diff --git a/advisories/unreviewed/2024/03/GHSA-386g-6xm2-mvq6/GHSA-386g-6xm2-mvq6.json b/advisories/unreviewed/2024/03/GHSA-386g-6xm2-mvq6/GHSA-386g-6xm2-mvq6.json index f82fb87ec32..b72fc3e61fe 100644 --- a/advisories/unreviewed/2024/03/GHSA-386g-6xm2-mvq6/GHSA-386g-6xm2-mvq6.json +++ b/advisories/unreviewed/2024/03/GHSA-386g-6xm2-mvq6/GHSA-386g-6xm2-mvq6.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-386g-6xm2-mvq6", - "modified": "2024-03-22T06:30:23Z", + "modified": "2024-09-06T18:31:26Z", "published": "2024-03-22T06:30:23Z", "aliases": [ "CVE-2024-25808" ], "details": "Cross-site Request Forgery (CSRF) vulnerability in Lychee version 3.1.6, allows remote attackers to execute arbitrary code via the create new album function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-352" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-22T04:15:11Z" diff --git a/advisories/unreviewed/2024/03/GHSA-94wh-fmx9-8mfh/GHSA-94wh-fmx9-8mfh.json b/advisories/unreviewed/2024/03/GHSA-94wh-fmx9-8mfh/GHSA-94wh-fmx9-8mfh.json index 99871c98c7a..1222b03a94f 100644 --- a/advisories/unreviewed/2024/03/GHSA-94wh-fmx9-8mfh/GHSA-94wh-fmx9-8mfh.json +++ b/advisories/unreviewed/2024/03/GHSA-94wh-fmx9-8mfh/GHSA-94wh-fmx9-8mfh.json @@ -25,7 +25,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-qj6m-mjm6-q6qr/GHSA-qj6m-mjm6-q6qr.json b/advisories/unreviewed/2024/04/GHSA-qj6m-mjm6-q6qr/GHSA-qj6m-mjm6-q6qr.json index 55264fed09a..90ec37e4080 100644 --- a/advisories/unreviewed/2024/04/GHSA-qj6m-mjm6-q6qr/GHSA-qj6m-mjm6-q6qr.json +++ b/advisories/unreviewed/2024/04/GHSA-qj6m-mjm6-q6qr/GHSA-qj6m-mjm6-q6qr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qj6m-mjm6-q6qr", - "modified": "2024-04-04T00:33:10Z", + "modified": "2024-09-06T18:31:26Z", "published": "2024-04-04T00:33:10Z", "aliases": [ "CVE-2023-52043" ], "details": "An issue in D-Link COVR 1100, 1102, 1103 AC1200 Dual-Band Whole-Home Mesh Wi-Fi System (Hardware Rev B1) truncates Wireless Access Point Passwords (WPA-PSK) allowing an attacker to gain unauthorized network access via weak authentication controls.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-347" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-03T22:15:06Z" diff --git a/advisories/unreviewed/2024/06/GHSA-2859-3xrw-r77c/GHSA-2859-3xrw-r77c.json b/advisories/unreviewed/2024/06/GHSA-2859-3xrw-r77c/GHSA-2859-3xrw-r77c.json index f25a3abfb00..399833d7148 100644 --- a/advisories/unreviewed/2024/06/GHSA-2859-3xrw-r77c/GHSA-2859-3xrw-r77c.json +++ b/advisories/unreviewed/2024/06/GHSA-2859-3xrw-r77c/GHSA-2859-3xrw-r77c.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2859-3xrw-r77c", - "modified": "2024-06-13T18:31:59Z", + "modified": "2024-09-06T18:31:27Z", "published": "2024-06-13T18:31:59Z", "aliases": [ "CVE-2024-37630" ], "details": "D-Link DIR-605L v2.13B01 was discovered to contain a hardcoded password vulnerability in /etc/passwd, which allows attackers to log in as root.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-798" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-13T18:15:11Z" diff --git a/advisories/unreviewed/2024/06/GHSA-2jw4-8qc2-wm33/GHSA-2jw4-8qc2-wm33.json b/advisories/unreviewed/2024/06/GHSA-2jw4-8qc2-wm33/GHSA-2jw4-8qc2-wm33.json index 88f8ee7ba43..0dd94be12c1 100644 --- a/advisories/unreviewed/2024/06/GHSA-2jw4-8qc2-wm33/GHSA-2jw4-8qc2-wm33.json +++ b/advisories/unreviewed/2024/06/GHSA-2jw4-8qc2-wm33/GHSA-2jw4-8qc2-wm33.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2jw4-8qc2-wm33", - "modified": "2024-06-14T00:33:07Z", + "modified": "2024-09-06T18:31:27Z", "published": "2024-06-14T00:33:07Z", "aliases": [ "CVE-2024-31777" ], "details": "File Upload vulnerability in openeclass v.3.15 and before allows an attacker to execute arbitrary code via a crafted file to the certbadge.php endpoint.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-434" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-13T23:15:50Z" diff --git a/advisories/unreviewed/2024/06/GHSA-5wqr-8p59-25cc/GHSA-5wqr-8p59-25cc.json b/advisories/unreviewed/2024/06/GHSA-5wqr-8p59-25cc/GHSA-5wqr-8p59-25cc.json index 6ad75581f5f..ffedc07e1e0 100644 --- a/advisories/unreviewed/2024/06/GHSA-5wqr-8p59-25cc/GHSA-5wqr-8p59-25cc.json +++ b/advisories/unreviewed/2024/06/GHSA-5wqr-8p59-25cc/GHSA-5wqr-8p59-25cc.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5wqr-8p59-25cc", - "modified": "2024-06-12T21:31:19Z", + "modified": "2024-09-06T18:31:26Z", "published": "2024-06-12T21:31:19Z", "aliases": [ "CVE-2024-36523" ], "details": "An access control issue in Wvp GB28181 Pro 2.0 allows users to continue to access information in the application after deleting their own or administrator accounts. This is provided that the users do not log out of their deleted accounts.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-613" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-12T21:15:50Z" diff --git a/advisories/unreviewed/2024/06/GHSA-6g47-rggg-cg8v/GHSA-6g47-rggg-cg8v.json b/advisories/unreviewed/2024/06/GHSA-6g47-rggg-cg8v/GHSA-6g47-rggg-cg8v.json index e7c65c10c53..0e6de27e194 100644 --- a/advisories/unreviewed/2024/06/GHSA-6g47-rggg-cg8v/GHSA-6g47-rggg-cg8v.json +++ b/advisories/unreviewed/2024/06/GHSA-6g47-rggg-cg8v/GHSA-6g47-rggg-cg8v.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6g47-rggg-cg8v", - "modified": "2024-06-24T00:34:02Z", + "modified": "2024-09-06T18:31:27Z", "published": "2024-06-24T00:34:02Z", "aliases": [ "CVE-2024-6273" @@ -11,6 +11,10 @@ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], "affected": [ diff --git a/advisories/unreviewed/2024/06/GHSA-6v45-98rm-v6wm/GHSA-6v45-98rm-v6wm.json b/advisories/unreviewed/2024/06/GHSA-6v45-98rm-v6wm/GHSA-6v45-98rm-v6wm.json index 0b49879327c..1a5ed3dbacf 100644 --- a/advisories/unreviewed/2024/06/GHSA-6v45-98rm-v6wm/GHSA-6v45-98rm-v6wm.json +++ b/advisories/unreviewed/2024/06/GHSA-6v45-98rm-v6wm/GHSA-6v45-98rm-v6wm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6v45-98rm-v6wm", - "modified": "2024-06-23T09:31:44Z", + "modified": "2024-09-06T18:31:27Z", "published": "2024-06-23T06:30:50Z", "aliases": [ "CVE-2024-6267" @@ -11,6 +11,10 @@ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], "affected": [ diff --git a/advisories/unreviewed/2024/06/GHSA-7rq4-qc4c-57j9/GHSA-7rq4-qc4c-57j9.json b/advisories/unreviewed/2024/06/GHSA-7rq4-qc4c-57j9/GHSA-7rq4-qc4c-57j9.json index fa3e767b8cc..d51902c089a 100644 --- a/advisories/unreviewed/2024/06/GHSA-7rq4-qc4c-57j9/GHSA-7rq4-qc4c-57j9.json +++ b/advisories/unreviewed/2024/06/GHSA-7rq4-qc4c-57j9/GHSA-7rq4-qc4c-57j9.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7rq4-qc4c-57j9", - "modified": "2024-06-22T15:30:40Z", + "modified": "2024-09-06T18:31:27Z", "published": "2024-06-22T15:30:39Z", "aliases": [ "CVE-2024-6253" @@ -11,6 +11,10 @@ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], "affected": [ diff --git a/advisories/unreviewed/2024/06/GHSA-gg2f-5qcm-2x9p/GHSA-gg2f-5qcm-2x9p.json b/advisories/unreviewed/2024/06/GHSA-gg2f-5qcm-2x9p/GHSA-gg2f-5qcm-2x9p.json index 0673217d0e4..f15966d73cf 100644 --- a/advisories/unreviewed/2024/06/GHSA-gg2f-5qcm-2x9p/GHSA-gg2f-5qcm-2x9p.json +++ b/advisories/unreviewed/2024/06/GHSA-gg2f-5qcm-2x9p/GHSA-gg2f-5qcm-2x9p.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-gg2f-5qcm-2x9p", - "modified": "2024-06-20T15:31:19Z", + "modified": "2024-09-06T18:31:27Z", "published": "2024-06-20T15:31:19Z", "aliases": [ "CVE-2024-6192" @@ -11,6 +11,10 @@ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], "affected": [ diff --git a/advisories/unreviewed/2024/06/GHSA-jvx5-2xrh-qc9f/GHSA-jvx5-2xrh-qc9f.json b/advisories/unreviewed/2024/06/GHSA-jvx5-2xrh-qc9f/GHSA-jvx5-2xrh-qc9f.json index 40c77be5548..eef8a801f84 100644 --- a/advisories/unreviewed/2024/06/GHSA-jvx5-2xrh-qc9f/GHSA-jvx5-2xrh-qc9f.json +++ b/advisories/unreviewed/2024/06/GHSA-jvx5-2xrh-qc9f/GHSA-jvx5-2xrh-qc9f.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-jvx5-2xrh-qc9f", - "modified": "2024-06-20T15:31:19Z", + "modified": "2024-09-06T18:31:27Z", "published": "2024-06-20T15:31:19Z", "aliases": [ "CVE-2024-6191" @@ -11,6 +11,10 @@ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], "affected": [ diff --git a/advisories/unreviewed/2024/06/GHSA-r86x-6xqq-rhq8/GHSA-r86x-6xqq-rhq8.json b/advisories/unreviewed/2024/06/GHSA-r86x-6xqq-rhq8/GHSA-r86x-6xqq-rhq8.json index dc4d767fb4c..e23b40f1cad 100644 --- a/advisories/unreviewed/2024/06/GHSA-r86x-6xqq-rhq8/GHSA-r86x-6xqq-rhq8.json +++ b/advisories/unreviewed/2024/06/GHSA-r86x-6xqq-rhq8/GHSA-r86x-6xqq-rhq8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-r86x-6xqq-rhq8", - "modified": "2024-06-24T03:30:37Z", + "modified": "2024-09-06T18:31:27Z", "published": "2024-06-24T03:30:37Z", "aliases": [ "CVE-2024-6280" @@ -11,6 +11,10 @@ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], "affected": [ diff --git a/advisories/unreviewed/2024/06/GHSA-xvcq-gm57-37c5/GHSA-xvcq-gm57-37c5.json b/advisories/unreviewed/2024/06/GHSA-xvcq-gm57-37c5/GHSA-xvcq-gm57-37c5.json index a8d71a45708..0cc780f9f58 100644 --- a/advisories/unreviewed/2024/06/GHSA-xvcq-gm57-37c5/GHSA-xvcq-gm57-37c5.json +++ b/advisories/unreviewed/2024/06/GHSA-xvcq-gm57-37c5/GHSA-xvcq-gm57-37c5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-xvcq-gm57-37c5", - "modified": "2024-06-17T18:31:33Z", + "modified": "2024-09-06T18:31:27Z", "published": "2024-06-14T15:31:25Z", "aliases": [ "CVE-2024-33377" ], "details": "LB-LINK BL-W1210M v2.0 was discovered to contain a clickjacking vulnerability via the Administrator login page. Attackers can cause victim users to perform arbitrary operations via interaction with crafted elements on the web page.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-1021" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-14T15:15:50Z" diff --git a/advisories/unreviewed/2024/08/GHSA-6cg9-52c8-r76r/GHSA-6cg9-52c8-r76r.json b/advisories/unreviewed/2024/08/GHSA-6cg9-52c8-r76r/GHSA-6cg9-52c8-r76r.json index 6d144847982..e9fef709c67 100644 --- a/advisories/unreviewed/2024/08/GHSA-6cg9-52c8-r76r/GHSA-6cg9-52c8-r76r.json +++ b/advisories/unreviewed/2024/08/GHSA-6cg9-52c8-r76r/GHSA-6cg9-52c8-r76r.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-284" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-74rv-62jv-rq8p/GHSA-74rv-62jv-rq8p.json b/advisories/unreviewed/2024/08/GHSA-74rv-62jv-rq8p/GHSA-74rv-62jv-rq8p.json index 3627dde017b..d2a54c22056 100644 --- a/advisories/unreviewed/2024/08/GHSA-74rv-62jv-rq8p/GHSA-74rv-62jv-rq8p.json +++ b/advisories/unreviewed/2024/08/GHSA-74rv-62jv-rq8p/GHSA-74rv-62jv-rq8p.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-74rv-62jv-rq8p", - "modified": "2024-08-17T06:30:52Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-08-17T06:30:52Z", "aliases": [ "CVE-2024-6459" ], "details": "The News Element Elementor Blog Magazine WordPress plugin before 1.0.6 is vulnerable to Local File Inclusion via the template parameter. This makes it possible for unauthenticated attacker to include and execute PHP files on the server, allowing the execution of any PHP code in those files.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-17T06:15:03Z" diff --git a/advisories/unreviewed/2024/08/GHSA-8736-pr6r-r9hr/GHSA-8736-pr6r-r9hr.json b/advisories/unreviewed/2024/08/GHSA-8736-pr6r-r9hr/GHSA-8736-pr6r-r9hr.json index 92cac1c9f44..449d00f9d81 100644 --- a/advisories/unreviewed/2024/08/GHSA-8736-pr6r-r9hr/GHSA-8736-pr6r-r9hr.json +++ b/advisories/unreviewed/2024/08/GHSA-8736-pr6r-r9hr/GHSA-8736-pr6r-r9hr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8736-pr6r-r9hr", - "modified": "2024-08-23T09:30:35Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-08-23T09:30:35Z", "aliases": [ "CVE-2024-40766" ], "details": "An improper access control vulnerability has been identified in the SonicWall SonicOS management access, potentially leading to unauthorized resource access and in specific conditions, causing the firewall to crash. This issue affects SonicWall Firewall Gen 5 and Gen 6 devices, as well as Gen 7 devices running SonicOS 7.0.1-5035 and older versions.