From 7c56c0a2b56fc7283473c5159d6a1e44ff18a673 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Tue, 23 Apr 2024 18:32:04 +0000 Subject: [PATCH] Publish Advisories GHSA-3vwc-j35j-g8jv GHSA-4r5c-7wgh-g673 GHSA-5mvp-3rph-rfxg GHSA-5r57-jcc8-jhh3 GHSA-7jw6-8f8g-469v GHSA-c47q-h9w3-rcwg GHSA-cq73-mwp9-qgj2 GHSA-fff2-pwcg-x73m GHSA-gmx8-9854-xjqr GHSA-gqmf-j3fp-9x2f GHSA-gxh7-r3qj-jmff GHSA-h5wc-jv87-367w GHSA-jfh3-f27x-p9gp GHSA-jv87-hfr8-8j2r GHSA-qqpr-fvmc-87j3 GHSA-r25h-rx28-86pw GHSA-r8fc-3gvg-wxxf --- .../GHSA-3vwc-j35j-g8jv.json | 38 ++++++++++++++++++ .../GHSA-4r5c-7wgh-g673.json | 38 ++++++++++++++++++ .../GHSA-5mvp-3rph-rfxg.json | 6 ++- .../GHSA-5r57-jcc8-jhh3.json | 6 ++- .../GHSA-7jw6-8f8g-469v.json | 6 ++- .../GHSA-c47q-h9w3-rcwg.json | 6 ++- .../GHSA-cq73-mwp9-qgj2.json | 6 ++- .../GHSA-fff2-pwcg-x73m.json | 6 ++- .../GHSA-gmx8-9854-xjqr.json | 6 ++- .../GHSA-gqmf-j3fp-9x2f.json | 6 ++- .../GHSA-gxh7-r3qj-jmff.json | 6 ++- .../GHSA-h5wc-jv87-367w.json | 6 ++- .../GHSA-jfh3-f27x-p9gp.json | 6 ++- .../GHSA-jv87-hfr8-8j2r.json | 6 ++- .../GHSA-qqpr-fvmc-87j3.json | 6 ++- .../GHSA-r25h-rx28-86pw.json | 39 +++++++++++++++++++ .../GHSA-r8fc-3gvg-wxxf.json | 6 ++- 17 files changed, 185 insertions(+), 14 deletions(-) create mode 100644 advisories/unreviewed/2024/04/GHSA-3vwc-j35j-g8jv/GHSA-3vwc-j35j-g8jv.json create mode 100644 advisories/unreviewed/2024/04/GHSA-4r5c-7wgh-g673/GHSA-4r5c-7wgh-g673.json create mode 100644 advisories/unreviewed/2024/04/GHSA-r25h-rx28-86pw/GHSA-r25h-rx28-86pw.json diff --git a/advisories/unreviewed/2024/04/GHSA-3vwc-j35j-g8jv/GHSA-3vwc-j35j-g8jv.json b/advisories/unreviewed/2024/04/GHSA-3vwc-j35j-g8jv/GHSA-3vwc-j35j-g8jv.json new file mode 100644 index 00000000000..caf5d6d7ffb --- /dev/null +++ b/advisories/unreviewed/2024/04/GHSA-3vwc-j35j-g8jv/GHSA-3vwc-j35j-g8jv.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3vwc-j35j-g8jv", + "modified": "2024-04-23T18:30:39Z", + "published": "2024-04-23T18:30:39Z", + "aliases": [ + "CVE-2024-21972" + ], + "details": "\nAn out of bounds write vulnerability in the AMD Radeon™ user mode driver for DirectX® 11 could allow an attacker with access to a malformed shader to potentially achieve arbitrary code execution.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21972" + }, + { + "type": "WEB", + "url": "https://www.amd.com/en/resources/product-security/bulletin/amd-sb-6012.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-787" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-04-23T17:15:46Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/04/GHSA-4r5c-7wgh-g673/GHSA-4r5c-7wgh-g673.json b/advisories/unreviewed/2024/04/GHSA-4r5c-7wgh-g673/GHSA-4r5c-7wgh-g673.json new file mode 100644 index 00000000000..a4ed3e65361 --- /dev/null +++ b/advisories/unreviewed/2024/04/GHSA-4r5c-7wgh-g673/GHSA-4r5c-7wgh-g673.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4r5c-7wgh-g673", + "modified": "2024-04-23T18:30:39Z", + "published": "2024-04-23T18:30:39Z", + "aliases": [ + "CVE-2024-21979" + ], + "details": "\nAn out of bounds write vulnerability in the AMD Radeon™ user mode driver for DirectX® 11 could allow an attacker with access to a malformed shader to potentially achieve arbitrary code execution.