From ad163b6a30c3e885a2af808523662c0ab1d70547 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Thu, 1 Feb 2024 18:32:24 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-pg8v-g4xq-hww9.json | 8 ++++ .../GHSA-6xwm-7j8r-772w.json | 1 + .../GHSA-phxq-3m6p-p9q4.json | 1 + .../GHSA-7hpg-5cp7-xr78.json | 1 + .../GHSA-jmmv-7567-qw22.json | 1 + .../GHSA-wfg3-85mh-2rw9.json | 1 + .../GHSA-5p6c-7q82-x6c9.json | 3 +- .../GHSA-7cv2-wjgm-j7rm.json | 8 +++- .../GHSA-h9jw-g3xj-5hwg.json | 4 ++ .../GHSA-5g4j-78x8-fff7.json | 4 +- .../GHSA-r827-5p5r-w6f5.json | 11 +++-- .../GHSA-rjh9-46c2-6h7f.json | 5 ++- .../GHSA-vr3g-637q-4rh6.json | 4 ++ .../GHSA-4grv-wgvh-8x82.json | 12 +++++- .../GHSA-7xw9-w465-6x42.json | 4 ++ .../GHSA-vrhp-3w5m-c3w6.json | 4 +- .../GHSA-xw78-pcr6-wrg8.json | 8 ++++ .../GHSA-j6r8-x8pp-9mcq.json | 2 +- .../GHSA-2rq6-88fr-gr6r.json | 4 ++ .../GHSA-343v-9ccv-7535.json | 4 ++ .../GHSA-45pc-2866-5hxx.json | 4 ++ .../GHSA-4j85-8vqx-f8qv.json | 8 ++++ .../GHSA-5qv8-mq82-vgm3.json | 4 ++ .../GHSA-8mj3-mj87-cf2h.json | 3 +- .../GHSA-8pp2-pfr8-5hm5.json | 9 ++-- .../GHSA-96gj-xmph-8xrx.json | 4 ++ .../GHSA-98qr-f62q-46cx.json | 4 ++ .../GHSA-9vm4-r3mm-m2cq.json | 4 ++ .../GHSA-9vpc-ch84-fc8h.json | 11 +++-- .../GHSA-ccwc-jrj7-h4v6.json | 4 ++ .../GHSA-g5c3-fv5w-x2cw.json | 4 ++ .../GHSA-hjh6-9v4w-w32w.json | 4 ++ .../GHSA-mj6p-jggh-hr8w.json | 4 ++ .../GHSA-pg84-6g27-3r3m.json | 4 ++ .../GHSA-pvw6-vc2c-x7v5.json | 4 ++ .../GHSA-w32c-gg4j-5fxv.json | 4 ++ .../GHSA-w45w-99c9-fqr4.json | 4 ++ .../GHSA-xvjx-j3q9-j35p.json | 4 ++ .../GHSA-8frx-325f-xvxg.json | 42 +++++++++++++++++++ 39 files changed, 195 insertions(+), 24 deletions(-) create mode 100644 advisories/unreviewed/2024/02/GHSA-8frx-325f-xvxg/GHSA-8frx-325f-xvxg.json diff --git a/advisories/github-reviewed/2022/06/GHSA-pg8v-g4xq-hww9/GHSA-pg8v-g4xq-hww9.json b/advisories/github-reviewed/2022/06/GHSA-pg8v-g4xq-hww9/GHSA-pg8v-g4xq-hww9.json index a4585a1035c..801ddcbf6a4 100644 --- a/advisories/github-reviewed/2022/06/GHSA-pg8v-g4xq-hww9/GHSA-pg8v-g4xq-hww9.json +++ b/advisories/github-reviewed/2022/06/GHSA-pg8v-g4xq-hww9/GHSA-pg8v-g4xq-hww9.json @@ -64,6 +64,14 @@ "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2022/12/msg00012.html" }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AGRLWBEB3S5AU3D4TTROIS7O6QPHDTRH/" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NHDACMCLWE32BZZTSNWQPIFUAD5I6Q47/" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/AGRLWBEB3S5AU3D4TTROIS7O6QPHDTRH/" diff --git a/advisories/unreviewed/2022/11/GHSA-6xwm-7j8r-772w/GHSA-6xwm-7j8r-772w.json b/advisories/unreviewed/2022/11/GHSA-6xwm-7j8r-772w/GHSA-6xwm-7j8r-772w.json index abffa68b0ce..87528ce2628 100644 --- a/advisories/unreviewed/2022/11/GHSA-6xwm-7j8r-772w/GHSA-6xwm-7j8r-772w.json +++ b/advisories/unreviewed/2022/11/GHSA-6xwm-7j8r-772w/GHSA-6xwm-7j8r-772w.json @@ -28,6 +28,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-707", "CWE-79" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2022/11/GHSA-phxq-3m6p-p9q4/GHSA-phxq-3m6p-p9q4.json b/advisories/unreviewed/2022/11/GHSA-phxq-3m6p-p9q4/GHSA-phxq-3m6p-p9q4.json index e0fa58c348d..6b6dde1dba2 100644 --- a/advisories/unreviewed/2022/11/GHSA-phxq-3m6p-p9q4/GHSA-phxq-3m6p-p9q4.json +++ b/advisories/unreviewed/2022/11/GHSA-phxq-3m6p-p9q4/GHSA-phxq-3m6p-p9q4.json @@ -28,6 +28,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-266", "CWE-284", "CWE-434" ], diff --git a/advisories/unreviewed/2022/12/GHSA-7hpg-5cp7-xr78/GHSA-7hpg-5cp7-xr78.json b/advisories/unreviewed/2022/12/GHSA-7hpg-5cp7-xr78/GHSA-7hpg-5cp7-xr78.json index 5313bac8aaf..7a91a1f3324 100644 --- a/advisories/unreviewed/2022/12/GHSA-7hpg-5cp7-xr78/GHSA-7hpg-5cp7-xr78.json +++ b/advisories/unreviewed/2022/12/GHSA-7hpg-5cp7-xr78/GHSA-7hpg-5cp7-xr78.json @@ -32,6 +32,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-707", "CWE-79" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2022/12/GHSA-jmmv-7567-qw22/GHSA-jmmv-7567-qw22.json b/advisories/unreviewed/2022/12/GHSA-jmmv-7567-qw22/GHSA-jmmv-7567-qw22.json index b22d314a4af..594b2abd51c 100644 --- a/advisories/unreviewed/2022/12/GHSA-jmmv-7567-qw22/GHSA-jmmv-7567-qw22.json +++ b/advisories/unreviewed/2022/12/GHSA-jmmv-7567-qw22/GHSA-jmmv-7567-qw22.json @@ -32,6 +32,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-707", "CWE-79" ], "severity": "CRITICAL", diff --git a/advisories/unreviewed/2022/12/GHSA-wfg3-85mh-2rw9/GHSA-wfg3-85mh-2rw9.json b/advisories/unreviewed/2022/12/GHSA-wfg3-85mh-2rw9/GHSA-wfg3-85mh-2rw9.json index 31d6fc4bb37..b9f1b1ddf8c 100644 --- a/advisories/unreviewed/2022/12/GHSA-wfg3-85mh-2rw9/GHSA-wfg3-85mh-2rw9.json +++ b/advisories/unreviewed/2022/12/GHSA-wfg3-85mh-2rw9/GHSA-wfg3-85mh-2rw9.json @@ -36,6 +36,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-707", "CWE-79" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2023/02/GHSA-5p6c-7q82-x6c9/GHSA-5p6c-7q82-x6c9.json b/advisories/unreviewed/2023/02/GHSA-5p6c-7q82-x6c9/GHSA-5p6c-7q82-x6c9.json index 12b12bfc998..43a095d6cc4 100644 --- a/advisories/unreviewed/2023/02/GHSA-5p6c-7q82-x6c9/GHSA-5p6c-7q82-x6c9.json +++ b/advisories/unreviewed/2023/02/GHSA-5p6c-7q82-x6c9/GHSA-5p6c-7q82-x6c9.json @@ -36,7 +36,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2023/04/GHSA-7cv2-wjgm-j7rm/GHSA-7cv2-wjgm-j7rm.json b/advisories/unreviewed/2023/04/GHSA-7cv2-wjgm-j7rm/GHSA-7cv2-wjgm-j7rm.json index 305b8bc5b83..3950040803c 100644 --- a/advisories/unreviewed/2023/04/GHSA-7cv2-wjgm-j7rm/GHSA-7cv2-wjgm-j7rm.json +++ b/advisories/unreviewed/2023/04/GHSA-7cv2-wjgm-j7rm/GHSA-7cv2-wjgm-j7rm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7cv2-wjgm-j7rm", - "modified": "2023-05-03T21:30:17Z", + "modified": "2024-02-01T18:31:06Z", "published": "2023-04-24T21:30:30Z", "aliases": [ "CVE-2023-28484" @@ -36,13 +36,17 @@ { "type": "WEB", "url": "https://security.netapp.com/advisory/ntap-20230601-0006/" + }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0005/" } ], "database_specific": { "cwe_ids": [ "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2023-04-24T21:15:09Z" diff --git a/advisories/unreviewed/2023/05/GHSA-h9jw-g3xj-5hwg/GHSA-h9jw-g3xj-5hwg.json b/advisories/unreviewed/2023/05/GHSA-h9jw-g3xj-5hwg/GHSA-h9jw-g3xj-5hwg.json index a73d330edf2..2d06e2ccedc 100644 --- a/advisories/unreviewed/2023/05/GHSA-h9jw-g3xj-5hwg/GHSA-h9jw-g3xj-5hwg.json +++ b/advisories/unreviewed/2023/05/GHSA-h9jw-g3xj-5hwg/GHSA-h9jw-g3xj-5hwg.json @@ -41,6 +41,10 @@ "type": "WEB", "url": "https://security.gentoo.org/glsa/202312-05" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0005/" + }, { "type": "WEB", "url": "https://www.libssh.org/security/advisories/CVE-2023-2283.txt" diff --git a/advisories/unreviewed/2023/07/GHSA-5g4j-78x8-fff7/GHSA-5g4j-78x8-fff7.json b/advisories/unreviewed/2023/07/GHSA-5g4j-78x8-fff7/GHSA-5g4j-78x8-fff7.json index d5b2fb5ee0b..5420541f2f1 100644 --- a/advisories/unreviewed/2023/07/GHSA-5g4j-78x8-fff7/GHSA-5g4j-78x8-fff7.json +++ b/advisories/unreviewed/2023/07/GHSA-5g4j-78x8-fff7/GHSA-5g4j-78x8-fff7.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5g4j-78x8-fff7", - "modified": "2023-08-23T18:30:29Z", + "modified": "2024-02-01T18:31:04Z", "published": "2023-07-06T19:24:04Z", "aliases": [ "CVE-2022-3703" @@ -30,7 +30,7 @@ "cwe_ids": [ "CWE-345" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2022-11-10T22:15:00Z" diff --git a/advisories/unreviewed/2023/07/GHSA-r827-5p5r-w6f5/GHSA-r827-5p5r-w6f5.json b/advisories/unreviewed/2023/07/GHSA-r827-5p5r-w6f5/GHSA-r827-5p5r-w6f5.json index fad8b97e1c7..26b8fac5fee 100644 --- a/advisories/unreviewed/2023/07/GHSA-r827-5p5r-w6f5/GHSA-r827-5p5r-w6f5.json +++ b/advisories/unreviewed/2023/07/GHSA-r827-5p5r-w6f5/GHSA-r827-5p5r-w6f5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r827-5p5r-w6f5", - "modified": "2023-07-06T19:24:05Z", + "modified": "2024-02-01T18:31:04Z", "published": "2023-07-06T19:24:05Z", "aliases": [ "CVE-2022-2808" ], "details": "Algan Yazılım Prens Student Information System product has an authenticated Insecure Direct Object Reference (IDOR) vulnerability. ", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-639" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2022-12-02T12:15:00Z" diff --git a/advisories/unreviewed/2023/07/GHSA-rjh9-46c2-6h7f/GHSA-rjh9-46c2-6h7f.json b/advisories/unreviewed/2023/07/GHSA-rjh9-46c2-6h7f/GHSA-rjh9-46c2-6h7f.json index 6c7ccb3bbe9..21d7b7daf07 100644 --- a/advisories/unreviewed/2023/07/GHSA-rjh9-46c2-6h7f/GHSA-rjh9-46c2-6h7f.json +++ b/advisories/unreviewed/2023/07/GHSA-rjh9-46c2-6h7f/GHSA-rjh9-46c2-6h7f.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-rjh9-46c2-6h7f", - "modified": "2023-07-06T21:14:55Z", + "modified": "2024-02-01T18:31:06Z", "published": "2023-07-06T21:14:55Z", "aliases": [ "CVE-2023-25833" @@ -32,9 +32,10 @@ ], "database_specific": { "cwe_ids": [ + "CWE-79", "CWE-80" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2023-05-10T02:15:08Z" diff --git a/advisories/unreviewed/2023/07/GHSA-vr3g-637q-4rh6/GHSA-vr3g-637q-4rh6.json b/advisories/unreviewed/2023/07/GHSA-vr3g-637q-4rh6/GHSA-vr3g-637q-4rh6.json index 481ccdea3d5..dc8738b328c 100644 --- a/advisories/unreviewed/2023/07/GHSA-vr3g-637q-4rh6/GHSA-vr3g-637q-4rh6.json +++ b/advisories/unreviewed/2023/07/GHSA-vr3g-637q-4rh6/GHSA-vr3g-637q-4rh6.json @@ -37,6 +37,10 @@ "type": "WEB", "url": "https://lore.kernel.org/netfilter-devel/20230705121627.GC19489@breakpoint.cc/T/" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0001/" + }, { "type": "WEB", "url": "https://www.debian.org/security/2023/dsa-5453" diff --git a/advisories/unreviewed/2023/08/GHSA-4grv-wgvh-8x82/GHSA-4grv-wgvh-8x82.json b/advisories/unreviewed/2023/08/GHSA-4grv-wgvh-8x82/GHSA-4grv-wgvh-8x82.json index 44709cc3aac..b6c6cb82fd7 100644 --- a/advisories/unreviewed/2023/08/GHSA-4grv-wgvh-8x82/GHSA-4grv-wgvh-8x82.json +++ b/advisories/unreviewed/2023/08/GHSA-4grv-wgvh-8x82/GHSA-4grv-wgvh-8x82.