From 78b82644d143957a8eaf5769d55753153f7d7d53 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Tue, 25 Jun 2024 21:32:39 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-4vrg-gm73-c852.json | 6 ++- .../GHSA-qhp7-446p-xq88.json | 6 ++- .../GHSA-4m6w-vxqg-9rmm.json | 10 +++- .../GHSA-3cfm-49vw-5qrv.json | 6 ++- .../GHSA-cw47-8xqr-cfh2.json | 6 ++- .../GHSA-gfh2-2mj9-m2cx.json | 6 ++- .../GHSA-m3mr-pjj3-2g74.json | 6 ++- .../GHSA-qmff-49xc-7rf6.json | 10 +++- .../GHSA-25g3-q597-79m8.json | 6 ++- .../GHSA-25vh-f6xx-mfc3.json | 6 ++- .../GHSA-268r-8rwm-mqq9.json | 6 ++- .../GHSA-2rwp-xr6x-9ppc.json | 6 ++- .../GHSA-3hp3-h35p-gqg4.json | 6 ++- .../GHSA-53gx-3hrh-cr29.json | 6 ++- .../GHSA-64r6-8p6g-7r26.json | 6 ++- .../GHSA-6f72-79f8-3qcp.json | 6 ++- .../GHSA-74mg-f7w3-pcrr.json | 6 ++- .../GHSA-7gq6-cq6r-rrpx.json | 6 ++- .../GHSA-84fp-h279-ggmw.json | 6 ++- .../GHSA-8pq4-pmqh-grvh.json | 6 ++- .../GHSA-8xf7-6cv9-64f7.json | 6 ++- .../GHSA-98fx-x879-qp6f.json | 6 ++- .../GHSA-9xmv-37c3-q98h.json | 6 ++- .../GHSA-c77m-cx29-7m84.json | 6 ++- .../GHSA-f594-3jwf-g74j.json | 6 ++- .../GHSA-m32w-wmcr-wvxf.json | 6 ++- .../GHSA-q98m-fjjg-rxw5.json | 6 ++- .../GHSA-qjx2-j5wq-qc39.json | 6 ++- .../GHSA-v8xr-j3gp-fmxj.json | 6 ++- .../GHSA-vj2q-j7r5-rxmc.json | 6 ++- .../GHSA-w3hv-rwgr-crx3.json | 6 ++- .../GHSA-w5fp-p5rq-w697.json | 6 ++- .../GHSA-xfvp-h462-p6q2.json | 6 ++- .../GHSA-xw3g-x45j-xxhh.json | 6 ++- .../GHSA-2vrm-jm55-jg94.json | 6 ++- .../GHSA-2xhh-m3cf-854c.json | 6 ++- .../GHSA-5222-7chv-655h.json | 6 ++- .../GHSA-5h3h-5652-8xp5.json | 6 ++- .../GHSA-9x4r-pqr3-8fxx.json | 6 ++- .../GHSA-hwc8-wrmm-ch4w.json | 6 ++- .../GHSA-pp36-2qc2-w4hw.json | 6 ++- .../GHSA-5mg2-h7qv-m552.json | 6 ++- .../GHSA-77mf-44mv-3m36.json | 6 ++- .../GHSA-825r-gh5g-48mg.json | 6 ++- .../GHSA-fpf4-cfch-367m.json | 6 ++- .../GHSA-pgc5-vrj2-c9w5.json | 6 ++- .../GHSA-vh6q-mgp6-79wr.json | 6 ++- .../GHSA-w9mj-34hr-82rj.json | 6 ++- .../GHSA-wcqp-hrg4-jgjg.json | 6 ++- .../GHSA-2m4f-546m-3phv.json | 6 ++- .../GHSA-2xxj-gwfx-rr2c.json | 6 ++- .../GHSA-3c4m-3xhw-2cr2.json | 6 ++- .../GHSA-6f8x-5hmv-67rj.json | 6 ++- .../GHSA-74r2-q9hq-437j.json | 6 ++- .../GHSA-7g29-9wjm-w488.json | 6 ++- .../GHSA-8wqr-cpqw-79wq.json | 6 ++- .../GHSA-c363-rc2q-jqjx.json | 6 ++- .../GHSA-g9gx-3ccx-85w8.json | 6 ++- .../GHSA-h29p-8rqx-m8pq.json | 6 ++- .../GHSA-h47h-825h-v496.json | 6 ++- .../GHSA-hw8p-x386-rr5f.json | 6 ++- .../GHSA-hxgr-6xc2-q9mv.json | 6 ++- .../GHSA-mmhf-mx7h-v77h.json | 6 ++- .../GHSA-pjfg-v5mv-4jmm.json | 6 ++- .../GHSA-pjwx-p5wv-785h.json | 6 ++- .../GHSA-r32h-q4vw-rvf3.json | 6 ++- .../GHSA-x622-4m47-6h54.json | 6 ++- .../GHSA-2jfg-r68g-p4gm.json | 42 +++++++++++++++++ .../GHSA-3325-26ch-q5p3.json | 42 +++++++++++++++++ .../GHSA-427c-cc94-833h.json | 39 ++++++++++++++++ .../GHSA-4cwh-j7h3-gc75.json | 38 +++++++++++++++ .../GHSA-4m8x-4m59-3q64.json | 35 ++++++++++++++ .../GHSA-4xjp-m233-hj66.json | 35 ++++++++++++++ .../GHSA-5prg-92hj-2g9x.json | 42 +++++++++++++++++ .../GHSA-5qqw-chw3-g8wp.json | 42 +++++++++++++++++ .../GHSA-67p8-jrm8-g765.json | 42 +++++++++++++++++ .../GHSA-723f-c7g3-864c.json | 35 ++++++++++++++ .../GHSA-75c9-4w8r-55h3.json | 38 +++++++++++++++ .../GHSA-88j6-g325-rxhg.json | 35 ++++++++++++++ .../GHSA-9g6g-xqv5-8g5w.json | 35 ++++++++++++++ .../GHSA-g545-rmg6-689p.json | 6 ++- .../GHSA-hq4f-mv3q-8wcv.json | 35 ++++++++++++++ .../GHSA-j3rp-hcww-24pq.json | 42 +++++++++++++++++ .../GHSA-jpqc-c443-hw5c.json | 42 +++++++++++++++++ .../GHSA-mgcv-6r68-pw73.json | 46 +++++++++++++++++++ .../GHSA-mp2r-5xxf-j299.json | 42 +++++++++++++++++ .../GHSA-mx99-9j8j-frc2.json | 42 +++++++++++++++++ .../GHSA-pj4v-w3wh-h643.json | 35 ++++++++++++++ .../GHSA-pw52-mhpv-c8hc.json | 42 +++++++++++++++++ .../GHSA-q398-fvpf-fh5x.json | 35 ++++++++++++++ .../GHSA-qcj6-wq2r-c3xh.json | 42 +++++++++++++++++ .../GHSA-rw28-wf4m-hxpv.json | 42 +++++++++++++++++ .../GHSA-rxw3-jm8w-c989.json | 42 +++++++++++++++++ .../GHSA-vp43-wpfx-v79m.json | 42 +++++++++++++++++ .../GHSA-vrxq-687c-64w5.json | 42 +++++++++++++++++ 95 files changed, 1419 insertions(+), 68 deletions(-) create mode 100644 advisories/unreviewed/2024/06/GHSA-2jfg-r68g-p4gm/GHSA-2jfg-r68g-p4gm.json create mode 100644 advisories/unreviewed/2024/06/GHSA-3325-26ch-q5p3/GHSA-3325-26ch-q5p3.json create mode 100644 advisories/unreviewed/2024/06/GHSA-427c-cc94-833h/GHSA-427c-cc94-833h.json create mode 100644 advisories/unreviewed/2024/06/GHSA-4cwh-j7h3-gc75/GHSA-4cwh-j7h3-gc75.json create mode 100644 advisories/unreviewed/2024/06/GHSA-4m8x-4m59-3q64/GHSA-4m8x-4m59-3q64.json create mode 100644 advisories/unreviewed/2024/06/GHSA-4xjp-m233-hj66/GHSA-4xjp-m233-hj66.json create mode 100644 advisories/unreviewed/2024/06/GHSA-5prg-92hj-2g9x/GHSA-5prg-92hj-2g9x.json create mode 100644 advisories/unreviewed/2024/06/GHSA-5qqw-chw3-g8wp/GHSA-5qqw-chw3-g8wp.json create mode 100644 advisories/unreviewed/2024/06/GHSA-67p8-jrm8-g765/GHSA-67p8-jrm8-g765.json create mode 100644 advisories/unreviewed/2024/06/GHSA-723f-c7g3-864c/GHSA-723f-c7g3-864c.json create mode 100644 advisories/unreviewed/2024/06/GHSA-75c9-4w8r-55h3/GHSA-75c9-4w8r-55h3.json create mode 100644 advisories/unreviewed/2024/06/GHSA-88j6-g325-rxhg/GHSA-88j6-g325-rxhg.json create mode 100644 advisories/unreviewed/2024/06/GHSA-9g6g-xqv5-8g5w/GHSA-9g6g-xqv5-8g5w.json create mode 100644 advisories/unreviewed/2024/06/GHSA-hq4f-mv3q-8wcv/GHSA-hq4f-mv3q-8wcv.json create mode 100644 advisories/unreviewed/2024/06/GHSA-j3rp-hcww-24pq/GHSA-j3rp-hcww-24pq.json create mode 100644 advisories/unreviewed/2024/06/GHSA-jpqc-c443-hw5c/GHSA-jpqc-c443-hw5c.json create mode 100644 advisories/unreviewed/2024/06/GHSA-mgcv-6r68-pw73/GHSA-mgcv-6r68-pw73.json create mode 100644 advisories/unreviewed/2024/06/GHSA-mp2r-5xxf-j299/GHSA-mp2r-5xxf-j299.json create mode 100644 advisories/unreviewed/2024/06/GHSA-mx99-9j8j-frc2/GHSA-mx99-9j8j-frc2.json create mode 100644 advisories/unreviewed/2024/06/GHSA-pj4v-w3wh-h643/GHSA-pj4v-w3wh-h643.json create mode 100644 advisories/unreviewed/2024/06/GHSA-pw52-mhpv-c8hc/GHSA-pw52-mhpv-c8hc.json create mode 100644 advisories/unreviewed/2024/06/GHSA-q398-fvpf-fh5x/GHSA-q398-fvpf-fh5x.json create mode 100644 advisories/unreviewed/2024/06/GHSA-qcj6-wq2r-c3xh/GHSA-qcj6-wq2r-c3xh.json create mode 100644 advisories/unreviewed/2024/06/GHSA-rw28-wf4m-hxpv/GHSA-rw28-wf4m-hxpv.json create mode 100644 advisories/unreviewed/2024/06/GHSA-rxw3-jm8w-c989/GHSA-rxw3-jm8w-c989.json create mode 100644 advisories/unreviewed/2024/06/GHSA-vp43-wpfx-v79m/GHSA-vp43-wpfx-v79m.json create mode 100644 advisories/unreviewed/2024/06/GHSA-vrxq-687c-64w5/GHSA-vrxq-687c-64w5.json diff --git a/advisories/unreviewed/2022/09/GHSA-4vrg-gm73-c852/GHSA-4vrg-gm73-c852.json b/advisories/unreviewed/2022/09/GHSA-4vrg-gm73-c852/GHSA-4vrg-gm73-c852.json index ef04597cdb8..7d22eed35a8 100644 --- a/advisories/unreviewed/2022/09/GHSA-4vrg-gm73-c852/GHSA-4vrg-gm73-c852.json +++ b/advisories/unreviewed/2022/09/GHSA-4vrg-gm73-c852/GHSA-4vrg-gm73-c852.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4vrg-gm73-c852", - "modified": "2022-09-15T00:00:18Z", + "modified": "2024-06-25T21:31:09Z", "published": "2022-09-10T00:00:29Z", "aliases": [ "CVE-2022-38096" @@ -24,6 +24,10 @@ { "type": "WEB", "url": "https://bugzilla.openanolis.cn/show_bug.cgi?id=2073" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2023/11/GHSA-qhp7-446p-xq88/GHSA-qhp7-446p-xq88.json b/advisories/unreviewed/2023/11/GHSA-qhp7-446p-xq88/GHSA-qhp7-446p-xq88.json index 64672cb38f7..93204dd7a26 100644 --- a/advisories/unreviewed/2023/11/GHSA-qhp7-446p-xq88/GHSA-qhp7-446p-xq88.json +++ b/advisories/unreviewed/2023/11/GHSA-qhp7-446p-xq88/GHSA-qhp7-446p-xq88.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qhp7-446p-xq88", - "modified": "2024-05-22T18:30:38Z", + "modified": "2024-06-25T21:31:10Z", "published": "2023-11-09T21:30:38Z", "aliases": [ "CVE-2023-39198" @@ -40,6 +40,10 @@ { "type": "WEB", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2218332" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2023/12/GHSA-4m6w-vxqg-9rmm/GHSA-4m6w-vxqg-9rmm.json b/advisories/unreviewed/2023/12/GHSA-4m6w-vxqg-9rmm/GHSA-4m6w-vxqg-9rmm.json index 8ec55078583..79e78fdf18c 100644 --- a/advisories/unreviewed/2023/12/GHSA-4m6w-vxqg-9rmm/GHSA-4m6w-vxqg-9rmm.json +++ b/advisories/unreviewed/2023/12/GHSA-4m6w-vxqg-9rmm/GHSA-4m6w-vxqg-9rmm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4m6w-vxqg-9rmm", - "modified": "2024-03-12T03:30:45Z", + "modified": "2024-06-25T21:31:10Z", "published": "2023-12-08T18:30:42Z", "aliases": [ "CVE-2023-6606" @@ -45,6 +45,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:1248" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:1404" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2023-6606" @@ -60,6 +64,10 @@ { "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2024/01/msg00004.html" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/01/GHSA-3cfm-49vw-5qrv/GHSA-3cfm-49vw-5qrv.json b/advisories/unreviewed/2024/01/GHSA-3cfm-49vw-5qrv/GHSA-3cfm-49vw-5qrv.json index 9748d46c60d..b30ba85e6e9 100644 --- a/advisories/unreviewed/2024/01/GHSA-3cfm-49vw-5qrv/GHSA-3cfm-49vw-5qrv.json +++ b/advisories/unreviewed/2024/01/GHSA-3cfm-49vw-5qrv/GHSA-3cfm-49vw-5qrv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3cfm-49vw-5qrv", - "modified": "2024-05-22T18:30:38Z", + "modified": "2024-06-25T21:31:10Z", "published": "2024-01-15T12:30:19Z", "aliases": [ "CVE-2023-6915" @@ -44,6 +44,10 @@ { "type": "WEB", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2254982" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/01/GHSA-cw47-8xqr-cfh2/GHSA-cw47-8xqr-cfh2.json b/advisories/unreviewed/2024/01/GHSA-cw47-8xqr-cfh2/GHSA-cw47-8xqr-cfh2.json index f3d9db16291..a1f2dd431df 100644 --- a/advisories/unreviewed/2024/01/GHSA-cw47-8xqr-cfh2/GHSA-cw47-8xqr-cfh2.json +++ b/advisories/unreviewed/2024/01/GHSA-cw47-8xqr-cfh2/GHSA-cw47-8xqr-cfh2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cw47-8xqr-cfh2", - "modified": "2024-02-08T18:30:38Z", + "modified": "2024-06-25T21:31:10Z", "published": "2024-01-12T03:30:49Z", "aliases": [ "CVE-2023-6040" @@ -25,6 +25,10 @@ "type": "WEB", "url": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-6040" }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" + }, { "type": "WEB", "url": "https://www.openwall.com/lists/oss-security/2024/01/12/1" diff --git a/advisories/unreviewed/2024/01/GHSA-gfh2-2mj9-m2cx/GHSA-gfh2-2mj9-m2cx.json b/advisories/unreviewed/2024/01/GHSA-gfh2-2mj9-m2cx/GHSA-gfh2-2mj9-m2cx.json index 32a457108a5..3d604cb7e84 100644 --- a/advisories/unreviewed/2024/01/GHSA-gfh2-2mj9-m2cx/GHSA-gfh2-2mj9-m2cx.json +++ b/advisories/unreviewed/2024/01/GHSA-gfh2-2mj9-m2cx/GHSA-gfh2-2mj9-m2cx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-gfh2-2mj9-m2cx", - "modified": "2024-06-14T15:31:24Z", + "modified": "2024-06-25T21:31:10Z", "published": "2024-01-31T15:30:20Z", "aliases": [ "CVE-2024-1086" @@ -33,6 +33,10 @@ "type": "WEB", "url": "https://kernel.dance/f342de4e2f33e0e39165d8639387aa6c19dff660" }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/7LSPIOMIJYTLZB6QKPQVVAYSUETUWKPF" diff --git a/advisories/unreviewed/2024/01/GHSA-m3mr-pjj3-2g74/GHSA-m3mr-pjj3-2g74.json b/advisories/unreviewed/2024/01/GHSA-m3mr-pjj3-2g74/GHSA-m3mr-pjj3-2g74.json index 0c89de319c8..53831cca932 100644 --- a/advisories/unreviewed/2024/01/GHSA-m3mr-pjj3-2g74/GHSA-m3mr-pjj3-2g74.json +++ b/advisories/unreviewed/2024/01/GHSA-m3mr-pjj3-2g74/GHSA-m3mr-pjj3-2g74.