diff --git a/advisories/unreviewed/2023/06/GHSA-5p66-crx7-h9m4/GHSA-5p66-crx7-h9m4.json b/advisories/unreviewed/2023/06/GHSA-5p66-crx7-h9m4/GHSA-5p66-crx7-h9m4.json index 1492735480b..e4c81d9a776 100644 --- a/advisories/unreviewed/2023/06/GHSA-5p66-crx7-h9m4/GHSA-5p66-crx7-h9m4.json +++ b/advisories/unreviewed/2023/06/GHSA-5p66-crx7-h9m4/GHSA-5p66-crx7-h9m4.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-203" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/06/GHSA-5vjx-mmc5-585p/GHSA-5vjx-mmc5-585p.json b/advisories/unreviewed/2023/06/GHSA-5vjx-mmc5-585p/GHSA-5vjx-mmc5-585p.json index 201967f5acb..01a1dfe87e1 100644 --- a/advisories/unreviewed/2023/06/GHSA-5vjx-mmc5-585p/GHSA-5vjx-mmc5-585p.json +++ b/advisories/unreviewed/2023/06/GHSA-5vjx-mmc5-585p/GHSA-5vjx-mmc5-585p.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-770" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/06/GHSA-9jj4-588g-mm69/GHSA-9jj4-588g-mm69.json b/advisories/unreviewed/2023/06/GHSA-9jj4-588g-mm69/GHSA-9jj4-588g-mm69.json index 6d9cb0f6fed..87a005abc2e 100644 --- a/advisories/unreviewed/2023/06/GHSA-9jj4-588g-mm69/GHSA-9jj4-588g-mm69.json +++ b/advisories/unreviewed/2023/06/GHSA-9jj4-588g-mm69/GHSA-9jj4-588g-mm69.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-640" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/06/GHSA-g8gx-vmx9-6pjp/GHSA-g8gx-vmx9-6pjp.json b/advisories/unreviewed/2023/06/GHSA-g8gx-vmx9-6pjp/GHSA-g8gx-vmx9-6pjp.json index 8831e2982e9..9f314f7cf18 100644 --- a/advisories/unreviewed/2023/06/GHSA-g8gx-vmx9-6pjp/GHSA-g8gx-vmx9-6pjp.json +++ b/advisories/unreviewed/2023/06/GHSA-g8gx-vmx9-6pjp/GHSA-g8gx-vmx9-6pjp.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-770" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/06/GHSA-r2rm-q57r-42w3/GHSA-r2rm-q57r-42w3.json b/advisories/unreviewed/2023/06/GHSA-r2rm-q57r-42w3/GHSA-r2rm-q57r-42w3.json index 8f3dab30802..3338c53aa35 100644 --- a/advisories/unreviewed/2023/06/GHSA-r2rm-q57r-42w3/GHSA-r2rm-q57r-42w3.json +++ b/advisories/unreviewed/2023/06/GHSA-r2rm-q57r-42w3/GHSA-r2rm-q57r-42w3.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-770" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/06/GHSA-wg65-w3r9-phxw/GHSA-wg65-w3r9-phxw.json b/advisories/unreviewed/2023/06/GHSA-wg65-w3r9-phxw/GHSA-wg65-w3r9-phxw.json index 7d99fb7f2f4..04314f7f1f5 100644 --- a/advisories/unreviewed/2023/06/GHSA-wg65-w3r9-phxw/GHSA-wg65-w3r9-phxw.json +++ b/advisories/unreviewed/2023/06/GHSA-wg65-w3r9-phxw/GHSA-wg65-w3r9-phxw.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-863" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/02/GHSA-3jvq-9rg9-g8rp/GHSA-3jvq-9rg9-g8rp.json b/advisories/unreviewed/2024/02/GHSA-3jvq-9rg9-g8rp/GHSA-3jvq-9rg9-g8rp.json index 97858a24071..432d24e2a83 100644 --- a/advisories/unreviewed/2024/02/GHSA-3jvq-9rg9-g8rp/GHSA-3jvq-9rg9-g8rp.json +++ b/advisories/unreviewed/2024/02/GHSA-3jvq-9rg9-g8rp/GHSA-3jvq-9rg9-g8rp.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-3jvq-9rg9-g8rp", - "modified": "2024-02-28T09:30:38Z", + "modified": "2024-12-06T21:30:35Z", "published": "2024-02-28T09:30:38Z", "aliases": [ "CVE-2021-47038" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: avoid deadlock between hci_dev->lock and socket lock\n\nCommit eab2404ba798 (\"Bluetooth: Add BT_PHY socket option\") added a\ndependency between socket lock and hci_dev->lock that could lead to\ndeadlock.\n\nIt turns out that hci_conn_get_phy() is not in any way relying on hdev\nbeing immutable during the runtime of this function, neither does it even\nlook at any of the members of hdev, and as such there is no need to hold\nthat lock.\n\nThis fixes the lockdep splat below:\n\n ======================================================\n WARNING: possible circular locking dependency detected\n 5.12.0-rc1-00026-g73d464503354 #10 Not tainted\n ------------------------------------------------------\n bluetoothd/1118 is trying to acquire lock:\n ffff8f078383c078 (&hdev->lock){+.+.}-{3:3}, at: hci_conn_get_phy+0x1c/0x150 [bluetooth]\n\n but task is already holding lock:\n ffff8f07e831d920 (sk_lock-AF_BLUETOOTH-BTPROTO_L2CAP){+.+.}-{0:0}, at: l2cap_sock_getsockopt+0x8b/0x610\n\n which lock already depends on the new lock.\n\n the existing dependency chain (in reverse order) is:\n\n -> #3 (sk_lock-AF_BLUETOOTH-BTPROTO_L2CAP){+.+.}-{0:0}:\n lock_sock_nested+0x72/0xa0\n l2cap_sock_ready_cb+0x18/0x70 [bluetooth]\n l2cap_config_rsp+0x27a/0x520 [bluetooth]\n l2cap_sig_channel+0x658/0x1330 [bluetooth]\n l2cap_recv_frame+0x1ba/0x310 [bluetooth]\n hci_rx_work+0x1cc/0x640 [bluetooth]\n process_one_work+0x244/0x5f0\n worker_thread+0x3c/0x380\n kthread+0x13e/0x160\n ret_from_fork+0x22/0x30\n\n -> #2 (&chan->lock#2/1){+.+.}-{3:3}:\n __mutex_lock+0xa3/0xa10\n l2cap_chan_connect+0x33a/0x940 [bluetooth]\n l2cap_sock_connect+0x141/0x2a0 [bluetooth]\n __sys_connect+0x9b/0xc0\n __x64_sys_connect+0x16/0x20\n do_syscall_64+0x33/0x80\n entry_SYSCALL_64_after_hwframe+0x44/0xae\n\n -> #1 (&conn->chan_lock){+.+.}-{3:3}:\n __mutex_lock+0xa3/0xa10\n l2cap_chan_connect+0x322/0x940 [bluetooth]\n l2cap_sock_connect+0x141/0x2a0 [bluetooth]\n __sys_connect+0x9b/0xc0\n __x64_sys_connect+0x16/0x20\n do_syscall_64+0x33/0x80\n entry_SYSCALL_64_after_hwframe+0x44/0xae\n\n -> #0 (&hdev->lock){+.+.}-{3:3}:\n __lock_acquire+0x147a/0x1a50\n lock_acquire+0x277/0x3d0\n __mutex_lock+0xa3/0xa10\n hci_conn_get_phy+0x1c/0x150 [bluetooth]\n l2cap_sock_getsockopt+0x5a9/0x610 [bluetooth]\n __sys_getsockopt+0xcc/0x200\n __x64_sys_getsockopt+0x20/0x30\n do_syscall_64+0x33/0x80\n entry_SYSCALL_64_after_hwframe+0x44/0xae\n\n other info that might help us debug this:\n\n Chain exists of:\n &hdev->lock --> &chan->lock#2/1 --> sk_lock-AF_BLUETOOTH-BTPROTO_L2CAP\n\n Possible unsafe locking scenario:\n\n CPU0 CPU1\n ---- ----\n lock(sk_lock-AF_BLUETOOTH-BTPROTO_L2CAP);\n lock(&chan->lock#2/1);\n lock(sk_lock-AF_BLUETOOTH-BTPROTO_L2CAP);\n lock(&hdev->lock);\n\n *** DEADLOCK ***\n\n 1 lock held by bluetoothd/1118:\n #0: ffff8f07e831d920 (sk_lock-AF_BLUETOOTH-BTPROTO_L2CAP){+.+.}-{0:0}, at: l2cap_sock_getsockopt+0x8b/0x610 [bluetooth]\n\n stack backtrace:\n CPU: 3 PID: 1118 Comm: bluetoothd Not tainted 5.12.0-rc1-00026-g73d464503354 #10\n Hardware name: LENOVO 20K5S22R00/20K5S22R00, BIOS R0IET38W (1.16 ) 05/31/2017\n Call Trace:\n dump_stack+0x7f/0xa1\n check_noncircular+0x105/0x120\n ? __lock_acquire+0x147a/0x1a50\n __lock_acquire+0x147a/0x1a50\n lock_acquire+0x277/0x3d0\n ? hci_conn_get_phy+0x1c/0x150 [bluetooth]\n ? __lock_acquire+0x2e1/0x1a50\n ? lock_is_held_type+0xb4/0x120\n ? hci_conn_get_phy+0x1c/0x150 [bluetooth]\n __mutex_lock+0xa3/0xa10\n ? hci_conn_get_phy+0x1c/0x150 [bluetooth]\n ? lock_acquire+0x277/0x3d0\n ? mark_held_locks+0x49/0x70\n ? mark_held_locks+0x49/0x70\n ? hci_conn_get_phy+0x1c/0x150 [bluetooth]\n hci_conn_get_phy+0x\n---truncated---", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -32,8 +37,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-667" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-28T09:15:39Z" diff --git a/advisories/unreviewed/2024/02/GHSA-3qwx-q6x9-637h/GHSA-3qwx-q6x9-637h.json b/advisories/unreviewed/2024/02/GHSA-3qwx-q6x9-637h/GHSA-3qwx-q6x9-637h.json index cb24fe91c20..eef6e192fa5 100644 --- a/advisories/unreviewed/2024/02/GHSA-3qwx-q6x9-637h/GHSA-3qwx-q6x9-637h.json +++ b/advisories/unreviewed/2024/02/GHSA-3qwx-q6x9-637h/GHSA-3qwx-q6x9-637h.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-3qwx-q6x9-637h", - "modified": "2024-02-18T09:30:47Z", + "modified": "2024-12-06T21:30:34Z", "published": "2024-02-18T09:30:47Z", "aliases": [ "CVE-2023-52378" ], "details": "Vulnerability of incorrect service logic in the WindowManagerServices module.Successful exploitation of this vulnerability may cause features to perform abnormally.