9hc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-w7cf-g3rh-q9hc", - "modified": "2024-11-12T18:30:57Z", + "modified": "2024-11-13T18:31:54Z", "published": "2024-11-12T18:30:57Z", "aliases": [ "CVE-2024-50330" diff --git a/advisories/unreviewed/2024/11/GHSA-w9xp-hq72-9j37/GHSA-w9xp-hq72-9j37.json b/advisories/unreviewed/2024/11/GHSA-w9xp-hq72-9j37/GHSA-w9xp-hq72-9j37.json index c66c7da612e..9a7442d3c30 100644 --- a/advisories/unreviewed/2024/11/GHSA-w9xp-hq72-9j37/GHSA-w9xp-hq72-9j37.json +++ b/advisories/unreviewed/2024/11/GHSA-w9xp-hq72-9j37/GHSA-w9xp-hq72-9j37.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-w9xp-hq72-9j37", - "modified": "2024-11-13T15:31:38Z", + "modified": "2024-11-13T18:32:00Z", "published": "2024-11-13T15:31:38Z", "aliases": [ "CVE-2024-49506" ], "details": "Insecure creation of temporary files allows local users on systems with non-default configurations to cause denial of service or set the encryption key for a filesystem", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:N" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" diff --git a/advisories/unreviewed/2024/11/GHSA-wg5x-j7p6-x5pc/GHSA-wg5x-j7p6-x5pc.json b/advisories/unreviewed/2024/11/GHSA-wg5x-j7p6-x5pc/GHSA-wg5x-j7p6-x5pc.json index 19e0531c0ae..fce9e553aea 100644 --- a/advisories/unreviewed/2024/11/GHSA-wg5x-j7p6-x5pc/GHSA-wg5x-j7p6-x5pc.json +++ b/advisories/unreviewed/2024/11/GHSA-wg5x-j7p6-x5pc/GHSA-wg5x-j7p6-x5pc.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-wg5x-j7p6-x5pc", - "modified": "2024-11-08T18:30:50Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-08T18:30:50Z", "aliases": [ "CVE-2024-51152" ], "details": "File Upload vulnerability in Laravel CMS v.1.4.7 and before allows a remote attacker to execute arbitrary code via the shell.php a component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-434" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-08T18:15:17Z" diff --git a/advisories/unreviewed/2024/11/GHSA-wjcx-j69p-3c64/GHSA-wjcx-j69p-3c64.json b/advisories/unreviewed/2024/11/GHSA-wjcx-j69p-3c64/GHSA-wjcx-j69p-3c64.json index 024e3ea764e..b95775a5449 100644 --- a/advisories/unreviewed/2024/11/GHSA-wjcx-j69p-3c64/GHSA-wjcx-j69p-3c64.json +++ b/advisories/unreviewed/2024/11/GHSA-wjcx-j69p-3c64/GHSA-wjcx-j69p-3c64.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-wjcx-j69p-3c64", - "modified": "2024-11-09T12:30:49Z", + "modified": "2024-11-13T18:31:54Z", "published": "2024-11-09T12:30:49Z", "aliases": [ "CVE-2024-50245" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nfs/ntfs3: Fix possible deadlock in mi_read\n\nMutex lock with another subclass used in ni_lock_dir().", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -43,7 +46,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-09T11:15:10Z" diff --git a/advisories/unreviewed/2024/11/GHSA-wpwf-qxpx-v6qh/GHSA-wpwf-qxpx-v6qh.json b/advisories/unreviewed/2024/11/GHSA-wpwf-qxpx-v6qh/GHSA-wpwf-qxpx-v6qh.json index 6990c249342..e85d0de37be 100644 --- a/advisories/unreviewed/2024/11/GHSA-wpwf-qxpx-v6qh/GHSA-wpwf-qxpx-v6qh.json +++ b/advisories/unreviewed/2024/11/GHSA-wpwf-qxpx-v6qh/GHSA-wpwf-qxpx-v6qh.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-wpwf-qxpx-v6qh", - "modified": "2024-11-08T18:30:50Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-08T06:30:49Z", "aliases": [ "CVE-2024-50205" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: firewire-lib: Avoid division by zero in apply_constraint_to_size()\n\nThe step variable is initialized to zero. It is changed in the loop,\nbut if it's not changed it will remain zero. Add a variable check\nbefore the division.\n\nThe observed behavior was introduced by commit 826b5de90c0b\n(\"ALSA: firewire-lib: fix insufficient PCM rule for period/buffer size\"),\nand it is difficult to show that any of the interval parameters will\nsatisfy the snd_interval_test() condition with data from the\namdtp_rate_table[] table.\n\nFound by Linux Verification Center (linuxtesting.org) with SVACE.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -49,9 +52,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-369" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-08T06:15:16Z" diff --git a/advisories/unreviewed/2024/11/GHSA-wq79-mjg7-48hq/GHSA-wq79-mjg7-48hq.json b/advisories/unreviewed/2024/11/GHSA-wq79-mjg7-48hq/GHSA-wq79-mjg7-48hq.json index e60e91b9293..bf9dfcaf2d1 100644 --- a/advisories/unreviewed/2024/11/GHSA-wq79-mjg7-48hq/GHSA-wq79-mjg7-48hq.json +++ b/advisories/unreviewed/2024/11/GHSA-wq79-mjg7-48hq/GHSA-wq79-mjg7-48hq.