Publish Advisories

GHSA-m25m-5778-fm22
GHSA-75r6-6jg8-pfcq
This commit is contained in:
advisory-database[bot]
2024-07-05 21:31:32 +00:00
parent 898144ef92
commit 89bb0e137a
2 changed files with 7 additions and 3 deletions
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-m25m-5778-fm22",
"modified": "2024-02-01T21:46:14Z",
"modified": "2024-07-05T21:29:36Z",
"published": "2022-05-24T17:16:52Z",
"aliases": [
"CVE-2020-12459"
@@ -60,6 +60,10 @@
"type": "WEB",
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=1829724"
},
{
"type": "ADVISORY",
"url": "https://github.com/advisories/GHSA-m25m-5778-fm22"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/CTQCKJZZYXMCSHJFZZ3YXEO5NUBANGZS"
@@ -1,13 +1,13 @@
{
"schema_version": "1.4.0",
"id": "GHSA-75r6-6jg8-pfcq",
"modified": "2024-05-14T20:01:34Z",
"modified": "2024-07-05T21:30:36Z",
"published": "2024-05-13T14:10:08Z",
"aliases": [
"CVE-2024-34079"
],
"summary": "octo-sts vulnerable to unauthenticated attacker causing unbounded CPU and memory usage",
"details": "### Impact\nThis vulnerability can spike the resource utilization of the STS service, and combined with a significant traffic volume could potentially lead to a denial of service.\n\n### Patches\nThis vulnerability existed in the repository at HEAD, we will cut a 0.1.0 release with the fix.\n\n### Workarounds\nNone\n\n### References\nNone\n",
"details": "### Impact\nThis vulnerability can spike the resource utilization of the STS service, and combined with a significant traffic volume could potentially lead to a denial of service.\n\n### Patches\nThis vulnerability existed in the repository at HEAD, we will cut a 0.1.0 release with the fix. \n\n### Workarounds\nNone\n\n### References\nNone\n",
"severity": [
{
"type": "CVSS_V3",