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -25,7 +30,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-18T07:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-45ch-2h92-cc35/GHSA-45ch-2h92-cc35.json b/advisories/unreviewed/2024/02/GHSA-45ch-2h92-cc35/GHSA-45ch-2h92-cc35.json index b192a32979d..fa4fc2bece5 100644 --- a/advisories/unreviewed/2024/02/GHSA-45ch-2h92-cc35/GHSA-45ch-2h92-cc35.json +++ b/advisories/unreviewed/2024/02/GHSA-45ch-2h92-cc35/GHSA-45ch-2h92-cc35.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-45ch-2h92-cc35", - "modified": "2024-02-18T06:30:32Z", + "modified": "2024-12-06T21:30:34Z", "published": "2024-02-18T06:30:32Z", "aliases": [ "CVE-2023-52375" ], "details": "Permission control vulnerability in the WindowManagerServices module.Successful exploitation of this vulnerability may affect availability.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -25,7 +30,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-18T06:15:07Z" diff --git a/advisories/unreviewed/2024/02/GHSA-68vm-vpf9-fgr6/GHSA-68vm-vpf9-fgr6.json b/advisories/unreviewed/2024/02/GHSA-68vm-vpf9-fgr6/GHSA-68vm-vpf9-fgr6.json index a67b23eb34d..8dacba446e2 100644 --- a/advisories/unreviewed/2024/02/GHSA-68vm-vpf9-fgr6/GHSA-68vm-vpf9-fgr6.json +++ b/advisories/unreviewed/2024/02/GHSA-68vm-vpf9-fgr6/GHSA-68vm-vpf9-fgr6.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-68vm-vpf9-fgr6", - "modified": "2024-02-28T09:30:38Z", + "modified": "2024-12-06T21:30:35Z", "published": "2024-02-28T09:30:38Z", "aliases": [ "CVE-2021-47028" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmt76: mt7915: fix txrate reporting\n\nProperly check rate_info to fix unexpected reporting.\n\n[ 1215.161863] Call trace:\n[ 1215.164307] cfg80211_calculate_bitrate+0x124/0x200 [cfg80211]\n[ 1215.170139] ieee80211s_update_metric+0x80/0xc0 [mac80211]\n[ 1215.175624] ieee80211_tx_status_ext+0x508/0x838 [mac80211]\n[ 1215.181190] mt7915_mcu_get_rx_rate+0x28c/0x8d0 [mt7915e]\n[ 1215.186580] mt7915_mac_tx_free+0x324/0x7c0 [mt7915e]\n[ 1215.191623] mt7915_queue_rx_skb+0xa8/0xd0 [mt7915e]\n[ 1215.196582] mt76_dma_cleanup+0x7b0/0x11d0 [mt76]\n[ 1215.201276] __napi_poll+0x38/0xf8\n[ 1215.204668] napi_workfn+0x40/0x80\n[ 1215.208062] process_one_work+0x1fc/0x390\n[ 1215.212062] worker_thread+0x48/0x4d0\n[ 1215.215715] kthread+0x120/0x128\n[ 1215.218935] ret_from_fork+0x10/0x1c", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -29,7 +34,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-28T09:15:39Z" diff --git a/advisories/unreviewed/2024/02/GHSA-7h2p-gcjg-4fw8/GHSA-7h2p-gcjg-4fw8.json b/advisories/unreviewed/2024/02/GHSA-7h2p-gcjg-4fw8/GHSA-7h2p-gcjg-4fw8.json index cf7fe51ab96..3c7fdaab41a 100644 --- a/advisories/unreviewed/2024/02/GHSA-7h2p-gcjg-4fw8/GHSA-7h2p-gcjg-4fw8.json +++ b/advisories/unreviewed/2024/02/GHSA-7h2p-gcjg-4fw8/GHSA-7h2p-gcjg-4fw8.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-7h2p-gcjg-4fw8", - "modified": "2024-02-28T09:30:38Z", + "modified": "2024-12-06T21:30:35Z", "published": "2024-02-28T09:30:38Z", "aliases": [ "CVE-2021-47045" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: lpfc: Fix null pointer dereference in lpfc_prep_els_iocb()\n\nIt is possible to call lpfc_issue_els_plogi() passing a did for which no\nmatching ndlp is found. A call is then made to lpfc_prep_els_iocb() with a\nnull pointer to a lpfc_nodelist structure resulting in a null pointer\ndereference.\n\nFix by returning an error status if no valid ndlp is found. Fix up comments\nregarding ndlp reference counting.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -28,8 +33,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-476" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-28T09:15:40Z" diff --git a/advisories/unreviewed/2024/02/GHSA-c22v-83jg-hp9r/GHSA-c22v-83jg-hp9r.json b/advisories/unreviewed/2024/02/GHSA-c22v-83jg-hp9r/GHSA-c22v-83jg-hp9r.json index 37e5d8a8175..3fd98a5379b 100644 --- a/advisories/unreviewed/2024/02/GHSA-c22v-83jg-hp9r/GHSA-c22v-83jg-hp9r.json +++ b/advisories/unreviewed/2024/02/GHSA-c22v-83jg-hp9r/GHSA-c22v-83jg-hp9r.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-c22v-83jg-hp9r", - "modified": "2024-02-18T06:30:31Z", + "modified": "2024-12-06T21:30:34Z", "published": "2024-02-18T06:30:31Z", "aliases": [ "CVE-2023-52373" ], "details": "Vulnerability of permission verification in the content sharing pop-up module.Successful exploitation of this vulnerability may cause unauthorized file sharing.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-281" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-18T04:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-cpr5-fxjg-jcr6/GHSA-cpr5-fxjg-jcr6.json b/advisories/unreviewed/2024/02/GHSA-cpr5-fxjg-jcr6/GHSA-cpr5-fxjg-jcr6.json index a2f46d03b2e..93d271e0ebb 100644 --- a/advisories/unreviewed/2024/02/GHSA-cpr5-fxjg-jcr6/GHSA-cpr5-fxjg-jcr6.json +++ b/advisories/unreviewed/2024/02/GHSA-cpr5-fxjg-jcr6/GHSA-cpr5-fxjg-jcr6.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-cpr5-fxjg-jcr6", - "modified": "2024-02-28T09:30:38Z", + "modified": "2024-12-06T21:30:35Z", "published": "2024-02-28T09:30:38Z", "aliases": [ "CVE-2021-47041" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnvmet-tcp: fix incorrect locking in state_change sk callback\n\nWe are not changing anything in the TCP connection state so\nwe should not take a write_lock but rather a read lock.\n\nThis caused a deadlock when running nvmet-tcp and nvme-tcp\non the same system, where state_change callbacks on the\nhost and on the controller side have causal relationship\nand made lockdep report on this with blktests:\n\n================================\nWARNING: inconsistent lock state\n5.12.0-rc3 #1 Tainted: G I\n--------------------------------\ninconsistent {IN-SOFTIRQ-W} -> {SOFTIRQ-ON-R} usage.\nnvme/1324 [HC0[0]:SC0[0]:HE1:SE1] takes:\nffff888363151000 (clock-AF_INET){++-?}-{2:2}, at: nvme_tcp_state_change+0x21/0x150 [nvme_tcp]\n{IN-SOFTIRQ-W} state was registered at:\n __lock_acquire+0x79b/0x18d0\n lock_acquire+0x1ca/0x480\n _raw_write_lock_bh+0x39/0x80\n nvmet_tcp_state_change+0x21/0x170 [nvmet_tcp]\n tcp_fin+0x2a8/0x780\n tcp_data_queue+0xf94/0x1f20\n tcp_rcv_established+0x6ba/0x1f00\n tcp_v4_do_rcv+0x502/0x760\n tcp_v4_rcv+0x257e/0x3430\n ip_protocol_deliver_rcu+0x69/0x6a0\n ip_local_deliver_finish+0x1e2/0x2f0\n ip_local_deliver+0x1a2/0x420\n ip_rcv+0x4fb/0x6b0\n __netif_receive_skb_one_core+0x162/0x1b0\n process_backlog+0x1ff/0x770\n __napi_poll.constprop.0+0xa9/0x5c0\n net_rx_action+0x7b3/0xb30\n __do_softirq+0x1f0/0x940\n do_softirq+0xa1/0xd0\n __local_bh_enable_ip+0xd8/0x100\n ip_finish_output2+0x6b7/0x18a0\n __ip_queue_xmit+0x706/0x1aa0\n __tcp_transmit_skb+0x2068/0x2e20\n tcp_write_xmit+0xc9e/0x2bb0\n __tcp_push_pending_frames+0x92/0x310\n inet_shutdown+0x158/0x300\n __nvme_tcp_stop_queue+0x36/0x270 [nvme_tcp]\n nvme_tcp_stop_queue+0x87/0xb0 [nvme_tcp]\n nvme_tcp_teardown_admin_queue+0x69/0xe0 [nvme_tcp]\n nvme_do_delete_ctrl+0x100/0x10c [nvme_core]\n nvme_sysfs_delete.cold+0x8/0xd [nvme_core]\n kernfs_fop_write_iter+0x2c7/0x460\n new_sync_write+0x36c/0x610\n vfs_write+0x5c0/0x870\n ksys_write+0xf9/0x1d0\n do_syscall_64+0x33/0x40\n entry_SYSCALL_64_after_hwframe+0x44/0xae\nirq event stamp: 10687\nhardirqs last enabled at (10687): [] _raw_spin_unlock_irqrestore+0x2d/0x40\nhardirqs last disabled at (10686): [] _raw_spin_lock_irqsave+0x68/0x90\nsoftirqs last enabled at (10684): [] __do_softirq+0x608/0x940\nsoftirqs last disabled at (10649): [] do_softirq+0xa1/0xd0\n\nother info that might help us debug this:\n Possible unsafe locking scenario:\n\n CPU0\n ----\n lock(clock-AF_INET);\n \n lock(clock-AF_INET);\n\n *** DEADLOCK ***\n\n5 locks held by nvme/1324:\n #0: ffff8884a01fe470 (sb_writers#4){.