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-m3mr-pjj3-2g74", - "modified": "2024-02-15T21:31:26Z", + "modified": "2024-06-25T21:31:10Z", "published": "2024-01-29T12:30:20Z", "aliases": [ "CVE-2023-46838" @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-46838" }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/RGEKT4DKSDXDS34EL7M4UVJMMPH7Z3ZZ" diff --git a/advisories/unreviewed/2024/01/GHSA-qmff-49xc-7rf6/GHSA-qmff-49xc-7rf6.json b/advisories/unreviewed/2024/01/GHSA-qmff-49xc-7rf6/GHSA-qmff-49xc-7rf6.json index cfdd0aff14a..3809a90b16a 100644 --- a/advisories/unreviewed/2024/01/GHSA-qmff-49xc-7rf6/GHSA-qmff-49xc-7rf6.json +++ b/advisories/unreviewed/2024/01/GHSA-qmff-49xc-7rf6/GHSA-qmff-49xc-7rf6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qmff-49xc-7rf6", - "modified": "2024-03-19T18:31:58Z", + "modified": "2024-06-25T21:31:10Z", "published": "2024-01-17T18:31:36Z", "aliases": [ "CVE-2024-0646" @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-0646" }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" + }, { "type": "WEB", "url": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=c5a595000e267" @@ -33,6 +37,10 @@ "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-0646" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:1404" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:1382" diff --git a/advisories/unreviewed/2024/02/GHSA-25g3-q597-79m8/GHSA-25g3-q597-79m8.json b/advisories/unreviewed/2024/02/GHSA-25g3-q597-79m8/GHSA-25g3-q597-79m8.json index 4164d55a10d..6ec6f9ea834 100644 --- a/advisories/unreviewed/2024/02/GHSA-25g3-q597-79m8/GHSA-25g3-q597-79m8.json +++ b/advisories/unreviewed/2024/02/GHSA-25g3-q597-79m8/GHSA-25g3-q597-79m8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-25g3-q597-79m8", - "modified": "2024-03-15T15:30:42Z", + "modified": "2024-06-25T21:31:10Z", "published": "2024-02-20T21:30:26Z", "aliases": [ "CVE-2023-52438" @@ -48,6 +48,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/e074686e993ff1be5f21b085a3b1b4275ccd5727" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-25vh-f6xx-mfc3/GHSA-25vh-f6xx-mfc3.json b/advisories/unreviewed/2024/02/GHSA-25vh-f6xx-mfc3/GHSA-25vh-f6xx-mfc3.json index 11ee38061d9..5d2a81d5e2b 100644 --- a/advisories/unreviewed/2024/02/GHSA-25vh-f6xx-mfc3/GHSA-25vh-f6xx-mfc3.json +++ b/advisories/unreviewed/2024/02/GHSA-25vh-f6xx-mfc3/GHSA-25vh-f6xx-mfc3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-25vh-f6xx-mfc3", - "modified": "2024-04-17T21:30:45Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-26T18:30:28Z", "aliases": [ "CVE-2023-52467" @@ -44,6 +44,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/c3e3a2144bf50877551138ffce9f7aa6ddfe385b" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-268r-8rwm-mqq9/GHSA-268r-8rwm-mqq9.json b/advisories/unreviewed/2024/02/GHSA-268r-8rwm-mqq9/GHSA-268r-8rwm-mqq9.json index 663f6c2081e..2c5e4351d55 100644 --- a/advisories/unreviewed/2024/02/GHSA-268r-8rwm-mqq9/GHSA-268r-8rwm-mqq9.json +++ b/advisories/unreviewed/2024/02/GHSA-268r-8rwm-mqq9/GHSA-268r-8rwm-mqq9.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-268r-8rwm-mqq9", - "modified": "2024-03-18T21:31:19Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-22T18:30:29Z", "aliases": [ "CVE-2023-52449" @@ -52,6 +52,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/d8ac2537763b54d278b80b2b080e1652523c7d4c" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-2rwp-xr6x-9ppc/GHSA-2rwp-xr6x-9ppc.json b/advisories/unreviewed/2024/02/GHSA-2rwp-xr6x-9ppc/GHSA-2rwp-xr6x-9ppc.json index b1745b1e9f1..426bd1f45ff 100644 --- a/advisories/unreviewed/2024/02/GHSA-2rwp-xr6x-9ppc/GHSA-2rwp-xr6x-9ppc.json +++ b/advisories/unreviewed/2024/02/GHSA-2rwp-xr6x-9ppc/GHSA-2rwp-xr6x-9ppc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-2rwp-xr6x-9ppc", - "modified": "2024-03-18T21:31:19Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-22T18:30:29Z", "aliases": [ "CVE-2023-52448" @@ -48,6 +48,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/efc8ef87ab9185a23d5676f2f7d986022d91bcde" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-3hp3-h35p-gqg4/GHSA-3hp3-h35p-gqg4.json b/advisories/unreviewed/2024/02/GHSA-3hp3-h35p-gqg4/GHSA-3hp3-h35p-gqg4.json index 1537b54907b..03e4c5075ac 100644 --- a/advisories/unreviewed/2024/02/GHSA-3hp3-h35p-gqg4/GHSA-3hp3-h35p-gqg4.json +++ b/advisories/unreviewed/2024/02/GHSA-3hp3-h35p-gqg4/GHSA-3hp3-h35p-gqg4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3hp3-h35p-gqg4", - "modified": "2024-03-14T21:30:51Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-22T18:30:28Z", "aliases": [ "CVE-2023-52443" @@ -52,6 +52,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/9d4fa5fe2b1d56662afd14915a73b4d0783ffa45" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-53gx-3hrh-cr29/GHSA-53gx-3hrh-cr29.json b/advisories/unreviewed/2024/02/GHSA-53gx-3hrh-cr29/GHSA-53gx-3hrh-cr29.json index 6c7c6495d5b..8d61f245685 100644 --- a/advisories/unreviewed/2024/02/GHSA-53gx-3hrh-cr29/GHSA-53gx-3hrh-cr29.json +++ b/advisories/unreviewed/2024/02/GHSA-53gx-3hrh-cr29/GHSA-53gx-3hrh-cr29.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-53gx-3hrh-cr29", - "modified": "2024-04-30T21:30:30Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-23T15:30:36Z", "aliases": [ "CVE-2023-52456" @@ -44,6 +44,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/ff168d4fdb0e1ba35fb413a749b3d6cce918ec19" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-64r6-8p6g-7r26/GHSA-64r6-8p6g-7r26.json b/advisories/unreviewed/2024/02/GHSA-64r6-8p6g-7r26/GHSA-64r6-8p6g-7r26.json index 8a502e3dace..81befab7da0 100644 --- a/advisories/unreviewed/2024/02/GHSA-64r6-8p6g-7r26/GHSA-64r6-8p6g-7r26.json +++ b/advisories/unreviewed/2024/02/GHSA-64r6-8p6g-7r26/GHSA-64r6-8p6g-7r26.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-64r6-8p6g-7r26", - "modified": "2024-03-18T21:31:19Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-22T18:30:30Z", "aliases": [ "CVE-2023-52451" @@ -52,6 +52,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/df16afba2378d985359812c865a15c05c70a967e" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-6f72-79f8-3qcp/GHSA-6f72-79f8-3qcp.json b/advisories/unreviewed/2024/02/GHSA-6f72-79f8-3qcp/GHSA-6f72-79f8-3qcp.json index 22c546e0485..d0f7682ed65 100644 --- a/advisories/unreviewed/2024/02/GHSA-6f72-79f8-3qcp/GHSA-6f72-79f8-3qcp.json +++ b/advisories/unreviewed/2024/02/GHSA-6f72-79f8-3qcp/GHSA-6f72-79f8-3qcp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6f72-79f8-3qcp", - "modified": "2024-03-14T21:30:51Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-22T18:30:29Z", "aliases": [ "CVE-2023-52444" @@ -52,6 +52,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/f100ba617d8be6c98a68f3744ef7617082975b77" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-74mg-f7w3-pcrr/GHSA-74mg-f7w3-pcrr.json b/advisories/unreviewed/2024/02/GHSA-74mg-f7w3-pcrr/GHSA-74mg-f7w3-pcrr.json index 62cf0e860ee..3fa2b8a20e3 100644 --- a/advisories/unreviewed/2024/02/GHSA-74mg-f7w3-pcrr/GHSA-74mg-f7w3-pcrr.json +++ b/advisories/unreviewed/2024/02/GHSA-74mg-f7w3-pcrr/GHSA-74mg-f7w3-pcrr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-74mg-f7w3-pcrr", - "modified": "2024-04-19T18:31:09Z", + "modified": "2024-06-25T21:31:10Z", "published": "2024-02-20T21:30:26Z", "aliases": [ "CVE-2023-52436" @@ -52,6 +52,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/f6c30bfe5a49bc38cae985083a11016800708fea" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-7gq6-cq6r-rrpx/GHSA-7gq6-cq6r-rrpx.json b/advisories/unreviewed/2024/02/GHSA-7gq6-cq6r-rrpx/GHSA-7gq6-cq6r-rrpx.json index 8181125bb4d..bad7c4766c3 100644 --- a/advisories/unreviewed/2024/02/GHSA-7gq6-cq6r-rrpx/GHSA-7gq6-cq6r-rrpx.json +++ b/advisories/unreviewed/2024/02/GHSA-7gq6-cq6r-rrpx/GHSA-7gq6-cq6r-rrpx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7gq6-cq6r-rrpx", - "modified": "2024-03-15T15:30:42Z", + "modified": "2024-06-25T21:31:10Z", "published": "2024-02-20T21:30:26Z", "aliases": [ "CVE-2023-52439" @@ -52,6 +52,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/e93da893d52d82d57fc0db2ca566024e0f26ff50" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-84fp-h279-ggmw/GHSA-84fp-h279-ggmw.json b/advisories/unreviewed/2024/02/GHSA-84fp-h279-ggmw/GHSA-84fp-h279-ggmw.json index 67a5c877ac4..2dece9d89b9 100644 --- a/advisories/unreviewed/2024/02/GHSA-84fp-h279-ggmw/GHSA-84fp-h279-ggmw.json +++ b/advisories/unreviewed/2024/02/GHSA-84fp-h279-ggmw/GHSA-84fp-h279-ggmw.