From 87df3ade4de8ab93ecfe902c033a6f7f855f9cd6 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Tue, 12 Nov 2024 15:32:02 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-6wvf-f2vw-3425.json | 24 ++++++-- .../GHSA-3fpg-j8cw-vcjq.json | 10 +++- .../GHSA-mqqf-4p7r-rf89.json | 10 +++- .../GHSA-q6w6-rjjj-5p52.json | 10 +++- .../GHSA-g3gv-9xvr-p3r6.json | 6 +- .../GHSA-g6h4-j28x-38g5.json | 6 +- .../GHSA-gwgm-rhr4-mf4h.json | 6 +- .../GHSA-2vx8-9hgx-f8cj.json | 42 ++++++++++++++ .../GHSA-2w8x-pfh9-cp77.json | 2 +- .../GHSA-33p9-j27p-6f2h.json | 2 +- .../GHSA-34p7-67p6-m2pf.json | 35 +++++++++++ .../GHSA-5355-h7h8-637c.json | 42 ++++++++++++++ .../GHSA-545p-76g5-36m8.json | 42 ++++++++++++++ .../GHSA-5684-4xfg-mxj4.json | 2 +- .../GHSA-57qc-q8rc-w8h7.json | 42 ++++++++++++++ .../GHSA-5jg7-j4xc-267p.json | 2 +- .../GHSA-5pg9-rxpc-jxgf.json | 46 +++++++++++++++ .../GHSA-5wrv-fw78-wwh3.json | 11 ++-- .../GHSA-6352-5p2f-gv84.json | 9 ++- .../GHSA-66q2-ffpq-62mp.json | 9 ++- .../GHSA-68w3-69rv-qrr7.json | 38 ++++++++++++ .../GHSA-6q8c-xccr-rq92.json | 54 +++++++++++++++++ .../GHSA-7679-9xw6-2858.json | 42 ++++++++++++++ .../GHSA-76f5-r74w-9h63.json | 42 ++++++++++++++ .../GHSA-775q-3335-qhjr.json | 42 ++++++++++++++ .../GHSA-7pf3-wv6r-35f5.json | 54 +++++++++++++++++ .../GHSA-822r-5337-562q.json | 2 +- .../GHSA-84fj-mc2g-vcqc.json | 42 ++++++++++++++ .../GHSA-8fc3-6g2g-rgc3.json | 42 ++++++++++++++ .../GHSA-8m5v-368f-686v.json | 42 ++++++++++++++ .../GHSA-9c7g-8m6v-j7h8.json | 58 +++++++++++++++++++ .../GHSA-9g7f-8r42-f32m.json | 35 +++++++++++ .../GHSA-9hgf-jcfq-gvxc.json | 58 +++++++++++++++++++ .../GHSA-c55x-j339-wq86.json | 50 ++++++++++++++++ .../GHSA-c8w8-pq5h-cf2p.json | 54 +++++++++++++++++ .../GHSA-fc63-6853-v5m2.json | 42 ++++++++++++++ .../GHSA-fjw7-947f-3xx6.json | 11 ++-- .../GHSA-fvc2-gqm9-w9x5.json | 42 ++++++++++++++ .../GHSA-g446-rqm3-4h89.json | 35 +++++++++++ .../GHSA-gh66-hfff-5mf9.json | 42 ++++++++++++++ .../GHSA-hvgm-99g5-jwq5.json | 42 ++++++++++++++ .../GHSA-hx7r-qwxv-w9j9.json | 35 +++++++++++ .../GHSA-jjfc-8563-3h89.json | 38 ++++++++++++ .../GHSA-m28q-9cc4-gj6h.json | 35 +++++++++++ .../GHSA-mhcq-hvgj-xm2h.json | 11 ++-- .../GHSA-mx5f-vqxg-86w4.json | 42 ++++++++++++++ .../GHSA-pjpw-9hx5-m28p.json | 42 ++++++++++++++ .../GHSA-q48v-mggj-3532.json | 42 ++++++++++++++ .../GHSA-q9qw-6hf7-48wg.json | 42 ++++++++++++++ .../GHSA-qf2g-86hc-xp38.json | 42 ++++++++++++++ .../GHSA-qhpc-32r3-qpcv.json | 42 ++++++++++++++ .../GHSA-qpp3-qr6x-mfmj.json | 42 ++++++++++++++ .../GHSA-qx55-5x5m-94cr.json | 2 +- .../GHSA-r5rf-j64w-28qc.json | 42 ++++++++++++++ .../GHSA-r642-x62f-jqhp.json | 35 +++++++++++ .../GHSA-rf57-p454-qrmj.json | 38 ++++++++++++ .../GHSA-rqpf-4v4j-r7wp.json | 42 ++++++++++++++ .../GHSA-v95w-jfg2-cj6w.json | 11 ++-- .../GHSA-vgj5-pm4f-q6gv.json | 38 ++++++++++++ .../GHSA-vx6f-r8cp-5qf8.json | 54 +++++++++++++++++ .../GHSA-w85r-9h7p-rv3f.json | 54 +++++++++++++++++ .../GHSA-w95c-2q6h-h5mp.json | 42 ++++++++++++++ .../GHSA-xf4p-4gf4-v92p.json | 38 ++++++++++++ .../GHSA-xxc6-q6r3-h584.json | 35 +++++++++++ 64 files changed, 2031 insertions(+), 40 deletions(-) create mode 100644 advisories/unreviewed/2024/11/GHSA-2vx8-9hgx-f8cj/GHSA-2vx8-9hgx-f8cj.json create mode 100644 advisories/unreviewed/2024/11/GHSA-34p7-67p6-m2pf/GHSA-34p7-67p6-m2pf.json create mode 100644 advisories/unreviewed/2024/11/GHSA-5355-h7h8-637c/GHSA-5355-h7h8-637c.json create mode 100644 advisories/unreviewed/2024/11/GHSA-545p-76g5-36m8/GHSA-545p-76g5-36m8.json create mode 100644 advisories/unreviewed/2024/11/GHSA-57qc-q8rc-w8h7/GHSA-57qc-q8rc-w8h7.json create mode 100644 advisories/unreviewed/2024/11/GHSA-5pg9-rxpc-jxgf/GHSA-5pg9-rxpc-jxgf.json create mode 100644 advisories/unreviewed/2024/11/GHSA-68w3-69rv-qrr7/GHSA-68w3-69rv-qrr7.json create mode 100644 advisories/unreviewed/2024/11/GHSA-6q8c-xccr-rq92/GHSA-6q8c-xccr-rq92.json create mode 100644 advisories/unreviewed/2024/11/GHSA-7679-9xw6-2858/GHSA-7679-9xw6-2858.json create mode 100644 advisories/unreviewed/2024/11/GHSA-76f5-r74w-9h63/GHSA-76f5-r74w-9h63.json create mode 100644 advisories/unreviewed/2024/11/GHSA-775q-3335-qhjr/GHSA-775q-3335-qhjr.json create mode 100644 advisories/unreviewed/2024/11/GHSA-7pf3-wv6r-35f5/GHSA-7pf3-wv6r-35f5.json create mode 100644 advisories/unreviewed/2024/11/GHSA-84fj-mc2g-vcqc/GHSA-84fj-mc2g-vcqc.json create mode 100644 advisories/unreviewed/2024/11/GHSA-8fc3-6g2g-rgc3/GHSA-8fc3-6g2g-rgc3.json create mode 100644 advisories/unreviewed/2024/11/GHSA-8m5v-368f-686v/GHSA-8m5v-368f-686v.json create mode 100644 advisories/unreviewed/2024/11/GHSA-9c7g-8m6v-j7h8/GHSA-9c7g-8m6v-j7h8.json create mode 100644 advisories/unreviewed/2024/11/GHSA-9g7f-8r42-f32m/GHSA-9g7f-8r42-f32m.json create mode 100644 advisories/unreviewed/2024/11/GHSA-9hgf-jcfq-gvxc/GHSA-9hgf-jcfq-gvxc.json create mode 100644 advisories/unreviewed/2024/11/GHSA-c55x-j339-wq86/GHSA-c55x-j339-wq86.json create mode 100644 advisories/unreviewed/2024/11/GHSA-c8w8-pq5h-cf2p/GHSA-c8w8-pq5h-cf2p.json create mode 100644 advisories/unreviewed/2024/11/GHSA-fc63-6853-v5m2/GHSA-fc63-6853-v5m2.json create mode 100644 advisories/unreviewed/2024/11/GHSA-fvc2-gqm9-w9x5/GHSA-fvc2-gqm9-w9x5.json create mode 100644 advisories/unreviewed/2024/11/GHSA-g446-rqm3-4h89/GHSA-g446-rqm3-4h89.json create mode 100644 advisories/unreviewed/2024/11/GHSA-gh66-hfff-5mf9/GHSA-gh66-hfff-5mf9.json create mode 100644 advisories/unreviewed/2024/11/GHSA-hvgm-99g5-jwq5/GHSA-hvgm-99g5-jwq5.json create mode 100644 advisories/unreviewed/2024/11/GHSA-hx7r-qwxv-w9j9/GHSA-hx7r-qwxv-w9j9.json create mode 100644 advisories/unreviewed/2024/11/GHSA-jjfc-8563-3h89/GHSA-jjfc-8563-3h89.json create mode 100644 advisories/unreviewed/2024/11/GHSA-m28q-9cc4-gj6h/GHSA-m28q-9cc4-gj6h.json create mode 100644 advisories/unreviewed/2024/11/GHSA-mx5f-vqxg-86w4/GHSA-mx5f-vqxg-86w4.json create mode 100644 advisories/unreviewed/2024/11/GHSA-pjpw-9hx5-m28p/GHSA-pjpw-9hx5-m28p.json create mode 100644 advisories/unreviewed/2024/11/GHSA-q48v-mggj-3532/GHSA-q48v-mggj-3532.json create mode 100644 advisories/unreviewed/2024/11/GHSA-q9qw-6hf7-48wg/GHSA-q9qw-6hf7-48wg.json create mode 100644 advisories/unreviewed/2024/11/GHSA-qf2g-86hc-xp38/GHSA-qf2g-86hc-xp38.json create mode 100644 advisories/unreviewed/2024/11/GHSA-qhpc-32r3-qpcv/GHSA-qhpc-32r3-qpcv.json create mode 100644 advisories/unreviewed/2024/11/GHSA-qpp3-qr6x-mfmj/GHSA-qpp3-qr6x-mfmj.json create mode 100644 advisories/unreviewed/2024/11/GHSA-r5rf-j64w-28qc/GHSA-r5rf-j64w-28qc.json create mode 100644 advisories/unreviewed/2024/11/GHSA-r642-x62f-jqhp/GHSA-r642-x62f-jqhp.json create mode 100644 advisories/unreviewed/2024/11/GHSA-rf57-p454-qrmj/GHSA-rf57-p454-qrmj.json create mode 100644 advisories/unreviewed/2024/11/GHSA-rqpf-4v4j-r7wp/GHSA-rqpf-4v4j-r7wp.json create mode 100644 advisories/unreviewed/2024/11/GHSA-vgj5-pm4f-q6gv/GHSA-vgj5-pm4f-q6gv.json create mode 100644 advisories/unreviewed/2024/11/GHSA-vx6f-r8cp-5qf8/GHSA-vx6f-r8cp-5qf8.json create mode 100644 advisories/unreviewed/2024/11/GHSA-w85r-9h7p-rv3f/GHSA-w85r-9h7p-rv3f.json create mode 100644 advisories/unreviewed/2024/11/GHSA-w95c-2q6h-h5mp/GHSA-w95c-2q6h-h5mp.json create mode 100644 advisories/unreviewed/2024/11/GHSA-xf4p-4gf4-v92p/GHSA-xf4p-4gf4-v92p.json create mode 100644 advisories/unreviewed/2024/11/GHSA-xxc6-q6r3-h584/GHSA-xxc6-q6r3-h584.json diff --git a/advisories/github-reviewed/2024/05/GHSA-6wvf-f2vw-3425/GHSA-6wvf-f2vw-3425.json b/advisories/github-reviewed/2024/05/GHSA-6wvf-f2vw-3425/GHSA-6wvf-f2vw-3425.json index d0a06f34f9d..9a18bffbed8 100644 --- a/advisories/github-reviewed/2024/05/GHSA-6wvf-f2vw-3425/GHSA-6wvf-f2vw-3425.json +++ b/advisories/github-reviewed/2024/05/GHSA-6wvf-f2vw-3425/GHSA-6wvf-f2vw-3425.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6wvf-f2vw-3425", - "modified": "2024-10-31T06:30:45Z", + "modified": "2024-11-12T15:30:32Z", "published": "2024-05-14T18:30:52Z", "aliases": [ "CVE-2024-3727" @@ -88,7 +88,15 @@ }, { "type": "WEB", - "url": "https://access.redhat.com/errata/RHSA-2024:8425" + "url": "https://access.redhat.com/errata/RHSA-2024:0045" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9098" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9102" }, { "type": "WEB", @@ -146,10 +154,6 @@ "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/SFVSMR7TNLO2KPWJSW4CF64C2QMQXCIN" }, - { - "type": "WEB", - "url": "https://access.redhat.com/errata/RHSA-2024:0045" - }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:3718" @@ -217,6 +221,14 @@ { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:8260" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:8425" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9097" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/04/GHSA-3fpg-j8cw-vcjq/GHSA-3fpg-j8cw-vcjq.json b/advisories/unreviewed/2024/04/GHSA-3fpg-j8cw-vcjq/GHSA-3fpg-j8cw-vcjq.json index 9c438184d04..64bb638e243 100644 --- a/advisories/unreviewed/2024/04/GHSA-3fpg-j8cw-vcjq/GHSA-3fpg-j8cw-vcjq.json +++ b/advisories/unreviewed/2024/04/GHSA-3fpg-j8cw-vcjq/GHSA-3fpg-j8cw-vcjq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3fpg-j8cw-vcjq", - "modified": "2024-09-16T21:30:37Z", + "modified": "2024-11-12T15:30:31Z", "published": "2024-04-04T15:30:34Z", "aliases": [ "CVE-2024-31081" @@ -45,6 +45,14 @@ "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-31081" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9122" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9093" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:3343" diff --git a/advisories/unreviewed/2024/04/GHSA-mqqf-4p7r-rf89/GHSA-mqqf-4p7r-rf89.json b/advisories/unreviewed/2024/04/GHSA-mqqf-4p7r-rf89/GHSA-mqqf-4p7r-rf89.json index a6976fc328c..d17de8b5ab6 100644 --- a/advisories/unreviewed/2024/04/GHSA-mqqf-4p7r-rf89/GHSA-mqqf-4p7r-rf89.json +++ b/advisories/unreviewed/2024/04/GHSA-mqqf-4p7r-rf89/GHSA-mqqf-4p7r-rf89.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mqqf-4p7r-rf89", - "modified": "2024-09-16T21:30:37Z", + "modified": "2024-11-12T15:30:31Z", "published": "2024-04-04T15:30:34Z", "aliases": [ "CVE-2024-31080" @@ -45,6 +45,14 @@ "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-31080" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9122" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9093" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:3343" diff --git a/advisories/unreviewed/2024/04/GHSA-q6w6-rjjj-5p52/GHSA-q6w6-rjjj-5p52.json b/advisories/unreviewed/2024/04/GHSA-q6w6-rjjj-5p52/GHSA-q6w6-rjjj-5p52.json index 98787ea7e09..b4ef008ae6c 100644 --- a/advisories/unreviewed/2024/04/GHSA-q6w6-rjjj-5p52/GHSA-q6w6-rjjj-5p52.json +++ b/advisories/unreviewed/2024/04/GHSA-q6w6-rjjj-5p52/GHSA-q6w6-rjjj-5p52.