+.+}-{0:0}, at: ksys_write+0xf9/0x1d0\n #1: ffff8886e435c090 (&of->mutex){+.+.}-{3:3}, at: kernfs_fop_write_iter+0x216/0x460\n #2: ffff888104d90c38 (kn->active#255){++++}-{0:0}, at: kernfs_remove_self+0x22d/0x330\n #3: ffff8884634538d0 (&queue->queue_lock){+.+.}-{3:3}, at: nvme_tcp_stop_queue+0x52/0xb0 [nvme_tcp]\n #4: ffff888363150d30 (sk_lock-AF_INET){+.+.}-{0:0}, at: inet_shutdown+0x59/0x300\n\nstack backtrace:\nCPU: 26 PID: 1324 Comm: nvme Tainted: G I 5.12.0-rc3 #1\nHardware name: Dell Inc. PowerEdge R640/06NR82, BIOS 2.10.0 11/12/2020\nCall Trace:\n dump_stack+0x93/0xc2\n mark_lock_irq.cold+0x2c/0xb3\n ? verify_lock_unused+0x390/0x390\n ? stack_trace_consume_entry+0x160/0x160\n ? lock_downgrade+0x100/0x100\n ? save_trace+0x88/0x5e0\n ? _raw_spin_unlock_irqrestore+0x2d/0x40\n mark_lock+0x530/0x1470\n ? mark_lock_irq+0x1d10/0x1d10\n ? enqueue_timer+0x660/0x660\n mark_usage+0x215/0x2a0\n __lock_acquire+0x79b/0x18d0\n ? tcp_schedule_loss_probe.part.0+0x38c/0x520\n lock_acquire+0x1ca/0x480\n ? nvme_tcp_state_change+0x21/0x150 [nvme_tcp]\n ? rcu_read_unlock+0x40/0x40\n ? tcp_mtu_probe+0x1ae0/0x1ae0\n ? kmalloc_reserve+0xa0/0xa0\n ? sysfs_file_ops+0x170/0x170\n _raw_read_lock+0x3d/0xa0\n ? nvme_tcp_state_change+0x21/0x150 [nvme_tcp]\n nvme_tcp_state_change+0x21/0x150 [nvme_tcp]\n ? sysfs_file_ops\n---truncated---", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -36,8 +41,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-667" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-28T09:15:40Z" diff --git a/advisories/unreviewed/2024/02/GHSA-jrrc-pqj2-c99f/GHSA-jrrc-pqj2-c99f.json b/advisories/unreviewed/2024/02/GHSA-jrrc-pqj2-c99f/GHSA-jrrc-pqj2-c99f.json index ca623b904ab..f55ae7787f3 100644 --- a/advisories/unreviewed/2024/02/GHSA-jrrc-pqj2-c99f/GHSA-jrrc-pqj2-c99f.json +++ b/advisories/unreviewed/2024/02/GHSA-jrrc-pqj2-c99f/GHSA-jrrc-pqj2-c99f.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-jrrc-pqj2-c99f", - "modified": "2024-02-26T18:30:31Z", + "modified": "2024-12-06T21:30:34Z", "published": "2024-02-26T18:30:31Z", "aliases": [ "CVE-2024-25763" ], "details": "openNDS 10.2.0 is vulnerable to Use-After-Free via /openNDS/src/auth.c.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-416" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-26T16:27:59Z" diff --git a/advisories/unreviewed/2024/02/GHSA-jxp6-f9wg-m536/GHSA-jxp6-f9wg-m536.json b/advisories/unreviewed/2024/02/GHSA-jxp6-f9wg-m536/GHSA-jxp6-f9wg-m536.json index d7320283c5a..56da811688f 100644 --- a/advisories/unreviewed/2024/02/GHSA-jxp6-f9wg-m536/GHSA-jxp6-f9wg-m536.json +++ b/advisories/unreviewed/2024/02/GHSA-jxp6-f9wg-m536/GHSA-jxp6-f9wg-m536.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-jxp6-f9wg-m536", - "modified": "2024-02-18T03:30:24Z", + "modified": "2024-12-06T21:30:34Z", "published": "2024-02-18T03:30:24Z", "aliases": [ "CVE-2023-52361" ], "details": "The VerifiedBoot module has a vulnerability that may cause authentication errors.Successful exploitation of this vulnerability may affect integrity.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" + } + ], "affected": [], "references": [ { @@ -25,7 +30,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-18T03:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-qp5h-mm28-4jq3/GHSA-qp5h-mm28-4jq3.json b/advisories/unreviewed/2024/02/GHSA-qp5h-mm28-4jq3/GHSA-qp5h-mm28-4jq3.json index fbb841fc26c..3c60c6f1858 100644 --- a/advisories/unreviewed/2024/02/GHSA-qp5h-mm28-4jq3/GHSA-qp5h-mm28-4jq3.json +++ b/advisories/unreviewed/2024/02/GHSA-qp5h-mm28-4jq3/GHSA-qp5h-mm28-4jq3.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-qp5h-mm28-4jq3", - "modified": "2024-05-14T15:32:40Z", + "modified": "2024-12-06T21:30:35Z", "published": "2024-02-29T03:33:18Z", "aliases": [ "CVE-2024-26458" ], "details": "Kerberos 5 (aka krb5) 1.21.2 contains a memory leak in /krb5/src/lib/rpc/pmap_rmt.c.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], "affected": [], "references": [ { @@ -25,7 +30,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-29T01:44:18Z" diff --git a/advisories/unreviewed/2024/02/GHSA-rmgv-92vx-xfh9/GHSA-rmgv-92vx-xfh9.json b/advisories/unreviewed/2024/02/GHSA-rmgv-92vx-xfh9/GHSA-rmgv-92vx-xfh9.json index 9e55da43e7a..7d4602e674c 100644 --- a/advisories/unreviewed/2024/02/GHSA-rmgv-92vx-xfh9/GHSA-rmgv-92vx-xfh9.json +++ b/advisories/unreviewed/2024/02/GHSA-rmgv-92vx-xfh9/GHSA-rmgv-92vx-xfh9.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-rmgv-92vx-xfh9", - "modified": "2024-02-18T09:30:47Z", + "modified": "2024-12-06T21:30:34Z", "published": "2024-02-18T09:30:47Z", "aliases": [ "CVE-2022-48621" ], "details": "Vulnerability of missing authentication for critical functions in the Wi-Fi module.Successful exploitation of this vulnerability may affect service confidentiality.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], "affected": [], "references": [ { @@ -27,7 +32,7 @@ "cwe_ids": [ "CWE-306" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-18T07:15:07Z" diff --git a/advisories/unreviewed/2024/02/GHSA-rxx8-hw28-8whc/GHSA-rxx8-hw28-8whc.json b/advisories/unreviewed/2024/02/GHSA-rxx8-hw28-8whc/GHSA-rxx8-hw28-8whc.json index 42e749f2432..4341cbea6a8 100644 --- a/advisories/unreviewed/2024/02/GHSA-rxx8-hw28-8whc/GHSA-rxx8-hw28-8whc.json +++ b/advisories/unreviewed/2024/02/GHSA-rxx8-hw28-8whc/GHSA-rxx8-hw28-8whc.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-rxx8-hw28-8whc", - "modified": "2024-02-28T09:30:38Z", + "modified": "2024-12-06T21:30:35Z", "published": "2024-02-28T09:30:38Z", "aliases": [ "CVE-2021-47030" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmt76: mt7615: fix memory leak in mt7615_coredump_work\n\nSimilar to the issue fixed in mt7921_coredump_work, fix a possible memory\nleak in mt7615_coredump_work routine.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-401" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-28T09:15:39Z" diff --git a/advisories/unreviewed/2024/02/GHSA-v368-7gcx-f4wj/GHSA-v368-7gcx-f4wj.json b/advisories/unreviewed/2024/02/GHSA-v368-7gcx-f4wj/GHSA-v368-7gcx-f4wj.json index db49142bc9f..ef31d9e551a 100644 --- a/advisories/unreviewed/2024/02/GHSA-v368-7gcx-f4wj/GHSA-v368-7gcx-f4wj.json +++ b/advisories/unreviewed/2024/02/GHSA-v368-7gcx-f4wj/GHSA-v368-7gcx-f4wj.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-v368-7gcx-f4wj", - "modified": "2024-02-28T09:30:38Z", + "modified": "2024-12-06T21:30:35Z", "published": "2024-02-28T09:30:38Z", "aliases": [ "CVE-2021-47042" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Free local data after use\n\nFixes the following memory leak in dc_link_construct():\n\nunreferenced object 0xffffa03e81471400 (size 1024):\ncomm \"amd_module_load\", pid 2486, jiffies 4294946026 (age 10.544s)\nhex dump (first 32 bytes):\n00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................\n00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................