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ "CWE-284" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-23T07:15:03Z" diff --git a/advisories/unreviewed/2024/08/GHSA-9qh5-wwv6-xccg/GHSA-9qh5-wwv6-xccg.json b/advisories/unreviewed/2024/08/GHSA-9qh5-wwv6-xccg/GHSA-9qh5-wwv6-xccg.json index cd6d206464c..3bc21b037ef 100644 --- a/advisories/unreviewed/2024/08/GHSA-9qh5-wwv6-xccg/GHSA-9qh5-wwv6-xccg.json +++ b/advisories/unreviewed/2024/08/GHSA-9qh5-wwv6-xccg/GHSA-9qh5-wwv6-xccg.json @@ -32,6 +32,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-22", "CWE-23" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2024/08/GHSA-cg3x-qc2c-6jq2/GHSA-cg3x-qc2c-6jq2.json b/advisories/unreviewed/2024/08/GHSA-cg3x-qc2c-6jq2/GHSA-cg3x-qc2c-6jq2.json index 9ea92df96b8..b65136e6242 100644 --- a/advisories/unreviewed/2024/08/GHSA-cg3x-qc2c-6jq2/GHSA-cg3x-qc2c-6jq2.json +++ b/advisories/unreviewed/2024/08/GHSA-cg3x-qc2c-6jq2/GHSA-cg3x-qc2c-6jq2.json @@ -28,6 +28,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-79", "CWE-81" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2024/08/GHSA-gr6c-f4fc-5x96/GHSA-gr6c-f4fc-5x96.json b/advisories/unreviewed/2024/08/GHSA-gr6c-f4fc-5x96/GHSA-gr6c-f4fc-5x96.json index 34147baa8a4..fdda3843a8d 100644 --- a/advisories/unreviewed/2024/08/GHSA-gr6c-f4fc-5x96/GHSA-gr6c-f4fc-5x96.json +++ b/advisories/unreviewed/2024/08/GHSA-gr6c-f4fc-5x96/GHSA-gr6c-f4fc-5x96.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gr6c-f4fc-5x96", - "modified": "2024-08-20T18:31:26Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-08-20T18:31:26Z", "aliases": [ "CVE-2024-42919" ], "details": "eScan Management Console 14.0.1400.2281 is vulnerable to Incorrect Access Control via acteScanAVReport.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-284" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-20T17:15:19Z" diff --git a/advisories/unreviewed/2024/08/GHSA-h6c7-598w-v6r5/GHSA-h6c7-598w-v6r5.json b/advisories/unreviewed/2024/08/GHSA-h6c7-598w-v6r5/GHSA-h6c7-598w-v6r5.json index a643c486634..de113ea4bfc 100644 --- a/advisories/unreviewed/2024/08/GHSA-h6c7-598w-v6r5/GHSA-h6c7-598w-v6r5.json +++ b/advisories/unreviewed/2024/08/GHSA-h6c7-598w-v6r5/GHSA-h6c7-598w-v6r5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-h6c7-598w-v6r5", - "modified": "2024-08-20T15:32:12Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-08-20T15:32:12Z", "aliases": [ "CVE-2024-42557" ], "details": "A Cross-Site Request Forgery (CSRF) in the component admin_modify_room.php of Hotel Management System commit 91caab8 allows attackers to escalate privileges.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-352" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-20T13:15:06Z" diff --git a/advisories/unreviewed/2024/08/GHSA-jrj5-pj64-4f42/GHSA-jrj5-pj64-4f42.json b/advisories/unreviewed/2024/08/GHSA-jrj5-pj64-4f42/GHSA-jrj5-pj64-4f42.json index fca0d9794a4..4d64fc356fd 100644 --- a/advisories/unreviewed/2024/08/GHSA-jrj5-pj64-4f42/GHSA-jrj5-pj64-4f42.json +++ b/advisories/unreviewed/2024/08/GHSA-jrj5-pj64-4f42/GHSA-jrj5-pj64-4f42.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jrj5-pj64-4f42", - "modified": "2024-08-03T06:30:35Z", + "modified": "2024-09-06T18:31:27Z", "published": "2024-08-03T06:30:35Z", "aliases": [ "CVE-2024-6477" ], "details": "The UsersWP WordPress plugin before 1.2.12 uses predictable filenames when an admin generates an export, which could allow unauthenticated attackers to download them and retrieve sensitive information such as IP, username, and email address", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-03T06:16:29Z" diff --git a/advisories/unreviewed/2024/08/GHSA-pgqc-fvj2-w9mh/GHSA-pgqc-fvj2-w9mh.json b/advisories/unreviewed/2024/08/GHSA-pgqc-fvj2-w9mh/GHSA-pgqc-fvj2-w9mh.json index efd501ac5f6..a2ad4b5adcc 100644 --- a/advisories/unreviewed/2024/08/GHSA-pgqc-fvj2-w9mh/GHSA-pgqc-fvj2-w9mh.json +++ b/advisories/unreviewed/2024/08/GHSA-pgqc-fvj2-w9mh/GHSA-pgqc-fvj2-w9mh.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-pgqc-fvj2-w9mh", - "modified": "2024-08-21T21:30:46Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-08-21T21:30:46Z", "aliases": [ "CVE-2024-41572" ], "details": "Learning with Texts (LWT) 2.0.3 is vulnerable to Cross Site Scripting (XSS). The application has a specific function that does not filter special characters in URL parameters. Remote attackers can inject JavaScript code without authorization.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-21T19:15:13Z" diff --git a/advisories/unreviewed/2024/08/GHSA-rfgm-jggp-w57r/GHSA-rfgm-jggp-w57r.json b/advisories/unreviewed/2024/08/GHSA-rfgm-jggp-w57r/GHSA-rfgm-jggp-w57r.json index 84c7ac9cbbb..a26474c8d20 100644 --- a/advisories/unreviewed/2024/08/GHSA-rfgm-jggp-w57r/GHSA-rfgm-jggp-w57r.json +++ b/advisories/unreviewed/2024/08/GHSA-rfgm-jggp-w57r/GHSA-rfgm-jggp-w57r.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-rfgm-jggp-w57r", - "modified": "2024-08-21T09:31:32Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-08-21T09:31:31Z", "aliases": [ "CVE-2022-48891" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nregulator: da9211: Use irq handler when ready\n\nIf the system does not come from reset (like when it is kexec()), the\nregulator might have an IRQ waiting for us.\n\nIf we enable the IRQ handler before its structures are ready, we crash.\n\nThis patch fixes:\n\n[ 1.141839] Unable to handle kernel read from unreadable memory at virtual address 0000000000000078\n[ 1.316096] Call trace:\n[ 1.316101] blocking_notifier_call_chain+0x20/0xa8\n[ 1.322757] cpu cpu0: dummy supplies not allowed for exclusive requests\n[ 1.327823] regulator_notifier_call_chain+0x1c/0x2c\n[ 1.327825] da9211_irq_handler+0x68/0xf8\n[ 1.327829] irq_thread+0x11c/0x234\n[ 1.327833] kthread+0x13c/0x154", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -51,7 +54,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-21T07:15:05Z" diff --git a/advisories/unreviewed/2024/08/GHSA-w8pg-hrp7-6jch/GHSA-w8pg-hrp7-6jch.json b/advisories/unreviewed/2024/08/GHSA-w8pg-hrp7-6jch/GHSA-w8pg-hrp7-6jch.json index ffe44b00ad1..8d993b9d726 100644 --- a/advisories/unreviewed/2024/08/GHSA-w8pg-hrp7-6jch/GHSA-w8pg-hrp7-6jch.json +++ b/advisories/unreviewed/2024/08/GHSA-w8pg-hrp7-6jch/GHSA-w8pg-hrp7-6jch.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-w8pg-hrp7-6jch", - "modified": "2024-09-05T15:33:33Z", + "modified": "2024-09-06T18:31:27Z", "published": "2024-08-05T06:30:37Z", "aliases": [ "CVE-2024-6498" diff --git a/advisories/unreviewed/2024/08/GHSA-wxwq-v4jc-6x96/GHSA-wxwq-v4jc-6x96.json b/advisories/unreviewed/2024/08/GHSA-wxwq-v4jc-6x96/GHSA-wxwq-v4jc-6x96.json index 12cc6df89aa..f13ad10fd13 100644 --- a/advisories/unreviewed/2024/08/GHSA-wxwq-v4jc-6x96/GHSA-wxwq-v4jc-6x96.json +++ b/advisories/unreviewed/2024/08/GHSA-wxwq-v4jc-6x96/GHSA-wxwq-v4jc-6x96.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-77" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/09/GHSA-2853-84mf-g278/GHSA-2853-84mf-g278.json b/advisories/unreviewed/2024/09/GHSA-2853-84mf-g278/GHSA-2853-84mf-g278.json new file mode 100644 index 00000000000..f0a6940bf93 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-2853-84mf-g278/GHSA-2853-84mf-g278.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2853-84mf-g278", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2024-21906" + ], + "details": "An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators to execute commands via a network.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.1.8.2823 build 20240712 and later\nQuTS hero h5.1.8.2823 build 20240712 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21906" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-33" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-2g3g-3px6-gf3h/GHSA-2g3g-3px6-gf3h.json b/advisories/unreviewed/2024/09/GHSA-2g3g-3px6-gf3h/GHSA-2g3g-3px6-gf3h.json new file mode 100644 index 00000000000..4e57b9cdf5e --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-2g3g-3px6-gf3h/GHSA-2g3g-3px6-gf3h.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2g3g-3px6-gf3h", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2024-27125" + ], + "details": "A cross-site scripting (XSS) vulnerability has been reported to affect Helpdesk. If exploited, the vulnerability could allow authenticated administrators to inject malicious code via a network.\n\nWe have already fixed the vulnerability in the following version:\nHelpdesk 3.3.1 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-27125" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-29" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-2j9f-hmx4-cvgr/GHSA-2j9f-hmx4-cvgr.json b/advisories/unreviewed/2024/09/GHSA-2j9f-hmx4-cvgr/GHSA-2j9f-hmx4-cvgr.json index e8c8b634822..3a1ad8c1a1a 100644 --- a/advisories/unreviewed/2024/09/GHSA-2j9f-hmx4-cvgr/GHSA-2j9f-hmx4-cvgr.json +++ b/advisories/unreviewed/2024/09/GHSA-2j9f-hmx4-cvgr/GHSA-2j9f-hmx4-cvgr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2j9f-hmx4-cvgr", - "modified": "2024-09-04T21:30:31Z", + "modified": "2024-09-06T18:31:29Z", "published": "2024-09-04T21:30:31Z", "aliases": [ "CVE-2024-44964" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nidpf: fix memory leaks and crashes while performing a soft reset\n\nThe second tagged commit introduced a UAF, as it removed restoring\nq_vector->vport pointers after reinitializating the structures.\nThis is due to that all queue allocation functions are performed here\nwith the new temporary vport structure and those functions rewrite\nthe backpointers to the vport. Then, this new struct is freed and\nthe pointers start leading to nowhere.\n\nBut generally speaking, the current logic is very fragile. It claims\nto be more reliable when the system is low on memory, but in fact, it\nconsumes two times more memory as at the moment of running this\nfunction, there are two vports allocated with their queues and vectors.\nMoreover, it claims to prevent the driver from running into \"bad state\",\nbut in fact, any error during the rebuild leaves the old vport in the\npartially allocated state.\nFinally, if the interface is down when the function is called, it always\nallocates a new queue set, but when the user decides to enable the\ninterface later on, vport_open() allocates them once again, IOW there's\na clear memory leak here.\n\nJust don't allocate a new queue set when performing a reset, that solves\ncrashes and memory leaks. Readd the old queue number and reopen the\ninterface on rollback - that solves limbo states when the device is left\ndisabled and/or without HW queues enabled.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-401" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T19:15:30Z" diff --git a/advisories/unreviewed/2024/09/GHSA-2jrr-ff5x-5jqg/GHSA-2jrr-ff5x-5jqg.json b/advisories/unreviewed/2024/09/GHSA-2jrr-ff5x-5jqg/GHSA-2jrr-ff5x-5jqg.json index c359fd43af0..108a644e1bc 100644 --- a/advisories/unreviewed/2024/09/GHSA-2jrr-ff5x-5jqg/GHSA-2jrr-ff5x-5jqg.json +++ b/advisories/unreviewed/2024/09/GHSA-2jrr-ff5x-5jqg/GHSA-2jrr-ff5x-5jqg.