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-84fp-h279-ggmw", - "modified": "2024-03-14T21:30:51Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-22T18:30:29Z", "aliases": [ "CVE-2023-52445" @@ -52,6 +52,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/ec36c134dd020d28e312c2f1766f85525e747aab" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-8pq4-pmqh-grvh/GHSA-8pq4-pmqh-grvh.json b/advisories/unreviewed/2024/02/GHSA-8pq4-pmqh-grvh/GHSA-8pq4-pmqh-grvh.json index bd5443e1f4a..68fe3c3741e 100644 --- a/advisories/unreviewed/2024/02/GHSA-8pq4-pmqh-grvh/GHSA-8pq4-pmqh-grvh.json +++ b/advisories/unreviewed/2024/02/GHSA-8pq4-pmqh-grvh/GHSA-8pq4-pmqh-grvh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8pq4-pmqh-grvh", - "modified": "2024-03-18T18:32:17Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-22T18:30:30Z", "aliases": [ "CVE-2024-26586" @@ -44,6 +44,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/a361c2c1da5dbb13ca67601cf961ab3ad68af383" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-8xf7-6cv9-64f7/GHSA-8xf7-6cv9-64f7.json b/advisories/unreviewed/2024/02/GHSA-8xf7-6cv9-64f7/GHSA-8xf7-6cv9-64f7.json index 55e8b54f564..0c086594216 100644 --- a/advisories/unreviewed/2024/02/GHSA-8xf7-6cv9-64f7/GHSA-8xf7-6cv9-64f7.json +++ b/advisories/unreviewed/2024/02/GHSA-8xf7-6cv9-64f7/GHSA-8xf7-6cv9-64f7.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8xf7-6cv9-64f7", - "modified": "2024-04-17T21:30:44Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-23T15:30:37Z", "aliases": [ "CVE-2023-52462" @@ -44,6 +44,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/fc3e3c50a0a4cac1463967c110686189e4a59104" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-98fx-x879-qp6f/GHSA-98fx-x879-qp6f.json b/advisories/unreviewed/2024/02/GHSA-98fx-x879-qp6f/GHSA-98fx-x879-qp6f.json index 3b9c4dc8a57..4900941411f 100644 --- a/advisories/unreviewed/2024/02/GHSA-98fx-x879-qp6f/GHSA-98fx-x879-qp6f.json +++ b/advisories/unreviewed/2024/02/GHSA-98fx-x879-qp6f/GHSA-98fx-x879-qp6f.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-98fx-x879-qp6f", - "modified": "2024-06-12T12:30:39Z", + "modified": "2024-06-25T21:31:10Z", "published": "2024-02-07T21:30:27Z", "aliases": [ "CVE-2023-6356" @@ -57,6 +57,10 @@ "type": "WEB", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2254054" }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" + }, { "type": "WEB", "url": "https://security.netapp.com/advisory/ntap-20240415-0002" diff --git a/advisories/unreviewed/2024/02/GHSA-9xmv-37c3-q98h/GHSA-9xmv-37c3-q98h.json b/advisories/unreviewed/2024/02/GHSA-9xmv-37c3-q98h/GHSA-9xmv-37c3-q98h.json index e35503d81a5..04e6a588c39 100644 --- a/advisories/unreviewed/2024/02/GHSA-9xmv-37c3-q98h/GHSA-9xmv-37c3-q98h.json +++ b/advisories/unreviewed/2024/02/GHSA-9xmv-37c3-q98h/GHSA-9xmv-37c3-q98h.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-9xmv-37c3-q98h", - "modified": "2024-04-30T21:30:31Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-23T15:30:36Z", "aliases": [ "CVE-2023-52457" @@ -48,6 +48,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/d74173bda29aba58f822175d983d07c8ed335494" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-c77m-cx29-7m84/GHSA-c77m-cx29-7m84.json b/advisories/unreviewed/2024/02/GHSA-c77m-cx29-7m84/GHSA-c77m-cx29-7m84.json index 6904892bdcc..ed823613266 100644 --- a/advisories/unreviewed/2024/02/GHSA-c77m-cx29-7m84/GHSA-c77m-cx29-7m84.json +++ b/advisories/unreviewed/2024/02/GHSA-c77m-cx29-7m84/GHSA-c77m-cx29-7m84.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-c77m-cx29-7m84", - "modified": "2024-04-17T21:30:45Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-26T18:30:29Z", "aliases": [ "CVE-2023-52470" @@ -52,6 +52,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/fb2d8bc9b5e55848b8a7c3c028e2ee8d49f28f97" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-f594-3jwf-g74j/GHSA-f594-3jwf-g74j.json b/advisories/unreviewed/2024/02/GHSA-f594-3jwf-g74j/GHSA-f594-3jwf-g74j.json index 6e6579d0b59..30d4847330c 100644 --- a/advisories/unreviewed/2024/02/GHSA-f594-3jwf-g74j/GHSA-f594-3jwf-g74j.json +++ b/advisories/unreviewed/2024/02/GHSA-f594-3jwf-g74j/GHSA-f594-3jwf-g74j.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-f594-3jwf-g74j", - "modified": "2024-04-19T21:31:06Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-23T15:30:36Z", "aliases": [ "CVE-2023-52454" @@ -48,6 +48,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/f775f2621c2ac5cc3a0b3a64665dad4fb146e510" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-m32w-wmcr-wvxf/GHSA-m32w-wmcr-wvxf.json b/advisories/unreviewed/2024/02/GHSA-m32w-wmcr-wvxf/GHSA-m32w-wmcr-wvxf.json index 0c2c90fc2a2..65470e84bf1 100644 --- a/advisories/unreviewed/2024/02/GHSA-m32w-wmcr-wvxf/GHSA-m32w-wmcr-wvxf.json +++ b/advisories/unreviewed/2024/02/GHSA-m32w-wmcr-wvxf/GHSA-m32w-wmcr-wvxf.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-m32w-wmcr-wvxf", - "modified": "2024-04-17T21:30:45Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-23T15:30:38Z", "aliases": [ "CVE-2024-26597" @@ -52,6 +52,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/ee1dc3bf86f2df777038506b139371a9add02534" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-q98m-fjjg-rxw5/GHSA-q98m-fjjg-rxw5.json b/advisories/unreviewed/2024/02/GHSA-q98m-fjjg-rxw5/GHSA-q98m-fjjg-rxw5.json index b354c798fb6..cbcafcfef30 100644 --- a/advisories/unreviewed/2024/02/GHSA-q98m-fjjg-rxw5/GHSA-q98m-fjjg-rxw5.json +++ b/advisories/unreviewed/2024/02/GHSA-q98m-fjjg-rxw5/GHSA-q98m-fjjg-rxw5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-q98m-fjjg-rxw5", - "modified": "2024-04-17T21:30:45Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-26T18:30:29Z", "aliases": [ "CVE-2023-52469" @@ -52,6 +52,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/b6dcba02ee178282e0d28684d241e0b8462dea6a" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-qjx2-j5wq-qc39/GHSA-qjx2-j5wq-qc39.json b/advisories/unreviewed/2024/02/GHSA-qjx2-j5wq-qc39/GHSA-qjx2-j5wq-qc39.json index 86253495a79..0895c91aff1 100644 --- a/advisories/unreviewed/2024/02/GHSA-qjx2-j5wq-qc39/GHSA-qjx2-j5wq-qc39.json +++ b/advisories/unreviewed/2024/02/GHSA-qjx2-j5wq-qc39/GHSA-qjx2-j5wq-qc39.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qjx2-j5wq-qc39", - "modified": "2024-04-17T21:30:44Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-23T15:30:37Z", "aliases": [ "CVE-2023-52464" @@ -52,6 +52,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/e1c86511241588efffaa49556196f09a498d5057" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-v8xr-j3gp-fmxj/GHSA-v8xr-j3gp-fmxj.json b/advisories/unreviewed/2024/02/GHSA-v8xr-j3gp-fmxj/GHSA-v8xr-j3gp-fmxj.json index daa437a21f1..42284c0fda1 100644 --- a/advisories/unreviewed/2024/02/GHSA-v8xr-j3gp-fmxj/GHSA-v8xr-j3gp-fmxj.json +++ b/advisories/unreviewed/2024/02/GHSA-v8xr-j3gp-fmxj/GHSA-v8xr-j3gp-fmxj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-v8xr-j3gp-fmxj", - "modified": "2024-06-12T12:30:39Z", + "modified": "2024-06-25T21:31:10Z", "published": "2024-02-07T21:30:27Z", "aliases": [ "CVE-2023-6535" @@ -57,6 +57,10 @@ "type": "WEB", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2254053" }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" + }, { "type": "WEB", "url": "https://security.netapp.com/advisory/ntap-20240415-0003" diff --git a/advisories/unreviewed/2024/02/GHSA-vj2q-j7r5-rxmc/GHSA-vj2q-j7r5-rxmc.json b/advisories/unreviewed/2024/02/GHSA-vj2q-j7r5-rxmc/GHSA-vj2q-j7r5-rxmc.json index d3571441e78..93506e01dc2 100644 --- a/advisories/unreviewed/2024/02/GHSA-vj2q-j7r5-rxmc/GHSA-vj2q-j7r5-rxmc.json +++ b/advisories/unreviewed/2024/02/GHSA-vj2q-j7r5-rxmc/GHSA-vj2q-j7r5-rxmc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vj2q-j7r5-rxmc", - "modified": "2024-02-05T09:30:28Z", + "modified": "2024-06-25T21:31:10Z", "published": "2024-02-05T09:30:28Z", "aliases": [ "CVE-2024-24860" @@ -24,6 +24,10 @@ { "type": "WEB", "url": "https://bugzilla.openanolis.cn/show_bug.cgi?id=8151" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-w3hv-rwgr-crx3/GHSA-w3hv-rwgr-crx3.json b/advisories/unreviewed/2024/02/GHSA-w3hv-rwgr-crx3/GHSA-w3hv-rwgr-crx3.json index 958423eb685..cca71e8a899 100644 --- a/advisories/unreviewed/2024/02/GHSA-w3hv-rwgr-crx3/GHSA-w3hv-rwgr-crx3.json +++ b/advisories/unreviewed/2024/02/GHSA-w3hv-rwgr-crx3/GHSA-w3hv-rwgr-crx3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-w3hv-rwgr-crx3", - "modified": "2024-02-29T03:33:14Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-29T03:33:14Z", "aliases": [ "CVE-2023-51779" @@ -21,6 +21,10 @@ { "type": "WEB", "url": "https://github.com/torvalds/linux/commit/2e07e8348ea454615e268222ae3fc240421be768" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-w5fp-p5rq-w697/GHSA-w5fp-p5rq-w697.json b/advisories/unreviewed/2024/02/GHSA-w5fp-p5rq-w697/GHSA-w5fp-p5rq-w697.json index 77d2d76acbe..6d5b03dd235 100644 --- a/advisories/unreviewed/2024/02/GHSA-w5fp-p5rq-w697/GHSA-w5fp-p5rq-w697.json +++ b/advisories/unreviewed/2024/02/GHSA-w5fp-p5rq-w697/GHSA-w5fp-p5rq-w697.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-w5fp-p5rq-w697", - "modified": "2024-04-17T21:30:45Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-23T15:30:37Z", "aliases": [ "CVE-2023-52463" @@ -44,6 +44,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/d4a9aa7db574a0da64307729cc031fb68597aa8b" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-xfvp-h462-p6q2/GHSA-xfvp-h462-p6q2.json b/advisories/unreviewed/2024/02/GHSA-xfvp-h462-p6q2/GHSA-xfvp-h462-p6q2.json index 1e1d33d4220..ec41031f460 100644 --- a/advisories/unreviewed/2024/02/GHSA-xfvp-h462-p6q2/GHSA-xfvp-h462-p6q2.json +++ b/advisories/unreviewed/2024/02/GHSA-xfvp-h462-p6q2/GHSA-xfvp-h462-p6q2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-xfvp-h462-p6q2", - "modified": "2024-04-17T21:30:45Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-02-23T15:30:38Z", "aliases": [ "CVE-2024-26598" @@ -48,6 +48,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/dd3956a1b3dd11f46488c928cb890d6937d1ca80" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-xw3g-x45j-xxhh/GHSA-xw3g-x45j-xxhh.json b/advisories/unreviewed/2024/02/GHSA-xw3g-x45j-xxhh/GHSA-xw3g-x45j-xxhh.json index 2d1d128f872..bc964279426 100644 --- a/advisories/unreviewed/2024/02/GHSA-xw3g-x45j-xxhh/GHSA-xw3g-x45j-xxhh.json +++ b/advisories/unreviewed/2024/02/GHSA-xw3g-x45j-xxhh/GHSA-xw3g-x45j-xxhh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-xw3g-x45j-xxhh", - "modified": "2024-06-12T12:30:40Z", + "modified": "2024-06-25T21:31:10Z", "published": "2024-02-07T21:30:27Z", "aliases": [ "CVE-2023-6536" @@ -57,6 +57,10 @@ "type": "WEB", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2254052" }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" + }, { "type": "WEB", "url": "https://security.netapp.com/advisory/ntap-20240415-0001" diff --git a/advisories/unreviewed/2024/03/GHSA-2vrm-jm55-jg94/GHSA-2vrm-jm55-jg94.json b/advisories/unreviewed/2024/03/GHSA-2vrm-jm55-jg94/GHSA-2vrm-jm55-jg94.json index c8aeb499776..2b9486ffb28 100644 --- a/advisories/unreviewed/2024/03/GHSA-2vrm-jm55-jg94/GHSA-2vrm-jm55-jg94.json +++ b/advisories/unreviewed/2024/03/GHSA-2vrm-jm55-jg94/GHSA-2vrm-jm55-jg94.