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-wq79-mjg7-48hq", - "modified": "2024-11-12T21:30:55Z", + "modified": "2024-11-13T18:31:59Z", "published": "2024-11-12T21:30:55Z", "aliases": [ "CVE-2024-11117" ], "details": "Inappropriate implementation in FileSystem in Google Chrome prior to 131.0.6778.69 allowed a remote attacker to bypass filesystem restrictions via a crafted HTML page. (Chromium security severity: Low)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-12T21:15:11Z" diff --git a/advisories/unreviewed/2024/11/GHSA-ww66-45gm-65fm/GHSA-ww66-45gm-65fm.json b/advisories/unreviewed/2024/11/GHSA-ww66-45gm-65fm/GHSA-ww66-45gm-65fm.json index 168618d1fbc..f7a7fa8fe21 100644 --- a/advisories/unreviewed/2024/11/GHSA-ww66-45gm-65fm/GHSA-ww66-45gm-65fm.json +++ b/advisories/unreviewed/2024/11/GHSA-ww66-45gm-65fm/GHSA-ww66-45gm-65fm.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-ww66-45gm-65fm", - "modified": "2024-11-12T18:31:00Z", + "modified": "2024-11-13T18:31:59Z", "published": "2024-11-12T18:31:00Z", "aliases": [ "CVE-2024-8069" ], "details": "Limited remote code execution with privilege of a NetworkService Account access in Citrix Session Recording if the attacker is an authenticated user on the same intranet as the session recording server", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" @@ -28,7 +32,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-502" + "CWE-502", + "CWE-94" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-x49r-92c3-x599/GHSA-x49r-92c3-x599.json b/advisories/unreviewed/2024/11/GHSA-x49r-92c3-x599/GHSA-x49r-92c3-x599.json new file mode 100644 index 00000000000..d8879bf5abc --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-x49r-92c3-x599/GHSA-x49r-92c3-x599.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x49r-92c3-x599", + "modified": "2024-11-13T18:32:04Z", + "published": "2024-11-13T18:32:04Z", + "aliases": [ + "CVE-2024-7295" + ], + "details": "In Progress® Telerik® Report Server versions prior to 2024 Q4 (10.3.24.1112), the encryption of local asset data used an older algorithm which may allow a sophisticated actor to decrypt this information.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-7295" + }, + { + "type": "WEB", + "url": "https://docs.telerik.com/report-server/knowledge-base/encryption-weakness-cve-2024-7295" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-798" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-13T16:15:20Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-xgvm-jcp3-352m/GHSA-xgvm-jcp3-352m.json b/advisories/unreviewed/2024/11/GHSA-xgvm-jcp3-352m/GHSA-xgvm-jcp3-352m.json index 05a9f7045ab..c65f68f795a 100644 --- a/advisories/unreviewed/2024/11/GHSA-xgvm-jcp3-352m/GHSA-xgvm-jcp3-352m.json +++ b/advisories/unreviewed/2024/11/GHSA-xgvm-jcp3-352m/GHSA-xgvm-jcp3-352m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-xgvm-jcp3-352m", - "modified": "2024-11-09T12:30:47Z", + "modified": "2024-11-13T18:31:53Z", "published": "2024-11-09T12:30:47Z", "aliases": [ "CVE-2024-50214" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/connector: hdmi: Fix memory leak in drm_display_mode_from_cea_vic()\n\nmodprobe drm_connector_test and then rmmod drm_connector_test,\nthe following memory leak occurs.\n\nThe `mode` allocated in drm_mode_duplicate() called by\ndrm_display_mode_from_cea_vic() is not freed, which cause the memory leak:\n\n\tunreferenced object 0xffffff80cb0ee400 (size 128):\n\t comm \"kunit_try_catch\", pid 1948, jiffies 4294950339\n\t hex dump (first 32 bytes):\n\t 14 44 02 00 80 07 d8 07 04 08 98 08 00 00 38 04 .D............8.\n\t 3c 04 41 04 65 04 00 00 05 00 00 00 00 00 00 00 <.A.e...........\n\t backtrace (crc 90e9585c):\n\t [<00000000ec42e3d7>] kmemleak_alloc+0x34/0x40\n\t [<00000000d0ef055a>] __kmalloc_cache_noprof+0x26c/0x2f4\n\t [<00000000c2062161>] drm_mode_duplicate+0x44/0x19c\n\t [<00000000f96c74aa>] drm_display_mode_from_cea_vic+0x88/0x98\n\t [<00000000d8f2c8b4>] 0xffffffdc982a4868\n\t [<000000005d164dbc>] kunit_try_run_case+0x13c/0x3ac\n\t [<000000006fb23398>] kunit_generic_run_threadfn_adapter+0x80/0xec\n\t [<000000006ea56ca0>] kthread+0x2e8/0x374\n\t [<000000000676063f>] ret_from_fork+0x10/0x20\n\t......\n\nFree `mode` by using drm_kunit_display_mode_from_cea_vic()\nto fix it.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-401" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-09T11:15:06Z"