From 98e4226c19d858f248ce47e22af93b9aebdf8cbf Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Mon, 12 May 2025 21:32:12 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-m864-j4mc-jwwx.json | 2 +- .../GHSA-f43j-xw4p-q9wr.json | 6 ++- .../GHSA-p844-j7rx-qqm7.json | 4 +- .../GHSA-27rv-f8p8-59gg.json | 15 ++++-- .../GHSA-2jpv-mgvf-9659.json | 15 ++++-- .../GHSA-2p2c-qgqr-9ghc.json | 15 ++++-- .../GHSA-335x-9j96-mxcr.json | 15 ++++-- .../GHSA-6xc5-7hvv-v7jc.json | 15 ++++-- .../GHSA-76pr-h99m-q4fj.json | 15 ++++-- .../GHSA-95jq-x6q9-c9cq.json | 15 ++++-- .../GHSA-fw4j-88v3-6hfw.json | 15 ++++-- .../GHSA-gh9h-qjxh-2mh7.json | 15 ++++-- .../GHSA-ghv4-3pw7-86rj.json | 15 ++++-- .../GHSA-gr8g-fg7p-9238.json | 15 ++++-- .../GHSA-h3hv-fpf3-c5jm.json | 11 +++-- .../GHSA-hjv5-8xv5-vmfp.json | 15 ++++-- .../GHSA-hxcf-7gwm-65p8.json | 15 ++++-- .../GHSA-qvgm-cw57-rm8q.json | 15 ++++-- .../GHSA-x56w-x8rv-273m.json | 15 ++++-- .../GHSA-j7g6-76w3-j7qf.json | 3 +- .../GHSA-22mj-r7hq-f9h2.json | 6 ++- .../GHSA-3pq2-h22c-p37g.json | 3 +- .../GHSA-42jq-cg85-cj5g.json | 3 +- .../GHSA-477g-5ghr-h8c5.json | 3 +- .../GHSA-4jgj-9c7f-7hvv.json | 3 +- .../GHSA-4jh7-c2vv-7qf2.json | 3 +- .../GHSA-4jwx-pg4r-8w69.json | 3 +- .../GHSA-53vj-jg5c-244w.json | 3 +- .../GHSA-65hw-c9g5-r8mm.json | 3 +- .../GHSA-6rf5-gh7p-5vg7.json | 1 + .../GHSA-77gx-3fxf-6gxj.json | 3 +- .../GHSA-95pf-9whm-h8rm.json | 3 +- .../GHSA-c5cc-gmqf-mh5p.json | 3 +- .../GHSA-cpp9-4wg8-29gj.json | 3 +- .../GHSA-fhc2-8475-j2fm.json | 3 +- .../GHSA-hhrg-ww69-4cxj.json | 6 ++- .../GHSA-jgvv-fw39-8435.json | 6 ++- .../GHSA-jxcr-pjg6-v566.json | 3 +- .../GHSA-pfxp-h2rx-w8c2.json | 2 +- .../GHSA-qmw6-m4m8-m6wp.json | 3 +- .../GHSA-qvv4-97q4-jq42.json | 3 +- .../GHSA-rhjm-ww6w-hrx2.json | 5 +- .../GHSA-x8vj-hjmm-529g.json | 5 +- .../GHSA-27rh-f3qh-3mf4.json | 15 ++++-- .../GHSA-2qg3-px2c-m64g.json | 33 +++++++++++++ .../GHSA-3g23-7g3r-898j.json | 2 +- .../GHSA-4pgh-326f-32p3.json | 15 ++++-- .../GHSA-6895-x6gp-m725.json | 15 ++++-- .../GHSA-6mp7-r3w8-3vrm.json | 15 ++++-- .../GHSA-6rc8-h6xq-v545.json | 15 ++++-- .../GHSA-7vx7-qjwv-wcrm.json | 15 ++++-- .../GHSA-8966-rh6p-j7h4.json | 15 ++++-- .../GHSA-cmjf-q672-wjj5.json | 36 ++++++++++++++ .../GHSA-fq8g-w74w-m345.json | 3 +- .../GHSA-fqr4-2vmh-phgq.json | 15 ++++-- .../GHSA-g4cf-3pjw-w4xj.json | 15 ++++-- .../GHSA-g76q-72wv-pxqq.json | 48 +++++++++++++++++++ .../GHSA-ggfc-mrvr-g693.json | 2 +- .../GHSA-gv6p-p4mw-6rjj.json | 3 +- .../GHSA-gxrr-m392-473j.json | 3 +- .../GHSA-jm94-7488-jjfw.json | 15 ++++-- .../GHSA-mf3m-m2fx-pq76.json | 3 +- .../GHSA-mqmq-2p8r-q32f.json | 6 ++- .../GHSA-pq7v-55v9-vxqf.json | 3 +- .../GHSA-pqpc-g4m5-385m.json | 3 +- .../GHSA-qhcg-w878-wwxf.json | 15 ++++-- .../GHSA-qpff-5v24-gq8p.json | 15 ++++-- .../GHSA-r2rx-5q74-ppjp.json | 36 ++++++++++++++ .../GHSA-r6rh-c775-h225.json | 48 +++++++++++++++++++ .../GHSA-r9hp-mj25-9rxr.json | 15 ++++-- .../GHSA-vw7p-rwg9-7mrq.json | 48 +++++++++++++++++++ .../GHSA-wmr9-84fj-r9j8.json | 15 ++++-- .../GHSA-wx5q-27xg-gppc.json | 3 +- .../GHSA-xgfh-h2p4-f7v7.json | 15 ++++-- 74 files changed, 672 insertions(+), 163 deletions(-) create mode 100644 advisories/unreviewed/2025/05/GHSA-2qg3-px2c-m64g/GHSA-2qg3-px2c-m64g.json create mode 100644 advisories/unreviewed/2025/05/GHSA-cmjf-q672-wjj5/GHSA-cmjf-q672-wjj5.json create mode 100644 advisories/unreviewed/2025/05/GHSA-g76q-72wv-pxqq/GHSA-g76q-72wv-pxqq.json create mode 100644 advisories/unreviewed/2025/05/GHSA-r2rx-5q74-ppjp/GHSA-r2rx-5q74-ppjp.json create mode 100644 advisories/unreviewed/2025/05/GHSA-r6rh-c775-h225/GHSA-r6rh-c775-h225.json create mode 100644 advisories/unreviewed/2025/05/GHSA-vw7p-rwg9-7mrq/GHSA-vw7p-rwg9-7mrq.json diff --git a/advisories/unreviewed/2022/10/GHSA-m864-j4mc-jwwx/GHSA-m864-j4mc-jwwx.json b/advisories/unreviewed/2022/10/GHSA-m864-j4mc-jwwx/GHSA-m864-j4mc-jwwx.json index 1d1b5ed4e59..f36718f6a0c 100644 --- a/advisories/unreviewed/2022/10/GHSA-m864-j4mc-jwwx/GHSA-m864-j4mc-jwwx.json +++ b/advisories/unreviewed/2022/10/GHSA-m864-j4mc-jwwx/GHSA-m864-j4mc-jwwx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-m864-j4mc-jwwx", - "modified": "2022-10-28T19:00:30Z", + "modified": "2025-05-12T21:30:54Z", "published": "2022-10-28T19:00:30Z", "aliases": [ "CVE-2021-37782" diff --git a/advisories/unreviewed/2024/04/GHSA-f43j-xw4p-q9wr/GHSA-f43j-xw4p-q9wr.json b/advisories/unreviewed/2024/04/GHSA-f43j-xw4p-q9wr/GHSA-f43j-xw4p-q9wr.json index f62cd18b14e..f7e91532c9b 100644 --- a/advisories/unreviewed/2024/04/GHSA-f43j-xw4p-q9wr/GHSA-f43j-xw4p-q9wr.json +++ b/advisories/unreviewed/2024/04/GHSA-f43j-xw4p-q9wr/GHSA-f43j-xw4p-q9wr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-f43j-xw4p-q9wr", - "modified": "2024-08-01T15:31:38Z", + "modified": "2025-05-12T21:30:54Z", "published": "2024-04-13T06:30:48Z", "aliases": [ "CVE-2024-2583" @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-p844-j7rx-qqm7/GHSA-p844-j7rx-qqm7.json b/advisories/unreviewed/2024/04/GHSA-p844-j7rx-qqm7/GHSA-p844-j7rx-qqm7.json index 62bdd97df5d..f4bd8cd4e83 100644 --- a/advisories/unreviewed/2024/04/GHSA-p844-j7rx-qqm7/GHSA-p844-j7rx-qqm7.json +++ b/advisories/unreviewed/2024/04/GHSA-p844-j7rx-qqm7/GHSA-p844-j7rx-qqm7.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-p844-j7rx-qqm7", - "modified": "2024-04-15T09:30:54Z", + "modified": "2025-05-12T21:30:54Z", "published": "2024-04-15T09:30:54Z", "aliases": [ "CVE-2024-32127" ], - "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Markus Seyer Find Duplicates.This issue affects Find Duplicates: from n/a through 1.4.6.\n\n", + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Markus Seyer Find Duplicates.This issue affects Find Duplicates: from n/a through 1.4.6.", "severity": [ { "type": "CVSS_V3", diff --git a/advisories/unreviewed/2024/05/GHSA-27rv-f8p8-59gg/GHSA-27rv-f8p8-59gg.json b/advisories/unreviewed/2024/05/GHSA-27rv-f8p8-59gg/GHSA-27rv-f8p8-59gg.json index 6c2c20ad20e..81cedf8e490 100644 --- a/advisories/unreviewed/2024/05/GHSA-27rv-f8p8-59gg/GHSA-27rv-f8p8-59gg.json +++ b/advisories/unreviewed/2024/05/GHSA-27rv-f8p8-59gg/GHSA-27rv-f8p8-59gg.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-27rv-f8p8-59gg", - "modified": "2024-05-21T15:31:44Z", + "modified": "2025-05-12T21:30:56Z", "published": "2024-05-21T15:31:44Z", "aliases": [ "CVE-2021-47366" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nafs: Fix corruption in reads at fpos 2G-4G from an OpenAFS server\n\nAFS-3 has two data fetch RPC variants, FS.FetchData and FS.FetchData64, and\nLinux's afs client switches between them when talking to a non-YFS server\nif the read size, the file position or the sum of the two have the upper 32\nbits set of the 64-bit value.\n\nThis is a problem, however, since the file position and length fields of\nFS.FetchData are *signed* 32-bit values.\n\nFix this by capturing the capability bits obtained from the fileserver when\nit's sent an FS.GetCapabilities RPC, rather than just discarding them, and\nthen picking out the VICED_CAPABILITY_64BITFILES flag. This can then be\nused to decide whether to use FS.FetchData or FS.FetchData64 - and also\nFS.StoreData or FS.StoreData64 - rather than using upper_32_bits() to\nswitch on the parameter values.\n\nThis capabilities flag could also be used to limit the maximum size of the\nfile, but all servers must be checked for that.\n\nNote that the issue does not exist with FS.StoreData - that uses *unsigned*\n32-bit values. It's also not a problem with Auristor servers as its\nYFS.FetchData64 op uses unsigned 64-bit values.\n\nThis can be tested by cloning a git repo through an OpenAFS client to an\nOpenAFS server and then doing \"git status\" on it from a Linux afs\nclient[1]. Provided the clone has a pack file that's in the 2G-4G range,\nthe git status will show errors like:\n\n\terror: packfile .git/objects/pack/pack-5e813c51d12b6847bbc0fcd97c2bca66da50079c.pack does not match index\n\terror: packfile .git/objects/pack/pack-5e813c51d12b6847bbc0fcd97c2bca66da50079c.pack does not match index\n\nThis can be observed in the server's FileLog with something like the\nfollowing appearing:\n\nSun Aug 29 19:31:39 2021 SRXAFS_FetchData, Fid = 2303380852.491776.3263114, Host 192.168.11.201:7001, Id 1001\nSun Aug 29 19:31:39 2021 CheckRights: len=0, for host=192.168.11.201:7001\nSun Aug 29 19:31:39 2021 FetchData_RXStyle: Pos 18446744071815340032, Len 3154\nSun Aug 29 19:31:39 2021 FetchData_RXStyle: file size 2400758866\n...\nSun Aug 29 19:31:40 2021 SRXAFS_FetchData returns 5\n\nNote the file position of 18446744071815340032. This is the requested file\nposition sign-extended.