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21979" + }, + { + "type": "WEB", + "url": "https://www.amd.com/en/resources/product-security/bulletin/amd-sb-6012.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-787" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-04-23T17:15:46Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/04/GHSA-5mvp-3rph-rfxg/GHSA-5mvp-3rph-rfxg.json b/advisories/unreviewed/2024/04/GHSA-5mvp-3rph-rfxg/GHSA-5mvp-3rph-rfxg.json index c95db2759c1..6de5a5341eb 100644 --- a/advisories/unreviewed/2024/04/GHSA-5mvp-3rph-rfxg/GHSA-5mvp-3rph-rfxg.json +++ b/advisories/unreviewed/2024/04/GHSA-5mvp-3rph-rfxg/GHSA-5mvp-3rph-rfxg.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5mvp-3rph-rfxg", - "modified": "2024-04-23T03:31:28Z", + "modified": "2024-04-23T18:30:39Z", "published": "2024-04-17T09:30:32Z", "aliases": [ "CVE-2024-3839" @@ -36,6 +36,10 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-5r57-jcc8-jhh3/GHSA-5r57-jcc8-jhh3.json b/advisories/unreviewed/2024/04/GHSA-5r57-jcc8-jhh3/GHSA-5r57-jcc8-jhh3.json index 432a287ef9d..7f337ca5ad6 100644 --- a/advisories/unreviewed/2024/04/GHSA-5r57-jcc8-jhh3/GHSA-5r57-jcc8-jhh3.json +++ b/advisories/unreviewed/2024/04/GHSA-5r57-jcc8-jhh3/GHSA-5r57-jcc8-jhh3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5r57-jcc8-jhh3", - "modified": "2024-04-23T03:31:28Z", + "modified": "2024-04-23T18:30:39Z", "published": "2024-04-17T09:30:31Z", "aliases": [ "CVE-2024-3834" @@ -36,6 +36,10 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-7jw6-8f8g-469v/GHSA-7jw6-8f8g-469v.json b/advisories/unreviewed/2024/04/GHSA-7jw6-8f8g-469v/GHSA-7jw6-8f8g-469v.json index 17f516bfa95..5cf33db7a03 100644 --- a/advisories/unreviewed/2024/04/GHSA-7jw6-8f8g-469v/GHSA-7jw6-8f8g-469v.json +++ b/advisories/unreviewed/2024/04/GHSA-7jw6-8f8g-469v/GHSA-7jw6-8f8g-469v.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7jw6-8f8g-469v", - "modified": "2024-04-23T03:31:29Z", + "modified": "2024-04-23T18:30:39Z", "published": "2024-04-17T09:30:32Z", "aliases": [ "CVE-2024-3844" @@ -33,6 +33,10 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-c47q-h9w3-rcwg/GHSA-c47q-h9w3-rcwg.json b/advisories/unreviewed/2024/04/GHSA-c47q-h9w3-rcwg/GHSA-c47q-h9w3-rcwg.json index 8ec76cf90b0..df69ec038b2 100644 --- a/advisories/unreviewed/2024/04/GHSA-c47q-h9w3-rcwg/GHSA-c47q-h9w3-rcwg.json +++ b/advisories/unreviewed/2024/04/GHSA-c47q-h9w3-rcwg/GHSA-c47q-h9w3-rcwg.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-c47q-h9w3-rcwg", - "modified": "2024-04-23T03:31:29Z", + "modified": "2024-04-23T18:30:39Z", "published": "2024-04-17T09:30:32Z", "aliases": [ "CVE-2024-3845" @@ -33,6 +33,10 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-cq73-mwp9-qgj2/GHSA-cq73-mwp9-qgj2.json b/advisories/unreviewed/2024/04/GHSA-cq73-mwp9-qgj2/GHSA-cq73-mwp9-qgj2.json index 203c8c9c288..61429fd5fda 100644 --- a/advisories/unreviewed/2024/04/GHSA-cq73-mwp9-qgj2/GHSA-cq73-mwp9-qgj2.json +++ b/advisories/unreviewed/2024/04/GHSA-cq73-mwp9-qgj2/GHSA-cq73-mwp9-qgj2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cq73-mwp9-qgj2", - "modified": "2024-04-23T03:31:29Z", + "modified": "2024-04-23T18:30:39Z", "published": "2024-04-17T09:30:32Z", "aliases": [ "CVE-2024-3846" @@ -33,6 +33,10 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-fff2-pwcg-x73m/GHSA-fff2-pwcg-x73m.json b/advisories/unreviewed/2024/04/GHSA-fff2-pwcg-x73m/GHSA-fff2-pwcg-x73m.json index 5c8fd4ad26c..39797a33c01 100644 --- a/advisories/unreviewed/2024/04/GHSA-fff2-pwcg-x73m/GHSA-fff2-pwcg-x73m.json +++ b/advisories/unreviewed/2024/04/GHSA-fff2-pwcg-x73m/GHSA-fff2-pwcg-x73m.