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-q6w6-rjjj-5p52", - "modified": "2024-09-16T21:30:37Z", + "modified": "2024-11-12T15:30:32Z", "published": "2024-04-05T12:31:17Z", "aliases": [ "CVE-2024-31083" @@ -45,6 +45,14 @@ "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-31083" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9122" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9093" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:3343" diff --git a/advisories/unreviewed/2024/05/GHSA-g3gv-9xvr-p3r6/GHSA-g3gv-9xvr-p3r6.json b/advisories/unreviewed/2024/05/GHSA-g3gv-9xvr-p3r6/GHSA-g3gv-9xvr-p3r6.json index bd745523a00..32118026131 100644 --- a/advisories/unreviewed/2024/05/GHSA-g3gv-9xvr-p3r6/GHSA-g3gv-9xvr-p3r6.json +++ b/advisories/unreviewed/2024/05/GHSA-g3gv-9xvr-p3r6/GHSA-g3gv-9xvr-p3r6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-g3gv-9xvr-p3r6", - "modified": "2024-08-13T09:30:52Z", + "modified": "2024-11-12T15:30:32Z", "published": "2024-05-14T18:30:58Z", "aliases": [ "CVE-2023-46280" @@ -25,6 +25,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-46280" }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-331112.html" + }, { "type": "WEB", "url": "https://cert-portal.siemens.com/productcert/html/ssa-784301.html" diff --git a/advisories/unreviewed/2024/07/GHSA-g6h4-j28x-38g5/GHSA-g6h4-j28x-38g5.json b/advisories/unreviewed/2024/07/GHSA-g6h4-j28x-38g5/GHSA-g6h4-j28x-38g5.json index 8b50157f0e6..f5b50b17672 100644 --- a/advisories/unreviewed/2024/07/GHSA-g6h4-j28x-38g5/GHSA-g6h4-j28x-38g5.json +++ b/advisories/unreviewed/2024/07/GHSA-g6h4-j28x-38g5/GHSA-g6h4-j28x-38g5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-g6h4-j28x-38g5", - "modified": "2024-07-03T18:48:26Z", + "modified": "2024-11-12T15:30:32Z", "published": "2024-07-03T18:48:26Z", "aliases": [ "CVE-2024-6126" @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6126" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9325" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-6126" diff --git a/advisories/unreviewed/2024/07/GHSA-gwgm-rhr4-mf4h/GHSA-gwgm-rhr4-mf4h.json b/advisories/unreviewed/2024/07/GHSA-gwgm-rhr4-mf4h/GHSA-gwgm-rhr4-mf4h.json index e4af5f0e219..a14fa1c18fd 100644 --- a/advisories/unreviewed/2024/07/GHSA-gwgm-rhr4-mf4h/GHSA-gwgm-rhr4-mf4h.json +++ b/advisories/unreviewed/2024/07/GHSA-gwgm-rhr4-mf4h/GHSA-gwgm-rhr4-mf4h.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-gwgm-rhr4-mf4h", - "modified": "2024-07-09T21:30:38Z", + "modified": "2024-11-12T15:30:32Z", "published": "2024-07-09T21:30:37Z", "aliases": [ "CVE-2024-6501" @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6501" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9317" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-6501" diff --git a/advisories/unreviewed/2024/11/GHSA-2vx8-9hgx-f8cj/GHSA-2vx8-9hgx-f8cj.json b/advisories/unreviewed/2024/11/GHSA-2vx8-9hgx-f8cj/GHSA-2vx8-9hgx-f8cj.json new file mode 100644 index 00000000000..f13a9427058 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-2vx8-9hgx-f8cj/GHSA-2vx8-9hgx-f8cj.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2vx8-9hgx-f8cj", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-47941" + ], + "details": "A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 9). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47941" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-351178.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-125" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-2w8x-pfh9-cp77/GHSA-2w8x-pfh9-cp77.json b/advisories/unreviewed/2024/11/GHSA-2w8x-pfh9-cp77/GHSA-2w8x-pfh9-cp77.json index c129decf403..41331d6af1e 100644 --- a/advisories/unreviewed/2024/11/GHSA-2w8x-pfh9-cp77/GHSA-2w8x-pfh9-cp77.json +++ b/advisories/unreviewed/2024/11/GHSA-2w8x-pfh9-cp77/GHSA-2w8x-pfh9-cp77.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-2w8x-pfh9-cp77", - "modified": "2024-11-11T15:31:01Z", + "modified": "2024-11-12T15:30:39Z", "published": "2024-11-11T15:31:01Z", "aliases": [ "CVE-2024-10344" diff --git a/advisories/unreviewed/2024/11/GHSA-33p9-j27p-6f2h/GHSA-33p9-j27p-6f2h.json b/advisories/unreviewed/2024/11/GHSA-33p9-j27p-6f2h/GHSA-33p9-j27p-6f2h.json index 0fde1f31e89..b8cfda3da86 100644 --- a/advisories/unreviewed/2024/11/GHSA-33p9-j27p-6f2h/GHSA-33p9-j27p-6f2h.json +++ b/advisories/unreviewed/2024/11/GHSA-33p9-j27p-6f2h/GHSA-33p9-j27p-6f2h.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-33p9-j27p-6f2h", - "modified": "2024-11-11T15:31:01Z", + "modified": "2024-11-12T15:30:40Z", "published": "2024-11-11T15:31:01Z", "aliases": [ "CVE-2024-10345" diff --git a/advisories/unreviewed/2024/11/GHSA-34p7-67p6-m2pf/GHSA-34p7-67p6-m2pf.json b/advisories/unreviewed/2024/11/GHSA-34p7-67p6-m2pf/GHSA-34p7-67p6-m2pf.json new file mode 100644 index 00000000000..0f97eda187a --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-34p7-67p6-m2pf/GHSA-34p7-67p6-m2pf.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-34p7-67p6-m2pf", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-45289" + ], + "details": "The fetch(3) library uses environment variables for passing certain information, including the revocation file pathname. The environment variable name used by fetch(1) to pass the filename to the library was incorrect, in effect ignoring the option.\n\nFetch would still connect to a host presenting a certificate included in the revocation file passed to the --crl option.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45289" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-24:18.ctl.asc" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-665" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-5355-h7h8-637c/GHSA-5355-h7h8-637c.json b/advisories/unreviewed/2024/11/GHSA-5355-h7h8-637c/GHSA-5355-h7h8-637c.json new file mode 100644 index 00000000000..b62356f5811 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-5355-h7h8-637c/GHSA-5355-h7h8-637c.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5355-h7h8-637c", + "modified": "2024-11-12T15:30:40Z", + "published": "2024-11-12T15:30:40Z", + "aliases": [ + "CVE-2023-32736" + ], + "details": "A vulnerability has been identified in SIMATIC S7-PLCSIM V16 (All versions), SIMATIC S7-PLCSIM V17 (All versions), SIMATIC STEP 7 Safety V16 (All versions), SIMATIC STEP 7 Safety V17 (All versions < V17 Update 8), SIMATIC STEP 7 Safety V18 (All versions < V18 Update 5), SIMATIC STEP 7 V16 (All versions), SIMATIC STEP 7 V17 (All versions < V17 Update 8), SIMATIC STEP 7 V18 (All versions < V18 Update 5), SIMATIC WinCC Unified V16 (All versions), SIMATIC WinCC Unified V17 (All versions < V17 Update 8), SIMATIC WinCC Unified V18 (All versions < V18 Update 5), SIMATIC WinCC V16 (All versions), SIMATIC WinCC V17 (All versions < V17 Update 8), SIMATIC WinCC V18 (All versions < V18 Update 5), SIMOCODE ES V16 (All versions), SIMOCODE ES V17 (All versions < V17 Update 8), SIMOCODE ES V18 (All versions), SIMOTION SCOUT TIA V5.4 SP1 (All versions), SIMOTION SCOUT TIA V5.4 SP3 (All versions), SIMOTION SCOUT TIA V5.5 SP1 (All versions), SINAMICS Startdrive V16 (All versions), SINAMICS Startdrive V17 (All versions), SINAMICS Startdrive V18 (All versions), SIRIUS Safety ES V17 (All versions < V17 Update 8), SIRIUS Safety ES V18 (All versions), SIRIUS Soft Starter ES V17 (All versions < V17 Update 8), SIRIUS Soft Starter ES V18 (All versions), TIA Portal Cloud V16 (All versions), TIA Portal Cloud V17 (All versions < V4.6.0.1), TIA Portal Cloud V18 (All versions < V4.6.1.0). Affected products do not properly sanitize user-controllable input when parsing user settings. This could allow an attacker to cause a type confusion and execute arbitrary code within the affected application.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32736" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-871035.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-502" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-545p-76g5-36m8/GHSA-545p-76g5-36m8.json b/advisories/unreviewed/2024/11/GHSA-545p-76g5-36m8/GHSA-545p-76g5-36m8.json new file mode 100644 index 00000000000..eda73c6800b --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-545p-76g5-36m8/GHSA-545p-76g5-36m8.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-545p-76g5-36m8", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-50560" + ], + "details": "A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.2), SCALANCE M804PB (6GK5804-0AP00-2AA2) (All versions < V8.2), SCALANCE M812-1 ADSL-Router (6GK5812-1AA00-2AA2) (All versions < V8.2), SCALANCE M812-1 ADSL-Router (6GK5812-1BA00-2AA2) (All versions < V8.2), SCALANCE M816-1 ADSL-Router (6GK5816-1AA00-2AA2) (All versions < V8.2), SCALANCE M816-1 ADSL-Router (6GK5816-1BA00-2AA2) (All versions < V8.2), SCALANCE M826-2 SHDSL-Router (6GK5826-2AB00-2AB2) (All versions < V8.2), SCALANCE M874-2 (6GK5874-2AA00-2AA2) (All versions < V8.2), SCALANCE M874-3 (6GK5874-3AA00-2AA2) (All versions < V8.2), SCALANCE M874-3 3G-Router (CN) (6GK5874-3AA00-2FA2) (All versions < V8.2), SCALANCE M876-3 (6GK5876-3AA02-2BA2) (All versions < V8.2), SCALANCE M876-3 (ROK) (6GK5876-3AA02-2EA2) (All versions < V8.2), SCALANCE M876-4 (6GK5876-4AA10-2BA2) (All versions < V8.2), SCALANCE M876-4 (EU) (6GK5876-4AA00-2BA2) (All versions < V8.2), SCALANCE M876-4 (NAM) (6GK5876-4AA00-2DA2) (All versions < V8.2), SCALANCE MUM853-1 (A1) (6GK5853-2EA10-2AA1) (All versions < V8.2), SCALANCE MUM853-1 (B1) (6GK5853-2EA10-2BA1) (All versions < V8.2), SCALANCE MUM853-1 (EU) (6GK5853-2EA00-2DA1) (All versions < V8.2), SCALANCE MUM856-1 (A1) (6GK5856-2EA10-3AA1) (All versions < V8.2), SCALANCE MUM856-1 (B1) (6GK5856-2EA10-3BA1) (All versions < V8.2), SCALANCE MUM856-1 (CN) (6GK5856-2EA00-3FA1) (All versions < V8.2), SCALANCE MUM856-1 (EU) (6GK5856-2EA00-3DA1) (All versions < V8.2), SCALANCE MUM856-1 (RoW) (6GK5856-2EA00-3AA1) (All versions < V8.2), SCALANCE S615 EEC LAN-Router (6GK5615-0AA01-2AA2) (All versions < V8.2), SCALANCE S615 LAN-Router (6GK5615-0AA00-2AA2) (All versions < V8.2). Affected devices truncates usernames longer than 15 characters when accessed via SSH or Telnet. This could allow an attacker to compromise system integrity.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50560" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-354112.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-20" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-5684-4xfg-mxj4/GHSA-5684-4xfg-mxj4.json b/advisories/unreviewed/2024/11/GHSA-5684-4xfg-mxj4/GHSA-5684-4xfg-mxj4.json index f87f89be07e..b33408bef00 100644 --- a/advisories/unreviewed/2024/11/GHSA-5684-4xfg-mxj4/GHSA-5684-4xfg-mxj4.json +++ b/advisories/unreviewed/2024/11/GHSA-5684-4xfg-mxj4/GHSA-5684-4xfg-mxj4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5684-4xfg-mxj4", - "modified": "2024-11-09T12:30:47Z", + "modified": "2024-11-12T15:30:34Z", "published": "2024-11-09T12:30:47Z", "aliases": [ "CVE-2024-50217" diff --git a/advisories/unreviewed/2024/11/GHSA-57qc-q8rc-w8h7/GHSA-57qc-q8rc-w8h7.json b/advisories/unreviewed/2024/11/GHSA-57qc-q8rc-w8h7/GHSA-57qc-q8rc-w8h7.json new file mode 100644 index 00000000000..60ceac55ba2 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-57qc-q8rc-w8h7/GHSA-57qc-q8rc-w8h7.