From 73df39b8ce52bc17b8f6be18eadbf7fbcbe0f3b2 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Mon, 14 Apr 2025 21:47:29 +0000 Subject: [PATCH] Publish Advisories GHSA-c2fx-8r76-gh36 GHSA-qqh2-h6gw-6x8x GHSA-vccp-5v5h-p8m6 --- .../GHSA-c2fx-8r76-gh36/GHSA-c2fx-8r76-gh36.json | 10 +++------- .../GHSA-qqh2-h6gw-6x8x/GHSA-qqh2-h6gw-6x8x.json | 14 +++++--------- .../GHSA-vccp-5v5h-p8m6/GHSA-vccp-5v5h-p8m6.json | 12 ++++++++---- 3 files changed, 16 insertions(+), 20 deletions(-) diff --git a/advisories/github-reviewed/2018/11/GHSA-c2fx-8r76-gh36/GHSA-c2fx-8r76-gh36.json b/advisories/github-reviewed/2018/11/GHSA-c2fx-8r76-gh36/GHSA-c2fx-8r76-gh36.json index e0d3ebac2fa..f62d56fcc8a 100644 --- a/advisories/github-reviewed/2018/11/GHSA-c2fx-8r76-gh36/GHSA-c2fx-8r76-gh36.json +++ b/advisories/github-reviewed/2018/11/GHSA-c2fx-8r76-gh36/GHSA-c2fx-8r76-gh36.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-c2fx-8r76-gh36", - "modified": "2024-10-24T21:56:33Z", + "modified": "2025-04-14T21:45:58Z", "published": "2018-11-06T23:14:22Z", "aliases": [ "CVE-2013-7323" ], - "summary": "High severity vulnerability that affects python-gnupg", + "summary": "python-gnupg allows context-dependent attackers to execute arbitrary commands via shell metacharacters", "details": "python-gnupg before 0.3.5 allows context-dependent attackers to execute arbitrary commands via shell metacharacters in unspecified vectors.", "severity": [ { @@ -51,10 +51,6 @@ "type": "WEB", "url": "https://code.google.com/p/python-gnupg" }, - { - "type": "ADVISORY", - "url": "https://github.com/advisories/GHSA-c2fx-8r76-gh36" - }, { "type": "WEB", "url": "https://github.com/pypa/advisory-database/tree/main/vulns/python-gnupg/PYSEC-2014-89.yaml" @@ -85,6 +81,6 @@ "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2020-06-16T21:29:59Z", - "nvd_published_at": null + "nvd_published_at": "2014-06-09T19:55:10Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2022/05/GHSA-qqh2-h6gw-6x8x/GHSA-qqh2-h6gw-6x8x.json b/advisories/github-reviewed/2022/05/GHSA-qqh2-h6gw-6x8x/GHSA-qqh2-h6gw-6x8x.json index c5f27d72924..6d28a7981bd 100644 --- a/advisories/github-reviewed/2022/05/GHSA-qqh2-h6gw-6x8x/GHSA-qqh2-h6gw-6x8x.json +++ b/advisories/github-reviewed/2022/05/GHSA-qqh2-h6gw-6x8x/GHSA-qqh2-h6gw-6x8x.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qqh2-h6gw-6x8x", - "modified": "2023-08-16T22:44:09Z", + "modified": "2025-04-14T21:44:56Z", "published": "2022-05-14T04:01:57Z", "aliases": [ "CVE-2014-3943" @@ -127,6 +127,10 @@ "type": "WEB", "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/typo3/cms/CVE-2014-3943.yaml" }, + { + "type": "WEB", + "url": "https://typo3.org/security/advisory/typo3-core-sa-2014-001" + }, { "type": "WEB", "url": "https://typo3.org/teams/security/security-bulletins/typo3-core/typo3-core-sa-2014-001" @@ -139,10 +143,6 @@ "type": "WEB", "url": "http://lists.opensuse.org/opensuse-updates/2014-06/msg00037.html" }, - { - "type": "WEB", - "url": "http://typo3.org/teams/security/security-bulletins/typo3-core/typo3-core-sa-2014-001" - }, { "type": "WEB", "url": "http://www.debian.org/security/2014/dsa-2942" @@ -150,10 +150,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2014/06/03/2" - }, - { - "type": "WEB", - "url": "http://www.securityfocus.com/bid/67625" } ], "database_specific": { diff --git a/advisories/github-reviewed/2022/05/GHSA-vccp-5v5h-p8m6/GHSA-vccp-5v5h-p8m6.json b/advisories/github-reviewed/2022/05/GHSA-vccp-5v5h-p8m6/GHSA-vccp-5v5h-p8m6.json index 9c0b2b54a2f..7c90a2b2dde 100644 --- a/advisories/github-reviewed/2022/05/GHSA-vccp-5v5h-p8m6/GHSA-vccp-5v5h-p8m6.json +++ b/advisories/github-reviewed/2022/05/GHSA-vccp-5v5h-p8m6/GHSA-vccp-5v5h-p8m6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vccp-5v5h-p8m6", - "modified": "2023-08-16T23:29:58Z", + "modified": "2025-04-14T21:45:04Z", "published": "2022-05-17T04:42:47Z", "aliases": [ "CVE-2014-3946" @@ -40,12 +40,16 @@ "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/typo3/cms/CVE-2014-3946.yaml" }, { - "type": "WEB", - "url": "https://typo3.org/teams/security/security-bulletins/typo3-core/typo3-core-sa-2014-001" + "type": "PACKAGE", + "url": "https://github.com/TYPO3/typo3" }, { "type": "WEB", - "url": "http://typo3.org/teams/security/security-bulletins/typo3-core/typo3-core-sa-2014-001" + "url": "https://typo3.org/security/advisory/typo3-core-sa-2014-001" + }, + { + "type": "WEB", + "url": "https://typo3.org/teams/security/security-bulletins/typo3-core/typo3-core-sa-2014-001" }, { "type": "WEB",