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2jrr-ff5x-5jqg", - "modified": "2024-09-04T21:30:32Z", + "modified": "2024-09-06T18:31:29Z", "published": "2024-09-04T21:30:32Z", "aliases": [ "CVE-2024-44997" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: ethernet: mtk_wed: fix use-after-free panic in mtk_wed_setup_tc_block_cb()\n\nWhen there are multiple ap interfaces on one band and with WED on,\nturning the interface down will cause a kernel panic on MT798X.\n\nPreviously, cb_priv was freed in mtk_wed_setup_tc_block() without\nmarking NULL,and mtk_wed_setup_tc_block_cb() didn't check the value, too.\n\nAssign NULL after free cb_priv in mtk_wed_setup_tc_block() and check NULL\nin mtk_wed_setup_tc_block_cb().\n\n----------\nUnable to handle kernel paging request at virtual address 0072460bca32b4f5\nCall trace:\n mtk_wed_setup_tc_block_cb+0x4/0x38\n 0xffffffc0794084bc\n tcf_block_playback_offloads+0x70/0x1e8\n tcf_block_unbind+0x6c/0xc8\n...\n---------", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T20:15:08Z" diff --git a/advisories/unreviewed/2024/09/GHSA-2m44-793w-9x5c/GHSA-2m44-793w-9x5c.json b/advisories/unreviewed/2024/09/GHSA-2m44-793w-9x5c/GHSA-2m44-793w-9x5c.json new file mode 100644 index 00000000000..65ee1a27bcf --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-2m44-793w-9x5c/GHSA-2m44-793w-9x5c.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2m44-793w-9x5c", + "modified": "2024-09-06T18:31:30Z", + "published": "2024-09-06T18:31:30Z", + "aliases": [ + "CVE-2024-44401" + ], + "details": "D-Link DI-8100G 17.12.20A1 is vulnerable to Command Injection via sub47A60C function in the upgrade_filter.asp file", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44401" + }, + { + "type": "WEB", + "url": "https://github.com/lonelylonglong/openfile-/blob/main/D-link_DI_8100GA1_Command_Injection.md/CVE-2024-44401" + }, + { + "type": "WEB", + "url": "https://github.com/lonelylonglong/openfile-/blob/main/D-link_DI_8100GA1_Command_Injection.md/D-link_DI_8100GA1_Command_Injection.md" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T16:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-3849-c8qc-jg4v/GHSA-3849-c8qc-jg4v.json b/advisories/unreviewed/2024/09/GHSA-3849-c8qc-jg4v/GHSA-3849-c8qc-jg4v.json new file mode 100644 index 00000000000..f69b4ee1ac5 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-3849-c8qc-jg4v/GHSA-3849-c8qc-jg4v.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3849-c8qc-jg4v", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2023-39300" + ], + "details": "An OS command injection vulnerability has been reported to affect legacy QTS. If exploited, the vulnerability could allow authenticated administrators to execute commands via a network.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 4.3.6.2805 build 20240619 and later\nQTS 4.3.4.2814 build 20240618 and later\nQTS 4.3.3.2784 build 20240619 and later\nQTS 4.2.6 build 20240618 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-39300" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-26" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-3vff-2vjg-jh5h/GHSA-3vff-2vjg-jh5h.json b/advisories/unreviewed/2024/09/GHSA-3vff-2vjg-jh5h/GHSA-3vff-2vjg-jh5h.json new file mode 100644 index 00000000000..af1617e508a --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-3vff-2vjg-jh5h/GHSA-3vff-2vjg-jh5h.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3vff-2vjg-jh5h", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2024-32762" + ], + "details": "A cross-site scripting (XSS) vulnerability has been reported to affect QuLog Center. If exploited, the vulnerability could allow users to inject malicious code via a network.\n\nWe have already fixed the vulnerability in the following versions:\nQuLog Center 1.8.0.872 ( 2024/06/17 ) and later\nQuLog Center 1.7.0.827 ( 2024/06/17 ) and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-32762" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-30" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-3xwf-r3fv-8c54/GHSA-3xwf-r3fv-8c54.json b/advisories/unreviewed/2024/09/GHSA-3xwf-r3fv-8c54/GHSA-3xwf-r3fv-8c54.json index 024d608751c..a4a799d4bbb 100644 --- a/advisories/unreviewed/2024/09/GHSA-3xwf-r3fv-8c54/GHSA-3xwf-r3fv-8c54.json +++ b/advisories/unreviewed/2024/09/GHSA-3xwf-r3fv-8c54/GHSA-3xwf-r3fv-8c54.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-3xwf-r3fv-8c54", - "modified": "2024-09-04T21:30:32Z", + "modified": "2024-09-06T18:31:29Z", "published": "2024-09-04T21:30:32Z", "aliases": [ "CVE-2024-44990" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbonding: fix null pointer deref in bond_ipsec_offload_ok\n\nWe must check if there is an active slave before dereferencing the pointer.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T20:15:08Z" diff --git a/advisories/unreviewed/2024/09/GHSA-435p-f446-gxf4/GHSA-435p-f446-gxf4.json b/advisories/unreviewed/2024/09/GHSA-435p-f446-gxf4/GHSA-435p-f446-gxf4.json index 68f6eadc29f..9b18b345afc 100644 --- a/advisories/unreviewed/2024/09/GHSA-435p-f446-gxf4/GHSA-435p-f446-gxf4.json +++ b/advisories/unreviewed/2024/09/GHSA-435p-f446-gxf4/GHSA-435p-f446-gxf4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-435p-f446-gxf4", - "modified": "2024-09-05T15:33:35Z", + "modified": "2024-09-06T18:31:29Z", "published": "2024-09-04T21:30:32Z", "aliases": [ "CVE-2024-44995" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: hns3: fix a deadlock problem when config TC during resetting\n\nWhen config TC during the reset process, may cause a deadlock, the flow is\nas below:\n pf reset start\n │\n ▼\n ......\nsetup tc │\n │ ▼\n ▼ DOWN: napi_disable()\nnapi_disable()(skip) │\n │ │\n ▼ ▼\n ...... ......\n │ │\n ▼ │\nnapi_enable() │\n ▼\n UINIT: netif_napi_del()\n │\n ▼\n ......\n │\n ▼\n INIT: netif_napi_add()\n │\n ▼\n ...... global reset start\n │ │\n ▼ ▼\n UP: napi_enable()(skip) ......\n │ │\n ▼ ▼\n ...... napi_disable()\n\nIn reset process, the driver will DOWN the port and then UINIT, in this\ncase, the setup tc process will UP the port before UINIT, so cause the\nproblem. Adds a DOWN process in UINIT to fix it.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -49,9 +52,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-667" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T20:15:08Z" diff --git a/advisories/unreviewed/2024/09/GHSA-53cv-6gxv-7335/GHSA-53cv-6gxv-7335.json b/advisories/unreviewed/2024/09/GHSA-53cv-6gxv-7335/GHSA-53cv-6gxv-7335.json index f43acbd1ddc..a1ddee99cb2 100644 --- a/advisories/unreviewed/2024/09/GHSA-53cv-6gxv-7335/GHSA-53cv-6gxv-7335.json +++ b/advisories/unreviewed/2024/09/GHSA-53cv-6gxv-7335/GHSA-53cv-6gxv-7335.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-53cv-6gxv-7335", - "modified": "2024-09-04T21:30:32Z", + "modified": "2024-09-06T18:31:29Z", "published": "2024-09-04T21:30:32Z", "aliases": [ "CVE-2024-44992" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nsmb/client: avoid possible NULL dereference in cifs_free_subrequest()\n\nClang static checker (scan-build) warning:\n\tcifsglob.h:line 890, column 3\n\tAccess to field 'ops' results in a dereference of a null pointer.\n\nCommit 519be989717c (\"cifs: Add a tracepoint to track credits involved in\nR/W requests\") adds a check for 'rdata->server', and let clang throw this\nwarning about NULL dereference.\n\nWhen 'rdata->credits.value != 0 && rdata->server == NULL' happens,\nadd_credits_and_wake_if() will call rdata->server->ops->add_credits().\nThis will cause NULL dereference problem. Add a check for 'rdata->server'\nto avoid NULL dereference.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T20:15:08Z" diff --git a/advisories/unreviewed/2024/09/GHSA-5822-38r8-r5p2/GHSA-5822-38r8-r5p2.json b/advisories/unreviewed/2024/09/GHSA-5822-38r8-r5p2/GHSA-5822-38r8-r5p2.json index 49f35a7b854..1d11edc35b9 100644 --- a/advisories/unreviewed/2024/09/GHSA-5822-38r8-r5p2/GHSA-5822-38r8-r5p2.json +++ b/advisories/unreviewed/2024/09/GHSA-5822-38r8-r5p2/GHSA-5822-38r8-r5p2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5822-38r8-r5p2", - "modified": "2024-09-04T21:30:31Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-09-04T21:30:31Z", "aliases": [ "CVE-2024-44952" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndriver core: Fix uevent_show() vs driver detach race\n\nuevent_show() wants to de-reference dev->driver->name. There is no clean\nway for a device attribute to de-reference dev->driver unless that\nattribute is defined via (struct device_driver).dev_groups. Instead, the\nanti-pattern of taking the device_lock() in the attribute handler risks\ndeadlocks with code paths that remove device attributes while holding\nthe lock.\n\nThis deadlock is typically invisible to lockdep given the device_lock()\nis marked lockdep_set_novalidate_class(), but some subsystems allocate a\nlocal lockdep key for @dev->mutex to reveal reports of the form:\n\n ======================================================\n WARNING: possible circular locking dependency detected\n 6.10.0-rc7+ #275 Tainted: G OE N\n ------------------------------------------------------\n modprobe/2374 is trying to acquire lock:\n ffff8c2270070de0 (kn->active#6){++++}-{0:0}, at: __kernfs_remove+0xde/0x220\n\n but task is already holding lock:\n ffff8c22016e88f8 (&cxl_root_key){+.+.}-{3:3}, at: device_release_driver_internal+0x39/0x210\n\n which lock already depends on the new lock.\n\n the existing dependency chain (in reverse order) is:\n\n -> #1 (&cxl_root_key){+.+.}-{3:3}:\n __mutex_lock+0x99/0xc30\n uevent_show+0xac/0x130\n dev_attr_show+0x18/0x40\n sysfs_kf_seq_show+0xac/0xf0\n seq_read_iter+0x110/0x450\n vfs_read+0x25b/0x340\n ksys_read+0x67/0xf0\n do_syscall_64+0x75/0x190\n entry_SYSCALL_64_after_hwframe+0x76/0x7e\n\n -> #0 (kn->active#6){++++}-{0:0}:\n __lock_acquire+0x121a/0x1fa0\n lock_acquire+0xd6/0x2e0\n kernfs_drain+0x1e9/0x200\n __kernfs_remove+0xde/0x220\n kernfs_remove_by_name_ns+0x5e/0xa0\n device_del+0x168/0x410\n device_unregister+0x13/0x60\n devres_release_all+0xb8/0x110\n device_unbind_cleanup+0xe/0x70\n device_release_driver_internal+0x1c7/0x210\n driver_detach+0x47/0x90\n bus_remove_driver+0x6c/0xf0\n cxl_acpi_exit+0xc/0x11 [cxl_acpi]\n __do_sys_delete_module.isra.0+0x181/0x260\n do_syscall_64+0x75/0x190\n entry_SYSCALL_64_after_hwframe+0x76/0x7e\n\nThe observation though is that driver objects are typically much longer\nlived than device objects. It is reasonable to perform lockless\nde-reference of a @driver pointer even if it is racing detach from a\ndevice. Given the infrequency of driver unregistration, use\nsynchronize_rcu() in module_remove_driver() to close any potential\nraces. It is potentially overkill to suffer synchronize_rcu() just to\nhandle the rare module removal racing uevent_show() event.\n\nThanks to Tetsuo Handa for the debug analysis of the syzbot report [1].", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-667" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T19:15:30Z" diff --git a/advisories/unreviewed/2024/09/GHSA-58rh-53vh-8w68/GHSA-58rh-53vh-8w68.json b/advisories/unreviewed/2024/09/GHSA-58rh-53vh-8w68/GHSA-58rh-53vh-8w68.json new file mode 100644 index 00000000000..bf0e1343297 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-58rh-53vh-8w68/GHSA-58rh-53vh-8w68.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-58rh-53vh-8w68", + "modified": "2024-09-06T18:31:35Z", + "published": "2024-09-06T18:31:35Z", + "aliases": [ + "CVE-2024-38640" + ], + "details": "A cross-site scripting (XSS) vulnerability has been reported to affect Download Station. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network.