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4grv-wgvh-8x82", - "modified": "2023-08-23T00:30:25Z", + "modified": "2024-02-01T18:31:06Z", "published": "2023-08-16T15:30:17Z", "aliases": [ "CVE-2023-39975" @@ -33,6 +33,14 @@ "type": "WEB", "url": "https://security.netapp.com/advisory/ntap-20230915-0014/" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0005/" + }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0008/" + }, { "type": "WEB", "url": "https://web.mit.edu/kerberos/www/advisories/" @@ -42,7 +50,7 @@ "cwe_ids": [ "CWE-415" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2023-08-16T15:15:11Z" diff --git a/advisories/unreviewed/2023/10/GHSA-7xw9-w465-6x42/GHSA-7xw9-w465-6x42.json b/advisories/unreviewed/2023/10/GHSA-7xw9-w465-6x42/GHSA-7xw9-w465-6x42.json index 211059ca7b2..9e08ac4b62a 100644 --- a/advisories/unreviewed/2023/10/GHSA-7xw9-w465-6x42/GHSA-7xw9-w465-6x42.json +++ b/advisories/unreviewed/2023/10/GHSA-7xw9-w465-6x42/GHSA-7xw9-w465-6x42.json @@ -33,6 +33,10 @@ "type": "WEB", "url": "https://security.netapp.com/advisory/ntap-20231027-0009/" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0005/" + }, { "type": "WEB", "url": "https://support.apple.com/kb/HT214036" diff --git a/advisories/unreviewed/2023/10/GHSA-vrhp-3w5m-c3w6/GHSA-vrhp-3w5m-c3w6.json b/advisories/unreviewed/2023/10/GHSA-vrhp-3w5m-c3w6/GHSA-vrhp-3w5m-c3w6.json index 63f2507f260..a3ea5b9a2d6 100644 --- a/advisories/unreviewed/2023/10/GHSA-vrhp-3w5m-c3w6/GHSA-vrhp-3w5m-c3w6.json +++ b/advisories/unreviewed/2023/10/GHSA-vrhp-3w5m-c3w6/GHSA-vrhp-3w5m-c3w6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vrhp-3w5m-c3w6", - "modified": "2023-10-19T00:30:18Z", + "modified": "2024-02-01T18:31:06Z", "published": "2023-10-16T09:30:19Z", "aliases": [ "CVE-2023-45629" @@ -30,7 +30,7 @@ "cwe_ids": [ "CWE-352" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2023-10-16T09:15:10Z" diff --git a/advisories/unreviewed/2023/10/GHSA-xw78-pcr6-wrg8/GHSA-xw78-pcr6-wrg8.json b/advisories/unreviewed/2023/10/GHSA-xw78-pcr6-wrg8/GHSA-xw78-pcr6-wrg8.json index 7b699c6d275..b046074f10d 100644 --- a/advisories/unreviewed/2023/10/GHSA-xw78-pcr6-wrg8/GHSA-xw78-pcr6-wrg8.json +++ b/advisories/unreviewed/2023/10/GHSA-xw78-pcr6-wrg8/GHSA-xw78-pcr6-wrg8.json @@ -33,6 +33,14 @@ "type": "WEB", "url": "https://security.netapp.com/advisory/ntap-20231027-0010/" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0003/" + }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0004/" + }, { "type": "WEB", "url": "https://www.debian.org/security/2023/dsa-5532" diff --git a/advisories/unreviewed/2023/12/GHSA-j6r8-x8pp-9mcq/GHSA-j6r8-x8pp-9mcq.json b/advisories/unreviewed/2023/12/GHSA-j6r8-x8pp-9mcq/GHSA-j6r8-x8pp-9mcq.json index afb298f6fe3..979a446b65a 100644 --- a/advisories/unreviewed/2023/12/GHSA-j6r8-x8pp-9mcq/GHSA-j6r8-x8pp-9mcq.json +++ b/advisories/unreviewed/2023/12/GHSA-j6r8-x8pp-9mcq/GHSA-j6r8-x8pp-9mcq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-j6r8-x8pp-9mcq", - "modified": "2023-12-27T00:30:25Z", + "modified": "2024-02-01T18:31:07Z", "published": "2023-12-20T21:30:35Z", "aliases": [ "CVE-2023-49272" diff --git a/advisories/unreviewed/2024/01/GHSA-2rq6-88fr-gr6r/GHSA-2rq6-88fr-gr6r.json b/advisories/unreviewed/2024/01/GHSA-2rq6-88fr-gr6r/GHSA-2rq6-88fr-gr6r.json index 8b5b31f37af..a4919760c9c 100644 --- a/advisories/unreviewed/2024/01/GHSA-2rq6-88fr-gr6r/GHSA-2rq6-88fr-gr6r.json +++ b/advisories/unreviewed/2024/01/GHSA-2rq6-88fr-gr6r/GHSA-2rq6-88fr-gr6r.json @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-20963" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0003/" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpujan2024.html" diff --git a/advisories/unreviewed/2024/01/GHSA-343v-9ccv-7535/GHSA-343v-9ccv-7535.json b/advisories/unreviewed/2024/01/GHSA-343v-9ccv-7535/GHSA-343v-9ccv-7535.json index 64271575411..66a2f4db249 100644 --- a/advisories/unreviewed/2024/01/GHSA-343v-9ccv-7535/GHSA-343v-9ccv-7535.json +++ b/advisories/unreviewed/2024/01/GHSA-343v-9ccv-7535/GHSA-343v-9ccv-7535.json @@ -25,6 +25,10 @@ "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2024/01/msg00023.html" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0002/" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpujan2024.html" diff --git a/advisories/unreviewed/2024/01/GHSA-45pc-2866-5hxx/GHSA-45pc-2866-5hxx.json b/advisories/unreviewed/2024/01/GHSA-45pc-2866-5hxx/GHSA-45pc-2866-5hxx.json index 66c39b37620..ed61e4ef5ab 100644 --- a/advisories/unreviewed/2024/01/GHSA-45pc-2866-5hxx/GHSA-45pc-2866-5hxx.json +++ b/advisories/unreviewed/2024/01/GHSA-45pc-2866-5hxx/GHSA-45pc-2866-5hxx.json @@ -25,6 +25,10 @@ "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2024/01/msg00023.html" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0002/" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpujan2024.html" diff --git a/advisories/unreviewed/2024/01/GHSA-4j85-8vqx-f8qv/GHSA-4j85-8vqx-f8qv.json b/advisories/unreviewed/2024/01/GHSA-4j85-8vqx-f8qv/GHSA-4j85-8vqx-f8qv.json index 1b4d9e884f2..79b9c738d75 100644 --- a/advisories/unreviewed/2024/01/GHSA-4j85-8vqx-f8qv/GHSA-4j85-8vqx-f8qv.json +++ b/advisories/unreviewed/2024/01/GHSA-4j85-8vqx-f8qv/GHSA-4j85-8vqx-f8qv.json @@ -21,6 +21,14 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-20965" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0003/" + }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0006/" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpujan2024.html" diff --git a/advisories/unreviewed/2024/01/GHSA-5qv8-mq82-vgm3/GHSA-5qv8-mq82-vgm3.json b/advisories/unreviewed/2024/01/GHSA-5qv8-mq82-vgm3/GHSA-5qv8-mq82-vgm3.json index b5312ec3604..b83d9bbd52c 100644 --- a/advisories/unreviewed/2024/01/GHSA-5qv8-mq82-vgm3/GHSA-5qv8-mq82-vgm3.json +++ b/advisories/unreviewed/2024/01/GHSA-5qv8-mq82-vgm3/GHSA-5qv8-mq82-vgm3.json @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-20967" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0003/" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpujan2024.html" diff --git a/advisories/unreviewed/2024/01/GHSA-8mj3-mj87-cf2h/GHSA-8mj3-mj87-cf2h.json b/advisories/unreviewed/2024/01/GHSA-8mj3-mj87-cf2h/GHSA-8mj3-mj87-cf2h.json index abea7bbdf23..af4b2367963 100644 --- a/advisories/unreviewed/2024/01/GHSA-8mj3-mj87-cf2h/GHSA-8mj3-mj87-cf2h.json +++ b/advisories/unreviewed/2024/01/GHSA-8mj3-mj87-cf2h/GHSA-8mj3-mj87-cf2h.