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-57qc-q8rc-w8h7", + "modified": "2024-11-12T15:30:42Z", + "published": "2024-11-12T15:30:42Z", + "aliases": [ + "CVE-2024-44102" + ], + "details": "A vulnerability has been identified in PP TeleControl Server Basic 1000 to 5000 V3.1 (6NH9910-0AA31-0AE1) (All versions < V3.1.2.1 with redundancy configured), PP TeleControl Server Basic 256 to 1000 V3.1 (6NH9910-0AA31-0AD1) (All versions < V3.1.2.1 with redundancy configured), PP TeleControl Server Basic 32 to 64 V3.1 (6NH9910-0AA31-0AF1) (All versions < V3.1.2.1 with redundancy configured), PP TeleControl Server Basic 64 to 256 V3.1 (6NH9910-0AA31-0AC1) (All versions < V3.1.2.1 with redundancy configured), PP TeleControl Server Basic 8 to 32 V3.1 (6NH9910-0AA31-0AB1) (All versions < V3.1.2.1 with redundancy configured), TeleControl Server Basic 1000 V3.1 (6NH9910-0AA31-0AD0) (All versions < V3.1.2.1 with redundancy configured), TeleControl Server Basic 256 V3.1 (6NH9910-0AA31-0AC0) (All versions < V3.1.2.1 with redundancy configured), TeleControl Server Basic 32 V3.1 (6NH9910-0AA31-0AF0) (All versions < V3.1.2.1 with redundancy configured), TeleControl Server Basic 5000 V3.1 (6NH9910-0AA31-0AE0) (All versions < V3.1.2.1 with redundancy configured), TeleControl Server Basic 64 V3.1 (6NH9910-0AA31-0AB0) (All versions < V3.1.2.1 with redundancy configured), TeleControl Server Basic 8 V3.1 (6NH9910-0AA31-0AA0) (All versions < V3.1.2.1 with redundancy configured), TeleControl Server Basic Serv Upgr (6NH9910-0AA31-0GA1) (All versions < V3.1.2.1 with redundancy configured), TeleControl Server Basic Upgr V3.1 (6NH9910-0AA31-0GA0) (All versions < V3.1.2.1 with redundancy configured). The affected system allows remote users to send maliciously crafted objects. Due to insecure deserialization of user-supplied content by the affected software, an unauthenticated attacker could exploit this vulnerability by sending a maliciously crafted serialized object. This could allow the attacker to execute arbitrary code on the device with SYSTEM privileges.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44102" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-454789.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-502" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-5jg7-j4xc-267p/GHSA-5jg7-j4xc-267p.json b/advisories/unreviewed/2024/11/GHSA-5jg7-j4xc-267p/GHSA-5jg7-j4xc-267p.json index 3f91f54f460..e97c1530da5 100644 --- a/advisories/unreviewed/2024/11/GHSA-5jg7-j4xc-267p/GHSA-5jg7-j4xc-267p.json +++ b/advisories/unreviewed/2024/11/GHSA-5jg7-j4xc-267p/GHSA-5jg7-j4xc-267p.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5jg7-j4xc-267p", - "modified": "2024-11-11T15:31:01Z", + "modified": "2024-11-12T15:30:39Z", "published": "2024-11-11T15:31:01Z", "aliases": [ "CVE-2024-10314" diff --git a/advisories/unreviewed/2024/11/GHSA-5pg9-rxpc-jxgf/GHSA-5pg9-rxpc-jxgf.json b/advisories/unreviewed/2024/11/GHSA-5pg9-rxpc-jxgf/GHSA-5pg9-rxpc-jxgf.json new file mode 100644 index 00000000000..e8d31bdd607 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-5pg9-rxpc-jxgf/GHSA-5pg9-rxpc-jxgf.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5pg9-rxpc-jxgf", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-50386" + ], + "details": "Account users in Apache CloudStack by default are allowed to register templates to be downloaded directly to the primary storage for deploying instances. Due to missing validation checks for KVM-compatible templates in CloudStack 4.0.0 through 4.18.2.4 and 4.19.0.0 through 4.19.1.2, an attacker that can register templates, can use them to deploy malicious instances on KVM-based environments and exploit this to gain access to the host filesystems that could result in the compromise of resource integrity and confidentiality, data loss, denial of service, and availability of KVM-based infrastructure managed by CloudStack.\n\n\nUsers are recommended to upgrade to Apache CloudStack 4.18.2.5 or 4.19.1.3, or later, which addresses this issue. \n\nAdditionally, all user-registered KVM-compatible templates can be scanned and checked that they are flat files that should not be using any additional or unnecessary features. For example, operators can run the following command on their file-based primary storage(s) and inspect the output. An empty output for the disk being validated means it has no references to the host filesystems; on the other hand, if the output for the disk being validated is not empty, it might indicate a compromised disk. However, bear in mind that (i) volumes created from templates will have references for the templates at first and (ii) volumes can be consolidated while migrating, losing their references to the templates. Therefore, the command execution for the primary storages can show both false positives and false negatives.\n\n\nfor file in $(find /path/to/storage/ -type f -regex [a-f0-9\\-]*.*); do echo \"Retrieving file [$file] info. If the output is not empty, that might indicate a compromised disk; check it carefully.\"; qemu-img info -U $file | grep file: ; printf \"\\n\\n\"; done\nFor checking the whole template/volume features of each disk, operators can run the following command:\n\n\nfor file in $(find /path/to/storage/ -type f -regex [a-f0-9\\-]*.*); do echo \"Retrieving file [$file] info.\"; qemu-img info -U $file; printf \"\\n\\n\"; done", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50386" + }, + { + "type": "WEB", + "url": "https://cloudstack.apache.org/blog/security-release-advisory-4.18.2.5-4.19.1.3" + }, + { + "type": "WEB", + "url": "https://lists.apache.org/thread/d0x83c2cyglzzdw8csbop7mj7h83z95y" + }, + { + "type": "WEB", + "url": "https://www.shapeblue.com/shapeblue-security-advisory-apache-cloudstack-security-releases-4-18-2-5-and-4-19-1-3" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-20" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-5wrv-fw78-wwh3/GHSA-5wrv-fw78-wwh3.json b/advisories/unreviewed/2024/11/GHSA-5wrv-fw78-wwh3/GHSA-5wrv-fw78-wwh3.json index 94d70ae3073..ccb49f16672 100644 --- a/advisories/unreviewed/2024/11/GHSA-5wrv-fw78-wwh3/GHSA-5wrv-fw78-wwh3.json +++ b/advisories/unreviewed/2024/11/GHSA-5wrv-fw78-wwh3/GHSA-5wrv-fw78-wwh3.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5wrv-fw78-wwh3", - "modified": "2024-11-05T18:32:12Z", + "modified": "2024-11-12T15:30:32Z", "published": "2024-11-05T18:32:12Z", "aliases": [ "CVE-2024-50106" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnfsd: fix race between laundromat and free_stateid\n\nThere is a race between laundromat handling of revoked delegations\nand a client sending free_stateid operation. Laundromat thread\nfinds that delegation has expired and needs to be revoked so it\nmarks the delegation stid revoked and it puts it on a reaper list\nbut then it unlock the state lock and the actual delegation revocation\nhappens without the lock. Once the stid is marked revoked a racing\nfree_stateid processing thread does the following (1) it calls\nlist_del_init() which removes it from the reaper list and (2) frees\nthe delegation stid structure. The laundromat thread ends up not\ncalling the revoke_delegation() function for this particular delegation\nbut that means it will no release the lock lease that exists on\nthe file.\n\nNow, a new open for this file comes in and ends up finding that\nlease list isn't empty and calls nfsd_breaker_owns_lease() which ends\nup trying to derefence a freed delegation stateid. Leading to the\nfollowint use-after-free KASAN warning:\n\nkernel: ==================================================================\nkernel: BUG: KASAN: slab-use-after-free in nfsd_breaker_owns_lease+0x140/0x160 [nfsd]\nkernel: Read of size 8 at addr ffff0000e73cd0c8 by task nfsd/6205\nkernel:\nkernel: CPU: 2 UID: 0 PID: 6205 Comm: nfsd Kdump: loaded Not tainted 6.11.0-rc7+ #9\nkernel: Hardware name: Apple Inc. Apple Virtualization Generic Platform, BIOS 2069.0.0.0.0 08/03/2024\nkernel: Call trace:\nkernel: dump_backtrace+0x98/0x120\nkernel: show_stack+0x1c/0x30\nkernel: dump_stack_lvl+0x80/0xe8\nkernel: print_address_description.constprop.0+0x84/0x390\nkernel: print_report+0xa4/0x268\nkernel: kasan_report+0xb4/0xf8\nkernel: __asan_report_load8_noabort+0x1c/0x28\nkernel: nfsd_breaker_owns_lease+0x140/0x160 [nfsd]\nkernel: nfsd_file_do_acquire+0xb3c/0x11d0 [nfsd]\nkernel: nfsd_file_acquire_opened+0x84/0x110 [nfsd]\nkernel: nfs4_get_vfs_file+0x634/0x958 [nfsd]\nkernel: nfsd4_process_open2+0xa40/0x1a40 [nfsd]\nkernel: nfsd4_open+0xa08/0xe80 [nfsd]\nkernel: nfsd4_proc_compound+0xb8c/0x2130 [nfsd]\nkernel: nfsd_dispatch+0x22c/0x718 [nfsd]\nkernel: svc_process_common+0x8e8/0x1960 [sunrpc]\nkernel: svc_process+0x3d4/0x7e0 [sunrpc]\nkernel: svc_handle_xprt+0x828/0xe10 [sunrpc]\nkernel: svc_recv+0x2cc/0x6a8 [sunrpc]\nkernel: nfsd+0x270/0x400 [nfsd]\nkernel: kthread+0x288/0x310\nkernel: ret_from_fork+0x10/0x20\n\nThis patch proposes a fixed that's based on adding 2 new additional\nstid's sc_status values that help coordinate between the laundromat\nand other operations (nfsd4_free_stateid() and nfsd4_delegreturn()).\n\nFirst to make sure, that once the stid is marked revoked, it is not\nremoved by the nfsd4_free_stateid(), the laundromat take a reference\non the stateid. Then, coordinating whether the stid has been put\non the cl_revoked list or we are processing FREE_STATEID and need to\nmake sure to remove it from the list, each check that state and act\naccordingly. If laundromat has added to the cl_revoke list before\nthe arrival of FREE_STATEID, then nfsd4_free_stateid() knows to remove\nit from the list. If nfsd4_free_stateid() finds that operations arrived\nbefore laundromat has placed it on cl_revoke list, it marks the state\nfreed and then laundromat will no longer add it to the list.\n\nAlso, for nfsd4_delegreturn() when looking for the specified stid,\nwe need to access stid that are marked removed or freeable, it means\nthe laundromat has started processing it but hasn't finished and this\ndelegreturn needs to return nfserr_deleg_revoked and not\nnfserr_bad_stateid. The latter will not trigger a FREE_STATEID and the\nlack of it will leave this stid on the cl_revoked list indefinitely.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-05T18:15:14Z" diff --git a/advisories/unreviewed/2024/11/GHSA-6352-5p2f-gv84/GHSA-6352-5p2f-gv84.json b/advisories/unreviewed/2024/11/GHSA-6352-5p2f-gv84/GHSA-6352-5p2f-gv84.json index 5359df50c55..7f183d0b645 100644 --- a/advisories/unreviewed/2024/11/GHSA-6352-5p2f-gv84/GHSA-6352-5p2f-gv84.json +++ b/advisories/unreviewed/2024/11/GHSA-6352-5p2f-gv84/GHSA-6352-5p2f-gv84.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6352-5p2f-gv84", - "modified": "2024-11-05T18:32:12Z", + "modified": "2024-11-12T15:30:32Z", "published": "2024-11-05T18:32:12Z", "aliases": [ "CVE-2024-50101" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\niommu/vt-d: Fix incorrect pci_for_each_dma_alias() for non-PCI devices\n\nPreviously, the domain_context_clear() function incorrectly called\npci_for_each_dma_alias() to set up context entries for non-PCI devices.\nThis could lead to kernel hangs or other unexpected behavior.\n\nAdd a check to only call pci_for_each_dma_alias() for PCI devices. For\nnon-PCI devices, domain_context_clear_one() is called directly.