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-2vrm-jm55-jg94", - "modified": "2024-03-11T18:31:09Z", + "modified": "2024-06-25T21:31:11Z", "published": "2024-03-11T18:31:09Z", "aliases": [ "CVE-2023-52491" @@ -41,6 +41,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/9fec4db7fff54d9b0306a332bab31eac47eeb5f6" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/03/GHSA-2xhh-m3cf-854c/GHSA-2xhh-m3cf-854c.json b/advisories/unreviewed/2024/03/GHSA-2xhh-m3cf-854c/GHSA-2xhh-m3cf-854c.json index 3bb5a9645d8..e47596ab92f 100644 --- a/advisories/unreviewed/2024/03/GHSA-2xhh-m3cf-854c/GHSA-2xhh-m3cf-854c.json +++ b/advisories/unreviewed/2024/03/GHSA-2xhh-m3cf-854c/GHSA-2xhh-m3cf-854c.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-2xhh-m3cf-854c", - "modified": "2024-03-06T09:30:28Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-03-06T09:30:28Z", "aliases": [ "CVE-2023-52599" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/f423528488e4f9606cef858eceea210bf1163f41" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/03/GHSA-5222-7chv-655h/GHSA-5222-7chv-655h.json b/advisories/unreviewed/2024/03/GHSA-5222-7chv-655h/GHSA-5222-7chv-655h.json index a3e70fad6aa..f4e43f3a791 100644 --- a/advisories/unreviewed/2024/03/GHSA-5222-7chv-655h/GHSA-5222-7chv-655h.json +++ b/advisories/unreviewed/2024/03/GHSA-5222-7chv-655h/GHSA-5222-7chv-655h.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5222-7chv-655h", - "modified": "2024-03-26T18:32:06Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-03-26T18:32:06Z", "aliases": [ "CVE-2023-52623" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/fece80a2a6718ed58487ce397285bb1b83a3e54e" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/03/GHSA-5h3h-5652-8xp5/GHSA-5h3h-5652-8xp5.json b/advisories/unreviewed/2024/03/GHSA-5h3h-5652-8xp5/GHSA-5h3h-5652-8xp5.json index 612b4b7a55a..bdbb4ea043c 100644 --- a/advisories/unreviewed/2024/03/GHSA-5h3h-5652-8xp5/GHSA-5h3h-5652-8xp5.json +++ b/advisories/unreviewed/2024/03/GHSA-5h3h-5652-8xp5/GHSA-5h3h-5652-8xp5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5h3h-5652-8xp5", - "modified": "2024-03-18T12:30:34Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-03-18T12:30:34Z", "aliases": [ "CVE-2023-52609" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/9a9ab0d963621d9d12199df9817e66982582d5a5" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/03/GHSA-9x4r-pqr3-8fxx/GHSA-9x4r-pqr3-8fxx.json b/advisories/unreviewed/2024/03/GHSA-9x4r-pqr3-8fxx/GHSA-9x4r-pqr3-8fxx.json index 15ed957c1af..5a38678802b 100644 --- a/advisories/unreviewed/2024/03/GHSA-9x4r-pqr3-8fxx/GHSA-9x4r-pqr3-8fxx.json +++ b/advisories/unreviewed/2024/03/GHSA-9x4r-pqr3-8fxx/GHSA-9x4r-pqr3-8fxx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-9x4r-pqr3-8fxx", - "modified": "2024-03-18T12:30:34Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-03-18T12:30:34Z", "aliases": [ "CVE-2023-52612" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/e0e3f4a18784182cfe34e20c00eca11e78d53e76" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/03/GHSA-hwc8-wrmm-ch4w/GHSA-hwc8-wrmm-ch4w.json b/advisories/unreviewed/2024/03/GHSA-hwc8-wrmm-ch4w/GHSA-hwc8-wrmm-ch4w.json index e4be5a6b4df..174e310c849 100644 --- a/advisories/unreviewed/2024/03/GHSA-hwc8-wrmm-ch4w/GHSA-hwc8-wrmm-ch4w.json +++ b/advisories/unreviewed/2024/03/GHSA-hwc8-wrmm-ch4w/GHSA-hwc8-wrmm-ch4w.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hwc8-wrmm-ch4w", - "modified": "2024-03-26T18:32:05Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-03-26T18:32:05Z", "aliases": [ "CVE-2024-26645" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/f4f7e696db0274ff560482cc52eddbf0551d4b7a" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/03/GHSA-pp36-2qc2-w4hw/GHSA-pp36-2qc2-w4hw.json b/advisories/unreviewed/2024/03/GHSA-pp36-2qc2-w4hw/GHSA-pp36-2qc2-w4hw.json index 1e161454bdb..6c6baeed2a6 100644 --- a/advisories/unreviewed/2024/03/GHSA-pp36-2qc2-w4hw/GHSA-pp36-2qc2-w4hw.json +++ b/advisories/unreviewed/2024/03/GHSA-pp36-2qc2-w4hw/GHSA-pp36-2qc2-w4hw.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pp36-2qc2-w4hw", - "modified": "2024-03-18T12:30:35Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-03-18T12:30:35Z", "aliases": [ "CVE-2024-26633" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/da23bd709b46168f7dfc36055801011222b076cd" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-5mg2-h7qv-m552/GHSA-5mg2-h7qv-m552.json b/advisories/unreviewed/2024/04/GHSA-5mg2-h7qv-m552/GHSA-5mg2-h7qv-m552.json index d3894bfb0a4..bab25b9452d 100644 --- a/advisories/unreviewed/2024/04/GHSA-5mg2-h7qv-m552/GHSA-5mg2-h7qv-m552.json +++ b/advisories/unreviewed/2024/04/GHSA-5mg2-h7qv-m552/GHSA-5mg2-h7qv-m552.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5mg2-h7qv-m552", - "modified": "2024-04-13T12:30:24Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-04-05T09:30:39Z", "aliases": [ "CVE-2024-27437" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/fe9a7082684eb059b925c535682e68c34d487d43" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-77mf-44mv-3m36/GHSA-77mf-44mv-3m36.json b/advisories/unreviewed/2024/04/GHSA-77mf-44mv-3m36/GHSA-77mf-44mv-3m36.json index 1dd0992258c..4a7829bbb1b 100644 --- a/advisories/unreviewed/2024/04/GHSA-77mf-44mv-3m36/GHSA-77mf-44mv-3m36.json +++ b/advisories/unreviewed/2024/04/GHSA-77mf-44mv-3m36/GHSA-77mf-44mv-3m36.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-77mf-44mv-3m36", - "modified": "2024-05-08T15:30:37Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-04-25T06:30:35Z", "aliases": [ "CVE-2024-26925" @@ -46,6 +46,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/eb769ff4e281f751adcaf4f4445cbf30817be139" }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" + }, { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2024/05/07/6" diff --git a/advisories/unreviewed/2024/04/GHSA-825r-gh5g-48mg/GHSA-825r-gh5g-48mg.json b/advisories/unreviewed/2024/04/GHSA-825r-gh5g-48mg/GHSA-825r-gh5g-48mg.json index 87eac31afb9..847bb09a5af 100644 --- a/advisories/unreviewed/2024/04/GHSA-825r-gh5g-48mg/GHSA-825r-gh5g-48mg.json +++ b/advisories/unreviewed/2024/04/GHSA-825r-gh5g-48mg/GHSA-825r-gh5g-48mg.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-825r-gh5g-48mg", - "modified": "2024-04-03T18:30:42Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-04-03T18:30:42Z", "aliases": [ "CVE-2024-26748" @@ -45,6 +45,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/aad6132ae6e4809e375431f8defd1521985e44e7" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-fpf4-cfch-367m/GHSA-fpf4-cfch-367m.json b/advisories/unreviewed/2024/04/GHSA-fpf4-cfch-367m/GHSA-fpf4-cfch-367m.json index e71ba3a4644..1b4316ca67e 100644 --- a/advisories/unreviewed/2024/04/GHSA-fpf4-cfch-367m/GHSA-fpf4-cfch-367m.json +++ b/advisories/unreviewed/2024/04/GHSA-fpf4-cfch-367m/GHSA-fpf4-cfch-367m.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-fpf4-cfch-367m", - "modified": "2024-04-13T12:30:24Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-04-05T09:30:38Z", "aliases": [ "CVE-2024-26810" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/ec73e079729258a05452356cf6d098bf1504d5a6" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-pgc5-vrj2-c9w5/GHSA-pgc5-vrj2-c9w5.json b/advisories/unreviewed/2024/04/GHSA-pgc5-vrj2-c9w5/GHSA-pgc5-vrj2-c9w5.json index 2c5e1a5acaf..808744a50b2 100644 --- a/advisories/unreviewed/2024/04/GHSA-pgc5-vrj2-c9w5/GHSA-pgc5-vrj2-c9w5.json +++ b/advisories/unreviewed/2024/04/GHSA-pgc5-vrj2-c9w5/GHSA-pgc5-vrj2-c9w5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pgc5-vrj2-c9w5", - "modified": "2024-04-13T12:30:23Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-04-01T09:30:31Z", "aliases": [ "CVE-2024-26654" @@ -53,6 +53,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/eeb2a2ca0b8de7e1c66afaf719529154e7dc60b2" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-vh6q-mgp6-79wr/GHSA-vh6q-mgp6-79wr.json b/advisories/unreviewed/2024/04/GHSA-vh6q-mgp6-79wr/GHSA-vh6q-mgp6-79wr.json index 97144e796ed..c8f7408e546 100644 --- a/advisories/unreviewed/2024/04/GHSA-vh6q-mgp6-79wr/GHSA-vh6q-mgp6-79wr.json +++ b/advisories/unreviewed/2024/04/GHSA-vh6q-mgp6-79wr/GHSA-vh6q-mgp6-79wr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vh6q-mgp6-79wr", - "modified": "2024-04-17T12:32:03Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-04-17T12:32:03Z", "aliases": [ "CVE-2023-52644" @@ -53,6 +53,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/f1cf77bb870046a6111a604f7f7fe83d1c8c9610" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-w9mj-34hr-82rj/GHSA-w9mj-34hr-82rj.json b/advisories/unreviewed/2024/04/GHSA-w9mj-34hr-82rj/GHSA-w9mj-34hr-82rj.json index 9ab90124291..7e452e166bd 100644 --- a/advisories/unreviewed/2024/04/GHSA-w9mj-34hr-82rj/GHSA-w9mj-34hr-82rj.json +++ b/advisories/unreviewed/2024/04/GHSA-w9mj-34hr-82rj/GHSA-w9mj-34hr-82rj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-w9mj-34hr-82rj", - "modified": "2024-04-03T15:30:44Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-04-03T15:30:44Z", "aliases": [ "CVE-2024-26727" @@ -41,6 +41,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/e31546b0f34af21738c4ceac47d662c00ee6382f" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-wcqp-hrg4-jgjg/GHSA-wcqp-hrg4-jgjg.json b/advisories/unreviewed/2024/04/GHSA-wcqp-hrg4-jgjg/GHSA-wcqp-hrg4-jgjg.json index dc98050bfc7..6d001123955 100644 --- a/advisories/unreviewed/2024/04/GHSA-wcqp-hrg4-jgjg/GHSA-wcqp-hrg4-jgjg.json +++ b/advisories/unreviewed/2024/04/GHSA-wcqp-hrg4-jgjg/GHSA-wcqp-hrg4-jgjg.