\nbacktrace:\n[<000000000bdf5c4a>] kmem_cache_alloc_trace+0x30a/0x4a0\n[<00000000e7c59f0e>] link_create+0xce/0xac0 [amdgpu]\n[<000000002fb6c072>] dc_create+0x370/0x720 [amdgpu]\n[<000000000094d1f3>] amdgpu_dm_init+0x18e/0x17a0 [amdgpu]\n[<00000000bec048fd>] dm_hw_init+0x12/0x20 [amdgpu]\n[<00000000a2bb7cf6>] amdgpu_device_init+0x1463/0x1e60 [amdgpu]\n[<0000000032d3bb13>] amdgpu_driver_load_kms+0x5b/0x330 [amdgpu]\n[<00000000a27834f9>] amdgpu_pci_probe+0x192/0x280 [amdgpu]\n[<00000000fec7d291>] local_pci_probe+0x47/0xa0\n[<0000000055dbbfa7>] pci_device_probe+0xe3/0x180\n[<00000000815da970>] really_probe+0x1c4/0x4e0\n[<00000000b4b6974b>] driver_probe_device+0x62/0x150\n[<000000000f9ecc61>] device_driver_attach+0x58/0x60\n[<000000000f65c843>] __driver_attach+0xd6/0x150\n[<000000002f5e3683>] bus_for_each_dev+0x6a/0xc0\n[<00000000a1cfc897>] driver_attach+0x1e/0x20", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-401" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-28T09:15:40Z" diff --git a/advisories/unreviewed/2024/02/GHSA-w7xf-wp34-j8rv/GHSA-w7xf-wp34-j8rv.json b/advisories/unreviewed/2024/02/GHSA-w7xf-wp34-j8rv/GHSA-w7xf-wp34-j8rv.json index 398e7408e7d..cc138b5e246 100644 --- a/advisories/unreviewed/2024/02/GHSA-w7xf-wp34-j8rv/GHSA-w7xf-wp34-j8rv.json +++ b/advisories/unreviewed/2024/02/GHSA-w7xf-wp34-j8rv/GHSA-w7xf-wp34-j8rv.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-w7xf-wp34-j8rv", - "modified": "2024-02-28T09:30:38Z", + "modified": "2024-12-06T21:30:34Z", "published": "2024-02-28T09:30:38Z", "aliases": [ "CVE-2021-47025" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\niommu/mediatek: Always enable the clk on resume\n\nIn mtk_iommu_runtime_resume always enable the clk, even\nif m4u_dom is null. Otherwise the 'suspend' cb might\ndisable the clk which is already disabled causing the warning:\n\n[ 1.586104] infra_m4u already disabled\n[ 1.586133] WARNING: CPU: 0 PID: 121 at drivers/clk/clk.c:952 clk_core_disable+0xb0/0xb8\n[ 1.594391] mtk-iommu 10205000.iommu: bound 18001000.larb (ops mtk_smi_larb_component_ops)\n[ 1.598108] Modules linked in:\n[ 1.598114] CPU: 0 PID: 121 Comm: kworker/0:2 Not tainted 5.12.0-rc5 #69\n[ 1.609246] mtk-iommu 10205000.iommu: bound 14027000.larb (ops mtk_smi_larb_component_ops)\n[ 1.617487] Hardware name: Google Elm (DT)\n[ 1.617491] Workqueue: pm pm_runtime_work\n[ 1.620545] mtk-iommu 10205000.iommu: bound 19001000.larb (ops mtk_smi_larb_component_ops)\n\n[ 1.627229] pstate: 60000085 (nZCv daIf -PAN -UAO -TCO BTYPE=--)\n[ 1.659297] pc : clk_core_disable+0xb0/0xb8\n[ 1.663475] lr : clk_core_disable+0xb0/0xb8\n[ 1.667652] sp : ffff800011b9bbe0\n[ 1.670959] x29: ffff800011b9bbe0 x28: 0000000000000000\n[ 1.676267] x27: ffff800011448000 x26: ffff8000100cfd98\n[ 1.681574] x25: ffff800011b9bd48 x24: 0000000000000000\n[ 1.686882] x23: 0000000000000000 x22: ffff8000106fad90\n[ 1.692189] x21: 000000000000000a x20: ffff0000c0048500\n[ 1.697496] x19: ffff0000c0048500 x18: ffffffffffffffff\n[ 1.702804] x17: 0000000000000000 x16: 0000000000000000\n[ 1.708112] x15: ffff800011460300 x14: fffffffffffe0000\n[ 1.713420] x13: ffff8000114602d8 x12: 0720072007200720\n[ 1.718727] x11: 0720072007200720 x10: 0720072007200720\n[ 1.724035] x9 : ffff800011b9bbe0 x8 : ffff800011b9bbe0\n[ 1.729342] x7 : 0000000000000009 x6 : ffff8000114b8328\n[ 1.734649] x5 : 0000000000000000 x4 : 0000000000000000\n[ 1.739956] x3 : 00000000ffffffff x2 : ffff800011460298\n[ 1.745263] x1 : 1af1d7de276f4500 x0 : 0000000000000000\n[ 1.750572] Call trace:\n[ 1.753010] clk_core_disable+0xb0/0xb8\n[ 1.756840] clk_core_disable_lock+0x24/0x40\n[ 1.761105] clk_disable+0x20/0x30\n[ 1.764501] mtk_iommu_runtime_suspend+0x88/0xa8\n[ 1.769114] pm_generic_runtime_suspend+0x2c/0x48\n[ 1.773815] __rpm_callback+0xe0/0x178\n[ 1.777559] rpm_callback+0x24/0x88\n[ 1.781041] rpm_suspend+0xdc/0x470\n[ 1.784523] rpm_idle+0x12c/0x170\n[ 1.787831] pm_runtime_work+0xa8/0xc0\n[ 1.791573] process_one_work+0x1e8/0x360\n[ 1.795580] worker_thread+0x44/0x478\n[ 1.799237] kthread+0x150/0x158\n[ 1.802460] ret_from_fork+0x10/0x30\n[ 1.806034] ---[ end trace 82402920ef64573b ]---\n[ 1.810728] ------------[ cut here ]------------\n\nIn addition, we now don't need to enable the clock from the\nfunction mtk_iommu_hw_init since it is already enabled by the resume.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -25,7 +30,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-28T09:15:39Z" diff --git a/advisories/unreviewed/2024/02/GHSA-wwcj-mm94-5r39/GHSA-wwcj-mm94-5r39.json b/advisories/unreviewed/2024/02/GHSA-wwcj-mm94-5r39/GHSA-wwcj-mm94-5r39.json index 4eda4480093..363ea75d451 100644 --- a/advisories/unreviewed/2024/02/GHSA-wwcj-mm94-5r39/GHSA-wwcj-mm94-5r39.json +++ b/advisories/unreviewed/2024/02/GHSA-wwcj-mm94-5r39/GHSA-wwcj-mm94-5r39.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-wwcj-mm94-5r39", - "modified": "2024-02-28T09:30:38Z", + "modified": "2024-12-06T21:30:35Z", "published": "2024-02-28T09:30:38Z", "aliases": [ "CVE-2021-47024" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nvsock/virtio: free queued packets when closing socket\n\nAs reported by syzbot [1], there is a memory leak while closing the\nsocket. We partially solved this issue with commit ac03046ece2b\n(\"vsock/virtio: free packets during the socket release\"), but we\nforgot to drain the RX queue when the socket is definitely closed by\nthe scheduled work.\n\nTo avoid future issues, let's use the new virtio_transport_remove_sock()\nto drain the RX queue before removing the socket from the af_vsock lists\ncalling vsock_remove_sock().\n\n[1] https://syzkaller.appspot.com/bug?extid=24452624fc4c571eedd9", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -32,8 +37,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-401" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-28T09:15:39Z" diff --git a/advisories/unreviewed/2024/03/GHSA-86qq-gpgp-2x2g/GHSA-86qq-gpgp-2x2g.json b/advisories/unreviewed/2024/03/GHSA-86qq-gpgp-2x2g/GHSA-86qq-gpgp-2x2g.json index 86194a650b2..e37e9275ef0 100644 --- a/advisories/unreviewed/2024/03/GHSA-86qq-gpgp-2x2g/GHSA-86qq-gpgp-2x2g.json +++ b/advisories/unreviewed/2024/03/GHSA-86qq-gpgp-2x2g/GHSA-86qq-gpgp-2x2g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,7 +26,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/03/GHSA-q8c2-5pg9-qp4h/GHSA-q8c2-5pg9-qp4h.json b/advisories/unreviewed/2024/03/GHSA-q8c2-5pg9-qp4h/GHSA-q8c2-5pg9-qp4h.json index 9f37368a9ea..3e4131f3cc6 100644 --- a/advisories/unreviewed/2024/03/GHSA-q8c2-5pg9-qp4h/GHSA-q8c2-5pg9-qp4h.json +++ b/advisories/unreviewed/2024/03/GHSA-q8c2-5pg9-qp4h/GHSA-q8c2-5pg9-qp4h.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-q8c2-5pg9-qp4h", - "modified": "2024-03-28T03:30:59Z", + "modified": "2024-12-06T21:30:35Z", "published": "2024-03-28T03:30:59Z", "aliases": [ "CVE-2024-28016" ], "details": "Improper Access Controlvulnerability in NEC Corporation Aterm WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG1200HP2, W1200EX(-MS), WG1200HS, WG1200HP, WF300HP2, W300P, WF800HP, WR8165N, WG2200HP, WF1200HP2, WG1800HP2, WF1200HP, WG600HP, WG300HP, WF300HP, WG1800HP, WG1400HP, WR8175N, WR9300N, WR8750N, WR8160N, WR9500N, WR8600N, WR8370N, WR8170N, WR8700N, WR8300N, WR8150N, WR4100N, WR4500N, WR8100N, WR8500N, CR2500P, WR8400N, WR8200N, WR1200H, WR7870S, WR6670S, WR7850S, WR6650S, WR6600H, WR7800H, WM3400RN, WM3450RN, WM3500R, WM3600R, WM3800R, WR8166N, MR01LN and MR02LN all versions allows a attacker to get device informations via the internet.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:L/A:L" + } + ], "affected": [], "references": [ { @@ -23,7 +28,7 @@ "cwe_ids": [ "CWE-284" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-28T01:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-6r8g-4hxg-92rf/GHSA-6r8g-4hxg-92rf.json b/advisories/unreviewed/2024/04/GHSA-6r8g-4hxg-92rf/GHSA-6r8g-4hxg-92rf.json index 1927f6abdc7..69ceaa6066c 100644 --- a/advisories/unreviewed/2024/04/GHSA-6r8g-4hxg-92rf/GHSA-6r8g-4hxg-92rf.json +++ b/advisories/unreviewed/2024/04/GHSA-6r8g-4hxg-92rf/GHSA-6r8g-4hxg-92rf.