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-787" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:22Z" diff --git a/advisories/unreviewed/2024/05/GHSA-2jpv-mgvf-9659/GHSA-2jpv-mgvf-9659.json b/advisories/unreviewed/2024/05/GHSA-2jpv-mgvf-9659/GHSA-2jpv-mgvf-9659.json index 312761adefa..e487fa8f0a5 100644 --- a/advisories/unreviewed/2024/05/GHSA-2jpv-mgvf-9659/GHSA-2jpv-mgvf-9659.json +++ b/advisories/unreviewed/2024/05/GHSA-2jpv-mgvf-9659/GHSA-2jpv-mgvf-9659.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-2jpv-mgvf-9659", - "modified": "2024-05-21T15:31:43Z", + "modified": "2025-05-12T21:30:55Z", "published": "2024-05-21T15:31:43Z", "aliases": [ "CVE-2021-47351" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nubifs: Fix races between xattr_{set|get} and listxattr operations\n\nUBIFS may occur some problems with concurrent xattr_{set|get} and\nlistxattr operations, such as assertion failure, memory corruption,\nstale xattr value[1].\n\nFix it by importing a new rw-lock in @ubifs_inode to serilize write\noperations on xattr, concurrent read operations are still effective,\njust like ext4.\n\n[1] https://lore.kernel.org/linux-mtd/20200630130438.141649-1-houtao1@huawei.com", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -36,8 +41,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-617" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:21Z" diff --git a/advisories/unreviewed/2024/05/GHSA-2p2c-qgqr-9ghc/GHSA-2p2c-qgqr-9ghc.json b/advisories/unreviewed/2024/05/GHSA-2p2c-qgqr-9ghc/GHSA-2p2c-qgqr-9ghc.json index f7b3a96819b..d3e17ff8d3e 100644 --- a/advisories/unreviewed/2024/05/GHSA-2p2c-qgqr-9ghc/GHSA-2p2c-qgqr-9ghc.json +++ b/advisories/unreviewed/2024/05/GHSA-2p2c-qgqr-9ghc/GHSA-2p2c-qgqr-9ghc.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-2p2c-qgqr-9ghc", - "modified": "2024-05-21T15:31:42Z", + "modified": "2025-05-12T21:30:55Z", "published": "2024-05-21T15:31:42Z", "aliases": [ "CVE-2021-47317" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\npowerpc/bpf: Fix detecting BPF atomic instructions\n\nCommit 91c960b0056672 (\"bpf: Rename BPF_XADD and prepare to encode other\natomics in .imm\") converted BPF_XADD to BPF_ATOMIC and added a way to\ndistinguish instructions based on the immediate field. Existing JIT\nimplementations were updated to check for the immediate field and to\nreject programs utilizing anything more than BPF_ADD (such as BPF_FETCH)\nin the immediate field.\n\nHowever, the check added to powerpc64 JIT did not look at the correct\nBPF instruction. Due to this, such programs would be accepted and\nincorrectly JIT'ed resulting in soft lockups, as seen with the atomic\nbounds test. Fix this by looking at the correct immediate value.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" + } + ], "affected": [], "references": [ { @@ -28,8 +33,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-667" + ], + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:19Z" diff --git a/advisories/unreviewed/2024/05/GHSA-335x-9j96-mxcr/GHSA-335x-9j96-mxcr.json b/advisories/unreviewed/2024/05/GHSA-335x-9j96-mxcr/GHSA-335x-9j96-mxcr.json index f232a198bc3..5176f185ac8 100644 --- a/advisories/unreviewed/2024/05/GHSA-335x-9j96-mxcr/GHSA-335x-9j96-mxcr.json +++ b/advisories/unreviewed/2024/05/GHSA-335x-9j96-mxcr/GHSA-335x-9j96-mxcr.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-335x-9j96-mxcr", - "modified": "2024-05-21T15:31:44Z", + "modified": "2025-05-12T21:30:56Z", "published": "2024-05-21T15:31:44Z", "aliases": [ "CVE-2021-47374" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndma-debug: prevent an error message from causing runtime problems\n\nFor some drivers, that use the DMA API. This error message can be reached\nseveral millions of times per second, causing spam to the kernel's printk\nbuffer and bringing the CPU usage up to 100% (so, it should be rate\nlimited). However, since there is at least one driver that is in the\nmainline and suffers from the error condition, it is more useful to\nerr_printk() here instead of just rate limiting the error message (in hopes\nthat it will make it easier for other drivers that suffer from this issue\nto be spotted).", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-770" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:23Z" diff --git a/advisories/unreviewed/2024/05/GHSA-6xc5-7hvv-v7jc/GHSA-6xc5-7hvv-v7jc.json b/advisories/unreviewed/2024/05/GHSA-6xc5-7hvv-v7jc/GHSA-6xc5-7hvv-v7jc.json index 2dcc1f311eb..2fce9d38db7 100644 --- a/advisories/unreviewed/2024/05/GHSA-6xc5-7hvv-v7jc/GHSA-6xc5-7hvv-v7jc.json +++ b/advisories/unreviewed/2024/05/GHSA-6xc5-7hvv-v7jc/GHSA-6xc5-7hvv-v7jc.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-6xc5-7hvv-v7jc", - "modified": "2024-05-21T15:31:44Z", + "modified": "2025-05-12T21:30:56Z", "published": "2024-05-21T15:31:44Z", "aliases": [ "CVE-2021-47370" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmptcp: ensure tx skbs always have the MPTCP ext\n\nDue to signed/unsigned comparison, the expression:\n\n\tinfo->size_goal - skb->len > 0\n\nevaluates to true when the size goal is smaller than the\nskb size. That results in lack of tx cache refill, so that\nthe skb allocated by the core TCP code lacks the required\nMPTCP skb extensions.\n\nDue to the above, syzbot is able to trigger the following WARN_ON():\n\nWARNING: CPU: 1 PID: 810 at net/mptcp/protocol.c:1366 mptcp_sendmsg_frag+0x1362/0x1bc0 net/mptcp/protocol.c:1366\nModules linked in:\nCPU: 1 PID: 810 Comm: syz-executor.4 Not tainted 5.14.0-syzkaller #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 01/01/2011\nRIP: 0010:mptcp_sendmsg_frag+0x1362/0x1bc0 net/mptcp/protocol.c:1366\nCode: ff 4c 8b 74 24 50 48 8b 5c 24 58 e9 0f fb ff ff e8 13 44 8b f8 4c 89 e7 45 31 ed e8 98 57 2e fe e9 81 f4 ff ff e8 fe 43 8b f8 <0f> 0b 41 bd ea ff ff ff e9 6f f4 ff ff 4c 89 e7 e8 b9 8e d2 f8 e9\nRSP: 0018:ffffc9000531f6a0 EFLAGS: 00010216\nRAX: 000000000000697f RBX: 0000000000000000 RCX: ffffc90012107000\nRDX: 0000000000040000 RSI: ffffffff88eac9e2 RDI: 0000000000000003\nRBP: ffff888078b15780 R08: 0000000000000000 R09: 0000000000000000\nR10: ffffffff88eac017 R11: 0000000000000000 R12: ffff88801de0a280\nR13: 0000000000006b58 R14: ffff888066278280 R15: ffff88803c2fe9c0\nFS: 00007fd9f866e700(0000) GS:ffff8880b9d00000(0000) knlGS:0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: 00007faebcb2f718 CR3: 00000000267cb000 CR4: 00000000001506e0\nDR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\nDR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\nCall Trace:\n __mptcp_push_pending+0x1fb/0x6b0 net/mptcp/protocol.c:1547\n mptcp_release_cb+0xfe/0x210 net/mptcp/protocol.c:3003\n release_sock+0xb4/0x1b0 net/core/sock.c:3206\n sk_stream_wait_memory+0x604/0xed0 net/core/stream.c:145\n mptcp_sendmsg+0xc39/0x1bc0 net/mptcp/protocol.c:1749\n inet6_sendmsg+0x99/0xe0 net/ipv6/af_inet6.c:643\n sock_sendmsg_nosec net/socket.c:704 [inline]\n sock_sendmsg+0xcf/0x120 net/socket.c:724\n sock_write_iter+0x2a0/0x3e0 net/socket.c:1057\n call_write_iter include/linux/fs.h:2163 [inline]\n new_sync_write+0x40b/0x640 fs/read_write.c:507\n vfs_write+0x7cf/0xae0 fs/read_write.c:594\n ksys_write+0x1ee/0x250 fs/read_write.c:647\n do_syscall_x64 arch/x86/entry/common.c:50 [inline]\n do_syscall_64+0x35/0xb0 arch/x86/entry/common.c:80\n entry_SYSCALL_64_after_hwframe+0x44/0xae\nRIP: 0033:0x4665f9\nCode: ff ff c3 66 2e 0f 1f 84 00 00 00 00 00 0f 1f 40 00 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 bc ff ff ff f7 d8 64 89 01 48\nRSP: 002b:00007fd9f866e188 EFLAGS: 00000246 ORIG_RAX: 0000000000000001\nRAX: ffffffffffffffda RBX: 000000000056c038 RCX: 00000000004665f9\nRDX: 00000000000e7b78 RSI: 0000000020000000 RDI: 0000000000000003\nRBP: 00000000004bfcc4 R08: 0000000000000000 R09: 0000000000000000\nR10: 0000000000000000 R11: 0000000000000246 R12: 000000000056c038\nR13: 0000000000a9fb1f R14: 00007fd9f866e300 R15: 0000000000022000\n\nFix the issue rewriting the relevant expression to avoid\nsign-related problems - note: size_goal is always >= 0.\n\nAdditionally, ensure that the skb in the tx cache always carries\nthe relevant extension.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-697" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:22Z" diff --git a/advisories/unreviewed/2024/05/GHSA-76pr-h99m-q4fj/GHSA-76pr-h99m-q4fj.json b/advisories/unreviewed/2024/05/GHSA-76pr-h99m-q4fj/GHSA-76pr-h99m-q4fj.json index 917d57b1386..839ab49d328 100644 --- a/advisories/unreviewed/2024/05/GHSA-76pr-h99m-q4fj/GHSA-76pr-h99m-q4fj.json +++ b/advisories/unreviewed/2024/05/GHSA-76pr-h99m-q4fj/GHSA-76pr-h99m-q4fj.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-76pr-h99m-q4fj", - "modified": "2024-05-21T15:31:44Z", + "modified": "2025-05-12T21:30:56Z", "published": "2024-05-21T15:31:44Z", "aliases": [ "CVE-2021-47360" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbinder: make sure fd closes complete\n\nDuring BC_FREE_BUFFER processing, the BINDER_TYPE_FDA object\ncleanup may close 1 or more fds. The close operations are\ncompleted using the task work mechanism -- which means the thread\nneeds to return to userspace or the file object may never be\ndereferenced -- which can lead to hung processes.