\n\nWe have already fixed the vulnerability in the following version:\nDownload Station 5.8.6.283 ( 2024/06/21 ) and later", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38640" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-35" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-5mrr-fx45-wmm7/GHSA-5mrr-fx45-wmm7.json b/advisories/unreviewed/2024/09/GHSA-5mrr-fx45-wmm7/GHSA-5mrr-fx45-wmm7.json new file mode 100644 index 00000000000..15b141c85fd --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-5mrr-fx45-wmm7/GHSA-5mrr-fx45-wmm7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5mrr-fx45-wmm7", + "modified": "2024-09-06T18:31:35Z", + "published": "2024-09-06T18:31:35Z", + "aliases": [ + "CVE-2024-32771" + ], + "details": "An improper restriction of excessive authentication attempts vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow local network authenticated administrators to perform an arbitrary number of authentication attempts via unspecified vectors.\nQuTScloud is not affected.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.0.2782 build 20240601 and later\nQuTS hero h5.2.0.2782 build 20240601 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:H/PR:H/UI:N/S:C/C:L/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-32771" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-28" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-307" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-5x78-3xcj-2hqh/GHSA-5x78-3xcj-2hqh.json b/advisories/unreviewed/2024/09/GHSA-5x78-3xcj-2hqh/GHSA-5x78-3xcj-2hqh.json new file mode 100644 index 00000000000..1b048589d8a --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-5x78-3xcj-2hqh/GHSA-5x78-3xcj-2hqh.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5x78-3xcj-2hqh", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2023-50360" + ], + "details": "A SQL injection vulnerability has been reported to affect Video Station. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network.\n\nWe have already fixed the vulnerability in the following version:\nVideo Station 5.8.1 ( 2024/02/26 ) and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50360" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-24" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-5xmf-5w3g-qm87/GHSA-5xmf-5w3g-qm87.json b/advisories/unreviewed/2024/09/GHSA-5xmf-5w3g-qm87/GHSA-5xmf-5w3g-qm87.json new file mode 100644 index 00000000000..2a0bc6da18d --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-5xmf-5w3g-qm87/GHSA-5xmf-5w3g-qm87.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5xmf-5w3g-qm87", + "modified": "2024-09-06T18:31:31Z", + "published": "2024-09-06T18:31:31Z", + "aliases": [ + "CVE-2024-8509" + ], + "details": "A vulnerability was found in Forklift Controller.  There is no verification against the authorization header except to ensure it uses bearer authentication. Without an Authorization header and some form of a Bearer token, a 401 error occurs. The presence of a token value provides a 200 response with the requested information.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8509" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/security/cve/CVE-2024-8509" + }, + { + "type": "WEB", + "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2310406" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-285" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T16:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-67f9-f6gx-hhq7/GHSA-67f9-f6gx-hhq7.json b/advisories/unreviewed/2024/09/GHSA-67f9-f6gx-hhq7/GHSA-67f9-f6gx-hhq7.json new file mode 100644 index 00000000000..e72ca2c2afd --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-67f9-f6gx-hhq7/GHSA-67f9-f6gx-hhq7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-67f9-f6gx-hhq7", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2024-21904" + ], + "details": "A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to read the contents of unexpected files and expose sensitive data via a network.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.1.7.2770 build 20240520 and later\nQuTS hero h5.1.7.2770 build 20240520 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21904" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-23" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-688v-74jq-v222/GHSA-688v-74jq-v222.json b/advisories/unreviewed/2024/09/GHSA-688v-74jq-v222/GHSA-688v-74jq-v222.json new file mode 100644 index 00000000000..38aa33045c8 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-688v-74jq-v222/GHSA-688v-74jq-v222.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-688v-74jq-v222", + "modified": "2024-09-06T18:31:35Z", + "published": "2024-09-06T18:31:35Z", + "aliases": [ + "CVE-2024-8394" + ], + "details": "When aborting the verification of an OTR chat session, an attacker could have caused a use-after-free bug leading to a potentially exploitable crash. This vulnerability affects Thunderbird < 128.2.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8394" + }, + { + "type": "WEB", + "url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1895737" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-43" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-6gf3-qc4m-f686/GHSA-6gf3-qc4m-f686.json b/advisories/unreviewed/2024/09/GHSA-6gf3-qc4m-f686/GHSA-6gf3-qc4m-f686.json new file mode 100644 index 00000000000..a17608aff24 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-6gf3-qc4m-f686/GHSA-6gf3-qc4m-f686.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6gf3-qc4m-f686", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2024-21897" + ], + "details": "A cross-site scripting (XSS) vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.1.6.2722 build 20240402 and later\nQuTS hero h5.1.6.2734 build 20240414 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21897" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-20" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-6q4m-8cmc-2222/GHSA-6q4m-8cmc-2222.json b/advisories/unreviewed/2024/09/GHSA-6q4m-8cmc-2222/GHSA-6q4m-8cmc-2222.json index f1ba633ce16..74510b37b4e 100644 --- a/advisories/unreviewed/2024/09/GHSA-6q4m-8cmc-2222/GHSA-6q4m-8cmc-2222.json +++ b/advisories/unreviewed/2024/09/GHSA-6q4m-8cmc-2222/GHSA-6q4m-8cmc-2222.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6q4m-8cmc-2222", - "modified": "2024-09-03T18:31:32Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-09-03T15:30:46Z", "aliases": [ "CVE-2024-8384" @@ -36,6 +36,14 @@ { "type": "WEB", "url": "https://www.mozilla.org/security/advisories/mfsa2024-41" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-43" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-44" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/09/GHSA-727x-p98c-5cg7/GHSA-727x-p98c-5cg7.json b/advisories/unreviewed/2024/09/GHSA-727x-p98c-5cg7/GHSA-727x-p98c-5cg7.json index 290efca5dad..54588ef1d89 100644 --- a/advisories/unreviewed/2024/09/GHSA-727x-p98c-5cg7/GHSA-727x-p98c-5cg7.json +++ b/advisories/unreviewed/2024/09/GHSA-727x-p98c-5cg7/GHSA-727x-p98c-5cg7.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-727x-p98c-5cg7", - "modified": "2024-09-04T21:30:32Z", + "modified": "2024-09-06T18:31:29Z", "published": "2024-09-04T21:30:32Z", "aliases": [ "CVE-2024-44998" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\natm: idt77252: prevent use after free in dequeue_rx()\n\nWe can't dereference \"skb\" after calling vcc->push() because the skb\nis released.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T20:15:08Z" diff --git a/advisories/unreviewed/2024/09/GHSA-78c9-5p24-9jcg/GHSA-78c9-5p24-9jcg.json b/advisories/unreviewed/2024/09/GHSA-78c9-5p24-9jcg/GHSA-78c9-5p24-9jcg.json new file mode 100644 index 00000000000..49f1afdfdb0 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-78c9-5p24-9jcg/GHSA-78c9-5p24-9jcg.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-78c9-5p24-9jcg", + "modified": "2024-09-06T18:31:35Z", + "published": "2024-09-06T18:31:35Z", + "aliases": [ + "CVE-2024-38642" + ], + "details": "An improper certificate validation vulnerability has been reported to affect QuMagie. If exploited, the vulnerability could allow local network users to compromise the security of the system via unspecified vectors.\n\nWe have already fixed the vulnerability in the following version:\nQuMagie 2.3.1 and later", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:P/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:L/SC:N/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38642" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-34" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-295" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-794f-5gfq-xmmq/GHSA-794f-5gfq-xmmq.json b/advisories/unreviewed/2024/09/GHSA-794f-5gfq-xmmq/GHSA-794f-5gfq-xmmq.json index 3256dd6eb1b..558187384e3 100644 --- a/advisories/unreviewed/2024/09/GHSA-794f-5gfq-xmmq/GHSA-794f-5gfq-xmmq.json +++ b/advisories/unreviewed/2024/09/GHSA-794f-5gfq-xmmq/GHSA-794f-5gfq-xmmq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-794f-5gfq-xmmq", - "modified": "2024-09-04T15:30:33Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-09-03T15:30:46Z", "aliases": [ "CVE-2024-8383" @@ -36,6 +36,14 @@ { "type": "WEB", "url": "https://www.mozilla.org/security/advisories/mfsa2024-41" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-43" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-44" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/09/GHSA-7h4w-p362-v54g/GHSA-7h4w-p362-v54g.json b/advisories/unreviewed/2024/09/GHSA-7h4w-p362-v54g/GHSA-7h4w-p362-v54g.json new file mode 100644 index 00000000000..94a6d49f4d8 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-7h4w-p362-v54g/GHSA-7h4w-p362-v54g.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7h4w-p362-v54g", + "modified": "2024-09-06T18:31:30Z", + "published": "2024-09-06T18:31:30Z", + "aliases": [ + "CVE-2024-44402" + ], + "details": "D-Link DI-8100G 17.12.20A1 is vulnerable to Command Injection via msp_info.htm.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44402" + }, + { + "type": "WEB", + "url": "https://github.com/lonelylonglong/openfile-/blob/main/msp.md/CVE-2024-44402" + }, + { + "type": "WEB", + "url": "https://github.com/lonelylonglong/openfile-/blob/main/msp.md/msp.md" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T16:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-7jc6-p5m2-4pfv/GHSA-7jc6-p5m2-4pfv.json b/advisories/unreviewed/2024/09/GHSA-7jc6-p5m2-4pfv/GHSA-7jc6-p5m2-4pfv.json index 10599b2ab06..0c69cd3a527 100644 --- a/advisories/unreviewed/2024/09/GHSA-7jc6-p5m2-4pfv/GHSA-7jc6-p5m2-4pfv.json +++ b/advisories/unreviewed/2024/09/GHSA-7jc6-p5m2-4pfv/GHSA-7jc6-p5m2-4pfv.json @@ -28,6 +28,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-287", "CWE-305" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2024/09/GHSA-7q5q-96vf-8rg6/GHSA-7q5q-96vf-8rg6.json b/advisories/unreviewed/2024/09/GHSA-7q5q-96vf-8rg6/GHSA-7q5q-96vf-8rg6.json index 436090ca3a9..89123b5f79b 100644 --- a/advisories/unreviewed/2024/09/GHSA-7q5q-96vf-8rg6/GHSA-7q5q-96vf-8rg6.json +++ b/advisories/unreviewed/2024/09/GHSA-7q5q-96vf-8rg6/GHSA-7q5q-96vf-8rg6.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7q5q-96vf-8rg6", - "modified": "2024-09-04T21:30:33Z", + "modified": "2024-09-06T18:31:29Z", "published": "2024-09-04T21:30:33Z", "aliases": [ "CVE-2024-45002" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nrtla/osnoise: Prevent NULL dereference in error handling\n\nIf the \"tool->data\" allocation fails then there is no need to call\nosnoise_free_top() and, in fact, doing so will lead to a NULL dereference.