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-281" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-hjx9-vcv6-76j4/GHSA-hjx9-vcv6-76j4.json b/advisories/unreviewed/2024/04/GHSA-hjx9-vcv6-76j4/GHSA-hjx9-vcv6-76j4.json index 7d2f73d2c83..8ed4dd3b600 100644 --- a/advisories/unreviewed/2024/04/GHSA-hjx9-vcv6-76j4/GHSA-hjx9-vcv6-76j4.json +++ b/advisories/unreviewed/2024/04/GHSA-hjx9-vcv6-76j4/GHSA-hjx9-vcv6-76j4.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-hjx9-vcv6-76j4", - "modified": "2024-04-10T21:30:32Z", + "modified": "2024-12-06T21:30:35Z", "published": "2024-04-10T21:30:32Z", "aliases": [ "CVE-2024-28345" ], "details": "An issue discovered in Sipwise C5 NGCP Dashboard below mr11.5.1 allows a low privileged user to access the Journal endpoint by directly visit the URL.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-10T19:15:49Z" diff --git a/advisories/unreviewed/2024/05/GHSA-245h-h68p-v4jq/GHSA-245h-h68p-v4jq.json b/advisories/unreviewed/2024/05/GHSA-245h-h68p-v4jq/GHSA-245h-h68p-v4jq.json index bafb12606c9..2376cc3aad7 100644 --- a/advisories/unreviewed/2024/05/GHSA-245h-h68p-v4jq/GHSA-245h-h68p-v4jq.json +++ b/advisories/unreviewed/2024/05/GHSA-245h-h68p-v4jq/GHSA-245h-h68p-v4jq.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-245h-h68p-v4jq", - "modified": "2024-05-06T21:30:38Z", + "modified": "2024-12-06T21:30:36Z", "published": "2024-05-06T21:30:38Z", "aliases": [ "CVE-2024-33117" ], "details": "crmeb_java v1.3.4 was discovered to contain a Server-Side Request Forgery (SSRF) via the mergeList method in class com.zbkj.front.pub.ImageMergeController.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-918" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-06T20:15:10Z" diff --git a/advisories/unreviewed/2024/06/GHSA-7577-qc6g-8pqg/GHSA-7577-qc6g-8pqg.json b/advisories/unreviewed/2024/06/GHSA-7577-qc6g-8pqg/GHSA-7577-qc6g-8pqg.json index dc7015f80f0..18fdc1fab6d 100644 --- a/advisories/unreviewed/2024/06/GHSA-7577-qc6g-8pqg/GHSA-7577-qc6g-8pqg.json +++ b/advisories/unreviewed/2024/06/GHSA-7577-qc6g-8pqg/GHSA-7577-qc6g-8pqg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,7 +26,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/06/GHSA-jpw5-747x-9xpc/GHSA-jpw5-747x-9xpc.json b/advisories/unreviewed/2024/06/GHSA-jpw5-747x-9xpc/GHSA-jpw5-747x-9xpc.json index baf6e6fce2e..7dcc4b620b1 100644 --- a/advisories/unreviewed/2024/06/GHSA-jpw5-747x-9xpc/GHSA-jpw5-747x-9xpc.json +++ b/advisories/unreviewed/2024/06/GHSA-jpw5-747x-9xpc/GHSA-jpw5-747x-9xpc.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-jpw5-747x-9xpc", - "modified": "2024-06-27T21:32:08Z", + "modified": "2024-12-06T21:30:37Z", "published": "2024-06-27T21:32:08Z", "aliases": [ "CVE-2024-39129" ], "details": "Heap Buffer Overflow vulnerability in DumpTS v0.1.0-nightly allows attackers to cause a denial of service via the function PushTSBuf() at /src/PayloadBuf.cpp.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-120" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-27T20:15:22Z" diff --git a/advisories/unreviewed/2024/07/GHSA-jvh6-h6x8-v3hx/GHSA-jvh6-h6x8-v3hx.json b/advisories/unreviewed/2024/07/GHSA-jvh6-h6x8-v3hx/GHSA-jvh6-h6x8-v3hx.json index 284ccc277e6..eb00a583471 100644 --- a/advisories/unreviewed/2024/07/GHSA-jvh6-h6x8-v3hx/GHSA-jvh6-h6x8-v3hx.json +++ b/advisories/unreviewed/2024/07/GHSA-jvh6-h6x8-v3hx/GHSA-jvh6-h6x8-v3hx.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-jvh6-h6x8-v3hx", - "modified": "2024-07-16T21:30:51Z", + "modified": "2024-12-06T21:30:37Z", "published": "2024-07-16T21:30:51Z", "aliases": [ "CVE-2024-40536" ], "details": "Shenzhen Libituo Technology Co., Ltd LBT-T300-T400 v3.2 were discovered to contain a stack overflow via the pin_3g_code parameter in the config_3g_para function.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-120" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-16T21:15:11Z" diff --git a/advisories/unreviewed/2024/10/GHSA-rmcp-9fhq-58pv/GHSA-rmcp-9fhq-58pv.json b/advisories/unreviewed/2024/10/GHSA-rmcp-9fhq-58pv/GHSA-rmcp-9fhq-58pv.json index b28ef1b7f87..98347c86f81 100644 --- a/advisories/unreviewed/2024/10/GHSA-rmcp-9fhq-58pv/GHSA-rmcp-9fhq-58pv.json +++ b/advisories/unreviewed/2024/10/GHSA-rmcp-9fhq-58pv/GHSA-rmcp-9fhq-58pv.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-rmcp-9fhq-58pv", - "modified": "2024-10-05T00:34:19Z", + "modified": "2024-12-06T21:30:37Z", "published": "2024-10-05T00:34:19Z", "aliases": [ "CVE-2024-47913" ], "details": "An issue was discovered in the AbuseFilter extension for MediaWiki before 1.39.9, 1.40.x and 1.41.x before 1.41.3, and 1.42.x before 1.42.2. An API caller can match a filter condition against AbuseFilter logs even if the caller is not authorized to view the log details for the filter.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-532" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-10-04T22:15:02Z" diff --git a/advisories/unreviewed/2024/11/GHSA-6vqg-wm4f-f8vx/GHSA-6vqg-wm4f-f8vx.json b/advisories/unreviewed/2024/11/GHSA-6vqg-wm4f-f8vx/GHSA-6vqg-wm4f-f8vx.json index 17ad1e011d3..8bc7909c30d 100644 --- a/advisories/unreviewed/2024/11/GHSA-6vqg-wm4f-f8vx/GHSA-6vqg-wm4f-f8vx.json +++ b/advisories/unreviewed/2024/11/GHSA-6vqg-wm4f-f8vx/GHSA-6vqg-wm4f-f8vx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6vqg-wm4f-f8vx", - "modified": "2024-11-26T12:41:37Z", + "modified": "2024-12-06T21:30:37Z", "published": "2024-11-26T12:41:37Z", "aliases": [ "CVE-2024-38832" @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,7 +26,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-755x-386x-p26p/GHSA-755x-386x-p26p.json b/advisories/unreviewed/2024/11/GHSA-755x-386x-p26p/GHSA-755x-386x-p26p.json index a3e80f22fe5..cffcb335a82 100644 --- a/advisories/unreviewed/2024/11/GHSA-755x-386x-p26p/GHSA-755x-386x-p26p.json +++ b/advisories/unreviewed/2024/11/GHSA-755x-386x-p26p/GHSA-755x-386x-p26p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-287" + "CWE-287", + "CWE-863" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-jm4h-wwjv-4q5c/GHSA-jm4h-wwjv-4q5c.json b/advisories/unreviewed/2024/11/GHSA-jm4h-wwjv-4q5c/GHSA-jm4h-wwjv-4q5c.json index 3f16a0283b0..f7f813809aa 100644 --- a/advisories/unreviewed/2024/11/GHSA-jm4h-wwjv-4q5c/GHSA-jm4h-wwjv-4q5c.json +++ b/advisories/unreviewed/2024/11/GHSA-jm4h-wwjv-4q5c/GHSA-jm4h-wwjv-4q5c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,7 +38,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-203" + "CWE-203", + "CWE-312" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-m2m4-2g99-6625/GHSA-m2m4-2g99-6625.json b/advisories/unreviewed/2024/11/GHSA-m2m4-2g99-6625/GHSA-m2m4-2g99-6625.json index 0a7b37eccf3..d17fcac3026 100644 --- a/advisories/unreviewed/2024/11/GHSA-m2m4-2g99-6625/GHSA-m2m4-2g99-6625.json +++ b/advisories/unreviewed/2024/11/GHSA-m2m4-2g99-6625/GHSA-m2m4-2g99-6625.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-m2m4-2g99-6625", - "modified": "2024-11-26T12:41:37Z", + "modified": "2024-12-06T21:30:37Z", "published": "2024-11-26T12:41:37Z", "aliases": [ "CVE-2024-38834" @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,7 +26,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-mff4-qp47-8h8q/GHSA-mff4-qp47-8h8q.json b/advisories/unreviewed/2024/11/GHSA-mff4-qp47-8h8q/GHSA-mff4-qp47-8h8q.json index a53393cbfef..e519f4d4780 100644 --- a/advisories/unreviewed/2024/11/GHSA-mff4-qp47-8h8q/GHSA-mff4-qp47-8h8q.json +++ b/advisories/unreviewed/2024/11/GHSA-mff4-qp47-8h8q/GHSA-mff4-qp47-8h8q.