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wcqp-hrg4-jgjg", - "modified": "2024-04-03T15:30:43Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-04-03T15:30:43Z", "aliases": [ "CVE-2024-26720" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/ec18ec230301583395576915d274b407743d8f6c" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-2m4f-546m-3phv/GHSA-2m4f-546m-3phv.json b/advisories/unreviewed/2024/05/GHSA-2m4f-546m-3phv/GHSA-2m4f-546m-3phv.json index 4e43398016e..4493a3aeb8a 100644 --- a/advisories/unreviewed/2024/05/GHSA-2m4f-546m-3phv/GHSA-2m4f-546m-3phv.json +++ b/advisories/unreviewed/2024/05/GHSA-2m4f-546m-3phv/GHSA-2m4f-546m-3phv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-2m4f-546m-3phv", - "modified": "2024-05-17T15:31:11Z", + "modified": "2024-06-25T21:31:13Z", "published": "2024-05-17T15:31:11Z", "aliases": [ "CVE-2023-52694" @@ -41,6 +41,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/e00ec5901954d85b39b5f10f94e60ab9af463eb1" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-2xxj-gwfx-rr2c/GHSA-2xxj-gwfx-rr2c.json b/advisories/unreviewed/2024/05/GHSA-2xxj-gwfx-rr2c/GHSA-2xxj-gwfx-rr2c.json index 4a17a8d590d..8f842009284 100644 --- a/advisories/unreviewed/2024/05/GHSA-2xxj-gwfx-rr2c/GHSA-2xxj-gwfx-rr2c.json +++ b/advisories/unreviewed/2024/05/GHSA-2xxj-gwfx-rr2c/GHSA-2xxj-gwfx-rr2c.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-2xxj-gwfx-rr2c", - "modified": "2024-05-17T15:31:12Z", + "modified": "2024-06-25T21:31:13Z", "published": "2024-05-17T15:31:12Z", "aliases": [ "CVE-2023-52698" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/f14d36e6e97fe935a20e0ceb159c100f90b6627c" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-3c4m-3xhw-2cr2/GHSA-3c4m-3xhw-2cr2.json b/advisories/unreviewed/2024/05/GHSA-3c4m-3xhw-2cr2/GHSA-3c4m-3xhw-2cr2.json index e40fa62b3eb..724c4b9ed73 100644 --- a/advisories/unreviewed/2024/05/GHSA-3c4m-3xhw-2cr2/GHSA-3c4m-3xhw-2cr2.json +++ b/advisories/unreviewed/2024/05/GHSA-3c4m-3xhw-2cr2/GHSA-3c4m-3xhw-2cr2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3c4m-3xhw-2cr2", - "modified": "2024-05-17T15:31:11Z", + "modified": "2024-06-25T21:31:13Z", "published": "2024-05-17T15:31:11Z", "aliases": [ "CVE-2023-52691" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/fb1936cb587262cd539e84b34541abb06e42b2f9" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-6f8x-5hmv-67rj/GHSA-6f8x-5hmv-67rj.json b/advisories/unreviewed/2024/05/GHSA-6f8x-5hmv-67rj/GHSA-6f8x-5hmv-67rj.json index 78f03eceb56..242b2dd3fc0 100644 --- a/advisories/unreviewed/2024/05/GHSA-6f8x-5hmv-67rj/GHSA-6f8x-5hmv-67rj.json +++ b/advisories/unreviewed/2024/05/GHSA-6f8x-5hmv-67rj/GHSA-6f8x-5hmv-67rj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6f8x-5hmv-67rj", - "modified": "2024-05-01T15:30:35Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-05-01T15:30:35Z", "aliases": [ "CVE-2024-27038" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/e97fe4901e0f59a0bfd524578fe3768f8ca42428" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-74r2-q9hq-437j/GHSA-74r2-q9hq-437j.json b/advisories/unreviewed/2024/05/GHSA-74r2-q9hq-437j/GHSA-74r2-q9hq-437j.json index 6bd2504dbe9..8c6ee9ffaef 100644 --- a/advisories/unreviewed/2024/05/GHSA-74r2-q9hq-437j/GHSA-74r2-q9hq-437j.json +++ b/advisories/unreviewed/2024/05/GHSA-74r2-q9hq-437j/GHSA-74r2-q9hq-437j.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-74r2-q9hq-437j", - "modified": "2024-05-20T12:30:30Z", + "modified": "2024-06-25T21:31:13Z", "published": "2024-05-20T12:30:30Z", "aliases": [ "CVE-2024-36005" @@ -41,6 +41,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/e4bb6da24de336a7899033a65490ed2d892efa5b" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-7g29-9wjm-w488/GHSA-7g29-9wjm-w488.json b/advisories/unreviewed/2024/05/GHSA-7g29-9wjm-w488/GHSA-7g29-9wjm-w488.json index 0a5637b65b5..95de6d5ca09 100644 --- a/advisories/unreviewed/2024/05/GHSA-7g29-9wjm-w488/GHSA-7g29-9wjm-w488.json +++ b/advisories/unreviewed/2024/05/GHSA-7g29-9wjm-w488/GHSA-7g29-9wjm-w488.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7g29-9wjm-w488", - "modified": "2024-05-17T15:31:11Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-05-17T15:31:11Z", "aliases": [ "CVE-2023-52686" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/e93d7cf4c1ddbcd846739e7ad849f955a4f18031" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-8wqr-cpqw-79wq/GHSA-8wqr-cpqw-79wq.json b/advisories/unreviewed/2024/05/GHSA-8wqr-cpqw-79wq/GHSA-8wqr-cpqw-79wq.json index e4a1b700bd9..31a637ec9dc 100644 --- a/advisories/unreviewed/2024/05/GHSA-8wqr-cpqw-79wq/GHSA-8wqr-cpqw-79wq.json +++ b/advisories/unreviewed/2024/05/GHSA-8wqr-cpqw-79wq/GHSA-8wqr-cpqw-79wq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8wqr-cpqw-79wq", - "modified": "2024-05-17T15:31:11Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-05-17T15:31:11Z", "aliases": [ "CVE-2023-52679" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/d5f490343c77e6708b6c4aa7dbbfbcbb9546adea" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-c363-rc2q-jqjx/GHSA-c363-rc2q-jqjx.json b/advisories/unreviewed/2024/05/GHSA-c363-rc2q-jqjx/GHSA-c363-rc2q-jqjx.json index 77eee813d6f..6f833b90967 100644 --- a/advisories/unreviewed/2024/05/GHSA-c363-rc2q-jqjx/GHSA-c363-rc2q-jqjx.json +++ b/advisories/unreviewed/2024/05/GHSA-c363-rc2q-jqjx/GHSA-c363-rc2q-jqjx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-c363-rc2q-jqjx", - "modified": "2024-05-17T15:31:11Z", + "modified": "2024-06-25T21:31:13Z", "published": "2024-05-17T15:31:11Z", "aliases": [ "CVE-2023-52693" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/ccd45faf4973746c4f30ea41eec864e5cf191099" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-g9gx-3ccx-85w8/GHSA-g9gx-3ccx-85w8.json b/advisories/unreviewed/2024/05/GHSA-g9gx-3ccx-85w8/GHSA-g9gx-3ccx-85w8.json index d59e0996a11..90f368f0877 100644 --- a/advisories/unreviewed/2024/05/GHSA-g9gx-3ccx-85w8/GHSA-g9gx-3ccx-85w8.json +++ b/advisories/unreviewed/2024/05/GHSA-g9gx-3ccx-85w8/GHSA-g9gx-3ccx-85w8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-g9gx-3ccx-85w8", - "modified": "2024-05-17T15:31:12Z", + "modified": "2024-06-25T21:31:13Z", "published": "2024-05-17T15:31:11Z", "aliases": [ "CVE-2023-52696" @@ -45,6 +45,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/f152a6bfd187f67afeffc9fd68cbe46f51439be0" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-h29p-8rqx-m8pq/GHSA-h29p-8rqx-m8pq.json b/advisories/unreviewed/2024/05/GHSA-h29p-8rqx-m8pq/GHSA-h29p-8rqx-m8pq.json index 5705ca588c5..e1325784f97 100644 --- a/advisories/unreviewed/2024/05/GHSA-h29p-8rqx-m8pq/GHSA-h29p-8rqx-m8pq.json +++ b/advisories/unreviewed/2024/05/GHSA-h29p-8rqx-m8pq/GHSA-h29p-8rqx-m8pq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-h29p-8rqx-m8pq", - "modified": "2024-05-17T15:31:11Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-05-17T15:31:11Z", "aliases": [ "CVE-2023-52683" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/f39c3d578c7d09a18ceaf56750fc7f20b02ada63" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-h47h-825h-v496/GHSA-h47h-825h-v496.json b/advisories/unreviewed/2024/05/GHSA-h47h-825h-v496/GHSA-h47h-825h-v496.json index 99d2fed6463..af00bdf709a 100644 --- a/advisories/unreviewed/2024/05/GHSA-h47h-825h-v496/GHSA-h47h-825h-v496.json +++ b/advisories/unreviewed/2024/05/GHSA-h47h-825h-v496/GHSA-h47h-825h-v496.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-h47h-825h-v496", - "modified": "2024-05-17T15:31:11Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-05-17T15:31:11Z", "aliases": [ "CVE-2023-52675" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/f105c263009839d80fad6998324a4e1b3511cba0" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-hw8p-x386-rr5f/GHSA-hw8p-x386-rr5f.json b/advisories/unreviewed/2024/05/GHSA-hw8p-x386-rr5f/GHSA-hw8p-x386-rr5f.json index 6fb5fc9ee74..1084b27b032 100644 --- a/advisories/unreviewed/2024/05/GHSA-hw8p-x386-rr5f/GHSA-hw8p-x386-rr5f.json +++ b/advisories/unreviewed/2024/05/GHSA-hw8p-x386-rr5f/GHSA-hw8p-x386-rr5f.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hw8p-x386-rr5f", - "modified": "2024-05-19T12:30:38Z", + "modified": "2024-06-25T21:31:13Z", "published": "2024-05-19T12:30:38Z", "aliases": [ "CVE-2024-35922" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/c2d953276b8b27459baed1277a4fdd5dd9bd4126" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-hxgr-6xc2-q9mv/GHSA-hxgr-6xc2-q9mv.json b/advisories/unreviewed/2024/05/GHSA-hxgr-6xc2-q9mv/GHSA-hxgr-6xc2-q9mv.json index 89fe913f88d..5d6078f49fe 100644 --- a/advisories/unreviewed/2024/05/GHSA-hxgr-6xc2-q9mv/GHSA-hxgr-6xc2-q9mv.json +++ b/advisories/unreviewed/2024/05/GHSA-hxgr-6xc2-q9mv/GHSA-hxgr-6xc2-q9mv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hxgr-6xc2-q9mv", - "modified": "2024-05-01T06:31:41Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-05-01T06:31:41Z", "aliases": [ "CVE-2024-26935" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/f4ff08fab66eb5c0b97e1a24edac052fb40bf5d7" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-mmhf-mx7h-v77h/GHSA-mmhf-mx7h-v77h.json b/advisories/unreviewed/2024/05/GHSA-mmhf-mx7h-v77h/GHSA-mmhf-mx7h-v77h.json index f09ce95a3e5..05ca2dc4e87 100644 --- a/advisories/unreviewed/2024/05/GHSA-mmhf-mx7h-v77h/GHSA-mmhf-mx7h-v77h.json +++ b/advisories/unreviewed/2024/05/GHSA-mmhf-mx7h-v77h/GHSA-mmhf-mx7h-v77h.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mmhf-mx7h-v77h", - "modified": "2024-05-19T09:34:47Z", + "modified": "2024-06-25T21:31:13Z", "published": "2024-05-19T09:34:47Z", "aliases": [ "CVE-2024-35893" @@ -49,6 +49,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/f356eb2fb567e0931143ac1769ac802d3b3e2077" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-pjfg-v5mv-4jmm/GHSA-pjfg-v5mv-4jmm.json b/advisories/unreviewed/2024/05/GHSA-pjfg-v5mv-4jmm/GHSA-pjfg-v5mv-4jmm.json index 807ca7321d2..71459cb375e 100644 --- a/advisories/unreviewed/2024/05/GHSA-pjfg-v5mv-4jmm/GHSA-pjfg-v5mv-4jmm.json +++ b/advisories/unreviewed/2024/05/GHSA-pjfg-v5mv-4jmm/GHSA-pjfg-v5mv-4jmm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pjfg-v5mv-4jmm", - "modified": "2024-05-20T12:30:28Z", + "modified": "2024-06-25T21:31:13Z", "published": "2024-05-20T12:30:28Z", "aliases": [ "CVE-2024-35958" @@ -41,6 +41,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/fdfbf54d128ab6ab255db138488f9650485795a2" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-pjwx-p5wv-785h/GHSA-pjwx-p5wv-785h.json b/advisories/unreviewed/2024/05/GHSA-pjwx-p5wv-785h/GHSA-pjwx-p5wv-785h.json index 8052fdce843..7e1cf6bd11d 100644 --- a/advisories/unreviewed/2024/05/GHSA-pjwx-p5wv-785h/GHSA-pjwx-p5wv-785h.json +++ b/advisories/unreviewed/2024/05/GHSA-pjwx-p5wv-785h/GHSA-pjwx-p5wv-785h.