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T20:15:08Z" diff --git a/advisories/unreviewed/2024/09/GHSA-7w4r-xxr6-xrcj/GHSA-7w4r-xxr6-xrcj.json b/advisories/unreviewed/2024/09/GHSA-7w4r-xxr6-xrcj/GHSA-7w4r-xxr6-xrcj.json new file mode 100644 index 00000000000..0fa96002525 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-7w4r-xxr6-xrcj/GHSA-7w4r-xxr6-xrcj.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7w4r-xxr6-xrcj", + "modified": "2024-09-06T18:31:32Z", + "published": "2024-09-06T18:31:32Z", + "aliases": [ + "CVE-2024-8517" + ], + "details": "SPIP before 4.3.2, 4.2.16, and \n4.1.18 is vulnerable to a command injection issue. A \nremote and unauthenticated attacker can execute arbitrary operating system commands by sending a crafted multipart file upload HTTP request.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8517" + }, + { + "type": "WEB", + "url": "https://blog.spip.net/Mise-a-jour-critique-de-securite-sortie-de-SPIP-4-3-2-SPIP-4-2-16-SPIP-4-1-18.html" + }, + { + "type": "WEB", + "url": "https://thinkloveshare.com/hacking/spip_preauth_rce_2024_part_2_a_big_upload" + }, + { + "type": "WEB", + "url": "https://vulncheck.com/advisories/spip-upload-rce" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-646" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T16:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-8hgh-pwh5-74qq/GHSA-8hgh-pwh5-74qq.json b/advisories/unreviewed/2024/09/GHSA-8hgh-pwh5-74qq/GHSA-8hgh-pwh5-74qq.json index da9f6cc53fa..d43ee340543 100644 --- a/advisories/unreviewed/2024/09/GHSA-8hgh-pwh5-74qq/GHSA-8hgh-pwh5-74qq.json +++ b/advisories/unreviewed/2024/09/GHSA-8hgh-pwh5-74qq/GHSA-8hgh-pwh5-74qq.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-22" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/09/GHSA-9299-82cr-w458/GHSA-9299-82cr-w458.json b/advisories/unreviewed/2024/09/GHSA-9299-82cr-w458/GHSA-9299-82cr-w458.json index 8c26147e709..8044f7c8d6d 100644 --- a/advisories/unreviewed/2024/09/GHSA-9299-82cr-w458/GHSA-9299-82cr-w458.json +++ b/advisories/unreviewed/2024/09/GHSA-9299-82cr-w458/GHSA-9299-82cr-w458.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-9299-82cr-w458", - "modified": "2024-09-04T09:30:45Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-09-04T09:30:45Z", "aliases": [ "CVE-2024-8121" diff --git a/advisories/unreviewed/2024/09/GHSA-937r-4835-rwjc/GHSA-937r-4835-rwjc.json b/advisories/unreviewed/2024/09/GHSA-937r-4835-rwjc/GHSA-937r-4835-rwjc.json new file mode 100644 index 00000000000..2894fdff486 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-937r-4835-rwjc/GHSA-937r-4835-rwjc.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-937r-4835-rwjc", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2024-27126" + ], + "details": "A cross-site scripting (XSS) vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network.\n\nWe have already fixed the vulnerability in the following versions:\nNotes Station 3 3.9.6 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-27126" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-21" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-c77x-v69r-5vpg/GHSA-c77x-v69r-5vpg.json b/advisories/unreviewed/2024/09/GHSA-c77x-v69r-5vpg/GHSA-c77x-v69r-5vpg.json index 536cad9809f..e7dbca79da8 100644 --- a/advisories/unreviewed/2024/09/GHSA-c77x-v69r-5vpg/GHSA-c77x-v69r-5vpg.json +++ b/advisories/unreviewed/2024/09/GHSA-c77x-v69r-5vpg/GHSA-c77x-v69r-5vpg.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-c77x-v69r-5vpg", - "modified": "2024-09-05T06:31:33Z", + "modified": "2024-09-06T18:31:29Z", "published": "2024-09-05T06:31:33Z", "aliases": [ "CVE-2024-41928" ], "details": "Malicious software running in a guest VM can exploit the buffer overflow to achieve code execution on the host in the bhyve userspace process, which typically runs as root. Note that bhyve runs in a Capsicum sandbox, so malicious code is constrained by the capabilities available to the bhyve process.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ "CWE-125" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-05T04:15:06Z" diff --git a/advisories/unreviewed/2024/09/GHSA-crwj-f9hc-c6g4/GHSA-crwj-f9hc-c6g4.json b/advisories/unreviewed/2024/09/GHSA-crwj-f9hc-c6g4/GHSA-crwj-f9hc-c6g4.json new file mode 100644 index 00000000000..aacf47cb9cf --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-crwj-f9hc-c6g4/GHSA-crwj-f9hc-c6g4.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-crwj-f9hc-c6g4", + "modified": "2024-09-06T18:31:35Z", + "published": "2024-09-06T18:31:35Z", + "aliases": [ + "CVE-2024-38641" + ], + "details": "An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow local network users to execute commands via unspecified vectors.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.1.8.2823 build 20240712 and later\nQuTS hero h5.1.8.2823 build 20240712 and later", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:P/AC:H/AT:P/PR:N/UI:A/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38641" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-33" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-g477-g2gm-cjmf/GHSA-g477-g2gm-cjmf.json b/advisories/unreviewed/2024/09/GHSA-g477-g2gm-cjmf/GHSA-g477-g2gm-cjmf.json index ea095231e8e..7cb9e16d230 100644 --- a/advisories/unreviewed/2024/09/GHSA-g477-g2gm-cjmf/GHSA-g477-g2gm-cjmf.json +++ b/advisories/unreviewed/2024/09/GHSA-g477-g2gm-cjmf/GHSA-g477-g2gm-cjmf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-g477-g2gm-cjmf", - "modified": "2024-09-04T21:30:31Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-09-04T21:30:31Z", "aliases": [ "CVE-2024-44953" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: ufs: core: Fix deadlock during RTC update\n\nThere is a deadlock when runtime suspend waits for the flush of RTC work,\nand the RTC work calls ufshcd_rpm_get_sync() to wait for runtime resume.\n\nHere is deadlock backtrace:\n\nkworker/0:1 D 4892.876354 10 10971 4859 0x4208060 0x8 10 0 120 670730152367\nptr f0ffff80c2e40000 0 1 0x00000001 0x000000ff 0x000000ff 0x000000ff\n __switch_to+0x1a8/0x2d4\n __schedule+0x684/0xa98\n schedule+0x48/0xc8\n schedule_timeout+0x48/0x170\n do_wait_for_common+0x108/0x1b0\n wait_for_completion+0x44/0x60\n __flush_work+0x39c/0x424\n __cancel_work_sync+0xd8/0x208\n cancel_delayed_work_sync+0x14/0x28\n __ufshcd_wl_suspend+0x19c/0x480\n ufshcd_wl_runtime_suspend+0x3c/0x1d4\n scsi_runtime_suspend+0x78/0xc8\n __rpm_callback+0x94/0x3e0\n rpm_suspend+0x2d4/0x65c\n __pm_runtime_suspend+0x80/0x114\n scsi_runtime_idle+0x38/0x6c\n rpm_idle+0x264/0x338\n __pm_runtime_idle+0x80/0x110\n ufshcd_rtc_work+0x128/0x1e4\n process_one_work+0x26c/0x650\n worker_thread+0x260/0x3d8\n kthread+0x110/0x134\n ret_from_fork+0x10/0x20\n\nSkip updating RTC if RPM state is not RPM_ACTIVE.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-667" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T19:15:30Z" diff --git a/advisories/unreviewed/2024/09/GHSA-g4w4-7rr6-55qw/GHSA-g4w4-7rr6-55qw.json b/advisories/unreviewed/2024/09/GHSA-g4w4-7rr6-55qw/GHSA-g4w4-7rr6-55qw.json new file mode 100644 index 00000000000..6fd659756fc --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-g4w4-7rr6-55qw/GHSA-g4w4-7rr6-55qw.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g4w4-7rr6-55qw", + "modified": "2024-09-06T18:31:32Z", + "published": "2024-09-06T18:31:32Z", + "aliases": [ + "CVE-2022-27592" + ], + "details": "An unquoted search path or element vulnerability has been reported to affect QVR Smart Client. If exploited, the vulnerability could allow local authenticated administrators to execute unauthorized code or commands via unspecified vectors.\n\nWe have already fixed the vulnerability in the following version:\nWindows 10 SP1, Windows 11, Mac OS, and Mac M1: QVR Smart Client 2.4.0.0570 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-27592" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-22" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-428" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-gcpr-pgrp-45fp/GHSA-gcpr-pgrp-45fp.json b/advisories/unreviewed/2024/09/GHSA-gcpr-pgrp-45fp/GHSA-gcpr-pgrp-45fp.json index b2f92ad1bd2..5dd73205938 100644 --- a/advisories/unreviewed/2024/09/GHSA-gcpr-pgrp-45fp/GHSA-gcpr-pgrp-45fp.json +++ b/advisories/unreviewed/2024/09/GHSA-gcpr-pgrp-45fp/GHSA-gcpr-pgrp-45fp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gcpr-pgrp-45fp", - "modified": "2024-09-04T21:30:32Z", + "modified": "2024-09-06T18:31:29Z", "published": "2024-09-04T21:30:32Z", "aliases": [ "CVE-2024-45000" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nfs/netfs/fscache_cookie: add missing \"n_accesses\" check\n\nThis fixes a NULL pointer dereference bug due to a data race which\nlooks like this:\n\n BUG: kernel NULL pointer dereference, address: 0000000000000008\n #PF: supervisor read access in kernel mode\n #PF: error_code(0x0000) - not-present page\n PGD 0 P4D 0\n Oops: 0000 [#1] SMP PTI\n CPU: 33 PID: 16573 Comm: kworker/u97:799 Not tainted 6.8.7-cm4all1-hp+ #43\n Hardware name: HP ProLiant DL380 Gen9/ProLiant DL380 Gen9, BIOS P89 10/17/2018\n Workqueue: events_unbound netfs_rreq_write_to_cache_work\n RIP: 0010:cachefiles_prepare_write+0x30/0xa0\n Code: 57 41 56 45 89 ce 41 55 49 89 cd 41 54 49 89 d4 55 53 48 89 fb 48 83 ec 08 48 8b 47 08 48 83 7f 10 00 48 89 34 24 48 8b 68 20 <48> 8b 45 08 4c 8b 38 74 45 49 8b 7f 50 e8 4e a9 b0 ff 48 8b 73 10\n RSP: 0018:ffffb4e78113bde0 EFLAGS: 00010286\n RAX: ffff976126be6d10 RBX: ffff97615cdb8438 RCX: 0000000000020000\n RDX: ffff97605e6c4c68 RSI: ffff97605e6c4c60 RDI: ffff97615cdb8438\n RBP: 0000000000000000 R08: 0000000000278333 R09: 0000000000000001\n R10: ffff97605e6c4600 R11: 0000000000000001 R12: ffff97605e6c4c68\n R13: 0000000000020000 R14: 0000000000000001 R15: ffff976064fe2c00\n FS: 0000000000000000(0000) GS:ffff9776dfd40000(0000) knlGS:0000000000000000\n CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n CR2: 0000000000000008 CR3: 000000005942c002 CR4: 00000000001706f0\n Call Trace:\n \n ? __die+0x1f/0x70\n ? page_fault_oops+0x15d/0x440\n ? search_module_extables+0xe/0x40\n ? fixup_exception+0x22/0x2f0\n ? exc_page_fault+0x5f/0x100\n ? asm_exc_page_fault+0x22/0x30\n ? cachefiles_prepare_write+0x30/0xa0\n netfs_rreq_write_to_cache_work+0x135/0x2e0\n process_one_work+0x137/0x2c0\n worker_thread+0x2e9/0x400\n ? __pfx_worker_thread+0x10/0x10\n kthread+0xcc/0x100\n ? __pfx_kthread+0x10/0x10\n ret_from_fork+0x30/0x50\n ? __pfx_kthread+0x10/0x10\n ret_from_fork_asm+0x1b/0x30\n \n Modules linked in:\n CR2: 0000000000000008\n ---[ end trace 0000000000000000 ]---\n\nThis happened because fscache_cookie_state_machine() was slow and was\nstill running while another process invoked fscache_unuse_cookie();\nthis led to a fscache_cookie_lru_do_one() call, setting the\nFSCACHE_COOKIE_DO_LRU_DISCARD flag, which was picked up by\nfscache_cookie_state_machine(), withdrawing the cookie via\ncachefiles_withdraw_cookie(), clearing cookie->cache_priv.\n\nAt the same time, yet another process invoked\ncachefiles_prepare_write(), which found a NULL pointer in this code\nline:\n\n struct cachefiles_object *object = cachefiles_cres_object(cres);\n\nThe next line crashes, obviously:\n\n struct cachefiles_cache *cache = object->volume->cache;\n\nDuring cachefiles_prepare_write(), the \"n_accesses\" counter is\nnon-zero (via fscache_begin_operation()). The cookie must not be\nwithdrawn until it drops to zero.\n\nThe counter is checked by fscache_cookie_state_machine() before\nswitching to FSCACHE_COOKIE_STATE_RELINQUISHING and\nFSCACHE_COOKIE_STATE_WITHDRAWING (in \"case\nFSCACHE_COOKIE_STATE_FAILED\"), but not for\nFSCACHE_COOKIE_STATE_LRU_DISCARDING (\"case\nFSCACHE_COOKIE_STATE_ACTIVE\").