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mff4-qp47-8h8q", - "modified": "2024-11-26T12:41:37Z", + "modified": "2024-12-06T21:30:37Z", "published": "2024-11-26T12:41:37Z", "aliases": [ "CVE-2024-38833" @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,7 +26,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/12/GHSA-2h7x-469p-h96j/GHSA-2h7x-469p-h96j.json b/advisories/unreviewed/2024/12/GHSA-2h7x-469p-h96j/GHSA-2h7x-469p-h96j.json index d9a76ee7113..16ed4cde807 100644 --- a/advisories/unreviewed/2024/12/GHSA-2h7x-469p-h96j/GHSA-2h7x-469p-h96j.json +++ b/advisories/unreviewed/2024/12/GHSA-2h7x-469p-h96j/GHSA-2h7x-469p-h96j.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-2h7x-469p-h96j", - "modified": "2024-12-06T00:31:47Z", + "modified": "2024-12-06T21:30:38Z", "published": "2024-12-06T00:31:47Z", "aliases": [ "CVE-2024-37861" ], "details": "Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a buffer overflow via the nav2_amcl process. This vulnerability is triggered via sending a crafted .yaml file.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -32,8 +37,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-120" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-12-05T23:15:05Z" diff --git a/advisories/unreviewed/2024/12/GHSA-2m43-qgqq-69c7/GHSA-2m43-qgqq-69c7.json b/advisories/unreviewed/2024/12/GHSA-2m43-qgqq-69c7/GHSA-2m43-qgqq-69c7.json index a6353ae6c78..5f0c35c140f 100644 --- a/advisories/unreviewed/2024/12/GHSA-2m43-qgqq-69c7/GHSA-2m43-qgqq-69c7.json +++ b/advisories/unreviewed/2024/12/GHSA-2m43-qgqq-69c7/GHSA-2m43-qgqq-69c7.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-863" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/12/GHSA-2vgx-xv4f-3vm9/GHSA-2vgx-xv4f-3vm9.json b/advisories/unreviewed/2024/12/GHSA-2vgx-xv4f-3vm9/GHSA-2vgx-xv4f-3vm9.json new file mode 100644 index 00000000000..426f1a47108 --- /dev/null +++ b/advisories/unreviewed/2024/12/GHSA-2vgx-xv4f-3vm9/GHSA-2vgx-xv4f-3vm9.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2vgx-xv4f-3vm9", + "modified": "2024-12-06T21:30:39Z", + "published": "2024-12-06T21:30:39Z", + "aliases": [ + "CVE-2024-52324" + ], + "details": "Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x uses an inherently dangerous function which could allow an attacker to send a malicious MQTT message resulting in devices executing arbitrary OS commands.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-52324" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-24-338-01" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-242" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-12-06T19:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/12/GHSA-4m8f-h33w-f64v/GHSA-4m8f-h33w-f64v.json b/advisories/unreviewed/2024/12/GHSA-4m8f-h33w-f64v/GHSA-4m8f-h33w-f64v.json index 48f2ce13e4a..b5453ec2e96 100644 --- a/advisories/unreviewed/2024/12/GHSA-4m8f-h33w-f64v/GHSA-4m8f-h33w-f64v.json +++ b/advisories/unreviewed/2024/12/GHSA-4m8f-h33w-f64v/GHSA-4m8f-h33w-f64v.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-4m8f-h33w-f64v", - "modified": "2024-12-06T00:31:48Z", + "modified": "2024-12-06T21:30:38Z", "published": "2024-12-06T00:31:48Z", "aliases": [ "CVE-2024-38920" ], "details": "Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl process. This vulnerability is triggerd via remotely sending a request for change the value of dynamic-parameter`/amcl max_beams` .", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -28,8 +33,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-416" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-12-05T23:15:06Z" diff --git a/advisories/unreviewed/2024/12/GHSA-5732-h43f-839f/GHSA-5732-h43f-839f.json b/advisories/unreviewed/2024/12/GHSA-5732-h43f-839f/GHSA-5732-h43f-839f.json new file mode 100644 index 00000000000..d70bb4eb6bd --- /dev/null +++ b/advisories/unreviewed/2024/12/GHSA-5732-h43f-839f/GHSA-5732-h43f-839f.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5732-h43f-839f", + "modified": "2024-12-06T21:30:39Z", + "published": "2024-12-06T21:30:39Z", + "aliases": [ + "CVE-2024-47146" + ], + "details": "Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x could allow an attacker to obtain the devices serial number if physically adjacent and sniffing the RAW WIFI signal.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47146" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-24-338-01" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-402" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-12-06T19:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/12/GHSA-5ggp-fmj8-fxvf/GHSA-5ggp-fmj8-fxvf.json b/advisories/unreviewed/2024/12/GHSA-5ggp-fmj8-fxvf/GHSA-5ggp-fmj8-fxvf.json new file mode 100644 index 00000000000..a64397fe78b --- /dev/null +++ b/advisories/unreviewed/2024/12/GHSA-5ggp-fmj8-fxvf/GHSA-5ggp-fmj8-fxvf.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5ggp-fmj8-fxvf", + "modified": "2024-12-06T21:30:39Z", + "published": "2024-12-06T21:30:39Z", + "aliases": [ + "CVE-2024-46874" + ], + "details": "Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x could allow MQTT clients connecting with device credentials to send messages to some topics. Attackers with device credentials could issue commands to other devices on behalf of Ruijie's cloud.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46874" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-24-338-01" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-280" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-12-06T19:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/12/GHSA-6c2r-874p-4fv5/GHSA-6c2r-874p-4fv5.json b/advisories/unreviewed/2024/12/GHSA-6c2r-874p-4fv5/GHSA-6c2r-874p-4fv5.json index 200d387b3fe..6caade46953 100644 --- a/advisories/unreviewed/2024/12/GHSA-6c2r-874p-4fv5/GHSA-6c2r-874p-4fv5.json +++ b/advisories/unreviewed/2024/12/GHSA-6c2r-874p-4fv5/GHSA-6c2r-874p-4fv5.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6c2r-874p-4fv5", - "modified": "2024-12-05T18:31:03Z", + "modified": "2024-12-06T21:30:38Z", "published": "2024-12-05T18:31:03Z", "aliases": [ "CVE-2024-11155" ], "details": "A “use after free” code execution vulnerability exists in the Rockwell Automation Arena® that could allow a threat actor to craft a DOE file and force the software to use a resource that was already used. If exploited, a threat actor could leverage this vulnerability to execute arbitrary code. To exploit this vulnerability, a legitimate user must execute the malicious code crafted by the threat actor.", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" diff --git a/advisories/unreviewed/2024/12/GHSA-867h-hqc2-ccpf/GHSA-867h-hqc2-ccpf.json b/advisories/unreviewed/2024/12/GHSA-867h-hqc2-ccpf/GHSA-867h-hqc2-ccpf.json index 510a8d67a04..c05aaaf8203 100644 --- a/advisories/unreviewed/2024/12/GHSA-867h-hqc2-ccpf/GHSA-867h-hqc2-ccpf.json +++ b/advisories/unreviewed/2024/12/GHSA-867h-hqc2-ccpf/GHSA-867h-hqc2-ccpf.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-867h-hqc2-ccpf", - "modified": "2024-12-06T00:31:48Z", + "modified": "2024-12-06T21:30:38Z", "published": "2024-12-06T00:31:48Z", "aliases": [ "CVE-2024-37862" ], "details": "Buffer Overflow vulnerability in Open Robotic Robotic Operating System 2 ROS2 navigation2- ROS2-humble&& navigation2-humble allows a local attacker to execute arbitrary code via a crafted .yaml file to the nav2_planner process.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -28,8 +33,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-94" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-12-05T23:15:05Z" diff --git a/advisories/unreviewed/2024/12/GHSA-88v3-3636-vj82/GHSA-88v3-3636-vj82.json b/advisories/unreviewed/2024/12/GHSA-88v3-3636-vj82/GHSA-88v3-3636-vj82.json index 21d524ef8d8..5e38b3e5e7d 100644 --- a/advisories/unreviewed/2024/12/GHSA-88v3-3636-vj82/GHSA-88v3-3636-vj82.json +++ b/advisories/unreviewed/2024/12/GHSA-88v3-3636-vj82/GHSA-88v3-3636-vj82.