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -43,7 +46,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-05T18:15:13Z" diff --git a/advisories/unreviewed/2024/11/GHSA-66q2-ffpq-62mp/GHSA-66q2-ffpq-62mp.json b/advisories/unreviewed/2024/11/GHSA-66q2-ffpq-62mp/GHSA-66q2-ffpq-62mp.json index 2490099ae46..035d1ab9121 100644 --- a/advisories/unreviewed/2024/11/GHSA-66q2-ffpq-62mp/GHSA-66q2-ffpq-62mp.json +++ b/advisories/unreviewed/2024/11/GHSA-66q2-ffpq-62mp/GHSA-66q2-ffpq-62mp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-66q2-ffpq-62mp", - "modified": "2024-11-08T18:30:48Z", + "modified": "2024-11-12T15:30:32Z", "published": "2024-11-05T18:32:12Z", "aliases": [ "CVE-2024-50100" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nUSB: gadget: dummy-hcd: Fix \"task hung\" problem\n\nThe syzbot fuzzer has been encountering \"task hung\" problems ever\nsince the dummy-hcd driver was changed to use hrtimers instead of\nregular timers. It turns out that the problems are caused by a subtle\ndifference between the timer_pending() and hrtimer_active() APIs.\n\nThe changeover blindly replaced the first by the second. However,\ntimer_pending() returns True when the timer is queued but not when its\ncallback is running, whereas hrtimer_active() returns True when the\nhrtimer is queued _or_ its callback is running. This difference\noccasionally caused dummy_urb_enqueue() to think that the callback\nroutine had not yet started when in fact it was almost finished. As a\nresult the hrtimer was not restarted, which made it impossible for the\ndriver to dequeue later the URB that was just enqueued. This caused\nusb_kill_urb() to hang, and things got worse from there.\n\nSince hrtimers have no API for telling when they are queued and the\ncallback isn't running, the driver must keep track of this for itself.\nThat's what this patch does, adding a new \"timer_pending\" flag and\nsetting or clearing it at the appropriate times.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-05T18:15:13Z" diff --git a/advisories/unreviewed/2024/11/GHSA-68w3-69rv-qrr7/GHSA-68w3-69rv-qrr7.json b/advisories/unreviewed/2024/11/GHSA-68w3-69rv-qrr7/GHSA-68w3-69rv-qrr7.json new file mode 100644 index 00000000000..94ac05f381b --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-68w3-69rv-qrr7/GHSA-68w3-69rv-qrr7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-68w3-69rv-qrr7", + "modified": "2024-11-12T15:30:44Z", + "published": "2024-11-12T15:30:44Z", + "aliases": [ + "CVE-2024-8074" + ], + "details": "Improper Privilege Management vulnerability in Nomysoft Informatics Nomysem allows Collect Data as Provided by Users.This issue affects Nomysem: before 13.10.2024.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:H/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8074" + }, + { + "type": "WEB", + "url": "https://www.usom.gov.tr/bildirim/tr-24-1847" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-269" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-6q8c-xccr-rq92/GHSA-6q8c-xccr-rq92.json b/advisories/unreviewed/2024/11/GHSA-6q8c-xccr-rq92/GHSA-6q8c-xccr-rq92.json new file mode 100644 index 00000000000..49dead8e089 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-6q8c-xccr-rq92/GHSA-6q8c-xccr-rq92.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6q8c-xccr-rq92", + "modified": "2024-11-12T15:30:41Z", + "published": "2024-11-12T15:30:41Z", + "aliases": [ + "CVE-2024-11122" + ], + "details": "A vulnerability, which was classified as critical, has been found in ???????????? Lingdang CRM up to 8.6.4.3. Affected by this issue is some unknown functionality of the file /crm/wechatSession/index.php?msgid=1&operation=upload. The manipulation of the argument file leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11122" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.283970" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.283970" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.436676" + }, + { + "type": "WEB", + "url": "https://wiki.shikangsi.com/post/share/8c9422c2-ecad-4471-97a2-6f8035a2ddf5" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-284" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-7679-9xw6-2858/GHSA-7679-9xw6-2858.json b/advisories/unreviewed/2024/11/GHSA-7679-9xw6-2858/GHSA-7679-9xw6-2858.json new file mode 100644 index 00000000000..9114aa71ecb --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-7679-9xw6-2858/GHSA-7679-9xw6-2858.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7679-9xw6-2858", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-50557" + ], + "details": "A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.2), SCALANCE M804PB (6GK5804-0AP00-2AA2) (All versions < V8.2), SCALANCE M812-1 ADSL-Router (6GK5812-1AA00-2AA2) (All versions < V8.2), SCALANCE M812-1 ADSL-Router (6GK5812-1BA00-2AA2) (All versions < V8.2), SCALANCE M816-1 ADSL-Router (6GK5816-1AA00-2AA2) (All versions < V8.2), SCALANCE M816-1 ADSL-Router (6GK5816-1BA00-2AA2) (All versions < V8.2), SCALANCE M826-2 SHDSL-Router (6GK5826-2AB00-2AB2) (All versions < V8.2), SCALANCE M874-2 (6GK5874-2AA00-2AA2) (All versions < V8.2), SCALANCE M874-3 (6GK5874-3AA00-2AA2) (All versions < V8.2), SCALANCE M874-3 3G-Router (CN) (6GK5874-3AA00-2FA2) (All versions < V8.2), SCALANCE M876-3 (6GK5876-3AA02-2BA2) (All versions < V8.2), SCALANCE M876-3 (ROK) (6GK5876-3AA02-2EA2) (All versions < V8.2), SCALANCE M876-4 (6GK5876-4AA10-2BA2) (All versions < V8.2), SCALANCE M876-4 (EU) (6GK5876-4AA00-2BA2) (All versions < V8.2), SCALANCE M876-4 (NAM) (6GK5876-4AA00-2DA2) (All versions < V8.2), SCALANCE MUM853-1 (A1) (6GK5853-2EA10-2AA1) (All versions < V8.2), SCALANCE MUM853-1 (B1) (6GK5853-2EA10-2BA1) (All versions < V8.2), SCALANCE MUM853-1 (EU) (6GK5853-2EA00-2DA1) (All versions < V8.2), SCALANCE MUM856-1 (A1) (6GK5856-2EA10-3AA1) (All versions < V8.2), SCALANCE MUM856-1 (B1) (6GK5856-2EA10-3BA1) (All versions < V8.2), SCALANCE MUM856-1 (CN) (6GK5856-2EA00-3FA1) (All versions < V8.2), SCALANCE MUM856-1 (EU) (6GK5856-2EA00-3DA1) (All versions < V8.2), SCALANCE MUM856-1 (RoW) (6GK5856-2EA00-3AA1) (All versions < V8.2), SCALANCE S615 EEC LAN-Router (6GK5615-0AA01-2AA2) (All versions < V8.2), SCALANCE S615 LAN-Router (6GK5615-0AA00-2AA2) (All versions < V8.2). Affected devices do not properly validate input in configuration fields of the iperf functionality. This could allow an unauthenticated remote attacker to execute arbitrary code on the device.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50557" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-354112.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-20" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-76f5-r74w-9h63/GHSA-76f5-r74w-9h63.json b/advisories/unreviewed/2024/11/GHSA-76f5-r74w-9h63/GHSA-76f5-r74w-9h63.json new file mode 100644 index 00000000000..5e10734987e --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-76f5-r74w-9h63/GHSA-76f5-r74w-9h63.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-76f5-r74w-9h63", + "modified": "2024-11-12T15:30:42Z", + "published": "2024-11-12T15:30:42Z", + "aliases": [ + "CVE-2024-46892" + ], + "details": "A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application does not properly invalidate sessions when the associated user is deleted or disabled or their permissions are modified. This could allow an authenticated attacker to continue performing malicious actions even after their user account has been disabled.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46892" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-915275.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-613" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-775q-3335-qhjr/GHSA-775q-3335-qhjr.json b/advisories/unreviewed/2024/11/GHSA-775q-3335-qhjr/GHSA-775q-3335-qhjr.json new file mode 100644 index 00000000000..d816b0ca75d --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-775q-3335-qhjr/GHSA-775q-3335-qhjr.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-775q-3335-qhjr", + "modified": "2024-11-12T15:30:42Z", + "published": "2024-11-12T15:30:42Z", + "aliases": [ + "CVE-2024-46891" + ], + "details": "A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application does not properly restrict the size of generated log files. This could allow an unauthenticated remote attacker to trigger a large amount of logged events to exhaust the system's resources and create a denial of service condition.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46891" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-915275.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-400" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-7pf3-wv6r-35f5/GHSA-7pf3-wv6r-35f5.json b/advisories/unreviewed/2024/11/GHSA-7pf3-wv6r-35f5/GHSA-7pf3-wv6r-35f5.json new file mode 100644 index 00000000000..5c2be3a7122 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-7pf3-wv6r-35f5/GHSA-7pf3-wv6r-35f5.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7pf3-wv6r-35f5", + "modified": "2024-11-12T15:30:41Z", + "published": "2024-11-12T15:30:41Z", + "aliases": [ + "CVE-2024-11123" + ], + "details": "A vulnerability, which was classified as problematic, was found in ???????????? Lingdang CRM up to 8.6.4.3. This affects an unknown part of the file /crm/data/pdf.php. The manipulation of the argument url with the input ../config.inc.php leads to path traversal. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11123" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.283971" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.283971" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.436677" + }, + { + "type": "WEB", + "url": "https://wiki.shikangsi.com/post/share/39d736ad-73d1-49cd-a97f-59f396a58626" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-822r-5337-562q/GHSA-822r-5337-562q.json b/advisories/unreviewed/2024/11/GHSA-822r-5337-562q/GHSA-822r-5337-562q.json index b703475d77f..2308e6fb91a 100644 --- a/advisories/unreviewed/2024/11/GHSA-822r-5337-562q/GHSA-822r-5337-562q.json +++ b/advisories/unreviewed/2024/11/GHSA-822r-5337-562q/GHSA-822r-5337-562q.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-822r-5337-562q", - "modified": "2024-11-09T15:32:34Z", + "modified": "2024-11-12T15:30:37Z", "published": "2024-11-09T15:32:34Z", "aliases": [ "CVE-2024-51593" diff --git a/advisories/unreviewed/2024/11/GHSA-84fj-mc2g-vcqc/GHSA-84fj-mc2g-vcqc.json b/advisories/unreviewed/2024/11/GHSA-84fj-mc2g-vcqc/GHSA-84fj-mc2g-vcqc.json new file mode 100644 index 00000000000..b26e96c99d5 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-84fj-mc2g-vcqc/GHSA-84fj-mc2g-vcqc.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-84fj-mc2g-vcqc", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-50310" + ], + "details": "A vulnerability has been identified in SIMATIC CP 1543-1 V4.0 (6GK7543-1AX10-0XE0) (All versions >= V4.0.44 < V4.0.50). Affected devices do not properly handle authorization. This could allow an unauthenticated remote attacker to gain access to the filesystem.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50310" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-654798.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-863" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-8fc3-6g2g-rgc3/GHSA-8fc3-6g2g-rgc3.json b/advisories/unreviewed/2024/11/GHSA-8fc3-6g2g-rgc3/GHSA-8fc3-6g2g-rgc3.json new file mode 100644 index 00000000000..8bb3b096b72 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-8fc3-6g2g-rgc3/GHSA-8fc3-6g2g-rgc3.