Publish Advisories

GHSA-3vwc-j35j-g8jv
GHSA-4r5c-7wgh-g673
GHSA-5mvp-3rph-rfxg
GHSA-5r57-jcc8-jhh3
GHSA-7jw6-8f8g-469v
GHSA-c47q-h9w3-rcwg
GHSA-cq73-mwp9-qgj2
GHSA-fff2-pwcg-x73m
GHSA-gmx8-9854-xjqr
GHSA-gqmf-j3fp-9x2f
GHSA-gxh7-r3qj-jmff
GHSA-h5wc-jv87-367w
GHSA-jfh3-f27x-p9gp
GHSA-jv87-hfr8-8j2r
GHSA-qqpr-fvmc-87j3
GHSA-r25h-rx28-86pw
GHSA-r8fc-3gvg-wxxf
This commit is contained in:
advisory-database[bot]
2024-04-23 18:32:04 +00:00
parent e60576eae8
commit 7c56c0a2b5
17 changed files with 185 additions and 14 deletions
@@ -0,0 +1,38 @@
{
"schema_version": "1.4.0",
"id": "GHSA-3vwc-j35j-g8jv",
"modified": "2024-04-23T18:30:39Z",
"published": "2024-04-23T18:30:39Z",
"aliases": [
"CVE-2024-21972"
],
"details": "\nAn out of bounds write vulnerability in the AMD Radeon™ user mode driver for DirectX® 11 could allow an attacker with access to a malformed shader to potentially achieve arbitrary code execution.\n\n",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L"
}
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21972"
},
{
"type": "WEB",
"url": "https://www.amd.com/en/resources/product-security/bulletin/amd-sb-6012.html"
}
],
"database_specific": {
"cwe_ids": [
"CWE-787"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-04-23T17:15:46Z"
}
}
@@ -0,0 +1,38 @@
{
"schema_version": "1.4.0",
"id": "GHSA-4r5c-7wgh-g673",
"modified": "2024-04-23T18:30:39Z",
"published": "2024-04-23T18:30:39Z",
"aliases": [
"CVE-2024-21979"
],
"details": "\nAn out of bounds write vulnerability in the AMD Radeon™ user mode driver for DirectX® 11 could allow an attacker with access to a malformed shader to potentially achieve arbitrary code execution.\n\n",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L"
}
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21979"
},
{
"type": "WEB",
"url": "https://www.amd.com/en/resources/product-security/bulletin/amd-sb-6012.html"
}
],
"database_specific": {
"cwe_ids": [
"CWE-787"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-04-23T17:15:46Z"
}
}
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5mvp-3rph-rfxg",
"modified": "2024-04-23T03:31:28Z",
"modified": "2024-04-23T18:30:39Z",
"published": "2024-04-17T09:30:32Z",
"aliases": [
"CVE-2024-3839"
@@ -36,6 +36,10 @@
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO"
}
],
"database_specific": {
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5r57-jcc8-jhh3",
"modified": "2024-04-23T03:31:28Z",
"modified": "2024-04-23T18:30:39Z",
"published": "2024-04-17T09:30:31Z",
"aliases": [
"CVE-2024-3834"
@@ -36,6 +36,10 @@
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO"
}
],
"database_specific": {
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-7jw6-8f8g-469v",
"modified": "2024-04-23T03:31:29Z",
"modified": "2024-04-23T18:30:39Z",
"published": "2024-04-17T09:30:32Z",
"aliases": [
"CVE-2024-3844"
@@ -33,6 +33,10 @@
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO"
}
],
"database_specific": {
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-c47q-h9w3-rcwg",
"modified": "2024-04-23T03:31:29Z",
"modified": "2024-04-23T18:30:39Z",
"published": "2024-04-17T09:30:32Z",
"aliases": [
"CVE-2024-3845"
@@ -33,6 +33,10 @@
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO"
}
],
"database_specific": {
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-cq73-mwp9-qgj2",
"modified": "2024-04-23T03:31:29Z",
"modified": "2024-04-23T18:30:39Z",
"published": "2024-04-17T09:30:32Z",
"aliases": [
"CVE-2024-3846"
@@ -33,6 +33,10 @@
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO"