\n\nForce the binder thread back to userspace if an fd is closed during\nBC_FREE_BUFFER handling.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -32,8 +37,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-252" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:22Z" diff --git a/advisories/unreviewed/2024/05/GHSA-95jq-x6q9-c9cq/GHSA-95jq-x6q9-c9cq.json b/advisories/unreviewed/2024/05/GHSA-95jq-x6q9-c9cq/GHSA-95jq-x6q9-c9cq.json index 1756b5b6e5c..c67d6c48438 100644 --- a/advisories/unreviewed/2024/05/GHSA-95jq-x6q9-c9cq/GHSA-95jq-x6q9-c9cq.json +++ b/advisories/unreviewed/2024/05/GHSA-95jq-x6q9-c9cq/GHSA-95jq-x6q9-c9cq.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-95jq-x6q9-c9cq", - "modified": "2024-05-21T15:31:44Z", + "modified": "2025-05-12T21:30:55Z", "published": "2024-05-21T15:31:44Z", "aliases": [ "CVE-2021-47365" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nafs: Fix page leak\n\nThere's a loop in afs_extend_writeback() that adds extra pages to a write\nwe want to make to improve the efficiency of the writeback by making it\nlarger. This loop stops, however, if we hit a page we can't write back\nfrom immediately, but it doesn't get rid of the page ref we speculatively\nacquired.\n\nThis was caused by the removal of the cleanup loop when the code switched\nfrom using find_get_pages_contig() to xarray scanning as the latter only\ngets a single page at a time, not a batch.\n\nFix this by putting the page on a ref on an early break from the loop.\nUnfortunately, we can't just add that page to the pagevec we're employing\nas we'll go through that and add those pages to the RPC call.\n\nThis was found by the generic/074 test. It leaks ~4GiB of RAM each time it\nis run - which can be observed with \"top\".", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-459" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:22Z" diff --git a/advisories/unreviewed/2024/05/GHSA-fw4j-88v3-6hfw/GHSA-fw4j-88v3-6hfw.json b/advisories/unreviewed/2024/05/GHSA-fw4j-88v3-6hfw/GHSA-fw4j-88v3-6hfw.json index a4bd39bebf1..62c08e4eecb 100644 --- a/advisories/unreviewed/2024/05/GHSA-fw4j-88v3-6hfw/GHSA-fw4j-88v3-6hfw.json +++ b/advisories/unreviewed/2024/05/GHSA-fw4j-88v3-6hfw/GHSA-fw4j-88v3-6hfw.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-fw4j-88v3-6hfw", - "modified": "2024-05-21T15:31:42Z", + "modified": "2025-05-12T21:30:55Z", "published": "2024-05-21T15:31:42Z", "aliases": [ "CVE-2021-47305" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndma-buf/sync_file: Don't leak fences on merge failure\n\nEach add_fence() call does a dma_fence_get() on the relevant fence. In\nthe error path, we weren't calling dma_fence_put() so all those fences\ngot leaked. Also, in the krealloc_array failure case, we weren't\nfreeing the fences array. Instead, ensure that i and fences are always\nzero-initialized and dma_fence_put() all the fences and kfree(fences) on\nevery error path.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -40,8 +45,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-617" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:18Z" diff --git a/advisories/unreviewed/2024/05/GHSA-gh9h-qjxh-2mh7/GHSA-gh9h-qjxh-2mh7.json b/advisories/unreviewed/2024/05/GHSA-gh9h-qjxh-2mh7/GHSA-gh9h-qjxh-2mh7.json index 2b67ccb1054..9b364b308f4 100644 --- a/advisories/unreviewed/2024/05/GHSA-gh9h-qjxh-2mh7/GHSA-gh9h-qjxh-2mh7.json +++ b/advisories/unreviewed/2024/05/GHSA-gh9h-qjxh-2mh7/GHSA-gh9h-qjxh-2mh7.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-gh9h-qjxh-2mh7", - "modified": "2024-05-21T15:31:42Z", + "modified": "2025-05-12T21:30:55Z", "published": "2024-05-21T15:31:42Z", "aliases": [ "CVE-2021-47322" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nNFSv4: Fix an Oops in pnfs_mark_request_commit() when doing O_DIRECT\n\nFix an Oopsable condition in pnfs_mark_request_commit() when we're\nputting a set of writes on the commit list to reschedule them after a\nfailed pNFS attempt.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -32,8 +37,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-787" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:19Z" diff --git a/advisories/unreviewed/2024/05/GHSA-ghv4-3pw7-86rj/GHSA-ghv4-3pw7-86rj.json b/advisories/unreviewed/2024/05/GHSA-ghv4-3pw7-86rj/GHSA-ghv4-3pw7-86rj.json index b8240c9ae2d..4a5da1ed025 100644 --- a/advisories/unreviewed/2024/05/GHSA-ghv4-3pw7-86rj/GHSA-ghv4-3pw7-86rj.json +++ b/advisories/unreviewed/2024/05/GHSA-ghv4-3pw7-86rj/GHSA-ghv4-3pw7-86rj.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-ghv4-3pw7-86rj", - "modified": "2024-05-21T15:31:43Z", + "modified": "2025-05-12T21:30:55Z", "published": "2024-05-21T15:31:43Z", "aliases": [ "CVE-2021-47340" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\njfs: fix GPF in diFree\n\nAvoid passing inode with\nJFS_SBI(inode->i_sb)->ipimap == NULL to\ndiFree()[1]. GFP will appear:\n\n\tstruct inode *ipimap = JFS_SBI(ip->i_sb)->ipimap;\n\tstruct inomap *imap = JFS_IP(ipimap)->i_imap;\n\nJFS_IP() will return invalid pointer when ipimap == NULL\n\nCall Trace:\n diFree+0x13d/0x2dc0 fs/jfs/jfs_imap.c:853 [1]\n jfs_evict_inode+0x2c9/0x370 fs/jfs/inode.c:154\n evict+0x2ed/0x750 fs/inode.c:578\n iput_final fs/inode.c:1654 [inline]\n iput.part.0+0x3fe/0x820 fs/inode.c:1680\n iput+0x58/0x70 fs/inode.c:1670", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -52,8 +57,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-476" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:20Z" diff --git a/advisories/unreviewed/2024/05/GHSA-gr8g-fg7p-9238/GHSA-gr8g-fg7p-9238.json b/advisories/unreviewed/2024/05/GHSA-gr8g-fg7p-9238/GHSA-gr8g-fg7p-9238.json index bfaa3d3ab90..dc701621ca8 100644 --- a/advisories/unreviewed/2024/05/GHSA-gr8g-fg7p-9238/GHSA-gr8g-fg7p-9238.json +++ b/advisories/unreviewed/2024/05/GHSA-gr8g-fg7p-9238/GHSA-gr8g-fg7p-9238.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-gr8g-fg7p-9238", - "modified": "2024-05-21T15:31:42Z", + "modified": "2025-05-12T21:30:55Z", "published": "2024-05-21T15:31:42Z", "aliases": [ "CVE-2021-47304" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ntcp: fix tcp_init_transfer() to not reset icsk_ca_initialized\n\nThis commit fixes a bug (found by syzkaller) that could cause spurious\ndouble-initializations for congestion control modules, which could cause\nmemory leaks or other problems for congestion control modules (like CDG)\nthat allocate memory in their init functions.\n\nThe buggy scenario constructed by syzkaller was something like:\n\n(1) create a TCP socket\n(2) initiate a TFO connect via sendto()\n(3) while socket is in TCP_SYN_SENT, call setsockopt(TCP_CONGESTION),\n which calls:\n tcp_set_congestion_control() ->\n tcp_reinit_congestion_control() ->\n tcp_init_congestion_control()\n(4) receive ACK, connection is established, call tcp_init_transfer(),\n set icsk_ca_initialized=0 (without first calling cc->release()),\n call tcp_init_congestion_control() again.\n\nNote that in this sequence tcp_init_congestion_control() is called\ntwice without a cc->release() call in between. Thus, for CC modules\nthat allocate memory in their init() function, e.g, CDG, a memory leak\nmay occur. The syzkaller tool managed to find a reproducer that\ntriggered such a leak in CDG.\n\nThe bug was introduced when that commit 8919a9b31eb4 (\"tcp: Only init\ncongestion control if not initialized already\")\nintroduced icsk_ca_initialized and set icsk_ca_initialized to 0 in\ntcp_init_transfer(), missing the possibility for a sequence like the\none above, where a process could call setsockopt(TCP_CONGESTION) in\nstate TCP_SYN_SENT (i.e. after the connect() or TFO open sendmsg()),\nwhich would call tcp_init_congestion_control(). It did not intend to\nreset any initialization that the user had already explicitly made;\nit just missed the possibility of that particular sequence (which\nsyzkaller managed to find).", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -28,8 +33,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-415" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:18Z" diff --git a/advisories/unreviewed/2024/05/GHSA-h3hv-fpf3-c5jm/GHSA-h3hv-fpf3-c5jm.json b/advisories/unreviewed/2024/05/GHSA-h3hv-fpf3-c5jm/GHSA-h3hv-fpf3-c5jm.json index eedd62e9acb..e279adc82ce 100644 --- a/advisories/unreviewed/2024/05/GHSA-h3hv-fpf3-c5jm/GHSA-h3hv-fpf3-c5jm.json +++ b/advisories/unreviewed/2024/05/GHSA-h3hv-fpf3-c5jm/GHSA-h3hv-fpf3-c5jm.