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8fc3-6g2g-rgc3", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-50572" + ], + "details": "A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.2), SCALANCE M804PB (6GK5804-0AP00-2AA2) (All versions < V8.2), SCALANCE M812-1 ADSL-Router (6GK5812-1AA00-2AA2) (All versions < V8.2), SCALANCE M812-1 ADSL-Router (6GK5812-1BA00-2AA2) (All versions < V8.2), SCALANCE M816-1 ADSL-Router (6GK5816-1AA00-2AA2) (All versions < V8.2), SCALANCE M816-1 ADSL-Router (6GK5816-1BA00-2AA2) (All versions < V8.2), SCALANCE M826-2 SHDSL-Router (6GK5826-2AB00-2AB2) (All versions < V8.2), SCALANCE M874-2 (6GK5874-2AA00-2AA2) (All versions < V8.2), SCALANCE M874-3 (6GK5874-3AA00-2AA2) (All versions < V8.2), SCALANCE M874-3 3G-Router (CN) (6GK5874-3AA00-2FA2) (All versions < V8.2), SCALANCE M876-3 (6GK5876-3AA02-2BA2) (All versions < V8.2), SCALANCE M876-3 (ROK) (6GK5876-3AA02-2EA2) (All versions < V8.2), SCALANCE M876-4 (6GK5876-4AA10-2BA2) (All versions < V8.2), SCALANCE M876-4 (EU) (6GK5876-4AA00-2BA2) (All versions < V8.2), SCALANCE M876-4 (NAM) (6GK5876-4AA00-2DA2) (All versions < V8.2), SCALANCE MUM853-1 (A1) (6GK5853-2EA10-2AA1) (All versions < V8.2), SCALANCE MUM853-1 (B1) (6GK5853-2EA10-2BA1) (All versions < V8.2), SCALANCE MUM853-1 (EU) (6GK5853-2EA00-2DA1) (All versions < V8.2), SCALANCE MUM856-1 (A1) (6GK5856-2EA10-3AA1) (All versions < V8.2), SCALANCE MUM856-1 (B1) (6GK5856-2EA10-3BA1) (All versions < V8.2), SCALANCE MUM856-1 (CN) (6GK5856-2EA00-3FA1) (All versions < V8.2), SCALANCE MUM856-1 (EU) (6GK5856-2EA00-3DA1) (All versions < V8.2), SCALANCE MUM856-1 (RoW) (6GK5856-2EA00-3AA1) (All versions < V8.2), SCALANCE S615 EEC LAN-Router (6GK5615-0AA01-2AA2) (All versions < V8.2), SCALANCE S615 LAN-Router (6GK5615-0AA00-2AA2) (All versions < V8.2). Affected devices do not properly sanitize an input field. This could allow an authenticated remote attacker with administrative privileges to inject code or spawn a system root shell.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50572" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-354112.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-8m5v-368f-686v/GHSA-8m5v-368f-686v.json b/advisories/unreviewed/2024/11/GHSA-8m5v-368f-686v/GHSA-8m5v-368f-686v.json new file mode 100644 index 00000000000..2f21bd7442f --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-8m5v-368f-686v/GHSA-8m5v-368f-686v.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8m5v-368f-686v", + "modified": "2024-11-12T15:30:42Z", + "published": "2024-11-12T15:30:42Z", + "aliases": [ + "CVE-2024-47940" + ], + "details": "A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 9). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PSM files. This could allow an attacker to execute code in the context of the current process.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47940" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-351178.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-125" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-9c7g-8m6v-j7h8/GHSA-9c7g-8m6v-j7h8.json b/advisories/unreviewed/2024/11/GHSA-9c7g-8m6v-j7h8/GHSA-9c7g-8m6v-j7h8.json new file mode 100644 index 00000000000..08a1a4760df --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-9c7g-8m6v-j7h8/GHSA-9c7g-8m6v-j7h8.json @@ -0,0 +1,58 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9c7g-8m6v-j7h8", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-11124" + ], + "details": "A vulnerability has been found in TimGeyssens UIOMatic 5 and classified as critical. This vulnerability affects unknown code of the file /src/UIOMatic/wwwroot/backoffice/resources/uioMaticObject.r. The manipulation leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11124" + }, + { + "type": "WEB", + "url": "https://github.com/TimGeyssens/UIOMatic/pull/227" + }, + { + "type": "WEB", + "url": "https://github.com/TimGeyssens/UIOMatic/pull/227#issuecomment-2317993695" + }, + { + "type": "WEB", + "url": "https://github.com/TimGeyssens/UIOMatic/pull/227#issuecomment-2346074453" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.283972" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.283972" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T14:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-9g7f-8r42-f32m/GHSA-9g7f-8r42-f32m.json b/advisories/unreviewed/2024/11/GHSA-9g7f-8r42-f32m/GHSA-9g7f-8r42-f32m.json new file mode 100644 index 00000000000..e466c4a04e1 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-9g7f-8r42-f32m/GHSA-9g7f-8r42-f32m.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9g7f-8r42-f32m", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-51562" + ], + "details": "The NVMe driver function nvme_opc_get_log_page is vulnerable to a buffer over-read from a guest-controlled value.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51562" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-24:17.bhyve.asc" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-125" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-9hgf-jcfq-gvxc/GHSA-9hgf-jcfq-gvxc.json b/advisories/unreviewed/2024/11/GHSA-9hgf-jcfq-gvxc/GHSA-9hgf-jcfq-gvxc.json new file mode 100644 index 00000000000..0d2b618e5c5 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-9hgf-jcfq-gvxc/GHSA-9hgf-jcfq-gvxc.json @@ -0,0 +1,58 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9hgf-jcfq-gvxc", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-11127" + ], + "details": "A vulnerability was found in code-projects Job Recruitment up to 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file admin.php. The manipulation of the argument userid leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11127" + }, + { + "type": "WEB", + "url": "https://code-projects.org" + }, + { + "type": "WEB", + "url": "https://github.com/ljllll123/cve/blob/main/sql-1.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.283975" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.283975" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.441841" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-c55x-j339-wq86/GHSA-c55x-j339-wq86.json b/advisories/unreviewed/2024/11/GHSA-c55x-j339-wq86/GHSA-c55x-j339-wq86.json new file mode 100644 index 00000000000..5547ae87deb --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-c55x-j339-wq86/GHSA-c55x-j339-wq86.json @@ -0,0 +1,50 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c55x-j339-wq86", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-11126" + ], + "details": "A vulnerability was found in Digistar AG-30 Plus 2.6b. It has been classified as problematic. Affected is an unknown function of the component Login Page. The manipulation leads to improper restriction of excessive authentication attempts. The complexity of an attack is rather high. The exploitability is told to be difficult. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11126" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.283974" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.283974" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.437096" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-307" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-c8w8-pq5h-cf2p/GHSA-c8w8-pq5h-cf2p.json b/advisories/unreviewed/2024/11/GHSA-c8w8-pq5h-cf2p/GHSA-c8w8-pq5h-cf2p.json new file mode 100644 index 00000000000..b6af8dce3d6 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-c8w8-pq5h-cf2p/GHSA-c8w8-pq5h-cf2p.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c8w8-pq5h-cf2p", + "modified": "2024-11-12T15:30:40Z", + "published": "2024-11-12T15:30:40Z", + "aliases": [ + "CVE-2024-11121" + ], + "details": "A vulnerability classified as critical was found in ???????????? Lingdang CRM up to 8.6.4.3. Affected by this vulnerability is an unknown functionality of the file /crm/WeiXinApp/marketing/index.php?module=Users&action=getActionList. The manipulation of the argument userid leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11121" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.283969" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.283969" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.436675" + }, + { + "type": "WEB", + "url": "https://wiki.shikangsi.com/post/share/4d05b8c3-5464-48f3-bb14-a852b6e70abc" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-fc63-6853-v5m2/GHSA-fc63-6853-v5m2.json b/advisories/unreviewed/2024/11/GHSA-fc63-6853-v5m2/GHSA-fc63-6853-v5m2.json new file mode 100644 index 00000000000..4134792b5b8 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-fc63-6853-v5m2/GHSA-fc63-6853-v5m2.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fc63-6853-v5m2", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-50561" + ], + "details": "A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.2), SCALANCE M804PB (6GK5804-0AP00-2AA2) (All versions < V8.2), SCALANCE M812-1 ADSL-Router (6GK5812-1AA00-2AA2) (All versions < V8.2), SCALANCE M812-1 ADSL-Router (6GK5812-1BA00-2AA2) (All versions < V8.2), SCALANCE M816-1 ADSL-Router (6GK5816-1AA00-2AA2) (All versions < V8.2), SCALANCE M816-1 ADSL-Router (6GK5816-1BA00-2AA2) (All versions < V8.2), SCALANCE M826-2 SHDSL-Router (6GK5826-2AB00-2AB2) (All versions < V8.2), SCALANCE M874-2 (6GK5874-2AA00-2AA2) (All versions < V8.2), SCALANCE M874-3 (6GK5874-3AA00-2AA2) (All versions < V8.2), SCALANCE M874-3 3G-Router (CN) (6GK5874-3AA00-2FA2) (All versions < V8.2), SCALANCE M876-3 (6GK5876-3AA02-2BA2) (All versions < V8.2), SCALANCE M876-3 (ROK) (6GK5876-3AA02-2EA2) (All versions < V8.2), SCALANCE M876-4 (6GK5876-4AA10-2BA2) (All versions < V8.2), SCALANCE M876-4 (EU) (6GK5876-4AA00-2BA2) (All versions < V8.2), SCALANCE M876-4 (NAM) (6GK5876-4AA00-2DA2) (All versions < V8.2), SCALANCE MUM853-1 (A1) (6GK5853-2EA10-2AA1) (All versions < V8.2), SCALANCE MUM853-1 (B1) (6GK5853-2EA10-2BA1) (All versions < V8.2), SCALANCE MUM853-1 (EU) (6GK5853-2EA00-2DA1) (All versions < V8.2), SCALANCE MUM856-1 (A1) (6GK5856-2EA10-3AA1) (All versions < V8.2), SCALANCE MUM856-1 (B1) (6GK5856-2EA10-3BA1) (All versions < V8.2), SCALANCE MUM856-1 (CN) (6GK5856-2EA00-3FA1) (All versions < V8.2), SCALANCE MUM856-1 (EU) (6GK5856-2EA00-3DA1) (All versions < V8.2), SCALANCE MUM856-1 (RoW) (6GK5856-2EA00-3AA1) (All versions < V8.2), SCALANCE S615 EEC LAN-Router (6GK5615-0AA01-2AA2) (All versions < V8.2), SCALANCE S615 LAN-Router (6GK5615-0AA00-2AA2) (All versions < V8.2). Affected devices do not properly sanitize the filenames before uploading. This could allow an authenticated remote attacker to compromise of integrity of the system.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50561" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-354112.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-fjw7-947f-3xx6/GHSA-fjw7-947f-3xx6.json b/advisories/unreviewed/2024/11/GHSA-fjw7-947f-3xx6/GHSA-fjw7-947f-3xx6.json index 6398375ccfa..fe2d58a0f8e 100644 --- a/advisories/unreviewed/2024/11/GHSA-fjw7-947f-3xx6/GHSA-fjw7-947f-3xx6.json +++ b/advisories/unreviewed/2024/11/GHSA-fjw7-947f-3xx6/GHSA-fjw7-947f-3xx6.