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-fff2-pwcg-x73m", - "modified": "2024-04-23T03:31:28Z", + "modified": "2024-04-23T18:30:39Z", "published": "2024-04-17T09:30:32Z", "aliases": [ "CVE-2024-3838" @@ -36,6 +36,10 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-gmx8-9854-xjqr/GHSA-gmx8-9854-xjqr.json b/advisories/unreviewed/2024/04/GHSA-gmx8-9854-xjqr/GHSA-gmx8-9854-xjqr.json index 623691ff7d4..1d6a017dc58 100644 --- a/advisories/unreviewed/2024/04/GHSA-gmx8-9854-xjqr/GHSA-gmx8-9854-xjqr.json +++ b/advisories/unreviewed/2024/04/GHSA-gmx8-9854-xjqr/GHSA-gmx8-9854-xjqr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-gmx8-9854-xjqr", - "modified": "2024-04-23T03:31:28Z", + "modified": "2024-04-23T18:30:39Z", "published": "2024-04-17T09:30:32Z", "aliases": [ "CVE-2024-3840" @@ -33,6 +33,10 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-gqmf-j3fp-9x2f/GHSA-gqmf-j3fp-9x2f.json b/advisories/unreviewed/2024/04/GHSA-gqmf-j3fp-9x2f/GHSA-gqmf-j3fp-9x2f.json index 237e74f5483..743b9a376f3 100644 --- a/advisories/unreviewed/2024/04/GHSA-gqmf-j3fp-9x2f/GHSA-gqmf-j3fp-9x2f.json +++ b/advisories/unreviewed/2024/04/GHSA-gqmf-j3fp-9x2f/GHSA-gqmf-j3fp-9x2f.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-gqmf-j3fp-9x2f", - "modified": "2024-04-23T03:31:28Z", + "modified": "2024-04-23T18:30:39Z", "published": "2024-04-17T09:30:32Z", "aliases": [ "CVE-2024-3843" @@ -33,6 +33,10 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-gxh7-r3qj-jmff/GHSA-gxh7-r3qj-jmff.json b/advisories/unreviewed/2024/04/GHSA-gxh7-r3qj-jmff/GHSA-gxh7-r3qj-jmff.json index 8bee9980548..a7fba1ddf23 100644 --- a/advisories/unreviewed/2024/04/GHSA-gxh7-r3qj-jmff/GHSA-gxh7-r3qj-jmff.json +++ b/advisories/unreviewed/2024/04/GHSA-gxh7-r3qj-jmff/GHSA-gxh7-r3qj-jmff.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-gxh7-r3qj-jmff", - "modified": "2024-04-23T03:31:28Z", + "modified": "2024-04-23T18:30:39Z", "published": "2024-04-17T09:30:32Z", "aliases": [ "CVE-2024-3841" @@ -33,6 +33,10 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-h5wc-jv87-367w/GHSA-h5wc-jv87-367w.json b/advisories/unreviewed/2024/04/GHSA-h5wc-jv87-367w/GHSA-h5wc-jv87-367w.json index 4f0585370f5..6c3c9cc8970 100644 --- a/advisories/unreviewed/2024/04/GHSA-h5wc-jv87-367w/GHSA-h5wc-jv87-367w.json +++ b/advisories/unreviewed/2024/04/GHSA-h5wc-jv87-367w/GHSA-h5wc-jv87-367w.