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-h3hv-fpf3-c5jm", - "modified": "2024-05-21T15:31:43Z", + "modified": "2025-05-12T21:30:55Z", "published": "2024-05-21T15:31:43Z", "aliases": [ "CVE-2021-47336" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nsmackfs: restrict bytes count in smk_set_cipso()\n\nOops, I failed to update subject line.\n\nFrom 07571157c91b98ce1a4aa70967531e64b78e8346 Mon Sep 17 00:00:00 2001\nDate: Mon, 12 Apr 2021 22:25:06 +0900\nSubject: [PATCH] smackfs: restrict bytes count in smk_set_cipso()\n\nCommit 7ef4c19d245f3dc2 (\"smackfs: restrict bytes count in smackfs write\nfunctions\") missed that count > SMK_CIPSOMAX check applies to only\nformat == SMK_FIXED24_FMT case.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -49,7 +54,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:20Z" diff --git a/advisories/unreviewed/2024/05/GHSA-hjv5-8xv5-vmfp/GHSA-hjv5-8xv5-vmfp.json b/advisories/unreviewed/2024/05/GHSA-hjv5-8xv5-vmfp/GHSA-hjv5-8xv5-vmfp.json index f41d8d3b508..512bb4cb2e4 100644 --- a/advisories/unreviewed/2024/05/GHSA-hjv5-8xv5-vmfp/GHSA-hjv5-8xv5-vmfp.json +++ b/advisories/unreviewed/2024/05/GHSA-hjv5-8xv5-vmfp/GHSA-hjv5-8xv5-vmfp.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-hjv5-8xv5-vmfp", - "modified": "2024-05-21T15:31:42Z", + "modified": "2025-05-12T21:30:55Z", "published": "2024-05-21T15:31:42Z", "aliases": [ "CVE-2021-47315" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmemory: fsl_ifc: fix leak of IO mapping on probe failure\n\nOn probe error the driver should unmap the IO memory. Smatch reports:\n\n drivers/memory/fsl_ifc.c:298 fsl_ifc_ctrl_probe() warn: 'fsl_ifc_ctrl_dev->gregs' not released on lines: 298.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -56,8 +61,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-617" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:18Z" diff --git a/advisories/unreviewed/2024/05/GHSA-hxcf-7gwm-65p8/GHSA-hxcf-7gwm-65p8.json b/advisories/unreviewed/2024/05/GHSA-hxcf-7gwm-65p8/GHSA-hxcf-7gwm-65p8.json index 0ec4eb99b64..46db3da1337 100644 --- a/advisories/unreviewed/2024/05/GHSA-hxcf-7gwm-65p8/GHSA-hxcf-7gwm-65p8.json +++ b/advisories/unreviewed/2024/05/GHSA-hxcf-7gwm-65p8/GHSA-hxcf-7gwm-65p8.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-hxcf-7gwm-65p8", - "modified": "2025-05-02T09:30:26Z", + "modified": "2025-05-12T21:30:55Z", "published": "2024-05-21T15:31:43Z", "aliases": [ "CVE-2021-47352" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nvirtio-net: Add validation for used length\n\nThis adds validation for used length (might come\nfrom an untrusted device) to avoid data corruption\nor loss.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -36,8 +41,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-787" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:21Z" diff --git a/advisories/unreviewed/2024/05/GHSA-qvgm-cw57-rm8q/GHSA-qvgm-cw57-rm8q.json b/advisories/unreviewed/2024/05/GHSA-qvgm-cw57-rm8q/GHSA-qvgm-cw57-rm8q.json index 1e32021eb9e..943d08ff7ce 100644 --- a/advisories/unreviewed/2024/05/GHSA-qvgm-cw57-rm8q/GHSA-qvgm-cw57-rm8q.json +++ b/advisories/unreviewed/2024/05/GHSA-qvgm-cw57-rm8q/GHSA-qvgm-cw57-rm8q.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-qvgm-cw57-rm8q", - "modified": "2024-05-21T15:31:43Z", + "modified": "2025-05-12T21:30:55Z", "published": "2024-05-21T15:31:43Z", "aliases": [ "CVE-2021-47343" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndm btree remove: assign new_root only when removal succeeds\n\nremove_raw() in dm_btree_remove() may fail due to IO read error\n(e.g. read the content of origin block fails during shadowing),\nand the value of shadow_spine::root is uninitialized, but\nthe uninitialized value is still assign to new_root in the\nend of dm_btree_remove().\n\nFor dm-thin, the value of pmd->details_root or pmd->root will become\nan uninitialized value, so if trying to read details_info tree again\nout-of-bound memory may occur as showed below:\n\n general protection fault, probably for non-canonical address 0x3fdcb14c8d7520\n CPU: 4 PID: 515 Comm: dmsetup Not tainted 5.13.0-rc6\n Hardware name: QEMU Standard PC\n RIP: 0010:metadata_ll_load_ie+0x14/0x30\n Call Trace:\n sm_metadata_count_is_more_than_one+0xb9/0xe0\n dm_tm_shadow_block+0x52/0x1c0\n shadow_step+0x59/0xf0\n remove_raw+0xb2/0x170\n dm_btree_remove+0xf4/0x1c0\n dm_pool_delete_thin_device+0xc3/0x140\n pool_message+0x218/0x2b0\n target_message+0x251/0x290\n ctl_ioctl+0x1c4/0x4d0\n dm_ctl_ioctl+0xe/0x20\n __x64_sys_ioctl+0x7b/0xb0\n do_syscall_64+0x40/0xb0\n entry_SYSCALL_64_after_hwframe+0x44/0xae\n\nFixing it by only assign new_root when removal succeeds", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -52,8 +57,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-1188" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:20Z" diff --git a/advisories/unreviewed/2024/05/GHSA-x56w-x8rv-273m/GHSA-x56w-x8rv-273m.json b/advisories/unreviewed/2024/05/GHSA-x56w-x8rv-273m/GHSA-x56w-x8rv-273m.json index ea94b840fca..50407f4a742 100644 --- a/advisories/unreviewed/2024/05/GHSA-x56w-x8rv-273m/GHSA-x56w-x8rv-273m.json +++ b/advisories/unreviewed/2024/05/GHSA-x56w-x8rv-273m/GHSA-x56w-x8rv-273m.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-x56w-x8rv-273m", - "modified": "2024-05-21T15:31:43Z", + "modified": "2025-05-12T21:30:55Z", "published": "2024-05-21T15:31:43Z", "aliases": [ "CVE-2021-47335" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nf2fs: fix to avoid racing on fsync_entry_slab by multi filesystem instances\n\nAs syzbot reported, there is an use-after-free issue during f2fs recovery:\n\nUse-after-free write at 0xffff88823bc16040 (in kfence-#10):\n kmem_cache_destroy+0x1f/0x120 mm/slab_common.c:486\n f2fs_recover_fsync_data+0x75b0/0x8380 fs/f2fs/recovery.c:869\n f2fs_fill_super+0x9393/0xa420 fs/f2fs/super.c:3945\n mount_bdev+0x26c/0x3a0 fs/super.c:1367\n legacy_get_tree+0xea/0x180 fs/fs_context.c:592\n vfs_get_tree+0x86/0x270 fs/super.c:1497\n do_new_mount fs/namespace.c:2905 [inline]\n path_mount+0x196f/0x2be0 fs/namespace.c:3235\n do_mount fs/namespace.c:3248 [inline]\n __do_sys_mount fs/namespace.c:3456 [inline]\n __se_sys_mount+0x2f9/0x3b0 fs/namespace.c:3433\n do_syscall_64+0x3f/0xb0 arch/x86/entry/common.c:47\n entry_SYSCALL_64_after_hwframe+0x44/0xae\n\nThe root cause is multi f2fs filesystem instances can race on accessing\nglobal fsync_entry_slab pointer, result in use-after-free issue of slab\ncache, fixes to init/destroy this slab cache only once during module\ninit/destroy procedure to avoid this issue.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -32,8 +37,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-416" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:20Z" diff --git a/advisories/unreviewed/2025/03/GHSA-j7g6-76w3-j7qf/GHSA-j7g6-76w3-j7qf.json b/advisories/unreviewed/2025/03/GHSA-j7g6-76w3-j7qf/GHSA-j7g6-76w3-j7qf.json index 1f72ddc03eb..b0ed5e5ac25 100644 --- a/advisories/unreviewed/2025/03/GHSA-j7g6-76w3-j7qf/GHSA-j7g6-76w3-j7qf.json +++ b/advisories/unreviewed/2025/03/GHSA-j7g6-76w3-j7qf/GHSA-j7g6-76w3-j7qf.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-284" + "CWE-284", + "CWE-79" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-22mj-r7hq-f9h2/GHSA-22mj-r7hq-f9h2.json b/advisories/unreviewed/2025/04/GHSA-22mj-r7hq-f9h2/GHSA-22mj-r7hq-f9h2.json index 7059318ff7d..1c9a060c3d0 100644 --- a/advisories/unreviewed/2025/04/GHSA-22mj-r7hq-f9h2/GHSA-22mj-r7hq-f9h2.json +++ b/advisories/unreviewed/2025/04/GHSA-22mj-r7hq-f9h2/GHSA-22mj-r7hq-f9h2.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-22mj-r7hq-f9h2", - "modified": "2025-04-27T21:34:46Z", + "modified": "2025-05-12T21:31:00Z", "published": "2025-04-27T21:34:46Z", "aliases": [ "CVE-2025-2866" ], "details": "Improper Verification of Cryptographic Signature vulnerability in LibreOffice allows PDF Signature Spoofing by Improper Validation.\n\n\n\n\nIn the affected versions of LibreOffice a flaw in the verification code for adbe.pkcs7.sha1 signatures could cause invalid signatures to be accepted as valid\n\n\n\n\nThis issue affects LibreOffice: from 24.8 before < 24.8.6, from 25.2 before < 25.2.2.", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:P/VC:L/VI:N/VA:N/SC:L/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" diff --git a/advisories/unreviewed/2025/04/GHSA-3pq2-h22c-p37g/GHSA-3pq2-h22c-p37g.json b/advisories/unreviewed/2025/04/GHSA-3pq2-h22c-p37g/GHSA-3pq2-h22c-p37g.json index 5b014fe0ee2..d9adb90f832 100644 --- a/advisories/unreviewed/2025/04/GHSA-3pq2-h22c-p37g/GHSA-3pq2-h22c-p37g.json +++ b/advisories/unreviewed/2025/04/GHSA-3pq2-h22c-p37g/GHSA-3pq2-h22c-p37g.