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-fjw7-947f-3xx6", - "modified": "2024-11-05T18:32:12Z", + "modified": "2024-11-12T15:30:32Z", "published": "2024-11-05T18:32:12Z", "aliases": [ "CVE-2024-50105" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: qcom: sc7280: Fix missing Soundwire runtime stream alloc\n\nCommit 15c7fab0e047 (\"ASoC: qcom: Move Soundwire runtime stream alloc to\nsoundcards\") moved the allocation of Soundwire stream runtime from the\nQualcomm Soundwire driver to each individual machine sound card driver,\nexcept that it forgot to update SC7280 card.\n\nJust like for other Qualcomm sound cards using Soundwire, the card\ndriver should allocate and release the runtime. Otherwise sound\nplayback will result in a NULL pointer dereference or other effect of\nuninitialized memory accesses (which was confirmed on SDM845 having\nsimilar issue).", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-05T18:15:14Z" diff --git a/advisories/unreviewed/2024/11/GHSA-fvc2-gqm9-w9x5/GHSA-fvc2-gqm9-w9x5.json b/advisories/unreviewed/2024/11/GHSA-fvc2-gqm9-w9x5/GHSA-fvc2-gqm9-w9x5.json new file mode 100644 index 00000000000..e3b8b8f83b4 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-fvc2-gqm9-w9x5/GHSA-fvc2-gqm9-w9x5.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fvc2-gqm9-w9x5", + "modified": "2024-11-12T15:30:42Z", + "published": "2024-11-12T15:30:42Z", + "aliases": [ + "CVE-2024-47783" + ], + "details": "A vulnerability has been identified in SIPORT (All versions < V3.4.0). The affected application improperly assigns file permissions to installation folders.\n\nThis could allow a local attacker with an unprivileged account to override or modify the service executables and subsequently gain elevated privileges.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47783" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-064257.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-732" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-g446-rqm3-4h89/GHSA-g446-rqm3-4h89.json b/advisories/unreviewed/2024/11/GHSA-g446-rqm3-4h89/GHSA-g446-rqm3-4h89.json new file mode 100644 index 00000000000..f23f8d0158e --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-g446-rqm3-4h89/GHSA-g446-rqm3-4h89.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g446-rqm3-4h89", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-39281" + ], + "details": "The command ctl_persistent_reserve_out allows the caller to specify an arbitrary size which will be passed to the kernel's memory allocator.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-39281" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-24:18.ctl.asc" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-20" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-gh66-hfff-5mf9/GHSA-gh66-hfff-5mf9.json b/advisories/unreviewed/2024/11/GHSA-gh66-hfff-5mf9/GHSA-gh66-hfff-5mf9.json new file mode 100644 index 00000000000..f846955f83d --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-gh66-hfff-5mf9/GHSA-gh66-hfff-5mf9.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gh66-hfff-5mf9", + "modified": "2024-11-12T15:30:42Z", + "published": "2024-11-12T15:30:42Z", + "aliases": [ + "CVE-2024-46890" + ], + "details": "A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application does not properly validate input sent to specific endpoints of its web API. This could allow an authenticated remote attacker with high privileges on the application to execute arbitrary code on the underlying OS.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46890" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-915275.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-hvgm-99g5-jwq5/GHSA-hvgm-99g5-jwq5.json b/advisories/unreviewed/2024/11/GHSA-hvgm-99g5-jwq5/GHSA-hvgm-99g5-jwq5.json new file mode 100644 index 00000000000..f47112a38bf --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-hvgm-99g5-jwq5/GHSA-hvgm-99g5-jwq5.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hvgm-99g5-jwq5", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-47942" + ], + "details": "A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 9). The affected applications suffer from a DLL hijacking vulnerability. This could allow an attacker to execute arbitrary code via placing a crafted DLL file on the system.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47942" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-351178.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-427" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-hx7r-qwxv-w9j9/GHSA-hx7r-qwxv-w9j9.json b/advisories/unreviewed/2024/11/GHSA-hx7r-qwxv-w9j9/GHSA-hx7r-qwxv-w9j9.json new file mode 100644 index 00000000000..8c04c6a7c96 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-hx7r-qwxv-w9j9/GHSA-hx7r-qwxv-w9j9.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hx7r-qwxv-w9j9", + "modified": "2024-11-12T15:30:44Z", + "published": "2024-11-12T15:30:44Z", + "aliases": [ + "CVE-2024-51565" + ], + "details": "The hda driver is vulnerable to a buffer over-read from a guest-controlled value.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51565" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-24:17.bhyve.asc" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-125" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-jjfc-8563-3h89/GHSA-jjfc-8563-3h89.json b/advisories/unreviewed/2024/11/GHSA-jjfc-8563-3h89/GHSA-jjfc-8563-3h89.json new file mode 100644 index 00000000000..ad145b13a4e --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-jjfc-8563-3h89/GHSA-jjfc-8563-3h89.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jjfc-8563-3h89", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-42442" + ], + "details": "APTIOV contains a vulnerability in the BIOS where a user or attacker may cause an improper restriction of operations within the bounds of a memory buffer over the network. A successful exploitation of this vulnerability may lead to code execution outside of the intended System Management Mode.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-42442" + }, + { + "type": "WEB", + "url": "https://9443417.fs1.hubspotusercontent-na1.net/hubfs/9443417/Security%20Advisories/2024/AMI-SA-2024004.pdf" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-m28q-9cc4-gj6h/GHSA-m28q-9cc4-gj6h.json b/advisories/unreviewed/2024/11/GHSA-m28q-9cc4-gj6h/GHSA-m28q-9cc4-gj6h.json new file mode 100644 index 00000000000..5badee0de67 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-m28q-9cc4-gj6h/GHSA-m28q-9cc4-gj6h.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-m28q-9cc4-gj6h", + "modified": "2024-11-12T15:30:44Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-51564" + ], + "details": "A guest can trigger an infinite loop in the hda audio driver.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51564" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-24:17.bhyve.asc" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-1285" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-mhcq-hvgj-xm2h/GHSA-mhcq-hvgj-xm2h.json b/advisories/unreviewed/2024/11/GHSA-mhcq-hvgj-xm2h/GHSA-mhcq-hvgj-xm2h.json index bfca357dc0d..6c3c06ef4ed 100644 --- a/advisories/unreviewed/2024/11/GHSA-mhcq-hvgj-xm2h/GHSA-mhcq-hvgj-xm2h.json +++ b/advisories/unreviewed/2024/11/GHSA-mhcq-hvgj-xm2h/GHSA-mhcq-hvgj-xm2h.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mhcq-hvgj-xm2h", - "modified": "2024-11-05T18:32:12Z", + "modified": "2024-11-12T15:30:32Z", "published": "2024-11-05T18:32:12Z", "aliases": [ "CVE-2024-50102" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nx86: fix user address masking non-canonical speculation issue\n\nIt turns out that AMD has a \"Meltdown Lite(tm)\" issue with non-canonical\naccesses in kernel space. And so using just the high bit to decide\nwhether an access is in user space or kernel space ends up with the good\nold \"leak speculative data\" if you have the right gadget using the\nresult:\n\n CVE-2020-12965 “Transient Execution of Non-Canonical Accesses“\n\nNow, the kernel surrounds the access with a STAC/CLAC pair, and those\ninstructions end up serializing execution on older Zen architectures,\nwhich closes the speculation window.\n\nBut that was true only up until Zen 5, which renames the AC bit [1].\nThat improves performance of STAC/CLAC a lot, but also means that the\nspeculation window is now open.\n\nNote that this affects not just the new address masking, but also the\nregular valid_user_address() check used by access_ok(), and the asm\nversion of the sign bit check in the get_user() helpers.\n\nIt does not affect put_user() or clear_user() variants, since there's no\nspeculative result to be used in a gadget for those operations.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-203" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-05T18:15:13Z" diff --git a/advisories/unreviewed/2024/11/GHSA-mx5f-vqxg-86w4/GHSA-mx5f-vqxg-86w4.json b/advisories/unreviewed/2024/11/GHSA-mx5f-vqxg-86w4/GHSA-mx5f-vqxg-86w4.json new file mode 100644 index 00000000000..416f69637a0 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-mx5f-vqxg-86w4/GHSA-mx5f-vqxg-86w4.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mx5f-vqxg-86w4", + "modified": "2024-11-12T15:30:42Z", + "published": "2024-11-12T15:30:42Z", + "aliases": [ + "CVE-2024-46894" + ], + "details": "A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application does not properly validate authorization of a user to query the \"/api/sftp/users\" endpoint. This could allow an authenticated remote attacker to gain knowledge about the list of configured users of the SFTP service and also modify that configuration.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46894" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-915275.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-pjpw-9hx5-m28p/GHSA-pjpw-9hx5-m28p.json b/advisories/unreviewed/2024/11/GHSA-pjpw-9hx5-m28p/GHSA-pjpw-9hx5-m28p.json new file mode 100644 index 00000000000..cf7cadff5c3 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-pjpw-9hx5-m28p/GHSA-pjpw-9hx5-m28p.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pjpw-9hx5-m28p", + "modified": "2024-11-12T15:30:42Z", + "published": "2024-11-12T15:30:42Z", + "aliases": [ + "CVE-2024-47808" + ], + "details": "A vulnerability has been identified in SINEC NMS (All versions < V3.0 SP1). The affected application contains a database function, that does not properly restrict the permissions of users to write to the filesystem of the host system.\nThis could allow an authenticated medium-privileged attacker to write arbitrary content to any location in the filesystem of the host system.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:H/SC:N/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47808" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-331112.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-732" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-q48v-mggj-3532/GHSA-q48v-mggj-3532.json b/advisories/unreviewed/2024/11/GHSA-q48v-mggj-3532/GHSA-q48v-mggj-3532.json new file mode 100644 index 00000000000..e7c4fcbece7 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-q48v-mggj-3532/GHSA-q48v-mggj-3532.