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pjwx-p5wv-785h", - "modified": "2024-05-17T15:31:10Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-05-17T15:31:10Z", "aliases": [ "CVE-2024-35819" @@ -53,6 +53,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/ff50716b7d5b7985979a5b21163cd79fb3d21d59" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-r32h-q4vw-rvf3/GHSA-r32h-q4vw-rvf3.json b/advisories/unreviewed/2024/05/GHSA-r32h-q4vw-rvf3/GHSA-r32h-q4vw-rvf3.json index 673174ee779..c5b6ec63066 100644 --- a/advisories/unreviewed/2024/05/GHSA-r32h-q4vw-rvf3/GHSA-r32h-q4vw-rvf3.json +++ b/advisories/unreviewed/2024/05/GHSA-r32h-q4vw-rvf3/GHSA-r32h-q4vw-rvf3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-r32h-q4vw-rvf3", - "modified": "2024-05-17T15:31:12Z", + "modified": "2024-06-25T21:31:13Z", "published": "2024-05-17T15:31:12Z", "aliases": [ "CVE-2024-35852" @@ -45,6 +45,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/fb4e2b70a7194b209fc7320bbf33b375f7114bd5" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/05/GHSA-x622-4m47-6h54/GHSA-x622-4m47-6h54.json b/advisories/unreviewed/2024/05/GHSA-x622-4m47-6h54/GHSA-x622-4m47-6h54.json index 5faa42e426a..bc07ad942b8 100644 --- a/advisories/unreviewed/2024/05/GHSA-x622-4m47-6h54/GHSA-x622-4m47-6h54.json +++ b/advisories/unreviewed/2024/05/GHSA-x622-4m47-6h54/GHSA-x622-4m47-6h54.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-x622-4m47-6h54", - "modified": "2024-05-17T15:31:11Z", + "modified": "2024-06-25T21:31:12Z", "published": "2024-05-17T15:31:11Z", "aliases": [ "CVE-2023-52690" @@ -45,6 +45,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/f84c1446daa552e9699da8d1f8375eac0f65edc7" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/06/GHSA-2jfg-r68g-p4gm/GHSA-2jfg-r68g-p4gm.json b/advisories/unreviewed/2024/06/GHSA-2jfg-r68g-p4gm/GHSA-2jfg-r68g-p4gm.json new file mode 100644 index 00000000000..fccf7763c36 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-2jfg-r68g-p4gm/GHSA-2jfg-r68g-p4gm.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2jfg-r68g-p4gm", + "modified": "2024-06-25T21:31:16Z", + "published": "2024-06-25T21:31:16Z", + "aliases": [ + "CVE-2024-4884" + ], + "details": "In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Remote Code Execution vulnerability in Progress WhatsUpGold.  The Apm.UI.Areas.APM.Controllers.CommunityController\n\n allows execution of commands with iisapppool\\nmconsole privileges.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4884" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-June-2024" + }, + { + "type": "WEB", + "url": "https://www.progress.com/network-monitoring" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T20:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-3325-26ch-q5p3/GHSA-3325-26ch-q5p3.json b/advisories/unreviewed/2024/06/GHSA-3325-26ch-q5p3/GHSA-3325-26ch-q5p3.json new file mode 100644 index 00000000000..21c0d2f8670 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-3325-26ch-q5p3/GHSA-3325-26ch-q5p3.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3325-26ch-q5p3", + "modified": "2024-06-25T21:31:17Z", + "published": "2024-06-25T21:31:17Z", + "aliases": [ + "CVE-2024-5014" + ], + "details": "In WhatsUp Gold versions released before 2023.1.3, a Server Side Request Forgery vulnerability exists in the GetASPReport feature. This allows any authenticated user to retrieve ASP reports from an HTML form.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5014" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-June-2024" + }, + { + "type": "WEB", + "url": "https://www.progress.com/network-monitoring" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-918" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T21:16:00Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-427c-cc94-833h/GHSA-427c-cc94-833h.json b/advisories/unreviewed/2024/06/GHSA-427c-cc94-833h/GHSA-427c-cc94-833h.json new file mode 100644 index 00000000000..27123ee11d7 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-427c-cc94-833h/GHSA-427c-cc94-833h.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-427c-cc94-833h", + "modified": "2024-06-25T21:31:14Z", + "published": "2024-06-25T21:31:14Z", + "aliases": [ + "CVE-2024-36819" + ], + "details": "MAP-OS 4.45.0 and earlier is vulnerable to Cross-Site Scripting (XSS). This vulnerability allows malicious users to insert a malicious payload into the \"Client Name\" input. When a service order from this client is created, the malicious payload is displayed on the administrator and employee dashboards, resulting in unauthorized script execution whenever the dashboard is loaded.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36819" + }, + { + "type": "WEB", + "url": "https://github.com/RamonSilva20/mapos/commit/3559bae4782162faab94670f503fd35b0f331929" + }, + { + "type": "WEB", + "url": "https://github.com/RamonSilva20/mapos/tree/master" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T19:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-4cwh-j7h3-gc75/GHSA-4cwh-j7h3-gc75.json b/advisories/unreviewed/2024/06/GHSA-4cwh-j7h3-gc75/GHSA-4cwh-j7h3-gc75.json new file mode 100644 index 00000000000..1b08392e0ec --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-4cwh-j7h3-gc75/GHSA-4cwh-j7h3-gc75.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4cwh-j7h3-gc75", + "modified": "2024-06-25T21:31:16Z", + "published": "2024-06-25T21:31:16Z", + "aliases": [ + "CVE-2024-4498" + ], + "details": "A Path Traversal and Remote File Inclusion (RFI) vulnerability exists in the parisneo/lollms-webui application, affecting versions v9.7 to the latest. The vulnerability arises from insufficient input validation in the `/apply_settings` function, allowing an attacker to manipulate the `discussion_db_name` parameter to traverse the file system and include arbitrary files. This issue is compounded by the bypass of input filtering in the `install_binding`, `reinstall_binding`, and `unInstall_binding` endpoints, despite the presence of a `sanitize_path_from_endpoint(data.name)` filter. Successful exploitation enables an attacker to upload and execute malicious code on the victim's system, leading to Remote Code Execution (RCE).", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4498" + }, + { + "type": "WEB", + "url": "https://huntr.com/bounties/9238e88a-a6ca-4915-9b5d-6cdb4148d3f4" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T20:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-4m8x-4m59-3q64/GHSA-4m8x-4m59-3q64.json b/advisories/unreviewed/2024/06/GHSA-4m8x-4m59-3q64/GHSA-4m8x-4m59-3q64.json new file mode 100644 index 00000000000..da518084aa4 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-4m8x-4m59-3q64/GHSA-4m8x-4m59-3q64.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4m8x-4m59-3q64", + "modified": "2024-06-25T21:31:17Z", + "published": "2024-06-25T21:31:17Z", + "aliases": [ + "CVE-2024-21741" + ], + "details": "GigaDevice GD32E103C8T6 devices have Incorrect Access Control.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21741" + }, + { + "type": "WEB", + "url": "https://tches.iacr.org/index.php/TCHES/article/view/11422/10927" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T21:15:57Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-4xjp-m233-hj66/GHSA-4xjp-m233-hj66.json b/advisories/unreviewed/2024/06/GHSA-4xjp-m233-hj66/GHSA-4xjp-m233-hj66.json new file mode 100644 index 00000000000..c6b770ca79f --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-4xjp-m233-hj66/GHSA-4xjp-m233-hj66.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4xjp-m233-hj66", + "modified": "2024-06-25T21:31:16Z", + "published": "2024-06-25T21:31:16Z", + "aliases": [ + "CVE-2024-21739" + ], + "details": "Geehy APM32F103CCT6, APM32F103RCT6, APM32F103RCT7, and APM32F103VCT6 devices have Incorrect Access Control.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21739" + }, + { + "type": "WEB", + "url": "https://tches.iacr.org/index.php/TCHES/article/view/11422/10927" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T21:15:57Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-5prg-92hj-2g9x/GHSA-5prg-92hj-2g9x.json b/advisories/unreviewed/2024/06/GHSA-5prg-92hj-2g9x/GHSA-5prg-92hj-2g9x.json new file mode 100644 index 00000000000..d534183d99d --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-5prg-92hj-2g9x/GHSA-5prg-92hj-2g9x.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5prg-92hj-2g9x", + "modified": "2024-06-25T21:31:16Z", + "published": "2024-06-25T21:31:16Z", + "aliases": [ + "CVE-2024-5008" + ], + "details": "In WhatsUp Gold versions released before 2023.1.3, \n\nan authenticated user with certain permissions can upload an arbitrary file and obtain RCE using Apm.UI.Areas.APM.Controllers.Api.Applications.AppProfileImportController.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5008" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-June-2024" + }, + { + "type": "WEB", + "url": "https://www.progress.com/network-monitoring" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-434" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T20:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-5qqw-chw3-g8wp/GHSA-5qqw-chw3-g8wp.json b/advisories/unreviewed/2024/06/GHSA-5qqw-chw3-g8wp/GHSA-5qqw-chw3-g8wp.json new file mode 100644 index 00000000000..2f63492fd69 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-5qqw-chw3-g8wp/GHSA-5qqw-chw3-g8wp.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5qqw-chw3-g8wp", + "modified": "2024-06-25T21:31:17Z", + "published": "2024-06-25T21:31:17Z", + "aliases": [ + "CVE-2024-5016" + ], + "details": "In WhatsUp Gold versions released before 2023.1.3, Distributed Edition installations can be exploited by using a deserialization tool to achieve a Remote Code Execution as SYSTEM. \nThe vulnerability exists in the main message processing routines NmDistributed.DistributedServiceBehavior.OnMessage for server and NmDistributed.DistributedClient.OnMessage for clients.