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-42jq-cg85-cj5g/GHSA-42jq-cg85-cj5g.json b/advisories/unreviewed/2025/04/GHSA-42jq-cg85-cj5g/GHSA-42jq-cg85-cj5g.json index 9bf5b9c4c44..7836e7d4767 100644 --- a/advisories/unreviewed/2025/04/GHSA-42jq-cg85-cj5g/GHSA-42jq-cg85-cj5g.json +++ b/advisories/unreviewed/2025/04/GHSA-42jq-cg85-cj5g/GHSA-42jq-cg85-cj5g.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-77" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-477g-5ghr-h8c5/GHSA-477g-5ghr-h8c5.json b/advisories/unreviewed/2025/04/GHSA-477g-5ghr-h8c5/GHSA-477g-5ghr-h8c5.json index b0763003631..8e107f21229 100644 --- a/advisories/unreviewed/2025/04/GHSA-477g-5ghr-h8c5/GHSA-477g-5ghr-h8c5.json +++ b/advisories/unreviewed/2025/04/GHSA-477g-5ghr-h8c5/GHSA-477g-5ghr-h8c5.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-4jgj-9c7f-7hvv/GHSA-4jgj-9c7f-7hvv.json b/advisories/unreviewed/2025/04/GHSA-4jgj-9c7f-7hvv/GHSA-4jgj-9c7f-7hvv.json index ab8ff1d2c32..fae8c03182c 100644 --- a/advisories/unreviewed/2025/04/GHSA-4jgj-9c7f-7hvv/GHSA-4jgj-9c7f-7hvv.json +++ b/advisories/unreviewed/2025/04/GHSA-4jgj-9c7f-7hvv/GHSA-4jgj-9c7f-7hvv.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-120" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-4jh7-c2vv-7qf2/GHSA-4jh7-c2vv-7qf2.json b/advisories/unreviewed/2025/04/GHSA-4jh7-c2vv-7qf2/GHSA-4jh7-c2vv-7qf2.json index 317991f16b2..4c32051bdb6 100644 --- a/advisories/unreviewed/2025/04/GHSA-4jh7-c2vv-7qf2/GHSA-4jh7-c2vv-7qf2.json +++ b/advisories/unreviewed/2025/04/GHSA-4jh7-c2vv-7qf2/GHSA-4jh7-c2vv-7qf2.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-451" + "CWE-451", + "CWE-601" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-4jwx-pg4r-8w69/GHSA-4jwx-pg4r-8w69.json b/advisories/unreviewed/2025/04/GHSA-4jwx-pg4r-8w69/GHSA-4jwx-pg4r-8w69.json index d90bf3961f1..9dbb89e4f16 100644 --- a/advisories/unreviewed/2025/04/GHSA-4jwx-pg4r-8w69/GHSA-4jwx-pg4r-8w69.json +++ b/advisories/unreviewed/2025/04/GHSA-4jwx-pg4r-8w69/GHSA-4jwx-pg4r-8w69.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-120" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-53vj-jg5c-244w/GHSA-53vj-jg5c-244w.json b/advisories/unreviewed/2025/04/GHSA-53vj-jg5c-244w/GHSA-53vj-jg5c-244w.json index b3ba4c12933..d46b28e6a07 100644 --- a/advisories/unreviewed/2025/04/GHSA-53vj-jg5c-244w/GHSA-53vj-jg5c-244w.json +++ b/advisories/unreviewed/2025/04/GHSA-53vj-jg5c-244w/GHSA-53vj-jg5c-244w.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-120" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-65hw-c9g5-r8mm/GHSA-65hw-c9g5-r8mm.json b/advisories/unreviewed/2025/04/GHSA-65hw-c9g5-r8mm/GHSA-65hw-c9g5-r8mm.json index 336bb09148d..59b18d58d57 100644 --- a/advisories/unreviewed/2025/04/GHSA-65hw-c9g5-r8mm/GHSA-65hw-c9g5-r8mm.json +++ b/advisories/unreviewed/2025/04/GHSA-65hw-c9g5-r8mm/GHSA-65hw-c9g5-r8mm.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-1336" + "CWE-1336", + "CWE-94" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-6rf5-gh7p-5vg7/GHSA-6rf5-gh7p-5vg7.json b/advisories/unreviewed/2025/04/GHSA-6rf5-gh7p-5vg7/GHSA-6rf5-gh7p-5vg7.json index 33a478c2f0c..08eb92bbd5e 100644 --- a/advisories/unreviewed/2025/04/GHSA-6rf5-gh7p-5vg7/GHSA-6rf5-gh7p-5vg7.json +++ b/advisories/unreviewed/2025/04/GHSA-6rf5-gh7p-5vg7/GHSA-6rf5-gh7p-5vg7.json @@ -42,6 +42,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-1321", "CWE-94" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2025/04/GHSA-77gx-3fxf-6gxj/GHSA-77gx-3fxf-6gxj.json b/advisories/unreviewed/2025/04/GHSA-77gx-3fxf-6gxj/GHSA-77gx-3fxf-6gxj.json index 6d15845cad7..f0fb34538e1 100644 --- a/advisories/unreviewed/2025/04/GHSA-77gx-3fxf-6gxj/GHSA-77gx-3fxf-6gxj.json +++ b/advisories/unreviewed/2025/04/GHSA-77gx-3fxf-6gxj/GHSA-77gx-3fxf-6gxj.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-266" + "CWE-266", + "CWE-862" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-95pf-9whm-h8rm/GHSA-95pf-9whm-h8rm.json b/advisories/unreviewed/2025/04/GHSA-95pf-9whm-h8rm/GHSA-95pf-9whm-h8rm.json index 1c1444f5109..2014e2b5c32 100644 --- a/advisories/unreviewed/2025/04/GHSA-95pf-9whm-h8rm/GHSA-95pf-9whm-h8rm.json +++ b/advisories/unreviewed/2025/04/GHSA-95pf-9whm-h8rm/GHSA-95pf-9whm-h8rm.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-77" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-c5cc-gmqf-mh5p/GHSA-c5cc-gmqf-mh5p.json b/advisories/unreviewed/2025/04/GHSA-c5cc-gmqf-mh5p/GHSA-c5cc-gmqf-mh5p.json index e30c4549b39..cdfc5827ffd 100644 --- a/advisories/unreviewed/2025/04/GHSA-c5cc-gmqf-mh5p/GHSA-c5cc-gmqf-mh5p.json +++ b/advisories/unreviewed/2025/04/GHSA-c5cc-gmqf-mh5p/GHSA-c5cc-gmqf-mh5p.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-cpp9-4wg8-29gj/GHSA-cpp9-4wg8-29gj.json b/advisories/unreviewed/2025/04/GHSA-cpp9-4wg8-29gj/GHSA-cpp9-4wg8-29gj.json index 22486ebb9ad..67b8278106b 100644 --- a/advisories/unreviewed/2025/04/GHSA-cpp9-4wg8-29gj/GHSA-cpp9-4wg8-29gj.json +++ b/advisories/unreviewed/2025/04/GHSA-cpp9-4wg8-29gj/GHSA-cpp9-4wg8-29gj.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-120" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-fhc2-8475-j2fm/GHSA-fhc2-8475-j2fm.json b/advisories/unreviewed/2025/04/GHSA-fhc2-8475-j2fm/GHSA-fhc2-8475-j2fm.json index 10048e32ae0..19ece2ac1fb 100644 --- a/advisories/unreviewed/2025/04/GHSA-fhc2-8475-j2fm/GHSA-fhc2-8475-j2fm.json +++ b/advisories/unreviewed/2025/04/GHSA-fhc2-8475-j2fm/GHSA-fhc2-8475-j2fm.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-hhrg-ww69-4cxj/GHSA-hhrg-ww69-4cxj.json b/advisories/unreviewed/2025/04/GHSA-hhrg-ww69-4cxj/GHSA-hhrg-ww69-4cxj.json index 90cbec99cbb..574521b9200 100644 --- a/advisories/unreviewed/2025/04/GHSA-hhrg-ww69-4cxj/GHSA-hhrg-ww69-4cxj.json +++ b/advisories/unreviewed/2025/04/GHSA-hhrg-ww69-4cxj/GHSA-hhrg-ww69-4cxj.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hhrg-ww69-4cxj", - "modified": "2025-04-27T12:30:27Z", + "modified": "2025-05-12T21:31:00Z", "published": "2025-04-27T12:30:27Z", "aliases": [ "CVE-2025-3886" ], "details": "An issue in CatoNetworks CatoClient before v.5.8.0 allows attackers to escalate privileges and achieve a race condition (TOCTOU) via the PrivilegedHelperTool component.", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:U/V:X/RE:L/U:Green" diff --git a/advisories/unreviewed/2025/04/GHSA-jgvv-fw39-8435/GHSA-jgvv-fw39-8435.json b/advisories/unreviewed/2025/04/GHSA-jgvv-fw39-8435/GHSA-jgvv-fw39-8435.json index 000e08af789..5031610ea5e 100644 --- a/advisories/unreviewed/2025/04/GHSA-jgvv-fw39-8435/GHSA-jgvv-fw39-8435.json +++ b/advisories/unreviewed/2025/04/GHSA-jgvv-fw39-8435/GHSA-jgvv-fw39-8435.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jgvv-fw39-8435", - "modified": "2025-04-29T12:30:21Z", + "modified": "2025-05-12T21:31:03Z", "published": "2025-04-29T12:30:21Z", "aliases": [ "CVE-2025-3929" ], "details": "An XSS issue was discovered in MDaemon Email Server version 25.0.1 and below. An attacker can send a specially crafted HTML e-mail message with JavaScript in an img tag. This could allow a remote attacker to load arbitrary JavaScript code in the context of a webmail user's browser window, and access user data.", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" diff --git a/advisories/unreviewed/2025/04/GHSA-jxcr-pjg6-v566/GHSA-jxcr-pjg6-v566.json b/advisories/unreviewed/2025/04/GHSA-jxcr-pjg6-v566/GHSA-jxcr-pjg6-v566.json index 5df1aac63f5..150d6be344b 100644 --- a/advisories/unreviewed/2025/04/GHSA-jxcr-pjg6-v566/GHSA-jxcr-pjg6-v566.json +++ b/advisories/unreviewed/2025/04/GHSA-jxcr-pjg6-v566/GHSA-jxcr-pjg6-v566.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-120" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-pfxp-h2rx-w8c2/GHSA-pfxp-h2rx-w8c2.json b/advisories/unreviewed/2025/04/GHSA-pfxp-h2rx-w8c2/GHSA-pfxp-h2rx-w8c2.json index 020574c2664..d79ae44e702 100644 --- a/advisories/unreviewed/2025/04/GHSA-pfxp-h2rx-w8c2/GHSA-pfxp-h2rx-w8c2.json +++ b/advisories/unreviewed/2025/04/GHSA-pfxp-h2rx-w8c2/GHSA-pfxp-h2rx-w8c2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pfxp-h2rx-w8c2", - "modified": "2025-04-28T09:31:55Z", + "modified": "2025-05-12T21:31:02Z", "published": "2025-04-28T09:31:55Z", "aliases": [ "CVE-2025-4012" diff --git a/advisories/unreviewed/2025/04/GHSA-qmw6-m4m8-m6wp/GHSA-qmw6-m4m8-m6wp.json b/advisories/unreviewed/2025/04/GHSA-qmw6-m4m8-m6wp/GHSA-qmw6-m4m8-m6wp.json index e25ede77600..8ccb244d898 100644 --- a/advisories/unreviewed/2025/04/GHSA-qmw6-m4m8-m6wp/GHSA-qmw6-m4m8-m6wp.json +++ b/advisories/unreviewed/2025/04/GHSA-qmw6-m4m8-m6wp/GHSA-qmw6-m4m8-m6wp.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-qvv4-97q4-jq42/GHSA-qvv4-97q4-jq42.json b/advisories/unreviewed/2025/04/GHSA-qvv4-97q4-jq42/GHSA-qvv4-97q4-jq42.json index 435229ec6b1..24398d7e08b 100644 --- a/advisories/unreviewed/2025/04/GHSA-qvv4-97q4-jq42/GHSA-qvv4-97q4-jq42.json +++ b/advisories/unreviewed/2025/04/GHSA-qvv4-97q4-jq42/GHSA-qvv4-97q4-jq42.