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q48v-mggj-3532", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-50313" + ], + "details": "A vulnerability has been identified in Mendix Runtime V10 (All versions < V10.16.0 only if the basic authentication mechanism is used by the application), Mendix Runtime V10.12 (All versions < V10.12.7 only if the basic authentication mechanism is used by the application), Mendix Runtime V10.6 (All versions < V10.6.15 only if the basic authentication mechanism is used by the application), Mendix Runtime V8 (All versions), Mendix Runtime V9 (All versions < V9.24.29 only if the basic authentication mechanism is used by the application). The basic authentication implementation of affected applications contains a race condition vulnerability which could allow unauthenticated remote attackers to circumvent default account lockout measures.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50313" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-914892.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-362" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-q9qw-6hf7-48wg/GHSA-q9qw-6hf7-48wg.json b/advisories/unreviewed/2024/11/GHSA-q9qw-6hf7-48wg/GHSA-q9qw-6hf7-48wg.json new file mode 100644 index 00000000000..a0181e5d1d2 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-q9qw-6hf7-48wg/GHSA-q9qw-6hf7-48wg.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q9qw-6hf7-48wg", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-50559" + ], + "details": "A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.2), SCALANCE M804PB (6GK5804-0AP00-2AA2) (All versions < V8.2), SCALANCE M812-1 ADSL-Router (6GK5812-1AA00-2AA2) (All versions < V8.2), SCALANCE M812-1 ADSL-Router (6GK5812-1BA00-2AA2) (All versions < V8.2), SCALANCE M816-1 ADSL-Router (6GK5816-1AA00-2AA2) (All versions < V8.2), SCALANCE M816-1 ADSL-Router (6GK5816-1BA00-2AA2) (All versions < V8.2), SCALANCE M826-2 SHDSL-Router (6GK5826-2AB00-2AB2) (All versions < V8.2), SCALANCE M874-2 (6GK5874-2AA00-2AA2) (All versions < V8.2), SCALANCE M874-3 (6GK5874-3AA00-2AA2) (All versions < V8.2), SCALANCE M874-3 3G-Router (CN) (6GK5874-3AA00-2FA2) (All versions < V8.2), SCALANCE M876-3 (6GK5876-3AA02-2BA2) (All versions < V8.2), SCALANCE M876-3 (ROK) (6GK5876-3AA02-2EA2) (All versions < V8.2), SCALANCE M876-4 (6GK5876-4AA10-2BA2) (All versions < V8.2), SCALANCE M876-4 (EU) (6GK5876-4AA00-2BA2) (All versions < V8.2), SCALANCE M876-4 (NAM) (6GK5876-4AA00-2DA2) (All versions < V8.2), SCALANCE MUM853-1 (A1) (6GK5853-2EA10-2AA1) (All versions < V8.2), SCALANCE MUM853-1 (B1) (6GK5853-2EA10-2BA1) (All versions < V8.2), SCALANCE MUM853-1 (EU) (6GK5853-2EA00-2DA1) (All versions < V8.2), SCALANCE MUM856-1 (A1) (6GK5856-2EA10-3AA1) (All versions < V8.2), SCALANCE MUM856-1 (B1) (6GK5856-2EA10-3BA1) (All versions < V8.2), SCALANCE MUM856-1 (CN) (6GK5856-2EA00-3FA1) (All versions < V8.2), SCALANCE MUM856-1 (EU) (6GK5856-2EA00-3DA1) (All versions < V8.2), SCALANCE MUM856-1 (RoW) (6GK5856-2EA00-3AA1) (All versions < V8.2), SCALANCE S615 EEC LAN-Router (6GK5615-0AA01-2AA2) (All versions < V8.2), SCALANCE S615 LAN-Router (6GK5615-0AA00-2AA2) (All versions < V8.2). Affected devices do not properly validate the filenames of the certificate. This could allow an authenticated remote attacker to append arbitrary values which will lead to compromise of integrity of the system.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50559" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-354112.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-qf2g-86hc-xp38/GHSA-qf2g-86hc-xp38.json b/advisories/unreviewed/2024/11/GHSA-qf2g-86hc-xp38/GHSA-qf2g-86hc-xp38.json new file mode 100644 index 00000000000..81caecb46b4 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-qf2g-86hc-xp38/GHSA-qf2g-86hc-xp38.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qf2g-86hc-xp38", + "modified": "2024-11-12T15:30:42Z", + "published": "2024-11-12T15:30:42Z", + "aliases": [ + "CVE-2024-46888" + ], + "details": "A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application does not properly sanitize user provided paths for SFTP-based file up- and downloads. This could allow an authenticated remote attacker to manipulate arbitrary files on the filesystem and achieve arbitrary code execution on the device.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46888" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-915275.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-qhpc-32r3-qpcv/GHSA-qhpc-32r3-qpcv.json b/advisories/unreviewed/2024/11/GHSA-qhpc-32r3-qpcv/GHSA-qhpc-32r3-qpcv.json new file mode 100644 index 00000000000..3dc08987ff0 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-qhpc-32r3-qpcv/GHSA-qhpc-32r3-qpcv.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qhpc-32r3-qpcv", + "modified": "2024-11-12T15:30:42Z", + "published": "2024-11-12T15:30:42Z", + "aliases": [ + "CVE-2024-46889" + ], + "details": "A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application uses hard-coded cryptographic key material to obfuscate configuration files. This could allow an attacker to learn that cryptographic key material through reverse engineering of the application binary and decrypt arbitrary backup files.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46889" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-915275.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-321" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-qpp3-qr6x-mfmj/GHSA-qpp3-qr6x-mfmj.json b/advisories/unreviewed/2024/11/GHSA-qpp3-qr6x-mfmj/GHSA-qpp3-qr6x-mfmj.json new file mode 100644 index 00000000000..55ca0ec97c4 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-qpp3-qr6x-mfmj/GHSA-qpp3-qr6x-mfmj.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qpp3-qr6x-mfmj", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-50558" + ], + "details": "A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.2), SCALANCE M804PB (6GK5804-0AP00-2AA2) (All versions < V8.2), SCALANCE M812-1 ADSL-Router (6GK5812-1AA00-2AA2) (All versions < V8.2), SCALANCE M812-1 ADSL-Router (6GK5812-1BA00-2AA2) (All versions < V8.2), SCALANCE M816-1 ADSL-Router (6GK5816-1AA00-2AA2) (All versions < V8.2), SCALANCE M816-1 ADSL-Router (6GK5816-1BA00-2AA2) (All versions < V8.2), SCALANCE M826-2 SHDSL-Router (6GK5826-2AB00-2AB2) (All versions < V8.2), SCALANCE M874-2 (6GK5874-2AA00-2AA2) (All versions < V8.2), SCALANCE M874-3 (6GK5874-3AA00-2AA2) (All versions < V8.2), SCALANCE M874-3 3G-Router (CN) (6GK5874-3AA00-2FA2) (All versions < V8.2), SCALANCE M876-3 (6GK5876-3AA02-2BA2) (All versions < V8.2), SCALANCE M876-3 (ROK) (6GK5876-3AA02-2EA2) (All versions < V8.2), SCALANCE M876-4 (6GK5876-4AA10-2BA2) (All versions < V8.2), SCALANCE M876-4 (EU) (6GK5876-4AA00-2BA2) (All versions < V8.2), SCALANCE M876-4 (NAM) (6GK5876-4AA00-2DA2) (All versions < V8.2), SCALANCE MUM853-1 (A1) (6GK5853-2EA10-2AA1) (All versions < V8.2), SCALANCE MUM853-1 (B1) (6GK5853-2EA10-2BA1) (All versions < V8.2), SCALANCE MUM853-1 (EU) (6GK5853-2EA00-2DA1) (All versions < V8.2), SCALANCE MUM856-1 (A1) (6GK5856-2EA10-3AA1) (All versions < V8.2), SCALANCE MUM856-1 (B1) (6GK5856-2EA10-3BA1) (All versions < V8.2), SCALANCE MUM856-1 (CN) (6GK5856-2EA00-3FA1) (All versions < V8.2), SCALANCE MUM856-1 (EU) (6GK5856-2EA00-3DA1) (All versions < V8.2), SCALANCE MUM856-1 (RoW) (6GK5856-2EA00-3AA1) (All versions < V8.2), SCALANCE S615 EEC LAN-Router (6GK5615-0AA01-2AA2) (All versions < V8.2), SCALANCE S615 LAN-Router (6GK5615-0AA00-2AA2) (All versions < V8.2). Affected devices improperly manage access control for read-only users. This could allow an attacker to cause a temporary denial of service condition.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50558" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-354112.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-284" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-qx55-5x5m-94cr/GHSA-qx55-5x5m-94cr.json b/advisories/unreviewed/2024/11/GHSA-qx55-5x5m-94cr/GHSA-qx55-5x5m-94cr.json index a54e9b972e6..dd752898caa 100644 --- a/advisories/unreviewed/2024/11/GHSA-qx55-5x5m-94cr/GHSA-qx55-5x5m-94cr.json +++ b/advisories/unreviewed/2024/11/GHSA-qx55-5x5m-94cr/GHSA-qx55-5x5m-94cr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qx55-5x5m-94cr", - "modified": "2024-11-11T03:30:45Z", + "modified": "2024-11-12T15:30:37Z", "published": "2024-11-11T03:30:45Z", "aliases": [ "CVE-2024-11060" diff --git a/advisories/unreviewed/2024/11/GHSA-r5rf-j64w-28qc/GHSA-r5rf-j64w-28qc.json b/advisories/unreviewed/2024/11/GHSA-r5rf-j64w-28qc/GHSA-r5rf-j64w-28qc.json new file mode 100644 index 00000000000..f15bf720a25 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-r5rf-j64w-28qc/GHSA-r5rf-j64w-28qc.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r5rf-j64w-28qc", + "modified": "2024-11-12T15:30:41Z", + "published": "2024-11-12T15:30:41Z", + "aliases": [ + "CVE-2024-29119" + ], + "details": "A vulnerability has been identified in Spectrum Power 7 (All versions < V24Q3). The affected product contains several root-owned SUID binaries that could allow an authenticated local attacker to escalate privileges.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-29119" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-616032.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-266" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-r642-x62f-jqhp/GHSA-r642-x62f-jqhp.json b/advisories/unreviewed/2024/11/GHSA-r642-x62f-jqhp/GHSA-r642-x62f-jqhp.json new file mode 100644 index 00000000000..8c5ecd1ca9f --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-r642-x62f-jqhp/GHSA-r642-x62f-jqhp.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r642-x62f-jqhp", + "modified": "2024-11-12T15:30:44Z", + "published": "2024-11-12T15:30:44Z", + "aliases": [ + "CVE-2024-51566" + ], + "details": "The NVMe driver queue processing is vulernable to guest-induced infinite loops.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51566" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-24:17.bhyve.asc" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-1285" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-rf57-p454-qrmj/GHSA-rf57-p454-qrmj.json b/advisories/unreviewed/2024/11/GHSA-rf57-p454-qrmj/GHSA-rf57-p454-qrmj.json new file mode 100644 index 00000000000..fca5f3132c5 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-rf57-p454-qrmj/GHSA-rf57-p454-qrmj.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rf57-p454-qrmj", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-33658" + ], + "details": "APTIOV contains a vulnerability in BIOS where an attacker may cause an Improper Restriction of Operations within the Bounds of a Memory Buffer by local. Successful exploitation of this vulnerability may lead to privilege escalation and potentially arbitrary code execution, and impact Integrity.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:P/VC:L/VI:H/VA:L/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-33658" + }, + { + "type": "WEB", + "url": "https://9443417.fs1.hubspotusercontent-na1.net/hubfs/9443417/Security%20Advisories/2024/AMI-SA-2024004.pdf" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-rqpf-4v4j-r7wp/GHSA-rqpf-4v4j-r7wp.json b/advisories/unreviewed/2024/11/GHSA-rqpf-4v4j-r7wp/GHSA-rqpf-4v4j-r7wp.json new file mode 100644 index 00000000000..6d6f5b7f70a --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-rqpf-4v4j-r7wp/GHSA-rqpf-4v4j-r7wp.