\n\nThis patch adds the missing check. With a non-zero access counter,\nthe function returns and the next fscache_end_cookie_access() call\nwill queue another fscache_cookie_state_machine() call to handle the\nstill-pending FSCACHE_COOKIE_DO_LRU_DISCARD.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T20:15:08Z" diff --git a/advisories/unreviewed/2024/09/GHSA-gf8j-xg2w-58px/GHSA-gf8j-xg2w-58px.json b/advisories/unreviewed/2024/09/GHSA-gf8j-xg2w-58px/GHSA-gf8j-xg2w-58px.json new file mode 100644 index 00000000000..d67fd54e21f --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-gf8j-xg2w-58px/GHSA-gf8j-xg2w-58px.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gf8j-xg2w-58px", + "modified": "2024-09-06T18:31:33Z", + "published": "2024-09-06T18:31:33Z", + "aliases": [ + "CVE-2023-39298" + ], + "details": "A missing authorization vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow local authenticated users to access data or perform actions that they should not be allowed to perform via unspecified vectors.\nQuTScloud, is not affected.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.2.0.2737 build 20240417 and later\nQuTS hero h5.2.0.2782 build 20240601 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-39298" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-28" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-gfrq-fc5g-52f6/GHSA-gfrq-fc5g-52f6.json b/advisories/unreviewed/2024/09/GHSA-gfrq-fc5g-52f6/GHSA-gfrq-fc5g-52f6.json index 79cc8132da1..f83f74b9d32 100644 --- a/advisories/unreviewed/2024/09/GHSA-gfrq-fc5g-52f6/GHSA-gfrq-fc5g-52f6.json +++ b/advisories/unreviewed/2024/09/GHSA-gfrq-fc5g-52f6/GHSA-gfrq-fc5g-52f6.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gfrq-fc5g-52f6", - "modified": "2024-09-04T21:30:32Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-09-04T21:30:32Z", "aliases": [ "CVE-2024-44989" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbonding: fix xfrm real_dev null pointer dereference\n\nWe shouldn't set real_dev to NULL because packets can be in transit and\nxfrm might call xdo_dev_offload_ok() in parallel. All callbacks assume\nreal_dev is set.\n\n Example trace:\n kernel: BUG: unable to handle page fault for address: 0000000000001030\n kernel: bond0: (slave eni0np1): making interface the new active one\n kernel: #PF: supervisor write access in kernel mode\n kernel: #PF: error_code(0x0002) - not-present page\n kernel: PGD 0 P4D 0\n kernel: Oops: 0002 [#1] PREEMPT SMP\n kernel: CPU: 4 PID: 2237 Comm: ping Not tainted 6.7.7+ #12\n kernel: Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-2.fc40 04/01/2014\n kernel: RIP: 0010:nsim_ipsec_offload_ok+0xc/0x20 [netdevsim]\n kernel: bond0: (slave eni0np1): bond_ipsec_add_sa_all: failed to add SA\n kernel: Code: e0 0f 0b 48 83 7f 38 00 74 de 0f 0b 48 8b 47 08 48 8b 37 48 8b 78 40 e9 b2 e5 9a d7 66 90 0f 1f 44 00 00 48 8b 86 80 02 00 00 <83> 80 30 10 00 00 01 b8 01 00 00 00 c3 0f 1f 80 00 00 00 00 0f 1f\n kernel: bond0: (slave eni0np1): making interface the new active one\n kernel: RSP: 0018:ffffabde81553b98 EFLAGS: 00010246\n kernel: bond0: (slave eni0np1): bond_ipsec_add_sa_all: failed to add SA\n kernel:\n kernel: RAX: 0000000000000000 RBX: ffff9eb404e74900 RCX: ffff9eb403d97c60\n kernel: RDX: ffffffffc090de10 RSI: ffff9eb404e74900 RDI: ffff9eb3c5de9e00\n kernel: RBP: ffff9eb3c0a42000 R08: 0000000000000010 R09: 0000000000000014\n kernel: R10: 7974203030303030 R11: 3030303030303030 R12: 0000000000000000\n kernel: R13: ffff9eb3c5de9e00 R14: ffffabde81553cc8 R15: ffff9eb404c53000\n kernel: FS: 00007f2a77a3ad00(0000) GS:ffff9eb43bd00000(0000) knlGS:0000000000000000\n kernel: CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n kernel: CR2: 0000000000001030 CR3: 00000001122ab000 CR4: 0000000000350ef0\n kernel: bond0: (slave eni0np1): making interface the new active one\n kernel: Call Trace:\n kernel: \n kernel: ? __die+0x1f/0x60\n kernel: bond0: (slave eni0np1): bond_ipsec_add_sa_all: failed to add SA\n kernel: ? page_fault_oops+0x142/0x4c0\n kernel: ? do_user_addr_fault+0x65/0x670\n kernel: ? kvm_read_and_reset_apf_flags+0x3b/0x50\n kernel: bond0: (slave eni0np1): making interface the new active one\n kernel: ? exc_page_fault+0x7b/0x180\n kernel: ? asm_exc_page_fault+0x22/0x30\n kernel: ? nsim_bpf_uninit+0x50/0x50 [netdevsim]\n kernel: bond0: (slave eni0np1): bond_ipsec_add_sa_all: failed to add SA\n kernel: ? nsim_ipsec_offload_ok+0xc/0x20 [netdevsim]\n kernel: bond0: (slave eni0np1): making interface the new active one\n kernel: bond_ipsec_offload_ok+0x7b/0x90 [bonding]\n kernel: xfrm_output+0x61/0x3b0\n kernel: bond0: (slave eni0np1): bond_ipsec_add_sa_all: failed to add SA\n kernel: ip_push_pending_frames+0x56/0x80", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T20:15:08Z" diff --git a/advisories/unreviewed/2024/09/GHSA-gjp8-77gc-r4rr/GHSA-gjp8-77gc-r4rr.json b/advisories/unreviewed/2024/09/GHSA-gjp8-77gc-r4rr/GHSA-gjp8-77gc-r4rr.json index 3be86cd1f20..5c8fec328c3 100644 --- a/advisories/unreviewed/2024/09/GHSA-gjp8-77gc-r4rr/GHSA-gjp8-77gc-r4rr.json +++ b/advisories/unreviewed/2024/09/GHSA-gjp8-77gc-r4rr/GHSA-gjp8-77gc-r4rr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gjp8-77gc-r4rr", - "modified": "2024-09-04T21:30:33Z", + "modified": "2024-09-06T18:31:29Z", "published": "2024-09-04T21:30:33Z", "aliases": [ "CVE-2024-45006" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nxhci: Fix Panther point NULL pointer deref at full-speed re-enumeration\n\nre-enumerating full-speed devices after a failed address device command\ncan trigger a NULL pointer dereference.\n\nFull-speed devices may need to reconfigure the endpoint 0 Max Packet Size\nvalue during enumeration. Usb core calls usb_ep0_reinit() in this case,\nwhich ends up calling xhci_configure_endpoint().\n\nOn Panther point xHC the xhci_configure_endpoint() function will\nadditionally check and reserve bandwidth in software. Other hosts do\nthis in hardware\n\nIf xHC address device command fails then a new xhci_virt_device structure\nis allocated as part of re-enabling the slot, but the bandwidth table\npointers are not set up properly here.\nThis triggers the NULL pointer dereference the next time usb_ep0_reinit()\nis called and xhci_configure_endpoint() tries to check and reserve\nbandwidth\n\n[46710.713538] usb 3-1: new full-speed USB device number 5 using xhci_hcd\n[46710.713699] usb 3-1: Device not responding to setup address.\n[46710.917684] usb 3-1: Device not responding to setup address.\n[46711.125536] usb 3-1: device not accepting address 5, error -71\n[46711.125594] BUG: kernel NULL pointer dereference, address: 0000000000000008\n[46711.125600] #PF: supervisor read access in kernel mode\n[46711.125603] #PF: error_code(0x0000) - not-present page\n[46711.125606] PGD 0 P4D 0\n[46711.125610] Oops: Oops: 0000 [#1] PREEMPT SMP PTI\n[46711.125615] CPU: 1 PID: 25760 Comm: kworker/1:2 Not tainted 6.10.3_2 #1\n[46711.125620] Hardware name: Gigabyte Technology Co., Ltd.\n[46711.125623] Workqueue: usb_hub_wq hub_event [usbcore]\n[46711.125668] RIP: 0010:xhci_reserve_bandwidth (drivers/usb/host/xhci.c\n\nFix this by making sure bandwidth table pointers are set up correctly\nafter a failed address device command, and additionally by avoiding\nchecking for bandwidth in cases like this where no actual endpoints are\nadded or removed, i.e. only context for default control endpoint 0 is\nevaluated.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T20:15:08Z" diff --git a/advisories/unreviewed/2024/09/GHSA-gxhp-q3mw-vmqh/GHSA-gxhp-q3mw-vmqh.json b/advisories/unreviewed/2024/09/GHSA-gxhp-q3mw-vmqh/GHSA-gxhp-q3mw-vmqh.json index cd394b0e8db..bc9a3ea5a18 100644 --- a/advisories/unreviewed/2024/09/GHSA-gxhp-q3mw-vmqh/GHSA-gxhp-q3mw-vmqh.json +++ b/advisories/unreviewed/2024/09/GHSA-gxhp-q3mw-vmqh/GHSA-gxhp-q3mw-vmqh.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gxhp-q3mw-vmqh", - "modified": "2024-09-04T21:30:32Z", + "modified": "2024-09-06T18:31:29Z", "published": "2024-09-04T21:30:32Z", "aliases": [ "CVE-2024-44999" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ngtp: pull network headers in gtp_dev_xmit()\n\nsyzbot/KMSAN reported use of uninit-value in get_dev_xmit() [1]\n\nWe must make sure the IPv4 or Ipv6 header is pulled in skb->head\nbefore accessing fields in them.\n\nUse pskb_inet_may_pull() to fix this issue.\n\n[1]\nBUG: KMSAN: uninit-value in ipv6_pdp_find drivers/net/gtp.c:220 [inline]\n BUG: KMSAN: uninit-value in gtp_build_skb_ip6 drivers/net/gtp.c:1229 [inline]\n BUG: KMSAN: uninit-value in gtp_dev_xmit+0x1424/0x2540 drivers/net/gtp.c:1281\n ipv6_pdp_find drivers/net/gtp.c:220 [inline]\n gtp_build_skb_ip6 drivers/net/gtp.c:1229 [inline]\n gtp_dev_xmit+0x1424/0x2540 drivers/net/gtp.c:1281\n __netdev_start_xmit include/linux/netdevice.h:4913 [inline]\n netdev_start_xmit include/linux/netdevice.h:4922 [inline]\n xmit_one net/core/dev.c:3580 [inline]\n dev_hard_start_xmit+0x247/0xa20 net/core/dev.c:3596\n __dev_queue_xmit+0x358c/0x5610 net/core/dev.c:4423\n dev_queue_xmit include/linux/netdevice.h:3105 [inline]\n packet_xmit+0x9c/0x6c0 net/packet/af_packet.c:276\n packet_snd net/packet/af_packet.c:3145 [inline]\n packet_sendmsg+0x90e3/0xa3a0 net/packet/af_packet.c:3177\n sock_sendmsg_nosec net/socket.c:730 [inline]\n __sock_sendmsg+0x30f/0x380 net/socket.c:745\n __sys_sendto+0x685/0x830 net/socket.c:2204\n __do_sys_sendto net/socket.c:2216 [inline]\n __se_sys_sendto net/socket.c:2212 [inline]\n __x64_sys_sendto+0x125/0x1d0 net/socket.c:2212\n x64_sys_call+0x3799/0x3c10 arch/x86/include/generated/asm/syscalls_64.h:45\n do_syscall_x64 arch/x86/entry/common.c:52 [inline]\n do_syscall_64+0xcd/0x1e0 arch/x86/entry/common.c:83\n entry_SYSCALL_64_after_hwframe+0x77/0x7f\n\nUninit was created at:\n slab_post_alloc_hook mm/slub.c:3994 [inline]\n slab_alloc_node mm/slub.c:4037 [inline]\n kmem_cache_alloc_node_noprof+0x6bf/0xb80 mm/slub.c:4080\n kmalloc_reserve+0x13d/0x4a0 net/core/skbuff.c:583\n __alloc_skb+0x363/0x7b0 net/core/skbuff.c:674\n alloc_skb include/linux/skbuff.h:1320 [inline]\n alloc_skb_with_frags+0xc8/0xbf0 net/core/skbuff.c:6526\n sock_alloc_send_pskb+0xa81/0xbf0 net/core/sock.c:2815\n packet_alloc_skb net/packet/af_packet.c:2994 [inline]\n packet_snd net/packet/af_packet.c:3088 [inline]\n packet_sendmsg+0x749c/0xa3a0 net/packet/af_packet.c:3177\n sock_sendmsg_nosec net/socket.c:730 [inline]\n __sock_sendmsg+0x30f/0x380 net/socket.c:745\n __sys_sendto+0x685/0x830 net/socket.c:2204\n __do_sys_sendto net/socket.c:2216 [inline]\n __se_sys_sendto net/socket.c:2212 [inline]\n __x64_sys_sendto+0x125/0x1d0 net/socket.c:2212\n x64_sys_call+0x3799/0x3c10 arch/x86/include/generated/asm/syscalls_64.h:45\n do_syscall_x64 arch/x86/entry/common.c:52 [inline]\n do_syscall_64+0xcd/0x1e0 arch/x86/entry/common.c:83\n entry_SYSCALL_64_after_hwframe+0x77/0x7f\n\nCPU: 0 UID: 0 PID: 7115 Comm: syz.1.515 Not tainted 6.11.0-rc1-syzkaller-00043-g94ede2a3e913 #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 06/27/2024", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-908" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T20:15:08Z" diff --git a/advisories/unreviewed/2024/09/GHSA-gxm8-54cq-9h89/GHSA-gxm8-54cq-9h89.json b/advisories/unreviewed/2024/09/GHSA-gxm8-54cq-9h89/GHSA-gxm8-54cq-9h89.json new file mode 100644 index 00000000000..9b4fd6b83ca --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-gxm8-54cq-9h89/GHSA-gxm8-54cq-9h89.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gxm8-54cq-9h89", + "modified": "2024-09-06T18:31:33Z", + "published": "2024-09-06T18:31:33Z", + "aliases": [ + "CVE-2023-34979" + ], + "details": "An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators to execute commands via a network.