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5016" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-June-2024" + }, + { + "type": "WEB", + "url": "https://www.progress.com/network-monitoring" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-502" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T21:16:01Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-67p8-jrm8-g765/GHSA-67p8-jrm8-g765.json b/advisories/unreviewed/2024/06/GHSA-67p8-jrm8-g765/GHSA-67p8-jrm8-g765.json new file mode 100644 index 00000000000..5f9025532d2 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-67p8-jrm8-g765/GHSA-67p8-jrm8-g765.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-67p8-jrm8-g765", + "modified": "2024-06-25T21:31:16Z", + "published": "2024-06-25T21:31:16Z", + "aliases": [ + "CVE-2024-5011" + ], + "details": "In WhatsUp Gold versions released before 2023.1.3, an uncontrolled resource consumption vulnerability exists. A specially crafted unauthenticated HTTP request to the TestController Chart functionality can lead to denial of service.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5011" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-June-2024" + }, + { + "type": "WEB", + "url": "https://www.progress.com/network-monitoring" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-400" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T20:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-723f-c7g3-864c/GHSA-723f-c7g3-864c.json b/advisories/unreviewed/2024/06/GHSA-723f-c7g3-864c/GHSA-723f-c7g3-864c.json new file mode 100644 index 00000000000..95c094729e9 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-723f-c7g3-864c/GHSA-723f-c7g3-864c.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-723f-c7g3-864c", + "modified": "2024-06-25T21:31:17Z", + "published": "2024-06-25T21:31:17Z", + "aliases": [ + "CVE-2024-34400" + ], + "details": "An issue was discovered in VirtoSoftware Virto Kanban Board Web Part before 5.3.5.1 for SharePoint 2019. There is /_layouts/15/Virto.KanbanTaskManager/api/KanbanData.ashx LinkTitle2 XSS.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34400" + }, + { + "type": "WEB", + "url": "https://download.virtosoftware.com/Manuals/nu_ncsc_virto_one_kanban_board_5.3.3_pt_disclosure.pdf" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T21:15:59Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-75c9-4w8r-55h3/GHSA-75c9-4w8r-55h3.json b/advisories/unreviewed/2024/06/GHSA-75c9-4w8r-55h3/GHSA-75c9-4w8r-55h3.json new file mode 100644 index 00000000000..7d7d6c6fc7b --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-75c9-4w8r-55h3/GHSA-75c9-4w8r-55h3.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-75c9-4w8r-55h3", + "modified": "2024-06-25T21:31:16Z", + "published": "2024-06-25T21:31:16Z", + "aliases": [ + "CVE-2024-6206" + ], + "details": "A security vulnerability has been identified in HPE Athonet Mobile Core software. The core application contains a code injection vulnerability where a threat actor could execute arbitrary commands with the privilege of the underlying container leading to complete takeover of the target system.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6206" + }, + { + "type": "WEB", + "url": "https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbgn04659en_us&docLocale=en_US" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T20:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-88j6-g325-rxhg/GHSA-88j6-g325-rxhg.json b/advisories/unreviewed/2024/06/GHSA-88j6-g325-rxhg/GHSA-88j6-g325-rxhg.json new file mode 100644 index 00000000000..160ff346806 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-88j6-g325-rxhg/GHSA-88j6-g325-rxhg.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-88j6-g325-rxhg", + "modified": "2024-06-25T21:31:17Z", + "published": "2024-06-25T21:31:16Z", + "aliases": [ + "CVE-2024-21740" + ], + "details": "Artery AT32F415CBT7 and AT32F421C8T7 devices have Incorrect Access Control.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21740" + }, + { + "type": "WEB", + "url": "https://tches.iacr.org/index.php/TCHES/article/view/11422/10927" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T21:15:57Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-9g6g-xqv5-8g5w/GHSA-9g6g-xqv5-8g5w.json b/advisories/unreviewed/2024/06/GHSA-9g6g-xqv5-8g5w/GHSA-9g6g-xqv5-8g5w.json new file mode 100644 index 00000000000..16f34b0a97d --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-9g6g-xqv5-8g5w/GHSA-9g6g-xqv5-8g5w.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9g6g-xqv5-8g5w", + "modified": "2024-06-25T21:31:15Z", + "published": "2024-06-25T21:31:15Z", + "aliases": [ + "CVE-2024-37820" + ], + "details": "A nil pointer dereference in PingCAP TiDB v8.2.0-alpha-216-gfe5858b allows attackers to crash the application via expression.inferCollation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37820" + }, + { + "type": "WEB", + "url": "https://github.com/pingcap/tidb/issues/53580" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T19:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-g545-rmg6-689p/GHSA-g545-rmg6-689p.json b/advisories/unreviewed/2024/06/GHSA-g545-rmg6-689p/GHSA-g545-rmg6-689p.json index c6541a9571b..b6c6a3c06dd 100644 --- a/advisories/unreviewed/2024/06/GHSA-g545-rmg6-689p/GHSA-g545-rmg6-689p.json +++ b/advisories/unreviewed/2024/06/GHSA-g545-rmg6-689p/GHSA-g545-rmg6-689p.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-g545-rmg6-689p", - "modified": "2024-06-03T21:30:44Z", + "modified": "2024-06-25T21:31:13Z", "published": "2024-06-03T21:30:44Z", "aliases": [ "CVE-2023-51219" @@ -18,6 +18,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51219" }, + { + "type": "WEB", + "url": "https://news.ycombinator.com/item?id=40776880" + }, { "type": "WEB", "url": "https://stulle123.github.io/posts/kakaotalk-account-takeover" diff --git a/advisories/unreviewed/2024/06/GHSA-hq4f-mv3q-8wcv/GHSA-hq4f-mv3q-8wcv.json b/advisories/unreviewed/2024/06/GHSA-hq4f-mv3q-8wcv/GHSA-hq4f-mv3q-8wcv.json new file mode 100644 index 00000000000..da6312b9f3f --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-hq4f-mv3q-8wcv/GHSA-hq4f-mv3q-8wcv.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hq4f-mv3q-8wcv", + "modified": "2024-06-25T21:31:17Z", + "published": "2024-06-25T21:31:17Z", + "aliases": [ + "CVE-2024-37843" + ], + "details": "Craft CMS up to v3.7.31 was discovered to contain a SQL injection vulnerability via the GraphQL API endpoint.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37843" + }, + { + "type": "WEB", + "url": "https://blog.smithsecurity.biz/craft-cms-unauthenticated-sqli-via-graphql" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T21:15:59Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-j3rp-hcww-24pq/GHSA-j3rp-hcww-24pq.json b/advisories/unreviewed/2024/06/GHSA-j3rp-hcww-24pq/GHSA-j3rp-hcww-24pq.json new file mode 100644 index 00000000000..db80bff6896 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-j3rp-hcww-24pq/GHSA-j3rp-hcww-24pq.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j3rp-hcww-24pq", + "modified": "2024-06-25T21:31:16Z", + "published": "2024-06-25T21:31:16Z", + "aliases": [ + "CVE-2024-5009" + ], + "details": "In WhatsUp Gold versions released before 2023.1.3, an Improper Access Control vulnerability in Wug.UI.Controllers.InstallController.SetAdminPassword allows local attackers to modify admin's password.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5009" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-June-2024" + }, + { + "type": "WEB", + "url": "https://www.progress.com/network-monitoring" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-269" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T20:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-jpqc-c443-hw5c/GHSA-jpqc-c443-hw5c.json b/advisories/unreviewed/2024/06/GHSA-jpqc-c443-hw5c/GHSA-jpqc-c443-hw5c.json new file mode 100644 index 00000000000..b688a3e94e7 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-jpqc-c443-hw5c/GHSA-jpqc-c443-hw5c.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jpqc-c443-hw5c", + "modified": "2024-06-25T21:31:18Z", + "published": "2024-06-25T21:31:18Z", + "aliases": [ + "CVE-2024-5018" + ], + "details": "In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Path Traversal vulnerability exists Wug.UI.Areas.Wug.Controllers.SessionController.LoadNMScript. This allows allows reading of any file from the applications web-root directory .", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5018" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-June-2024" + }, + { + "type": "WEB", + "url": "https://www.progress.com/network-monitoring" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T21:16:01Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-mgcv-6r68-pw73/GHSA-mgcv-6r68-pw73.json b/advisories/unreviewed/2024/06/GHSA-mgcv-6r68-pw73/GHSA-mgcv-6r68-pw73.json new file mode 100644 index 00000000000..ba96026792a --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-mgcv-6r68-pw73/GHSA-mgcv-6r68-pw73.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mgcv-6r68-pw73", + "modified": "2024-06-25T21:31:16Z", + "published": "2024-06-25T21:31:16Z", + "aliases": [ + "CVE-2024-5276" + ], + "details": "A SQL Injection vulnerability in Fortra FileCatalyst Workflow allows an attacker to modify application data.  Likely impacts include creation of administrative users and deletion or modification of data in the application database. Data exfiltration via SQL injection is not possible using this vulnerability. Successful unauthenticated exploitation requires a Workflow system with anonymous access enabled, otherwise an authenticated user is required. This issue affects all versions of FileCatalyst Workflow from 5.1.6 Build 135 and earlier.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5276" + }, + { + "type": "WEB", + "url": "https://support.fortra.com/filecatalyst/kb-articles/advisory-6-24-2024-filecatalyst-workflow-sql-injection-vulnerability-YmYwYWY4OTYtNTUzMi1lZjExLTg0MGEtNjA0NWJkMDg3MDA0" + }, + { + "type": "WEB", + "url": "https://www.fortra.com/security/advisory/fi-2024-008" + }, + { + "type": "WEB", + "url": "https://www.tenable.com/security/research/tra-2024-25" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-20" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T20:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-mp2r-5xxf-j299/GHSA-mp2r-5xxf-j299.json b/advisories/unreviewed/2024/06/GHSA-mp2r-5xxf-j299/GHSA-mp2r-5xxf-j299.json new file mode 100644 index 00000000000..b8b3a834d36 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-mp2r-5xxf-j299/GHSA-mp2r-5xxf-j299.