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-88v3-3636-vj82", - "modified": "2024-12-06T00:31:47Z", + "modified": "2024-12-06T21:30:38Z", "published": "2024-12-06T00:31:47Z", "aliases": [ "CVE-2024-37860" ], "details": "Buffer Overflow vulnerability in Open Robotic Operating System 2 ROS2 navigation2- ROS2-humble&& navigation2-humble allows a local attacker to execute arbitrary code via a crafted .yaml file to the nav2_amcl process", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -32,8 +37,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-94" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-12-05T23:15:05Z" diff --git a/advisories/unreviewed/2024/12/GHSA-f339-mqqr-7gvr/GHSA-f339-mqqr-7gvr.json b/advisories/unreviewed/2024/12/GHSA-f339-mqqr-7gvr/GHSA-f339-mqqr-7gvr.json new file mode 100644 index 00000000000..cb3bea6e4a1 --- /dev/null +++ b/advisories/unreviewed/2024/12/GHSA-f339-mqqr-7gvr/GHSA-f339-mqqr-7gvr.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f339-mqqr-7gvr", + "modified": "2024-12-06T21:30:39Z", + "published": "2024-12-06T21:30:39Z", + "aliases": [ + "CVE-2024-47791" + ], + "details": "Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x could allow an attacker to subscribe to partial possible topics in Ruijie MQTT broker, and receive partial messages being sent to and from devices.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47791" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-24-338-01" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-155" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-12-06T19:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/12/GHSA-fq6h-wgjw-ffm5/GHSA-fq6h-wgjw-ffm5.json b/advisories/unreviewed/2024/12/GHSA-fq6h-wgjw-ffm5/GHSA-fq6h-wgjw-ffm5.json index 293374c851a..b36d1dc37ca 100644 --- a/advisories/unreviewed/2024/12/GHSA-fq6h-wgjw-ffm5/GHSA-fq6h-wgjw-ffm5.json +++ b/advisories/unreviewed/2024/12/GHSA-fq6h-wgjw-ffm5/GHSA-fq6h-wgjw-ffm5.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-77" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/12/GHSA-fv9m-mjgf-hv39/GHSA-fv9m-mjgf-hv39.json b/advisories/unreviewed/2024/12/GHSA-fv9m-mjgf-hv39/GHSA-fv9m-mjgf-hv39.json new file mode 100644 index 00000000000..c2896678fd5 --- /dev/null +++ b/advisories/unreviewed/2024/12/GHSA-fv9m-mjgf-hv39/GHSA-fv9m-mjgf-hv39.json @@ -0,0 +1,34 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fv9m-mjgf-hv39", + "modified": "2024-12-06T21:30:39Z", + "published": "2024-12-06T21:30:39Z", + "aliases": [ + "CVE-2024-0139" + ], + "details": "NVIDIA Base Command Manager and Bright Cluster Manager for Linux contain an insecure temporary file vulnerability. A successful exploit of this vulnerability might lead to denial of service.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-0139" + }, + { + "type": "WEB", + "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5600" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-12-06T20:15:23Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/12/GHSA-hf8v-3vx8-mr3v/GHSA-hf8v-3vx8-mr3v.json b/advisories/unreviewed/2024/12/GHSA-hf8v-3vx8-mr3v/GHSA-hf8v-3vx8-mr3v.json index 208c7f9172e..e2b6826fe81 100644 --- a/advisories/unreviewed/2024/12/GHSA-hf8v-3vx8-mr3v/GHSA-hf8v-3vx8-mr3v.json +++ b/advisories/unreviewed/2024/12/GHSA-hf8v-3vx8-mr3v/GHSA-hf8v-3vx8-mr3v.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-hf8v-3vx8-mr3v", - "modified": "2024-12-06T00:31:47Z", + "modified": "2024-12-06T21:30:38Z", "published": "2024-12-06T00:31:47Z", "aliases": [ "CVE-2024-30963" ], "details": "Buffer Overflow vulnerability in Open Robotics Robotic Operating System 2 (ROS2) navigation2- ROS2-humble and navigation 2-humble allows a local attacker to execute arbitrary code via a crafted script.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-94" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-12-05T23:15:05Z" diff --git a/advisories/unreviewed/2024/12/GHSA-hwrp-4j27-pg8j/GHSA-hwrp-4j27-pg8j.json b/advisories/unreviewed/2024/12/GHSA-hwrp-4j27-pg8j/GHSA-hwrp-4j27-pg8j.json new file mode 100644 index 00000000000..af89924d2c4 --- /dev/null +++ b/advisories/unreviewed/2024/12/GHSA-hwrp-4j27-pg8j/GHSA-hwrp-4j27-pg8j.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hwrp-4j27-pg8j", + "modified": "2024-12-06T21:30:39Z", + "published": "2024-12-06T21:30:39Z", + "aliases": [ + "CVE-2024-0130" + ], + "details": "NVIDIA UFM Enterprise, UFM Appliance, and UFM CyberAI contain a vulnerability where an attacker can cause an improper authentication issue by sending a malformed request through the Ethernet management interface. A successful exploit of this vulnerability might lead to escalation of privileges, data tampering, denial of service, and information disclosure.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-0130" + }, + { + "type": "WEB", + "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5584" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-287" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-12-06T20:15:23Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/12/GHSA-hxm9-p924-7mqf/GHSA-hxm9-p924-7mqf.json b/advisories/unreviewed/2024/12/GHSA-hxm9-p924-7mqf/GHSA-hxm9-p924-7mqf.json new file mode 100644 index 00000000000..93489731a03 --- /dev/null +++ b/advisories/unreviewed/2024/12/GHSA-hxm9-p924-7mqf/GHSA-hxm9-p924-7mqf.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hxm9-p924-7mqf", + "modified": "2024-12-06T21:30:39Z", + "published": "2024-12-06T21:30:39Z", + "aliases": [ + "CVE-2024-12326" + ], + "details": "Jirafeau normally prevents browser preview for SVG files due to the possibility that manipulated SVG files could be exploited for cross site scripting. This was done by storing the MIME type of a file and preventing the browser preview for MIME type image/svg+xml. This issue was first reported in CVE-2022-30110. However, it was still possible to do a browser preview of a SVG file by sending a manipulated MIME type during the upload, where the case of any letter in image/svg+xml had been changed (like image/svg+XML). The check for image/svg+xml has been changed to be case insensitive.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12326" + }, + { + "type": "WEB", + "url": "https://gitlab.com/jirafeau/Jirafeau/-/commit/6cfca8753d54e2025c6020b2af32529e25f58c66" + }, + { + "type": "WEB", + "url": "https://www.cve.org/CVERecord?id=CVE-2022-30110" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-12-06T21:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/12/GHSA-jg4h-m674-ch4q/GHSA-jg4h-m674-ch4q.json b/advisories/unreviewed/2024/12/GHSA-jg4h-m674-ch4q/GHSA-jg4h-m674-ch4q.json index abafabc4fb3..1c8605e4d75 100644 --- a/advisories/unreviewed/2024/12/GHSA-jg4h-m674-ch4q/GHSA-jg4h-m674-ch4q.json +++ b/advisories/unreviewed/2024/12/GHSA-jg4h-m674-ch4q/GHSA-jg4h-m674-ch4q.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-jg4h-m674-ch4q", - "modified": "2024-12-06T00:31:48Z", + "modified": "2024-12-06T21:30:38Z", "published": "2024-12-06T00:31:48Z", "aliases": [ "CVE-2024-37863" ], "details": "Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a buffer overflow via the nav2_amcl process. This vulnerability is triggered via sending a crafted .yaml file.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -28,8 +33,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-120" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-12-05T23:15:05Z" diff --git a/advisories/unreviewed/2024/12/GHSA-mcxm-6p6m-w57g/GHSA-mcxm-6p6m-w57g.json b/advisories/unreviewed/2024/12/GHSA-mcxm-6p6m-w57g/GHSA-mcxm-6p6m-w57g.json new file mode 100644 index 00000000000..2c8133952c1 --- /dev/null +++ b/advisories/unreviewed/2024/12/GHSA-mcxm-6p6m-w57g/GHSA-mcxm-6p6m-w57g.