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 4.5.4.2790 build 20240605 and later\nQuTS hero h4.5.4.2790 build 20240606 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34979" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-32" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-h3vx-pj44-h43r/GHSA-h3vx-pj44-h43r.json b/advisories/unreviewed/2024/09/GHSA-h3vx-pj44-h43r/GHSA-h3vx-pj44-h43r.json new file mode 100644 index 00000000000..b47f7553d9d --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-h3vx-pj44-h43r/GHSA-h3vx-pj44-h43r.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h3vx-pj44-h43r", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2024-21898" + ], + "details": "An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated users to execute commands via a network.\nWe have already fixed the vulnerability in the following versions:\nQTS 5.1.6.2722 build 20240402 and later\nQuTS hero h5.1.6.2734 build 20240414 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21898" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-20" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-hrmc-jmp7-mpm2/GHSA-hrmc-jmp7-mpm2.json b/advisories/unreviewed/2024/09/GHSA-hrmc-jmp7-mpm2/GHSA-hrmc-jmp7-mpm2.json new file mode 100644 index 00000000000..f1e17ad8535 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-hrmc-jmp7-mpm2/GHSA-hrmc-jmp7-mpm2.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hrmc-jmp7-mpm2", + "modified": "2024-09-06T18:31:31Z", + "published": "2024-09-06T18:31:31Z", + "aliases": [ + "CVE-2024-45758" + ], + "details": "H2O.ai H2O through 3.46.0.4 allows attackers to arbitrarily set the JDBC URL, leading to deserialization attacks, file reads, and command execution. Exploitation can occur when an attacker has access to post to the ImportSQLTable URI with a JSON document containing a connection_url property with any typical JDBC Connection URL attack payload such as one that uses queryInterceptors.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45758" + }, + { + "type": "WEB", + "url": "https://gist.github.com/AfterSnows/c24ca3c26dc89ab797e610e92a6a9acb" + }, + { + "type": "WEB", + "url": "https://spear-shield.notion.site/Unauthenticated-Remote-Code-Execution-via-Unrestricted-JDBC-Connection-87a958a4874044199cbb86422d1f6068" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T16:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-j3f7-j487-wx5j/GHSA-j3f7-j487-wx5j.json b/advisories/unreviewed/2024/09/GHSA-j3f7-j487-wx5j/GHSA-j3f7-j487-wx5j.json new file mode 100644 index 00000000000..ab952d730ed --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-j3f7-j487-wx5j/GHSA-j3f7-j487-wx5j.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j3f7-j487-wx5j", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2023-47563" + ], + "details": "An OS command injection vulnerability has been reported to affect Video Station. If exploited, the vulnerability could allow authenticated users to execute commands via a network.\n\nWe have already fixed the vulnerability in the following version:\nVideo Station 5.8.2 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-47563" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-24" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-j3m3-gfhr-jmqf/GHSA-j3m3-gfhr-jmqf.json b/advisories/unreviewed/2024/09/GHSA-j3m3-gfhr-jmqf/GHSA-j3m3-gfhr-jmqf.json index 59714f068cb..266e994febb 100644 --- a/advisories/unreviewed/2024/09/GHSA-j3m3-gfhr-jmqf/GHSA-j3m3-gfhr-jmqf.json +++ b/advisories/unreviewed/2024/09/GHSA-j3m3-gfhr-jmqf/GHSA-j3m3-gfhr-jmqf.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-j3m3-gfhr-jmqf", - "modified": "2024-09-03T18:31:32Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-09-03T15:30:46Z", "aliases": [ "CVE-2024-8385" @@ -32,6 +32,10 @@ { "type": "WEB", "url": "https://www.mozilla.org/security/advisories/mfsa2024-40" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-43" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/09/GHSA-m294-4vh4-9qwg/GHSA-m294-4vh4-9qwg.json b/advisories/unreviewed/2024/09/GHSA-m294-4vh4-9qwg/GHSA-m294-4vh4-9qwg.json index ebff392c3ad..504c438c495 100644 --- a/advisories/unreviewed/2024/09/GHSA-m294-4vh4-9qwg/GHSA-m294-4vh4-9qwg.json +++ b/advisories/unreviewed/2024/09/GHSA-m294-4vh4-9qwg/GHSA-m294-4vh4-9qwg.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-m294-4vh4-9qwg", - "modified": "2024-09-03T18:31:32Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-09-03T15:30:46Z", "aliases": [ "CVE-2024-8387" @@ -32,6 +32,10 @@ { "type": "WEB", "url": "https://www.mozilla.org/security/advisories/mfsa2024-40" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-43" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/09/GHSA-m3pg-3mfc-5r65/GHSA-m3pg-3mfc-5r65.json b/advisories/unreviewed/2024/09/GHSA-m3pg-3mfc-5r65/GHSA-m3pg-3mfc-5r65.json new file mode 100644 index 00000000000..2bb202dfd93 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-m3pg-3mfc-5r65/GHSA-m3pg-3mfc-5r65.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-m3pg-3mfc-5r65", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2024-27122" + ], + "details": "A cross-site scripting (XSS) vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network.\n\nWe have already fixed the vulnerability in the following versions:\nNotes Station 3 3.9.6 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-27122" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-21" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-m5q9-gx2f-vvf3/GHSA-m5q9-gx2f-vvf3.json b/advisories/unreviewed/2024/09/GHSA-m5q9-gx2f-vvf3/GHSA-m5q9-gx2f-vvf3.json index 59869238ee8..4d4cfe3c1b3 100644 --- a/advisories/unreviewed/2024/09/GHSA-m5q9-gx2f-vvf3/GHSA-m5q9-gx2f-vvf3.json +++ b/advisories/unreviewed/2024/09/GHSA-m5q9-gx2f-vvf3/GHSA-m5q9-gx2f-vvf3.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-m5q9-gx2f-vvf3", - "modified": "2024-09-04T21:30:31Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-09-04T21:30:31Z", "aliases": [ "CVE-2024-44957" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nxen: privcmd: Switch from mutex to spinlock for irqfds\n\nirqfd_wakeup() gets EPOLLHUP, when it is called by\neventfd_release() by way of wake_up_poll(&ctx->wqh, EPOLLHUP), which\ngets called under spin_lock_irqsave(). We can't use a mutex here as it\nwill lead to a deadlock.\n\nFix it by switching over to a spin lock.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-667" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T19:15:30Z" diff --git a/advisories/unreviewed/2024/09/GHSA-m899-p55c-35f9/GHSA-m899-p55c-35f9.json b/advisories/unreviewed/2024/09/GHSA-m899-p55c-35f9/GHSA-m899-p55c-35f9.json index 4d8b6c65eec..f9f77b60c86 100644 --- a/advisories/unreviewed/2024/09/GHSA-m899-p55c-35f9/GHSA-m899-p55c-35f9.json +++ b/advisories/unreviewed/2024/09/GHSA-m899-p55c-35f9/GHSA-m899-p55c-35f9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-m899-p55c-35f9", - "modified": "2024-09-06T15:32:58Z", + "modified": "2024-09-06T18:31:29Z", "published": "2024-09-06T15:32:58Z", "aliases": [ "CVE-2024-44739" ], "details": "Sourcecodester Simple Forum Website v1.0 has a SQL injection vulnerability in /php-sqlite-forum/?page=manage_user&id=.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-06T13:15:04Z" diff --git a/advisories/unreviewed/2024/09/GHSA-mg2f-g382-vvc6/GHSA-mg2f-g382-vvc6.json b/advisories/unreviewed/2024/09/GHSA-mg2f-g382-vvc6/GHSA-mg2f-g382-vvc6.json index 8f2cc9728dd..e99cdcc8b58 100644 --- a/advisories/unreviewed/2024/09/GHSA-mg2f-g382-vvc6/GHSA-mg2f-g382-vvc6.json +++ b/advisories/unreviewed/2024/09/GHSA-mg2f-g382-vvc6/GHSA-mg2f-g382-vvc6.json @@ -28,6 +28,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-287", "CWE-305" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2024/09/GHSA-mg39-cgxc-7mgj/GHSA-mg39-cgxc-7mgj.json b/advisories/unreviewed/2024/09/GHSA-mg39-cgxc-7mgj/GHSA-mg39-cgxc-7mgj.json new file mode 100644 index 00000000000..70d74fcd9a0 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-mg39-cgxc-7mgj/GHSA-mg39-cgxc-7mgj.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mg39-cgxc-7mgj", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2024-21903" + ], + "details": "An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators to execute commands via a network.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.1.6.2722 build 20240402 and later\nQuTS hero h5.1.6.2734 build 20240414 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21903" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-20" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-mp4c-v3vm-qr7w/GHSA-mp4c-v3vm-qr7w.json b/advisories/unreviewed/2024/09/GHSA-mp4c-v3vm-qr7w/GHSA-mp4c-v3vm-qr7w.json new file mode 100644 index 00000000000..70ef21aa80d --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-mp4c-v3vm-qr7w/GHSA-mp4c-v3vm-qr7w.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mp4c-v3vm-qr7w", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2023-45038" + ], + "details": "An improper authentication vulnerability has been reported to affect Music Station. If exploited, the vulnerability could allow users to compromise the security of the system via a network.\n\nWe have already fixed the vulnerability in the following version:\nMusic Station 5.4.0 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-45038" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-25" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-287" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-mq59-j27v-h664/GHSA-mq59-j27v-h664.json b/advisories/unreviewed/2024/09/GHSA-mq59-j27v-h664/GHSA-mq59-j27v-h664.json new file mode 100644 index 00000000000..f8c8f2fb4a1 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-mq59-j27v-h664/GHSA-mq59-j27v-h664.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mq59-j27v-h664", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2023-50366" + ], + "details": "A cross-site scripting (XSS) vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators to inject malicious code via a network.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.1.6.2722 build 20240402 and later\nQuTS hero h5.1.6.2734 build 20240414 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50366" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-20" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-mrwf-vh6j-2grj/GHSA-mrwf-vh6j-2grj.json b/advisories/unreviewed/2024/09/GHSA-mrwf-vh6j-2grj/GHSA-mrwf-vh6j-2grj.json index 218410bd842..63d48a96e26 100644 --- a/advisories/unreviewed/2024/09/GHSA-mrwf-vh6j-2grj/GHSA-mrwf-vh6j-2grj.json +++ b/advisories/unreviewed/2024/09/GHSA-mrwf-vh6j-2grj/GHSA-mrwf-vh6j-2grj.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-131" + "CWE-131", + "CWE-190" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/09/GHSA-p34f-6xg6-mcrp/GHSA-p34f-6xg6-mcrp.json b/advisories/unreviewed/2024/09/GHSA-p34f-6xg6-mcrp/GHSA-p34f-6xg6-mcrp.json index b8d55d87e9a..8030e2f9b7b 100644 --- a/advisories/unreviewed/2024/09/GHSA-p34f-6xg6-mcrp/GHSA-p34f-6xg6-mcrp.json +++ b/advisories/unreviewed/2024/09/GHSA-p34f-6xg6-mcrp/GHSA-p34f-6xg6-mcrp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-p34f-6xg6-mcrp", - "modified": "2024-09-04T18:30:57Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-09-03T15:30:46Z", "aliases": [ "CVE-2024-8386" @@ -40,6 +40,10 @@ { "type": "WEB", "url": "https://www.mozilla.org/security/advisories/mfsa2024-40" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-43" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/09/GHSA-p6pf-4j65-mvw8/GHSA-p6pf-4j65-mvw8.json b/advisories/unreviewed/2024/09/GHSA-p6pf-4j65-mvw8/GHSA-p6pf-4j65-mvw8.json new file mode 100644 index 00000000000..2ab3b9529f3 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-p6pf-4j65-mvw8/GHSA-p6pf-4j65-mvw8.