Advisory Database Sync

This commit is contained in:
advisory-database[bot]
2023-12-28 21:31:41 +00:00
parent c03bd3908e
commit a0a3a80dcc
148 changed files with 1152 additions and 216 deletions
@@ -93,6 +93,10 @@
{
"type": "WEB",
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=1916813"
},
{
"type": "WEB",
"url": "https://lists.debian.org/debian-lts-announce/2023/12/msg00018.html"
}
],
"database_specific": {
@@ -52,6 +52,10 @@
"type": "PACKAGE",
"url": "https://github.com/ansible/ansible"
},
{
"type": "WEB",
"url": "https://lists.debian.org/debian-lts-announce/2023/12/msg00018.html"
},
{
"type": "WEB",
"url": "https://pypi.org/project/ansible/4.2.0/"
@@ -83,6 +83,10 @@
{
"type": "WEB",
"url": "https://github.com/pypa/advisory-database/tree/main/vulns/ansible/PYSEC-2022-164.yaml"
},
{
"type": "WEB",
"url": "https://lists.debian.org/debian-lts-announce/2023/12/msg00018.html"
}
],
"database_specific": {
@@ -55,6 +55,10 @@
{
"type": "PACKAGE",
"url": "https://github.com/ansible/ansible"
},
{
"type": "WEB",
"url": "https://lists.debian.org/debian-lts-announce/2023/12/msg00018.html"
}
],
"database_specific": {
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-22mc-4x52-cw6q",
"modified": "2022-05-24T19:10:51Z",
"modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:51Z",
"aliases": [
"CVE-2021-36927"
],
"details": "Windows Digital TV Tuner device registration application Elevation of Privilege Vulnerability",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-2fq7-f2fp-mgxx",
"modified": "2022-05-24T19:10:51Z",
"modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:51Z",
"aliases": [
"CVE-2021-36946"
],
"details": "Microsoft Dynamics Business Central Cross-site Scripting Vulnerability",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
"affected": [
@@ -40,7 +40,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-22"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-2jvq-3rhr-97x9",
"modified": "2022-05-24T19:14:42Z",
"modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:42Z",
"aliases": [
"CVE-2021-38658"
],
"details": "Microsoft Office Graphics Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-38660.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-2vj9-882j-v7fm",
"modified": "2022-05-24T19:10:51Z",
"modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:51Z",
"aliases": [
"CVE-2021-36938"
],
"details": "Windows Cryptographic Primitives Library Information Disclosure Vulnerability",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
}
],
"affected": [
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-335g-5x6x-7qgj",
"modified": "2022-05-24T19:14:45Z",
"modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:45Z",
"aliases": [
"CVE-2021-36964"
],
"details": "Windows Event Tracing Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-38630.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-33p4-33f5-c62r",
"modified": "2022-05-24T19:14:42Z",
"modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:42Z",
"aliases": [
"CVE-2021-38654"
],
"details": "Microsoft Office Visio Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-38653.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-37q4-472r-ppmr",
"modified": "2022-05-24T19:10:50Z",
"modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:50Z",
"aliases": [
"CVE-2021-36958"
],
"details": "Windows Print Spooler Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-36936, CVE-2021-36947.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-3cwp-6q5r-qrvc",
"modified": "2022-05-24T19:10:50Z",
"modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:50Z",
"aliases": [
"CVE-2021-36941"
],
"details": "Microsoft Word Remote Code Execution Vulnerability",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-47qf-6fqv-2m82",
"modified": "2022-05-24T19:14:45Z",
"modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:45Z",
"aliases": [
"CVE-2021-38624"
],
"details": "Windows Key Storage Provider Security Feature Bypass Vulnerability",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N"
}
],
"affected": [
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5422-3fvq-jx63",
"modified": "2022-05-24T19:10:52Z",
"modified": "2023-12-28T21:30:28Z",
"published": "2022-05-24T19:10:52Z",
"aliases": [
"CVE-2021-34537"
],
"details": "Windows Bluetooth Driver Elevation of Privilege Vulnerability",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-54mf-5wqx-xqph",
"modified": "2022-05-24T19:14:47Z",
"modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:14:47Z",
"aliases": [
"CVE-2021-36956"
],
"details": "Azure Sphere Information Disclosure Vulnerability",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N"
}
],
"affected": [
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5553-x48j-7mwr",
"modified": "2022-05-24T19:10:50Z",
"modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:50Z",
"aliases": [
"CVE-2021-36945"
],
"details": "Windows 10 Update Assistant Elevation of Privilege Vulnerability",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-55wf-38cw-5f72",
"modified": "2022-05-24T19:10:50Z",
"modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:50Z",
"aliases": [
"CVE-2021-36949"
],
"details": "Microsoft Azure Active Directory Connect Authentication Bypass Vulnerability",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-55x8-6f5x-9xx6",
"modified": "2022-05-24T19:14:43Z",
"modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:43Z",
"aliases": [
"CVE-2021-38644"
],
"details": "Microsoft MPEG-2 Video Extension Remote Code Execution Vulnerability",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5973-jvgx-r7xh",
"modified": "2022-05-24T19:10:53Z",
"modified": "2023-12-28T21:30:28Z",
"published": "2022-05-24T19:10:53Z",
"aliases": [
"CVE-2021-34480"
],
"details": "Scripting Engine Memory Corruption Vulnerability",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N"
}
],
"affected": [

Some files were not shown because too many files have changed in this diff Show More