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-rhjm-ww6w-hrx2/GHSA-rhjm-ww6w-hrx2.json b/advisories/unreviewed/2025/04/GHSA-rhjm-ww6w-hrx2/GHSA-rhjm-ww6w-hrx2.json index 56c04262907..2eb6e7fd91d 100644 --- a/advisories/unreviewed/2025/04/GHSA-rhjm-ww6w-hrx2/GHSA-rhjm-ww6w-hrx2.json +++ b/advisories/unreviewed/2025/04/GHSA-rhjm-ww6w-hrx2/GHSA-rhjm-ww6w-hrx2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-rhjm-ww6w-hrx2", - "modified": "2025-04-27T21:34:46Z", + "modified": "2025-05-12T21:31:00Z", "published": "2025-04-27T21:34:46Z", "aliases": [ "CVE-2025-3981" @@ -38,7 +38,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-266" + "CWE-266", + "CWE-862" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-x8vj-hjmm-529g/GHSA-x8vj-hjmm-529g.json b/advisories/unreviewed/2025/04/GHSA-x8vj-hjmm-529g/GHSA-x8vj-hjmm-529g.json index a772cf5ec5e..05f4b21c96e 100644 --- a/advisories/unreviewed/2025/04/GHSA-x8vj-hjmm-529g/GHSA-x8vj-hjmm-529g.json +++ b/advisories/unreviewed/2025/04/GHSA-x8vj-hjmm-529g/GHSA-x8vj-hjmm-529g.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-x8vj-hjmm-529g", - "modified": "2025-04-27T18:30:24Z", + "modified": "2025-05-12T21:31:00Z", "published": "2025-04-27T18:30:24Z", "aliases": [ "CVE-2025-3980" @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-266" + "CWE-266", + "CWE-862" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-27rh-f3qh-3mf4/GHSA-27rh-f3qh-3mf4.json b/advisories/unreviewed/2025/05/GHSA-27rh-f3qh-3mf4/GHSA-27rh-f3qh-3mf4.json index 60b8e2cab0c..03d9aca0c89 100644 --- a/advisories/unreviewed/2025/05/GHSA-27rh-f3qh-3mf4/GHSA-27rh-f3qh-3mf4.json +++ b/advisories/unreviewed/2025/05/GHSA-27rh-f3qh-3mf4/GHSA-27rh-f3qh-3mf4.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-27rh-f3qh-3mf4", - "modified": "2025-05-08T15:31:12Z", + "modified": "2025-05-12T21:31:07Z", "published": "2025-05-08T15:31:12Z", "aliases": [ "CVE-2025-45820" ], "details": "Slims (Senayan Library Management Systems) 9 Bulian 9.6.1 is vulnerable to SQL Injection in admin/modules/bibliography/pop_author_edit.php.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-08T15:15:48Z" diff --git a/advisories/unreviewed/2025/05/GHSA-2qg3-px2c-m64g/GHSA-2qg3-px2c-m64g.json b/advisories/unreviewed/2025/05/GHSA-2qg3-px2c-m64g/GHSA-2qg3-px2c-m64g.json new file mode 100644 index 00000000000..8aaa6d2a5d3 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-2qg3-px2c-m64g/GHSA-2qg3-px2c-m64g.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2qg3-px2c-m64g", + "modified": "2025-05-12T21:31:09Z", + "published": "2025-05-12T21:31:09Z", + "aliases": [ + "CVE-2024-55466" + ], + "details": "An arbitrary file upload vulnerability in the Image Gallery of ThingsBoard Community, ThingsBoard Cloud and ThingsBoard Professional v3.8.1 allows attackers to execute arbitrary code via uploading a crafted file.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-55466" + }, + { + "type": "WEB", + "url": "https://github.com/cybsecsid/ThingsBoard-IoT-Platform-CVE-2024-55466" + }, + { + "type": "WEB", + "url": "https://github.com/thingsboard/thingsboard/releases/tag/v3.8.1" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-12T19:15:48Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-3g23-7g3r-898j/GHSA-3g23-7g3r-898j.json b/advisories/unreviewed/2025/05/GHSA-3g23-7g3r-898j/GHSA-3g23-7g3r-898j.json index 57ab45a49ac..3d1c4dba4d1 100644 --- a/advisories/unreviewed/2025/05/GHSA-3g23-7g3r-898j/GHSA-3g23-7g3r-898j.json +++ b/advisories/unreviewed/2025/05/GHSA-3g23-7g3r-898j/GHSA-3g23-7g3r-898j.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3g23-7g3r-898j", - "modified": "2025-05-12T18:31:20Z", + "modified": "2025-05-12T21:31:05Z", "published": "2025-05-03T18:30:29Z", "aliases": [ "CVE-2024-58134" diff --git a/advisories/unreviewed/2025/05/GHSA-4pgh-326f-32p3/GHSA-4pgh-326f-32p3.json b/advisories/unreviewed/2025/05/GHSA-4pgh-326f-32p3/GHSA-4pgh-326f-32p3.json index 99c79dc3d42..b97be5a8071 100644 --- a/advisories/unreviewed/2025/05/GHSA-4pgh-326f-32p3/GHSA-4pgh-326f-32p3.json +++ b/advisories/unreviewed/2025/05/GHSA-4pgh-326f-32p3/GHSA-4pgh-326f-32p3.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-4pgh-326f-32p3", - "modified": "2025-05-08T21:32:56Z", + "modified": "2025-05-12T21:31:08Z", "published": "2025-05-08T21:32:56Z", "aliases": [ "CVE-2025-28073" ], "details": "phpList 3.6.3 is vulnerable to Reflected Cross-Site Scripting (XSS) via the /lists/dl.php endpoint. An attacker can inject arbitrary JavaScript code by manipulating the id parameter, which is improperly sanitized.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-08T20:15:29Z" diff --git a/advisories/unreviewed/2025/05/GHSA-6895-x6gp-m725/GHSA-6895-x6gp-m725.json b/advisories/unreviewed/2025/05/GHSA-6895-x6gp-m725/GHSA-6895-x6gp-m725.json index 3a56309dbd7..c56b3a19fb9 100644 --- a/advisories/unreviewed/2025/05/GHSA-6895-x6gp-m725/GHSA-6895-x6gp-m725.json +++ b/advisories/unreviewed/2025/05/GHSA-6895-x6gp-m725/GHSA-6895-x6gp-m725.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-6895-x6gp-m725", - "modified": "2025-05-08T18:30:42Z", + "modified": "2025-05-12T21:31:07Z", "published": "2025-05-08T18:30:42Z", "aliases": [ "CVE-2023-51295" ], "details": "PHPJabbers Event Booking Calendar v4.0 is vulnerable to Multiple HTML Injection in the \"name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key, title\" parameters.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-77" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-08T16:15:23Z" diff --git a/advisories/unreviewed/2025/05/GHSA-6mp7-r3w8-3vrm/GHSA-6mp7-r3w8-3vrm.json b/advisories/unreviewed/2025/05/GHSA-6mp7-r3w8-3vrm/GHSA-6mp7-r3w8-3vrm.json index 8fd1287c3aa..0903a15138f 100644 --- a/advisories/unreviewed/2025/05/GHSA-6mp7-r3w8-3vrm/GHSA-6mp7-r3w8-3vrm.json +++ b/advisories/unreviewed/2025/05/GHSA-6mp7-r3w8-3vrm/GHSA-6mp7-r3w8-3vrm.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-6mp7-r3w8-3vrm", - "modified": "2025-05-08T18:30:42Z", + "modified": "2025-05-12T21:31:07Z", "published": "2025-05-08T18:30:42Z", "aliases": [ "CVE-2025-43926" ], "details": "An issue was discovered in Znuny through 6.5.14 and 7.x through 7.1.6. Custom AJAX calls to the AgentPreferences UpdateAJAX subaction can be used to set user preferences with arbitrary keys. When fetching user data via GetUserData, these keys and values are retrieved and given as a whole to other function calls, which then might use these keys/values to affect permissions or other settings.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-08T16:15:26Z" diff --git a/advisories/unreviewed/2025/05/GHSA-6rc8-h6xq-v545/GHSA-6rc8-h6xq-v545.json b/advisories/unreviewed/2025/05/GHSA-6rc8-h6xq-v545/GHSA-6rc8-h6xq-v545.json index e3c35e6f663..55577eb960d 100644 --- a/advisories/unreviewed/2025/05/GHSA-6rc8-h6xq-v545/GHSA-6rc8-h6xq-v545.json +++ b/advisories/unreviewed/2025/05/GHSA-6rc8-h6xq-v545/GHSA-6rc8-h6xq-v545.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-6rc8-h6xq-v545", - "modified": "2025-05-08T21:32:56Z", + "modified": "2025-05-12T21:31:08Z", "published": "2025-05-08T21:32:56Z", "aliases": [ "CVE-2025-45790" ], "details": "TOTOLINK A3100R V5.9c.1527 is vulnerable to Buffer Overflow via the priority parameter in the setMacQos interface of /lib/cste_modules/firewall.so.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-121" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-08T20:15:30Z" diff --git a/advisories/unreviewed/2025/05/GHSA-7vx7-qjwv-wcrm/GHSA-7vx7-qjwv-wcrm.json b/advisories/unreviewed/2025/05/GHSA-7vx7-qjwv-wcrm/GHSA-7vx7-qjwv-wcrm.json index 78e5051533a..380b8c5e6fc 100644 --- a/advisories/unreviewed/2025/05/GHSA-7vx7-qjwv-wcrm/GHSA-7vx7-qjwv-wcrm.json +++ b/advisories/unreviewed/2025/05/GHSA-7vx7-qjwv-wcrm/GHSA-7vx7-qjwv-wcrm.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-7vx7-qjwv-wcrm", - "modified": "2025-05-08T18:30:43Z", + "modified": "2025-05-12T21:31:07Z", "published": "2025-05-08T18:30:42Z", "aliases": [ "CVE-2025-45841" ], "details": "TOTOLINK NR1800X V9.1.0u.6681_B20230703 was discovered to contain an authenticated stack overflow via the text parameter in the setSmsCfg function.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -28,8 +33,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-121" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-08T16:15:26Z" diff --git a/advisories/unreviewed/2025/05/GHSA-8966-rh6p-j7h4/GHSA-8966-rh6p-j7h4.json b/advisories/unreviewed/2025/05/GHSA-8966-rh6p-j7h4/GHSA-8966-rh6p-j7h4.json index 94a7381b6a2..873006a3313 100644 --- a/advisories/unreviewed/2025/05/GHSA-8966-rh6p-j7h4/GHSA-8966-rh6p-j7h4.json +++ b/advisories/unreviewed/2025/05/GHSA-8966-rh6p-j7h4/GHSA-8966-rh6p-j7h4.