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-h5wc-jv87-367w", - "modified": "2024-04-23T03:31:28Z", + "modified": "2024-04-23T18:30:39Z", "published": "2024-04-17T09:30:32Z", "aliases": [ "CVE-2024-3837" @@ -36,6 +36,10 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-jfh3-f27x-p9gp/GHSA-jfh3-f27x-p9gp.json b/advisories/unreviewed/2024/04/GHSA-jfh3-f27x-p9gp/GHSA-jfh3-f27x-p9gp.json index dd54a40ef4c..e798d085ca7 100644 --- a/advisories/unreviewed/2024/04/GHSA-jfh3-f27x-p9gp/GHSA-jfh3-f27x-p9gp.json +++ b/advisories/unreviewed/2024/04/GHSA-jfh3-f27x-p9gp/GHSA-jfh3-f27x-p9gp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-jfh3-f27x-p9gp", - "modified": "2024-04-23T03:31:28Z", + "modified": "2024-04-23T18:30:38Z", "published": "2024-04-17T09:30:31Z", "aliases": [ "CVE-2024-3833" @@ -33,6 +33,10 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-jv87-hfr8-8j2r/GHSA-jv87-hfr8-8j2r.json b/advisories/unreviewed/2024/04/GHSA-jv87-hfr8-8j2r/GHSA-jv87-hfr8-8j2r.json index 6efe865aa1e..e6ec04155d3 100644 --- a/advisories/unreviewed/2024/04/GHSA-jv87-hfr8-8j2r/GHSA-jv87-hfr8-8j2r.json +++ b/advisories/unreviewed/2024/04/GHSA-jv87-hfr8-8j2r/GHSA-jv87-hfr8-8j2r.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-jv87-hfr8-8j2r", - "modified": "2024-04-23T03:31:29Z", + "modified": "2024-04-23T18:30:39Z", "published": "2024-04-17T18:31:37Z", "aliases": [ "CVE-2024-3914" @@ -33,6 +33,10 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-qqpr-fvmc-87j3/GHSA-qqpr-fvmc-87j3.json b/advisories/unreviewed/2024/04/GHSA-qqpr-fvmc-87j3/GHSA-qqpr-fvmc-87j3.json index b5f573b1ae0..6d00e6b6c33 100644 --- a/advisories/unreviewed/2024/04/GHSA-qqpr-fvmc-87j3/GHSA-qqpr-fvmc-87j3.json +++ b/advisories/unreviewed/2024/04/GHSA-qqpr-fvmc-87j3/GHSA-qqpr-fvmc-87j3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qqpr-fvmc-87j3", - "modified": "2024-04-23T03:31:28Z", + "modified": "2024-04-23T18:30:38Z", "published": "2024-04-17T09:30:31Z", "aliases": [ "CVE-2024-3832" @@ -33,6 +33,10 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-r25h-rx28-86pw/GHSA-r25h-rx28-86pw.json b/advisories/unreviewed/2024/04/GHSA-r25h-rx28-86pw/GHSA-r25h-rx28-86pw.json new file mode 100644 index 00000000000..66a45fc9994 --- /dev/null +++ b/advisories/unreviewed/2024/04/GHSA-r25h-rx28-86pw/GHSA-r25h-rx28-86pw.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r25h-rx28-86pw", + "modified": "2024-04-23T18:30:39Z", + "published": "2024-04-23T18:30:39Z", + "aliases": [ + "CVE-2024-32258" + ], + "details": "The network server of fceux 2.7.0 has a path traversal vulnerability, allowing attackers to overwrite any files on the server without authentication by fake ROM.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-32258" + }, + { + "type": "WEB", + "url": "https://github.com/TASEmulators/fceux/issues/727" + }, + { + "type": "WEB", + "url": "https://github.com/liyansong2018/CVE-2024-32258" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-04-23T16:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/04/GHSA-r8fc-3gvg-wxxf/GHSA-r8fc-3gvg-wxxf.json b/advisories/unreviewed/2024/04/GHSA-r8fc-3gvg-wxxf/GHSA-r8fc-3gvg-wxxf.json index 22c6c2161cd..91c2c23eafe 100644 --- a/advisories/unreviewed/2024/04/GHSA-r8fc-3gvg-wxxf/GHSA-r8fc-3gvg-wxxf.json +++ b/advisories/unreviewed/2024/04/GHSA-r8fc-3gvg-wxxf/GHSA-r8fc-3gvg-wxxf.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-r8fc-3gvg-wxxf", - "modified": "2024-04-23T03:31:29Z", + "modified": "2024-04-23T18:30:39Z", "published": "2024-04-17T09:30:32Z", "aliases": [ "CVE-2024-3847" @@ -33,6 +33,10 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WEP5NJUWMDRLDQUKU4LFDUHF5PCYAPIO" } ], "database_specific": {