}
],
"database_specific": {
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-fff2-pwcg-x73m",
"modified": "2024-04-23T03:31:28Z",
"modified": "2024-04-23T18:30:39Z",
"published": "2024-04-17T09:30:32Z",
"aliases": [
"CVE-2024-3838"
@@ -36,6 +36,10 @@
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO"
}
],
"database_specific": {
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-gmx8-9854-xjqr",
"modified": "2024-04-23T03:31:28Z",
"modified": "2024-04-23T18:30:39Z",
"published": "2024-04-17T09:30:32Z",
"aliases": [
"CVE-2024-3840"
@@ -33,6 +33,10 @@
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO"
}
],
"database_specific": {
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-gqmf-j3fp-9x2f",
"modified": "2024-04-23T03:31:28Z",
"modified": "2024-04-23T18:30:39Z",
"published": "2024-04-17T09:30:32Z",
"aliases": [
"CVE-2024-3843"
@@ -33,6 +33,10 @@
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO"
}
],
"database_specific": {
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-gxh7-r3qj-jmff",
"modified": "2024-04-23T03:31:28Z",
"modified": "2024-04-23T18:30:39Z",
"published": "2024-04-17T09:30:32Z",
"aliases": [
"CVE-2024-3841"
@@ -33,6 +33,10 @@
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO"
}
],
"database_specific": {
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-h5wc-jv87-367w",
"modified": "2024-04-23T03:31:28Z",
"modified": "2024-04-23T18:30:39Z",
"published": "2024-04-17T09:30:32Z",
"aliases": [
"CVE-2024-3837"
@@ -36,6 +36,10 @@
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO"
}
],
"database_specific": {
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-jfh3-f27x-p9gp",
"modified": "2024-04-23T03:31:28Z",
"modified": "2024-04-23T18:30:38Z",
"published": "2024-04-17T09:30:31Z",
"aliases": [
"CVE-2024-3833"
@@ -33,6 +33,10 @@
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO"
}
],
"database_specific": {
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-jv87-hfr8-8j2r",
"modified": "2024-04-23T03:31:29Z",
"modified": "2024-04-23T18:30:39Z",
"published": "2024-04-17T18:31:37Z",
"aliases": [
"CVE-2024-3914"
@@ -33,6 +33,10 @@
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO"
}
],
"database_specific": {
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-qqpr-fvmc-87j3",
"modified": "2024-04-23T03:31:28Z",
"modified": "2024-04-23T18:30:38Z",
"published": "2024-04-17T09:30:31Z",
"aliases": [
"CVE-2024-3832"
@@ -33,6 +33,10 @@
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO"
}
],
"database_specific": {
@@ -0,0 +1,39 @@
{
"schema_version": "1.4.0",
"id": "GHSA-r25h-rx28-86pw",
"modified": "2024-04-23T18:30:39Z",
"published": "2024-04-23T18:30:39Z",
"aliases": [
"CVE-2024-32258"
],
"details": "The network server of fceux 2.7.0 has a path traversal vulnerability, allowing attackers to overwrite any files on the server without authentication by fake ROM.",
"severity": [
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-32258"
},
{
"type": "WEB",
"url": "https://github.com/TASEmulators/fceux/issues/727"
},
{
"type": "WEB",
"url": "https://github.com/liyansong2018/CVE-2024-32258"
}
],
"database_specific": {
"cwe_ids": [
],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-04-23T16:15:07Z"
}
}
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-r8fc-3gvg-wxxf",
"modified": "2024-04-23T03:31:29Z",
"modified": "2024-04-23T18:30:39Z",
"published": "2024-04-17T09:30:32Z",
"aliases": [
"CVE-2024-3847"
@@ -33,6 +33,10 @@
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO"
}
],
"database_specific": {