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-8966-rh6p-j7h4", - "modified": "2025-05-08T21:32:56Z", + "modified": "2025-05-12T21:31:08Z", "published": "2025-05-08T21:32:56Z", "aliases": [ "CVE-2025-44023" ], "details": "An issue in dlink DNS-320 v.1.00 and DNS-320LW v.1.01.0914.20212 allows an attacker to execute arbitrary via the account_mgr.cgi->cgi_chg_admin_pw components.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-77" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-08T20:15:29Z" diff --git a/advisories/unreviewed/2025/05/GHSA-cmjf-q672-wjj5/GHSA-cmjf-q672-wjj5.json b/advisories/unreviewed/2025/05/GHSA-cmjf-q672-wjj5/GHSA-cmjf-q672-wjj5.json new file mode 100644 index 00000000000..0dd49b7b465 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-cmjf-q672-wjj5/GHSA-cmjf-q672-wjj5.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cmjf-q672-wjj5", + "modified": "2025-05-12T21:31:09Z", + "published": "2025-05-12T21:31:09Z", + "aliases": [ + "CVE-2025-47682" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Cozy Vision Technologies Pvt. Ltd. SMS Alert Order Notifications – WooCommerce allows SQL Injection.This issue affects SMS Alert Order Notifications – WooCommerce: from n/a through 3.8.2.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-47682" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/wordpress/plugin/sms-alert/vulnerability/wordpress-sms-alert-order-notifications-woocommerce-3-8-1-sql-injection-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-12T19:15:51Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-fq8g-w74w-m345/GHSA-fq8g-w74w-m345.json b/advisories/unreviewed/2025/05/GHSA-fq8g-w74w-m345/GHSA-fq8g-w74w-m345.json index 63cdf533e9c..5caaa8c61f5 100644 --- a/advisories/unreviewed/2025/05/GHSA-fq8g-w74w-m345/GHSA-fq8g-w74w-m345.json +++ b/advisories/unreviewed/2025/05/GHSA-fq8g-w74w-m345/GHSA-fq8g-w74w-m345.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-120" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-fqr4-2vmh-phgq/GHSA-fqr4-2vmh-phgq.json b/advisories/unreviewed/2025/05/GHSA-fqr4-2vmh-phgq/GHSA-fqr4-2vmh-phgq.json index fc4542314da..6f313a36e09 100644 --- a/advisories/unreviewed/2025/05/GHSA-fqr4-2vmh-phgq/GHSA-fqr4-2vmh-phgq.json +++ b/advisories/unreviewed/2025/05/GHSA-fqr4-2vmh-phgq/GHSA-fqr4-2vmh-phgq.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-fqr4-2vmh-phgq", - "modified": "2025-05-07T21:31:45Z", + "modified": "2025-05-12T21:31:07Z", "published": "2025-05-07T21:31:45Z", "aliases": [ "CVE-2025-45514" ], "details": "Tenda FH451 V1.0.0.9 has a stack overflow vulnerability in the function.frmL7ImForm.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-121" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-07T19:16:08Z" diff --git a/advisories/unreviewed/2025/05/GHSA-g4cf-3pjw-w4xj/GHSA-g4cf-3pjw-w4xj.json b/advisories/unreviewed/2025/05/GHSA-g4cf-3pjw-w4xj/GHSA-g4cf-3pjw-w4xj.json index 33409c83843..9954296d4d3 100644 --- a/advisories/unreviewed/2025/05/GHSA-g4cf-3pjw-w4xj/GHSA-g4cf-3pjw-w4xj.json +++ b/advisories/unreviewed/2025/05/GHSA-g4cf-3pjw-w4xj/GHSA-g4cf-3pjw-w4xj.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-g4cf-3pjw-w4xj", - "modified": "2025-05-08T21:32:56Z", + "modified": "2025-05-12T21:31:08Z", "published": "2025-05-08T21:32:56Z", "aliases": [ "CVE-2025-45797" ], "details": "TOTOlink A950RG V4.1.2cu.5204_B20210112 contains a buffer overflow vulnerability. The vulnerability arises from the improper input validation of the NoticeUrl parameter in the setNoticeCfg interface of /lib/cste_modules/system.so.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-121" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-08T20:15:30Z" diff --git a/advisories/unreviewed/2025/05/GHSA-g76q-72wv-pxqq/GHSA-g76q-72wv-pxqq.json b/advisories/unreviewed/2025/05/GHSA-g76q-72wv-pxqq/GHSA-g76q-72wv-pxqq.json new file mode 100644 index 00000000000..b8aad2e32fb --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-g76q-72wv-pxqq/GHSA-g76q-72wv-pxqq.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g76q-72wv-pxqq", + "modified": "2025-05-12T21:31:09Z", + "published": "2025-05-12T21:31:09Z", + "aliases": [ + "CVE-2024-4982" + ], + "details": "A directory traversal vulnerability was discovered in Pagure server. If a malicious user submits a specially cratfted git repository they could discover secrets on the server.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4982" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/security/cve/CVE-2024-4982" + }, + { + "type": "WEB", + "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2279411" + }, + { + "type": "WEB", + "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2280726" + }, + { + "type": "WEB", + "url": "https://pagure.io/pagure/c/c43844d23c919133fc983fe8c0f1dfb3b86e67d0" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-12T19:15:48Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-ggfc-mrvr-g693/GHSA-ggfc-mrvr-g693.json b/advisories/unreviewed/2025/05/GHSA-ggfc-mrvr-g693/GHSA-ggfc-mrvr-g693.json index cc72e6ebfb1..046922f36df 100644 --- a/advisories/unreviewed/2025/05/GHSA-ggfc-mrvr-g693/GHSA-ggfc-mrvr-g693.json +++ b/advisories/unreviewed/2025/05/GHSA-ggfc-mrvr-g693/GHSA-ggfc-mrvr-g693.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-ggfc-mrvr-g693", - "modified": "2025-05-07T15:31:47Z", + "modified": "2025-05-12T21:31:07Z", "published": "2025-05-07T15:31:47Z", "aliases": [ "CVE-2025-47633" diff --git a/advisories/unreviewed/2025/05/GHSA-gv6p-p4mw-6rjj/GHSA-gv6p-p4mw-6rjj.json b/advisories/unreviewed/2025/05/GHSA-gv6p-p4mw-6rjj/GHSA-gv6p-p4mw-6rjj.json index 3495ff07107..b5357b6a2c4 100644 --- a/advisories/unreviewed/2025/05/GHSA-gv6p-p4mw-6rjj/GHSA-gv6p-p4mw-6rjj.json +++ b/advisories/unreviewed/2025/05/GHSA-gv6p-p4mw-6rjj/GHSA-gv6p-p4mw-6rjj.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-120" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-gxrr-m392-473j/GHSA-gxrr-m392-473j.json b/advisories/unreviewed/2025/05/GHSA-gxrr-m392-473j/GHSA-gxrr-m392-473j.json index cd0f7ab103d..a8f5b487125 100644 --- a/advisories/unreviewed/2025/05/GHSA-gxrr-m392-473j/GHSA-gxrr-m392-473j.json +++ b/advisories/unreviewed/2025/05/GHSA-gxrr-m392-473j/GHSA-gxrr-m392-473j.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-120" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-jm94-7488-jjfw/GHSA-jm94-7488-jjfw.json b/advisories/unreviewed/2025/05/GHSA-jm94-7488-jjfw/GHSA-jm94-7488-jjfw.json index 92abb5defaa..610eedddef0 100644 --- a/advisories/unreviewed/2025/05/GHSA-jm94-7488-jjfw/GHSA-jm94-7488-jjfw.json +++ b/advisories/unreviewed/2025/05/GHSA-jm94-7488-jjfw/GHSA-jm94-7488-jjfw.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-jm94-7488-jjfw", - "modified": "2025-05-08T15:31:12Z", + "modified": "2025-05-12T21:31:07Z", "published": "2025-05-08T15:31:12Z", "aliases": [ "CVE-2025-45818" ], "details": "Slims (Senayan Library Management Systems) 9 Bulian 9.6.1 is vulnerable to SQL Injection in admin/modules/master_file/item_status.php.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-08T15:15:48Z" diff --git a/advisories/unreviewed/2025/05/GHSA-mf3m-m2fx-pq76/GHSA-mf3m-m2fx-pq76.json b/advisories/unreviewed/2025/05/GHSA-mf3m-m2fx-pq76/GHSA-mf3m-m2fx-pq76.json index 23c42759953..be992478b53 100644 --- a/advisories/unreviewed/2025/05/GHSA-mf3m-m2fx-pq76/GHSA-mf3m-m2fx-pq76.json +++ b/advisories/unreviewed/2025/05/GHSA-mf3m-m2fx-pq76/GHSA-mf3m-m2fx-pq76.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-120" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-mqmq-2p8r-q32f/GHSA-mqmq-2p8r-q32f.json b/advisories/unreviewed/2025/05/GHSA-mqmq-2p8r-q32f/GHSA-mqmq-2p8r-q32f.json index a66d9378c62..97a337ab783 100644 --- a/advisories/unreviewed/2025/05/GHSA-mqmq-2p8r-q32f/GHSA-mqmq-2p8r-q32f.json +++ b/advisories/unreviewed/2025/05/GHSA-mqmq-2p8r-q32f/GHSA-mqmq-2p8r-q32f.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mqmq-2p8r-q32f", - "modified": "2025-05-12T12:30:25Z", + "modified": "2025-05-12T21:31:08Z", "published": "2025-05-12T12:30:25Z", "aliases": [ "CVE-2025-22247" @@ -22,6 +22,10 @@ { "type": "WEB", "url": "https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/25683" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2025/05/12/2" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/05/GHSA-pq7v-55v9-vxqf/GHSA-pq7v-55v9-vxqf.json b/advisories/unreviewed/2025/05/GHSA-pq7v-55v9-vxqf/GHSA-pq7v-55v9-vxqf.json index 71bdfb77b1f..c06c3168870 100644 --- a/advisories/unreviewed/2025/05/GHSA-pq7v-55v9-vxqf/GHSA-pq7v-55v9-vxqf.json +++ b/advisories/unreviewed/2025/05/GHSA-pq7v-55v9-vxqf/GHSA-pq7v-55v9-vxqf.