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p6pf-4j65-mvw8", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2024-32763" + ], + "details": "A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated users to execute code via a network.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.1.8.2823 build 20240712 and later\nQuTS hero h5.1.8.2823 build 20240712 and later", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-32763" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-33" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-120" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-ph32-hgpc-r5j4/GHSA-ph32-hgpc-r5j4.json b/advisories/unreviewed/2024/09/GHSA-ph32-hgpc-r5j4/GHSA-ph32-hgpc-r5j4.json index 03a5aa212f4..41df11d124e 100644 --- a/advisories/unreviewed/2024/09/GHSA-ph32-hgpc-r5j4/GHSA-ph32-hgpc-r5j4.json +++ b/advisories/unreviewed/2024/09/GHSA-ph32-hgpc-r5j4/GHSA-ph32-hgpc-r5j4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-ph32-hgpc-r5j4", - "modified": "2024-09-04T15:30:33Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-09-03T15:30:45Z", "aliases": [ "CVE-2024-8382" @@ -36,6 +36,14 @@ { "type": "WEB", "url": "https://www.mozilla.org/security/advisories/mfsa2024-41" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-43" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-44" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/09/GHSA-pvxf-38x8-qcmc/GHSA-pvxf-38x8-qcmc.json b/advisories/unreviewed/2024/09/GHSA-pvxf-38x8-qcmc/GHSA-pvxf-38x8-qcmc.json new file mode 100644 index 00000000000..bf9b8bcef37 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-pvxf-38x8-qcmc/GHSA-pvxf-38x8-qcmc.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pvxf-38x8-qcmc", + "modified": "2024-09-06T18:31:30Z", + "published": "2024-09-06T18:31:30Z", + "aliases": [ + "CVE-2024-44408" + ], + "details": "D-Link DIR-823G v1.0.2B05_20181207 is vulnerable to Information Disclosure. The device allows unauthorized configuration file downloads, and the downloaded configuration files contain plaintext user passwords.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44408" + }, + { + "type": "WEB", + "url": "https://github.com/lonelylonglong/openfile-/blob/main/DIR-823G.md/CVE-2024-44408" + }, + { + "type": "WEB", + "url": "https://github.com/lonelylonglong/openfile-/blob/main/DIR-823G.md/DIR-823G.md" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T16:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-q2gx-5vc4-pjjw/GHSA-q2gx-5vc4-pjjw.json b/advisories/unreviewed/2024/09/GHSA-q2gx-5vc4-pjjw/GHSA-q2gx-5vc4-pjjw.json index 815f03fd96f..862a6d9ee64 100644 --- a/advisories/unreviewed/2024/09/GHSA-q2gx-5vc4-pjjw/GHSA-q2gx-5vc4-pjjw.json +++ b/advisories/unreviewed/2024/09/GHSA-q2gx-5vc4-pjjw/GHSA-q2gx-5vc4-pjjw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-q2gx-5vc4-pjjw", - "modified": "2024-09-04T21:30:31Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-09-04T21:30:31Z", "aliases": [ "CVE-2024-44956" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/xe/preempt_fence: enlarge the fence critical section\n\nIt is really easy to introduce subtle deadlocks in\npreempt_fence_work_func() since we operate on single global ordered-wq\nfor signalling our preempt fences behind the scenes, so even though we\nsignal a particular fence, everything in the callback should be in the\nfence critical section, since blocking in the callback will prevent\nother published fences from signalling. If we enlarge the fence critical\nsection to cover the entire callback, then lockdep should be able to\nunderstand this better, and complain if we grab a sensitive lock like\nvm->lock, which is also held when waiting on preempt fences.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-667" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T19:15:30Z" diff --git a/advisories/unreviewed/2024/09/GHSA-rvfh-6hc5-7vqc/GHSA-rvfh-6hc5-7vqc.json b/advisories/unreviewed/2024/09/GHSA-rvfh-6hc5-7vqc/GHSA-rvfh-6hc5-7vqc.json new file mode 100644 index 00000000000..959149c4046 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-rvfh-6hc5-7vqc/GHSA-rvfh-6hc5-7vqc.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rvfh-6hc5-7vqc", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2023-51368" + ], + "details": "A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to launch a denial-of-service (DoS) attack via a network.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.1.6.2722 build 20240402 and later\nQuTS hero h5.1.6.2734 build 20240414 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51368" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-20" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-476" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-v52j-76fx-xfcf/GHSA-v52j-76fx-xfcf.json b/advisories/unreviewed/2024/09/GHSA-v52j-76fx-xfcf/GHSA-v52j-76fx-xfcf.json new file mode 100644 index 00000000000..2b4480eda49 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-v52j-76fx-xfcf/GHSA-v52j-76fx-xfcf.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v52j-76fx-xfcf", + "modified": "2024-09-06T18:31:32Z", + "published": "2024-09-06T18:31:32Z", + "aliases": [ + "CVE-2023-34974" + ], + "details": "An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to execute commands via a network.\nQuTScloud, QVR, QES are not affected.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 4.5.4.2790 build 20240605 and later\nQuTS hero h4.5.4.2626 build 20231225 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34974" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-32" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-vpgf-5c72-x83x/GHSA-vpgf-5c72-x83x.json b/advisories/unreviewed/2024/09/GHSA-vpgf-5c72-x83x/GHSA-vpgf-5c72-x83x.json new file mode 100644 index 00000000000..cb0d3df00b3 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-vpgf-5c72-x83x/GHSA-vpgf-5c72-x83x.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vpgf-5c72-x83x", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2023-51366" + ], + "details": "A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to read the contents of unexpected files and expose sensitive data via a network.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.1.6.2722 build 20240402 and later\nQuTS hero h5.1.6.2734 build 20240414 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51366" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-20" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-x565-97fv-jfr5/GHSA-x565-97fv-jfr5.json b/advisories/unreviewed/2024/09/GHSA-x565-97fv-jfr5/GHSA-x565-97fv-jfr5.json index 663944a56c1..c6495595e4d 100644 --- a/advisories/unreviewed/2024/09/GHSA-x565-97fv-jfr5/GHSA-x565-97fv-jfr5.json +++ b/advisories/unreviewed/2024/09/GHSA-x565-97fv-jfr5/GHSA-x565-97fv-jfr5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-x565-97fv-jfr5", - "modified": "2024-09-03T18:31:32Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-09-03T15:30:45Z", "aliases": [ "CVE-2024-8381" @@ -36,6 +36,14 @@ { "type": "WEB", "url": "https://www.mozilla.org/security/advisories/mfsa2024-41" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-43" + }, + { + "type": "WEB", + "url": "https://www.mozilla.org/security/advisories/mfsa2024-44" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/09/GHSA-x9c2-9mp9-fq3m/GHSA-x9c2-9mp9-fq3m.json b/advisories/unreviewed/2024/09/GHSA-x9c2-9mp9-fq3m/GHSA-x9c2-9mp9-fq3m.json new file mode 100644 index 00000000000..bf06417c786 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-x9c2-9mp9-fq3m/GHSA-x9c2-9mp9-fq3m.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x9c2-9mp9-fq3m", + "modified": "2024-09-06T18:31:34Z", + "published": "2024-09-06T18:31:34Z", + "aliases": [ + "CVE-2023-51367" + ], + "details": "A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to execute code via a network.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.1.6.2722 build 20240402 and later\nQuTS hero h5.1.6.2734 build 20240414 and later", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51367" + }, + { + "type": "WEB", + "url": "https://www.qnap.com/en/security-advisory/qsa-24-20" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-120" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-06T17:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-xh53-849p-cfvq/GHSA-xh53-849p-cfvq.json b/advisories/unreviewed/2024/09/GHSA-xh53-849p-cfvq/GHSA-xh53-849p-cfvq.json index a64fe3870d0..d96a825b1b1 100644 --- a/advisories/unreviewed/2024/09/GHSA-xh53-849p-cfvq/GHSA-xh53-849p-cfvq.json +++ b/advisories/unreviewed/2024/09/GHSA-xh53-849p-cfvq/GHSA-xh53-849p-cfvq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-xh53-849p-cfvq", - "modified": "2024-09-04T15:30:34Z", + "modified": "2024-09-06T18:31:28Z", "published": "2024-09-04T15:30:34Z", "aliases": [ "CVE-2024-44400" @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44400" }, + { + "type": "WEB", + "url": "https://github.com/lonelylonglong/openfile-/blob/main/D-link_DI_8400-16.07.26A1_Command_Injection.md/CVE-2024-44400" + }, { "type": "WEB", "url": "https://github.com/lonelylonglong/openfile-/blob/main/D-link_DI_8400-16.07.26A1_Command_Injection.md/D-link_DI_8400-16.07.26A1_Command_Injection.md" diff --git a/advisories/unreviewed/2024/09/GHSA-xvjp-2h38-99ph/GHSA-xvjp-2h38-99ph.json b/advisories/unreviewed/2024/09/GHSA-xvjp-2h38-99ph/GHSA-xvjp-2h38-99ph.json index 8a1bafa8ab7..6450479cab5 100644 --- a/advisories/unreviewed/2024/09/GHSA-xvjp-2h38-99ph/GHSA-xvjp-2h38-99ph.json +++ b/advisories/unreviewed/2024/09/GHSA-xvjp-2h38-99ph/GHSA-xvjp-2h38-99ph.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-xvjp-2h38-99ph", - "modified": "2024-09-04T21:30:32Z", + "modified": "2024-09-06T18:31:29Z", "published": "2024-09-04T21:30:32Z", "aliases": [ "CVE-2024-44993" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/v3d: Fix out-of-bounds read in `v3d_csd_job_run()`\n\nWhen enabling UBSAN on Raspberry Pi 5, we get the following warning:\n\n[ 387.894977] UBSAN: array-index-out-of-bounds in drivers/gpu/drm/v3d/v3d_sched.c:320:3\n[ 387.903868] index 7 is out of range for type '__u32 [7]'\n[ 387.909692] CPU: 0 PID: 1207 Comm: kworker/u16:2 Tainted: G WC 6.10.3-v8-16k-numa #151\n[ 387.919166] Hardware name: Raspberry Pi 5 Model B Rev 1.0 (DT)\n[ 387.925961] Workqueue: v3d_csd drm_sched_run_job_work [gpu_sched]\n[ 387.932525] Call trace:\n[ 387.935296] dump_backtrace+0x170/0x1b8\n[ 387.939403] show_stack+0x20/0x38\n[ 387.942907] dump_stack_lvl+0x90/0xd0\n[ 387.946785] dump_stack+0x18/0x28\n[ 387.950301] __ubsan_handle_out_of_bounds+0x98/0xd0\n[ 387.955383] v3d_csd_job_run+0x3a8/0x438 [v3d]\n[ 387.960707] drm_sched_run_job_work+0x520/0x6d0 [gpu_sched]\n[ 387.966862] process_one_work+0x62c/0xb48\n[ 387.971296] worker_thread+0x468/0x5b0\n[ 387.975317] kthread+0x1c4/0x1e0\n[ 387.978818] ret_from_fork+0x10/0x20\n[ 387.983014] ---[ end trace ]---\n\nThis happens because the UAPI provides only seven configuration\nregisters and we are reading the eighth position of this u32 array.\n\nTherefore, fix the out-of-bounds read in `v3d_csd_job_run()` by\naccessing only seven positions on the '__u32 [7]' array. The eighth\nregister exists indeed on V3D 7.1, but it isn't currently used. That\nbeing so, let's guarantee that it remains unused and add a note that it\ncould be set in a future patch.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T20:15:08Z"