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mp2r-5xxf-j299", + "modified": "2024-06-25T21:31:16Z", + "published": "2024-06-25T21:31:16Z", + "aliases": [ + "CVE-2024-4883" + ], + "details": "In WhatsUp Gold versions released before 2023.1.3, a Remote Code Execution issue exists in Progress WhatsUp Gold. This vulnerability allows an unauthenticated attacker to achieve the RCE as a service account through NmApi.exe.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4883" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-June-2024" + }, + { + "type": "WEB", + "url": "https://www.progress.com/network-monitoring" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T20:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-mx99-9j8j-frc2/GHSA-mx99-9j8j-frc2.json b/advisories/unreviewed/2024/06/GHSA-mx99-9j8j-frc2/GHSA-mx99-9j8j-frc2.json new file mode 100644 index 00000000000..b7925d2c3f7 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-mx99-9j8j-frc2/GHSA-mx99-9j8j-frc2.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mx99-9j8j-frc2", + "modified": "2024-06-25T21:31:17Z", + "published": "2024-06-25T21:31:17Z", + "aliases": [ + "CVE-2024-5015" + ], + "details": "In WhatsUp Gold versions released before 2023.1.3, an authenticated SSRF vulnerability in Wug.UI.Areas.Wug.Controllers.SessionControler.Update allows a low privileged user to chain this SSRF with an Improper Access Control vulnerability. This can be used to escalate privileges to Admin.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5015" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-June-2024" + }, + { + "type": "WEB", + "url": "https://www.progress.com/network-monitoring" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-918" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T21:16:00Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-pj4v-w3wh-h643/GHSA-pj4v-w3wh-h643.json b/advisories/unreviewed/2024/06/GHSA-pj4v-w3wh-h643/GHSA-pj4v-w3wh-h643.json new file mode 100644 index 00000000000..2341c27ff25 --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-pj4v-w3wh-h643/GHSA-pj4v-w3wh-h643.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pj4v-w3wh-h643", + "modified": "2024-06-25T21:31:17Z", + "published": "2024-06-25T21:31:17Z", + "aliases": [ + "CVE-2024-35526" + ], + "details": "An issue in Daemon PTY Limited FarCry Core framework before 7.2.14 allows attackers to access sensitive information in the /facade directory.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-35526" + }, + { + "type": "WEB", + "url": "https://bastionsecurity.co.nz/advisories/farcry-core-multiple.html" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T21:15:59Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-pw52-mhpv-c8hc/GHSA-pw52-mhpv-c8hc.json b/advisories/unreviewed/2024/06/GHSA-pw52-mhpv-c8hc/GHSA-pw52-mhpv-c8hc.json new file mode 100644 index 00000000000..86a8337f40b --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-pw52-mhpv-c8hc/GHSA-pw52-mhpv-c8hc.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pw52-mhpv-c8hc", + "modified": "2024-06-25T21:31:17Z", + "published": "2024-06-25T21:31:17Z", + "aliases": [ + "CVE-2024-5012" + ], + "details": "In WhatsUp Gold versions released before 2023.1.3, there is a missing authentication vulnerability in WUGDataAccess.Credentials. This vulnerability allows unauthenticated attackers to disclose Windows Credentials stored in the product Credential Library.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5012" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-June-2024" + }, + { + "type": "WEB", + "url": "https://www.progress.com/network-monitoring" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-287" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T21:16:00Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-q398-fvpf-fh5x/GHSA-q398-fvpf-fh5x.json b/advisories/unreviewed/2024/06/GHSA-q398-fvpf-fh5x/GHSA-q398-fvpf-fh5x.json new file mode 100644 index 00000000000..479c2e867ba --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-q398-fvpf-fh5x/GHSA-q398-fvpf-fh5x.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q398-fvpf-fh5x", + "modified": "2024-06-25T21:31:17Z", + "published": "2024-06-25T21:31:17Z", + "aliases": [ + "CVE-2024-37855" + ], + "details": "An issue in Nepstech Wifi Router xpon (terminal) NTPL-Xpon1GFEVN, hardware verstion 1.0 firmware 2.0.1 allows a remote attacker to execute arbitrary code via the router's Telnet port 2345 without requiring authentication credentials.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37855" + }, + { + "type": "WEB", + "url": "https://github.com/sudo-subho/nepstech-xpon-router-rce" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T21:15:59Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-qcj6-wq2r-c3xh/GHSA-qcj6-wq2r-c3xh.json b/advisories/unreviewed/2024/06/GHSA-qcj6-wq2r-c3xh/GHSA-qcj6-wq2r-c3xh.json new file mode 100644 index 00000000000..0c615be806d --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-qcj6-wq2r-c3xh/GHSA-qcj6-wq2r-c3xh.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qcj6-wq2r-c3xh", + "modified": "2024-06-25T21:31:16Z", + "published": "2024-06-25T21:31:16Z", + "aliases": [ + "CVE-2024-4885" + ], + "details": "In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Remote Code Execution vulnerability in Progress WhatsUpGold.  The \n\nWhatsUp.ExportUtilities.Export.GetFileWithoutZip\n\n\n\n allows execution of commands with iisapppool\\nmconsole privileges.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4885" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-June-2024" + }, + { + "type": "WEB", + "url": "https://www.progress.com/network-monitoring" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T20:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-rw28-wf4m-hxpv/GHSA-rw28-wf4m-hxpv.json b/advisories/unreviewed/2024/06/GHSA-rw28-wf4m-hxpv/GHSA-rw28-wf4m-hxpv.json new file mode 100644 index 00000000000..6580c48359d --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-rw28-wf4m-hxpv/GHSA-rw28-wf4m-hxpv.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rw28-wf4m-hxpv", + "modified": "2024-06-25T21:31:16Z", + "published": "2024-06-25T21:31:16Z", + "aliases": [ + "CVE-2024-5010" + ], + "details": "In WhatsUp Gold versions released before 2023.1.3, a vulnerability exists in the TestController functionality.  A specially crafted \n\nunauthenticated\n\nHTTP request can lead to a disclosure of sensitive information.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5010" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-June-2024" + }, + { + "type": "WEB", + "url": "https://www.progress.com/network-monitoring" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T20:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-rxw3-jm8w-c989/GHSA-rxw3-jm8w-c989.json b/advisories/unreviewed/2024/06/GHSA-rxw3-jm8w-c989/GHSA-rxw3-jm8w-c989.json new file mode 100644 index 00000000000..c8f0a6317fa --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-rxw3-jm8w-c989/GHSA-rxw3-jm8w-c989.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rxw3-jm8w-c989", + "modified": "2024-06-25T21:31:18Z", + "published": "2024-06-25T21:31:18Z", + "aliases": [ + "CVE-2024-5017" + ], + "details": "In WhatsUp Gold versions released before 2023.1.3, a path traversal vulnerability exists. A specially crafted unauthenticated HTTP request to AppProfileImport can lead can lead to information disclosure.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5017" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-June-2024" + }, + { + "type": "WEB", + "url": "https://www.progress.com/network-monitoring" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T21:16:01Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-vp43-wpfx-v79m/GHSA-vp43-wpfx-v79m.json b/advisories/unreviewed/2024/06/GHSA-vp43-wpfx-v79m/GHSA-vp43-wpfx-v79m.json new file mode 100644 index 00000000000..460b8eec88c --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-vp43-wpfx-v79m/GHSA-vp43-wpfx-v79m.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vp43-wpfx-v79m", + "modified": "2024-06-25T21:31:17Z", + "published": "2024-06-25T21:31:17Z", + "aliases": [ + "CVE-2024-5013" + ], + "details": "In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Denial of Service \n\nvulnerability was identified. An unauthenticated attacker can put the application into the SetAdminPassword installation step, which renders the application non-accessible.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5013" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-June-2024" + }, + { + "type": "WEB", + "url": "https://www.progress.com/network-monitoring" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-400" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T21:16:00Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/06/GHSA-vrxq-687c-64w5/GHSA-vrxq-687c-64w5.json b/advisories/unreviewed/2024/06/GHSA-vrxq-687c-64w5/GHSA-vrxq-687c-64w5.json new file mode 100644 index 00000000000..6c9bc9a814e --- /dev/null +++ b/advisories/unreviewed/2024/06/GHSA-vrxq-687c-64w5/GHSA-vrxq-687c-64w5.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vrxq-687c-64w5", + "modified": "2024-06-25T21:31:18Z", + "published": "2024-06-25T21:31:18Z", + "aliases": [ + "CVE-2024-5019" + ], + "details": "In WhatsUp Gold versions released before 2023.1.3, \n\nan unauthenticated Arbitrary File Read issue exists in Wug.UI.Areas.Wug.Controllers.SessionController.CachedCSS. This vulnerability allows reading of any file with iisapppool\\NmConsole privileges.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5019" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-June-2024" + }, + { + "type": "WEB", + "url": "https://www.progress.com/network-monitoring" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-06-25T21:16:01Z" + } +} \ No newline at end of file