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rqpf-4v4j-r7wp", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-37365" + ], + "details": "A remote code execution vulnerability exists in the affected\nproduct. The vulnerability allows users to save projects within the public\ndirectory allowing anyone with local access to modify and/or delete files. Additionally,\na malicious user could potentially leverage this vulnerability to escalate\ntheir privileges by changing the macro to execute arbitrary code.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37365" + }, + { + "type": "WEB", + "url": "https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.SD1709.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-20" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-v95w-jfg2-cj6w/GHSA-v95w-jfg2-cj6w.json b/advisories/unreviewed/2024/11/GHSA-v95w-jfg2-cj6w/GHSA-v95w-jfg2-cj6w.json index 24f77e5894e..ec92770f119 100644 --- a/advisories/unreviewed/2024/11/GHSA-v95w-jfg2-cj6w/GHSA-v95w-jfg2-cj6w.json +++ b/advisories/unreviewed/2024/11/GHSA-v95w-jfg2-cj6w/GHSA-v95w-jfg2-cj6w.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-v95w-jfg2-cj6w", - "modified": "2024-11-05T18:32:12Z", + "modified": "2024-11-12T15:30:32Z", "published": "2024-11-05T18:32:12Z", "aliases": [ "CVE-2024-50104" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: qcom: sdm845: add missing soundwire runtime stream alloc\n\nDuring the migration of Soundwire runtime stream allocation from\nthe Qualcomm Soundwire controller to SoC's soundcard drivers the sdm845\nsoundcard was forgotten.\n\nAt this point any playback attempt or audio daemon startup, for instance\non sdm845-db845c (Qualcomm RB3 board), will result in stream pointer\nNULL dereference:\n\n Unable to handle kernel NULL pointer dereference at virtual\n address 0000000000000020\n Mem abort info:\n ESR = 0x0000000096000004\n EC = 0x25: DABT (current EL), IL = 32 bits\n SET = 0, FnV = 0\n EA = 0, S1PTW = 0\n FSC = 0x04: level 0 translation fault\n Data abort info:\n ISV = 0, ISS = 0x00000004, ISS2 = 0x00000000\n CM = 0, WnR = 0, TnD = 0, TagAccess = 0\n GCS = 0, Overlay = 0, DirtyBit = 0, Xs = 0\n user pgtable: 4k pages, 48-bit VAs, pgdp=0000000101ecf000\n [0000000000000020] pgd=0000000000000000, p4d=0000000000000000\n Internal error: Oops: 0000000096000004 [#1] PREEMPT SMP\n Modules linked in: ...\n CPU: 5 UID: 0 PID: 1198 Comm: aplay\n Not tainted 6.12.0-rc2-qcomlt-arm64-00059-g9d78f315a362-dirty #18\n Hardware name: Thundercomm Dragonboard 845c (DT)\n pstate: 60400005 (nZCv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)\n pc : sdw_stream_add_slave+0x44/0x380 [soundwire_bus]\n lr : sdw_stream_add_slave+0x44/0x380 [soundwire_bus]\n sp : ffff80008a2035c0\n x29: ffff80008a2035c0 x28: ffff80008a203978 x27: 0000000000000000\n x26: 00000000000000c0 x25: 0000000000000000 x24: ffff1676025f4800\n x23: ffff167600ff1cb8 x22: ffff167600ff1c98 x21: 0000000000000003\n x20: ffff167607316000 x19: ffff167604e64e80 x18: 0000000000000000\n x17: 0000000000000000 x16: ffffcec265074160 x15: 0000000000000000\n x14: 0000000000000000 x13: 0000000000000000 x12: 0000000000000000\n x11: 0000000000000000 x10: 0000000000000000 x9 : 0000000000000000\n x8 : 0000000000000000 x7 : 0000000000000000 x6 : ffff167600ff1cec\n x5 : ffffcec22cfa2010 x4 : 0000000000000000 x3 : 0000000000000003\n x2 : ffff167613f836c0 x1 : 0000000000000000 x0 : ffff16761feb60b8\n Call trace:\n sdw_stream_add_slave+0x44/0x380 [soundwire_bus]\n wsa881x_hw_params+0x68/0x80 [snd_soc_wsa881x]\n snd_soc_dai_hw_params+0x3c/0xa4\n __soc_pcm_hw_params+0x230/0x660\n dpcm_be_dai_hw_params+0x1d0/0x3f8\n dpcm_fe_dai_hw_params+0x98/0x268\n snd_pcm_hw_params+0x124/0x460\n snd_pcm_common_ioctl+0x998/0x16e8\n snd_pcm_ioctl+0x34/0x58\n __arm64_sys_ioctl+0xac/0xf8\n invoke_syscall+0x48/0x104\n el0_svc_common.constprop.0+0x40/0xe0\n do_el0_svc+0x1c/0x28\n el0_svc+0x34/0xe0\n el0t_64_sync_handler+0x120/0x12c\n el0t_64_sync+0x190/0x194\n Code: aa0403fb f9418400 9100e000 9400102f (f8420f22)\n ---[ end trace 0000000000000000 ]---\n\n0000000000006108 :\n 6108: d503233f paciasp\n 610c: a9b97bfd stp x29, x30, [sp, #-112]!\n 6110: 910003fd mov x29, sp\n 6114: a90153f3 stp x19, x20, [sp, #16]\n 6118: a9025bf5 stp x21, x22, [sp, #32]\n 611c: aa0103f6 mov x22, x1\n 6120: 2a0303f5 mov w21, w3\n 6124: a90363f7 stp x23, x24, [sp, #48]\n 6128: aa0003f8 mov x24, x0\n 612c: aa0203f7 mov x23, x2\n 6130: a9046bf9 stp x25, x26, [sp, #64]\n 6134: aa0403f9 mov x25, x4 <-- x4 copied to x25\n 6138: a90573fb stp x27, x28, [sp, #80]\n 613c: aa0403fb mov x27, x4\n 6140: f9418400 ldr x0, [x0, #776]\n 6144: 9100e000 add x0, x0, #0x38\n 6148: 94000000 bl 0 \n 614c: f8420f22 ldr x2, [x25, #32]! <-- offset 0x44\n ^^^\nThis is 0x6108 + offset 0x44 from the beginning of sdw_stream_add_slave()\nwhere data abort happens.\nwsa881x_hw_params() is called with stream = NULL and passes it further\nin register x4 (5th argu\n---truncated---", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-05T18:15:13Z" diff --git a/advisories/unreviewed/2024/11/GHSA-vgj5-pm4f-q6gv/GHSA-vgj5-pm4f-q6gv.json b/advisories/unreviewed/2024/11/GHSA-vgj5-pm4f-q6gv/GHSA-vgj5-pm4f-q6gv.json new file mode 100644 index 00000000000..9a0d286d5e1 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-vgj5-pm4f-q6gv/GHSA-vgj5-pm4f-q6gv.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vgj5-pm4f-q6gv", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-33660" + ], + "details": "An exploit is possible where an actor with physical access can manipulate SPI flash without being detected.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:H/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-33660" + }, + { + "type": "WEB", + "url": "https://9443417.fs1.hubspotusercontent-na1.net/hubfs/9443417/Security%20Advisories/2024/AMI-SA-2024004.pdf" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-494" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-vx6f-r8cp-5qf8/GHSA-vx6f-r8cp-5qf8.json b/advisories/unreviewed/2024/11/GHSA-vx6f-r8cp-5qf8/GHSA-vx6f-r8cp-5qf8.json new file mode 100644 index 00000000000..7344f9043e5 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-vx6f-r8cp-5qf8/GHSA-vx6f-r8cp-5qf8.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vx6f-r8cp-5qf8", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-11130" + ], + "details": "A vulnerability was found in ZZCMS up to 2023. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /admin/msg.php. The manipulation of the argument keyword leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11130" + }, + { + "type": "WEB", + "url": "https://github.com/En0t5/vul/blob/main/zzcms-msg-xss.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.283976" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.283976" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.439699" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-w85r-9h7p-rv3f/GHSA-w85r-9h7p-rv3f.json b/advisories/unreviewed/2024/11/GHSA-w85r-9h7p-rv3f/GHSA-w85r-9h7p-rv3f.json new file mode 100644 index 00000000000..843412cd902 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-w85r-9h7p-rv3f/GHSA-w85r-9h7p-rv3f.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w85r-9h7p-rv3f", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-11125" + ], + "details": "A vulnerability was found in GetSimpleCMS 3.3.16 and classified as problematic. This issue affects some unknown processing of the file /admin/profile.php. The manipulation leads to cross-site request forgery. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11125" + }, + { + "type": "WEB", + "url": "https://github.com/Zeynalxan/zero-day/blob/main/GetSimpleCMS-CVE.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.283973" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.283973" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.437090" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-w95c-2q6h-h5mp/GHSA-w95c-2q6h-h5mp.json b/advisories/unreviewed/2024/11/GHSA-w95c-2q6h-h5mp/GHSA-w95c-2q6h-h5mp.json new file mode 100644 index 00000000000..b312bfb3a91 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-w95c-2q6h-h5mp/GHSA-w95c-2q6h-h5mp.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w95c-2q6h-h5mp", + "modified": "2024-11-12T15:30:41Z", + "published": "2024-11-12T15:30:41Z", + "aliases": [ + "CVE-2024-36140" + ], + "details": "A vulnerability has been identified in OZW672 (All versions < V5.2), OZW772 (All versions < V5.2). The user accounts tab of affected devices is vulnerable to stored cross-site scripting (XSS) attacks.\n\nThis could allow an authenticated remote attacker to inject arbitrary JavaScript code that is later executed by another authenticated victim user with potential higher privileges than the attacker.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:N/I:H/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:H/VA:N/SC:N/SI:H/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36140" + }, + { + "type": "WEB", + "url": "https://cert-portal.siemens.com/productcert/html/ssa-230445.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T13:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-xf4p-4gf4-v92p/GHSA-xf4p-4gf4-v92p.json b/advisories/unreviewed/2024/11/GHSA-xf4p-4gf4-v92p/GHSA-xf4p-4gf4-v92p.json new file mode 100644 index 00000000000..4c47f77c215 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-xf4p-4gf4-v92p/GHSA-xf4p-4gf4-v92p.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xf4p-4gf4-v92p", + "modified": "2024-11-12T15:30:43Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-2315" + ], + "details": "APTIOV contains a vulnerability in BIOS where may cause Improper Access Control by a local attacker. Successful exploitation of this vulnerability may lead to unexpected SPI flash modifications and BIOS boot kit launches, also impacting the availability.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2315" + }, + { + "type": "WEB", + "url": "https://9443417.fs1.hubspotusercontent-na1.net/hubfs/9443417/Security%20Advisories/2024/AMI-SA-2024004.pdf" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-284" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-xxc6-q6r3-h584/GHSA-xxc6-q6r3-h584.json b/advisories/unreviewed/2024/11/GHSA-xxc6-q6r3-h584/GHSA-xxc6-q6r3-h584.json new file mode 100644 index 00000000000..65f84e84fec --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-xxc6-q6r3-h584/GHSA-xxc6-q6r3-h584.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xxc6-q6r3-h584", + "modified": "2024-11-12T15:30:44Z", + "published": "2024-11-12T15:30:43Z", + "aliases": [ + "CVE-2024-51563" + ], + "details": "The virtio_vq_recordon function is subject to a time-of-check to time-of-use (TOCTOU) race condition.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51563" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-24:17.bhyve.asc" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-367" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-12T15:15:10Z" + } +} \ No newline at end of file