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-120" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-pqpc-g4m5-385m/GHSA-pqpc-g4m5-385m.json b/advisories/unreviewed/2025/05/GHSA-pqpc-g4m5-385m/GHSA-pqpc-g4m5-385m.json index 3532fa33cd1..284ac6aeda6 100644 --- a/advisories/unreviewed/2025/05/GHSA-pqpc-g4m5-385m/GHSA-pqpc-g4m5-385m.json +++ b/advisories/unreviewed/2025/05/GHSA-pqpc-g4m5-385m/GHSA-pqpc-g4m5-385m.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-120" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-qhcg-w878-wwxf/GHSA-qhcg-w878-wwxf.json b/advisories/unreviewed/2025/05/GHSA-qhcg-w878-wwxf/GHSA-qhcg-w878-wwxf.json index 9fa22e92567..e153cefe418 100644 --- a/advisories/unreviewed/2025/05/GHSA-qhcg-w878-wwxf/GHSA-qhcg-w878-wwxf.json +++ b/advisories/unreviewed/2025/05/GHSA-qhcg-w878-wwxf/GHSA-qhcg-w878-wwxf.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-qhcg-w878-wwxf", - "modified": "2025-05-08T15:31:12Z", + "modified": "2025-05-12T21:31:07Z", "published": "2025-05-08T15:31:12Z", "aliases": [ "CVE-2025-45819" ], "details": "Slims (Senayan Library Management Systems) 9 Bulian 9.6.1 is vulnerable to SQL Injection in admin/modules/master_file/author.php.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-08T15:15:48Z" diff --git a/advisories/unreviewed/2025/05/GHSA-qpff-5v24-gq8p/GHSA-qpff-5v24-gq8p.json b/advisories/unreviewed/2025/05/GHSA-qpff-5v24-gq8p/GHSA-qpff-5v24-gq8p.json index 3068427b1fc..b007492c5f3 100644 --- a/advisories/unreviewed/2025/05/GHSA-qpff-5v24-gq8p/GHSA-qpff-5v24-gq8p.json +++ b/advisories/unreviewed/2025/05/GHSA-qpff-5v24-gq8p/GHSA-qpff-5v24-gq8p.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-qpff-5v24-gq8p", - "modified": "2025-05-08T18:30:42Z", + "modified": "2025-05-12T21:31:07Z", "published": "2025-05-08T18:30:42Z", "aliases": [ "CVE-2025-45847" ], "details": "ALFA AIP-W512 v3.2.2.2.3 was discovered to contain an authenticated stack overflow via the targetAPMac parameter in the formWsc function.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-121" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-08T16:15:27Z" diff --git a/advisories/unreviewed/2025/05/GHSA-r2rx-5q74-ppjp/GHSA-r2rx-5q74-ppjp.json b/advisories/unreviewed/2025/05/GHSA-r2rx-5q74-ppjp/GHSA-r2rx-5q74-ppjp.json new file mode 100644 index 00000000000..4cbffdf2198 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-r2rx-5q74-ppjp/GHSA-r2rx-5q74-ppjp.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r2rx-5q74-ppjp", + "modified": "2025-05-12T21:31:09Z", + "published": "2025-05-12T21:31:09Z", + "aliases": [ + "CVE-2025-1079" + ], + "details": "Client RCE on macOS and Linux via improper symbolic link resolution in Google Web Designer's preview feature", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1079" + }, + { + "type": "WEB", + "url": "https://balintmagyar.com/articles/google-web-designer-symlink-client-side-rce-cve-2025-1079" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-61" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-12T20:15:21Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-r6rh-c775-h225/GHSA-r6rh-c775-h225.json b/advisories/unreviewed/2025/05/GHSA-r6rh-c775-h225/GHSA-r6rh-c775-h225.json new file mode 100644 index 00000000000..2ec989de36b --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-r6rh-c775-h225/GHSA-r6rh-c775-h225.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r6rh-c775-h225", + "modified": "2025-05-12T21:31:10Z", + "published": "2025-05-12T21:31:09Z", + "aliases": [ + "CVE-2025-3659" + ], + "details": "Improper authentication handling was identified in a set of HTTP POST requests affecting the following product families: \n\n * Digi PortServer TS - prior to and including 82000747_AA, build date 06/17/2022\n\n\n * Digi One SP/Digi One SP IA/Digi One IA - prior to and including 82000774_Z, build date 10/19/2020\n\n\n * Digi One IAP – prior to and including 82000770 Z, build date 10/19/2020\n\n\n\n\nA specially crafted POST request to the device’s web interface may allow an unauthenticated attacker to modify configuration settings.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3659" + }, + { + "type": "WEB", + "url": "https://hub.digi.com/support/products/infrastructure-management/digi-one-iap-haz" + }, + { + "type": "WEB", + "url": "https://hub.digi.com/support/products/infrastructure-management/digi-one-sp-ia" + }, + { + "type": "WEB", + "url": "https://hub.digi.com/support/products/infrastructure-management/digi-portserver-ts" + }, + { + "type": "WEB", + "url": "https://www.digi.com/getattachment/Resources/Security/Alerts/Improper-authentication-handling-for-Digi-PortServ/improper-authentication-handling.pdf" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-287" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-12T21:15:46Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-r9hp-mj25-9rxr/GHSA-r9hp-mj25-9rxr.json b/advisories/unreviewed/2025/05/GHSA-r9hp-mj25-9rxr/GHSA-r9hp-mj25-9rxr.json index 01b7a15e79b..4d62c136fbe 100644 --- a/advisories/unreviewed/2025/05/GHSA-r9hp-mj25-9rxr/GHSA-r9hp-mj25-9rxr.json +++ b/advisories/unreviewed/2025/05/GHSA-r9hp-mj25-9rxr/GHSA-r9hp-mj25-9rxr.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-r9hp-mj25-9rxr", - "modified": "2025-05-08T21:32:56Z", + "modified": "2025-05-12T21:31:08Z", "published": "2025-05-08T21:32:56Z", "aliases": [ "CVE-2025-45789" ], "details": "TOTOLINK A3100R V5.9c.1527 is vulnerable to buffer overflow via the urlKeyword parameter in setParentalRules.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-121" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-08T20:15:30Z" diff --git a/advisories/unreviewed/2025/05/GHSA-vw7p-rwg9-7mrq/GHSA-vw7p-rwg9-7mrq.json b/advisories/unreviewed/2025/05/GHSA-vw7p-rwg9-7mrq/GHSA-vw7p-rwg9-7mrq.json new file mode 100644 index 00000000000..89541b83900 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-vw7p-rwg9-7mrq/GHSA-vw7p-rwg9-7mrq.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vw7p-rwg9-7mrq", + "modified": "2025-05-12T21:31:09Z", + "published": "2025-05-12T21:31:09Z", + "aliases": [ + "CVE-2024-4981" + ], + "details": "A vulnerability was discovered in Pagure server. If a malicious user were to submit a git repository with symbolic links, the server could unintentionally show incorporate and make visible content from outside the git repo.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4981" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/security/cve/CVE-2024-4981" + }, + { + "type": "WEB", + "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2278745" + }, + { + "type": "WEB", + "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2280723" + }, + { + "type": "WEB", + "url": "https://pagure.io/pagure/c/454f2677bc50d7176f07da9784882eb2176537f4" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-552" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-12T19:15:47Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-wmr9-84fj-r9j8/GHSA-wmr9-84fj-r9j8.json b/advisories/unreviewed/2025/05/GHSA-wmr9-84fj-r9j8/GHSA-wmr9-84fj-r9j8.json index 6853d8b8678..10f6398abb1 100644 --- a/advisories/unreviewed/2025/05/GHSA-wmr9-84fj-r9j8/GHSA-wmr9-84fj-r9j8.json +++ b/advisories/unreviewed/2025/05/GHSA-wmr9-84fj-r9j8/GHSA-wmr9-84fj-r9j8.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-wmr9-84fj-r9j8", - "modified": "2025-05-08T21:32:56Z", + "modified": "2025-05-12T21:31:08Z", "published": "2025-05-08T21:32:56Z", "aliases": [ "CVE-2025-45787" ], "details": "TOTOLINK A3100R V5.9c.1527 is vulnerable to Buffer Overflow viathe comment parameter in setIpPortFilterRules.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-121" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-08T20:15:29Z" diff --git a/advisories/unreviewed/2025/05/GHSA-wx5q-27xg-gppc/GHSA-wx5q-27xg-gppc.json b/advisories/unreviewed/2025/05/GHSA-wx5q-27xg-gppc/GHSA-wx5q-27xg-gppc.json index 2373be9a95e..6b317c770b1 100644 --- a/advisories/unreviewed/2025/05/GHSA-wx5q-27xg-gppc/GHSA-wx5q-27xg-gppc.json +++ b/advisories/unreviewed/2025/05/GHSA-wx5q-27xg-gppc/GHSA-wx5q-27xg-gppc.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-120" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-xgfh-h2p4-f7v7/GHSA-xgfh-h2p4-f7v7.json b/advisories/unreviewed/2025/05/GHSA-xgfh-h2p4-f7v7/GHSA-xgfh-h2p4-f7v7.json index d1ab553d000..913e0f4b284 100644 --- a/advisories/unreviewed/2025/05/GHSA-xgfh-h2p4-f7v7/GHSA-xgfh-h2p4-f7v7.json +++ b/advisories/unreviewed/2025/05/GHSA-xgfh-h2p4-f7v7/GHSA-xgfh-h2p4-f7v7.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-xgfh-h2p4-f7v7", - "modified": "2025-05-08T21:32:56Z", + "modified": "2025-05-12T21:31:08Z", "published": "2025-05-08T21:32:56Z", "aliases": [ "CVE-2025-45788" ], "details": "TOTOLINK A3100R V5.9c.1527 is vulnerable to Buffer Overflow via the comment parameter in setMacFilterRules.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-121" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-08T20:15:30Z"