diff --git a/advisories/github-reviewed/2022/05/GHSA-m25m-5778-fm22/GHSA-m25m-5778-fm22.json b/advisories/github-reviewed/2022/05/GHSA-m25m-5778-fm22/GHSA-m25m-5778-fm22.json index 812150515d8..55a9d8f4d6d 100644 --- a/advisories/github-reviewed/2022/05/GHSA-m25m-5778-fm22/GHSA-m25m-5778-fm22.json +++ b/advisories/github-reviewed/2022/05/GHSA-m25m-5778-fm22/GHSA-m25m-5778-fm22.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-m25m-5778-fm22", - "modified": "2024-02-01T21:46:14Z", + "modified": "2024-07-05T21:29:36Z", "published": "2022-05-24T17:16:52Z", "aliases": [ "CVE-2020-12459" @@ -60,6 +60,10 @@ "type": "WEB", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1829724" }, + { + "type": "ADVISORY", + "url": "https://github.com/advisories/GHSA-m25m-5778-fm22" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/CTQCKJZZYXMCSHJFZZ3YXEO5NUBANGZS" diff --git a/advisories/github-reviewed/2024/05/GHSA-75r6-6jg8-pfcq/GHSA-75r6-6jg8-pfcq.json b/advisories/github-reviewed/2024/05/GHSA-75r6-6jg8-pfcq/GHSA-75r6-6jg8-pfcq.json index d9df3410066..943d2a4280e 100644 --- a/advisories/github-reviewed/2024/05/GHSA-75r6-6jg8-pfcq/GHSA-75r6-6jg8-pfcq.json +++ b/advisories/github-reviewed/2024/05/GHSA-75r6-6jg8-pfcq/GHSA-75r6-6jg8-pfcq.json @@ -1,13 +1,13 @@ { "schema_version": "1.4.0", "id": "GHSA-75r6-6jg8-pfcq", - "modified": "2024-05-14T20:01:34Z", + "modified": "2024-07-05T21:30:36Z", "published": "2024-05-13T14:10:08Z", "aliases": [ "CVE-2024-34079" ], "summary": "octo-sts vulnerable to unauthenticated attacker causing unbounded CPU and memory usage", - "details": "### Impact\nThis vulnerability can spike the resource utilization of the STS service, and combined with a significant traffic volume could potentially lead to a denial of service.\n\n### Patches\nThis vulnerability existed in the repository at HEAD, we will cut a 0.1.0 release with the fix.\n\n### Workarounds\nNone\n\n### References\nNone\n", + "details": "### Impact\nThis vulnerability can spike the resource utilization of the STS service, and combined with a significant traffic volume could potentially lead to a denial of service.\n\n### Patches\nThis vulnerability existed in the repository at HEAD, we will cut a 0.1.0 release with the fix. \n\n### Workarounds\nNone\n\n### References\nNone\n", "severity": [ { "type": "CVSS_V3",