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mcxm-6p6m-w57g", + "modified": "2024-12-06T21:30:40Z", + "published": "2024-12-06T21:30:40Z", + "aliases": [ + "CVE-2024-7875" + ], + "details": "Tungsten Automation (Kofax) TotalAgility in versions all through 7.9.0.25.0.954 is vulnerable to a Reflected XSS attacks through mfpScreenResolutionWidth parameter manipulation in a form sent to an endpoint /TotalAgility/Kofax/BrowserDevice/ScanFront.aspx\nThis allows for injection of a malicious JavaScript code, leading to a possible information leak. \nExploitation is possible only while using POST requests and also requires retrieving/generating a proper VIEWSTATE parameter, which limits the risk of a successful attack.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-7875" + }, + { + "type": "WEB", + "url": "https://cert.pl/en/posts/2024/12/CVE-2024-7874" + }, + { + "type": "WEB", + "url": "https://cert.pl/posts/2024/12/CVE-2024-7874" + }, + { + "type": "WEB", + "url": "https://www.tungstenautomation.com/products/totalagility" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-12-06T21:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/12/GHSA-ph84-rcj2-fxxm/GHSA-ph84-rcj2-fxxm.json b/advisories/unreviewed/2024/12/GHSA-ph84-rcj2-fxxm/GHSA-ph84-rcj2-fxxm.json index e4aab6229cb..76070b79536 100644 --- a/advisories/unreviewed/2024/12/GHSA-ph84-rcj2-fxxm/GHSA-ph84-rcj2-fxxm.json +++ b/advisories/unreviewed/2024/12/GHSA-ph84-rcj2-fxxm/GHSA-ph84-rcj2-fxxm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-ph84-rcj2-fxxm", - "modified": "2024-12-06T18:30:45Z", + "modified": "2024-12-06T21:30:39Z", "published": "2024-12-06T18:30:45Z", "aliases": [ "CVE-2024-12254" @@ -38,6 +38,10 @@ { "type": "WEB", "url": "https://mail.python.org/archives/list/security-announce@python.org/thread/H4O3UBAOAQQXGT4RE3E4XQYR5XLROORB" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2024/12/06/1" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/12/GHSA-q8f9-449c-rf6m/GHSA-q8f9-449c-rf6m.json b/advisories/unreviewed/2024/12/GHSA-q8f9-449c-rf6m/GHSA-q8f9-449c-rf6m.json new file mode 100644 index 00000000000..51dd8c17ee5 --- /dev/null +++ b/advisories/unreviewed/2024/12/GHSA-q8f9-449c-rf6m/GHSA-q8f9-449c-rf6m.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q8f9-449c-rf6m", + "modified": "2024-12-06T21:30:39Z", + "published": "2024-12-06T21:30:39Z", + "aliases": [ + "CVE-2024-48874" + ], + "details": "Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x could give attackers the ability to force Ruijie's proxy servers to perform any request the attackers choose. Using this, attackers could access internal services used by Ruijie and their internal cloud infrastructure via AWS cloud metadata services.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48874" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-24-338-01" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-918" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-12-06T19:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/12/GHSA-v6rx-x9wm-hrjj/GHSA-v6rx-x9wm-hrjj.json b/advisories/unreviewed/2024/12/GHSA-v6rx-x9wm-hrjj/GHSA-v6rx-x9wm-hrjj.json index 17c2de066f7..bf6e9d442db 100644 --- a/advisories/unreviewed/2024/12/GHSA-v6rx-x9wm-hrjj/GHSA-v6rx-x9wm-hrjj.json +++ b/advisories/unreviewed/2024/12/GHSA-v6rx-x9wm-hrjj/GHSA-v6rx-x9wm-hrjj.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-v6rx-x9wm-hrjj", - "modified": "2024-12-06T00:31:47Z", + "modified": "2024-12-06T21:30:38Z", "published": "2024-12-06T00:31:47Z", "aliases": [ "CVE-2024-30964" ], "details": "Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 (ROS2) navigation2- ROS2-humble and navigation 2-humble allows a local attacker to execute arbitrary code via the initial_pose_sub thread created by nav2_bt_navigator", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -28,8 +33,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-94" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-12-05T23:15:05Z" diff --git a/advisories/unreviewed/2024/12/GHSA-vq59-jw46-8pm8/GHSA-vq59-jw46-8pm8.json b/advisories/unreviewed/2024/12/GHSA-vq59-jw46-8pm8/GHSA-vq59-jw46-8pm8.json new file mode 100644 index 00000000000..dccf789a826 --- /dev/null +++ b/advisories/unreviewed/2024/12/GHSA-vq59-jw46-8pm8/GHSA-vq59-jw46-8pm8.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vq59-jw46-8pm8", + "modified": "2024-12-06T21:30:39Z", + "published": "2024-12-06T21:30:39Z", + "aliases": [ + "CVE-2024-45722" + ], + "details": "Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x uses weak credential mechanism that could allow an attacker to easily calculate MQTT credentials.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45722" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-24-338-01" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-1391" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-12-06T19:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/12/GHSA-wx98-pmv5-4pf5/GHSA-wx98-pmv5-4pf5.json b/advisories/unreviewed/2024/12/GHSA-wx98-pmv5-4pf5/GHSA-wx98-pmv5-4pf5.json index e2698738be1..2eb3ffb551e 100644 --- a/advisories/unreviewed/2024/12/GHSA-wx98-pmv5-4pf5/GHSA-wx98-pmv5-4pf5.json +++ b/advisories/unreviewed/2024/12/GHSA-wx98-pmv5-4pf5/GHSA-wx98-pmv5-4pf5.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-wx98-pmv5-4pf5", - "modified": "2024-12-06T00:31:48Z", + "modified": "2024-12-06T21:30:38Z", "published": "2024-12-06T00:31:48Z", "aliases": [ "CVE-2024-38910" ], "details": "Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble version was discovered to contain a use-after-free in the nav2_amcl process. This vulnerability is triggered via sending a request to change dynamic parameters.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -28,8 +33,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-416" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-12-05T23:15:06Z" diff --git a/advisories/unreviewed/2024/12/GHSA-xg7f-gpc9-59gg/GHSA-xg7f-gpc9-59gg.json b/advisories/unreviewed/2024/12/GHSA-xg7f-gpc9-59gg/GHSA-xg7f-gpc9-59gg.json new file mode 100644 index 00000000000..1a78306a9d3 --- /dev/null +++ b/advisories/unreviewed/2024/12/GHSA-xg7f-gpc9-59gg/GHSA-xg7f-gpc9-59gg.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xg7f-gpc9-59gg", + "modified": "2024-12-06T21:30:40Z", + "published": "2024-12-06T21:30:40Z", + "aliases": [ + "CVE-2024-7874" + ], + "details": "Tungsten Automation (Kofax) TotalAgility in versions all through 7.9.0.25.0.954 is vulnerable to a Reflected XSS attacks through mfpConnectionId parameter manipulation in a form sent to endpoints \"/TotalAgility/Kofax/BrowserDevice/ScanFront.aspx\" \nand \"/TotalAgility/Kofax/BrowserDevice/ScanFrontDebug.aspx\"\nThis allows for injection of a malicious JavaScript code, leading to a possible information leak. \nExploitation is possible only while using POST requests and also requires retrieving/generating a proper VIEWSTATE parameter, which limits the risk of a successful attack.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-7874" + }, + { + "type": "WEB", + "url": "https://cert.pl/en/posts/2024/12/CVE-2024-7874" + }, + { + "type": "WEB", + "url": "https://cert.pl/posts/2024/12/CVE-2024-7874" + }, + { + "type": "WEB", + "url": "https://www.tungstenautomation.com/products/totalagility" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-12-06T21:15:09Z" + } +} \ No newline at end of file