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-256" + "CWE-256", + "CWE-522" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/01/GHSA-8pp2-pfr8-5hm5/GHSA-8pp2-pfr8-5hm5.json b/advisories/unreviewed/2024/01/GHSA-8pp2-pfr8-5hm5/GHSA-8pp2-pfr8-5hm5.json index 493954c73fc..721798d9e85 100644 --- a/advisories/unreviewed/2024/01/GHSA-8pp2-pfr8-5hm5/GHSA-8pp2-pfr8-5hm5.json +++ b/advisories/unreviewed/2024/01/GHSA-8pp2-pfr8-5hm5/GHSA-8pp2-pfr8-5hm5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8pp2-pfr8-5hm5", - "modified": "2024-01-25T06:30:31Z", + "modified": "2024-02-01T18:31:08Z", "published": "2024-01-25T06:30:31Z", "aliases": [ "CVE-2024-23985" ], "details": "EzServer 6.4.017 allows a denial of service (daemon crash) via a long string, such as one for the RNTO command.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-01-25T05:15:08Z" diff --git a/advisories/unreviewed/2024/01/GHSA-96gj-xmph-8xrx/GHSA-96gj-xmph-8xrx.json b/advisories/unreviewed/2024/01/GHSA-96gj-xmph-8xrx/GHSA-96gj-xmph-8xrx.json index 964ce3ceebb..44bae325868 100644 --- a/advisories/unreviewed/2024/01/GHSA-96gj-xmph-8xrx/GHSA-96gj-xmph-8xrx.json +++ b/advisories/unreviewed/2024/01/GHSA-96gj-xmph-8xrx/GHSA-96gj-xmph-8xrx.json @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-20981" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0003/" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpujan2024.html" diff --git a/advisories/unreviewed/2024/01/GHSA-98qr-f62q-46cx/GHSA-98qr-f62q-46cx.json b/advisories/unreviewed/2024/01/GHSA-98qr-f62q-46cx/GHSA-98qr-f62q-46cx.json index 1b005f56ca8..c8488a9b57d 100644 --- a/advisories/unreviewed/2024/01/GHSA-98qr-f62q-46cx/GHSA-98qr-f62q-46cx.json +++ b/advisories/unreviewed/2024/01/GHSA-98qr-f62q-46cx/GHSA-98qr-f62q-46cx.json @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-20922" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0002/" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpujan2024.html" diff --git a/advisories/unreviewed/2024/01/GHSA-9vm4-r3mm-m2cq/GHSA-9vm4-r3mm-m2cq.json b/advisories/unreviewed/2024/01/GHSA-9vm4-r3mm-m2cq/GHSA-9vm4-r3mm-m2cq.json index b41d2b40143..bb54442f159 100644 --- a/advisories/unreviewed/2024/01/GHSA-9vm4-r3mm-m2cq/GHSA-9vm4-r3mm-m2cq.json +++ b/advisories/unreviewed/2024/01/GHSA-9vm4-r3mm-m2cq/GHSA-9vm4-r3mm-m2cq.json @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-20977" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0003/" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpujan2024.html" diff --git a/advisories/unreviewed/2024/01/GHSA-9vpc-ch84-fc8h/GHSA-9vpc-ch84-fc8h.json b/advisories/unreviewed/2024/01/GHSA-9vpc-ch84-fc8h/GHSA-9vpc-ch84-fc8h.json index a228792fbbc..66912929bd5 100644 --- a/advisories/unreviewed/2024/01/GHSA-9vpc-ch84-fc8h/GHSA-9vpc-ch84-fc8h.json +++ b/advisories/unreviewed/2024/01/GHSA-9vpc-ch84-fc8h/GHSA-9vpc-ch84-fc8h.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9vpc-ch84-fc8h", - "modified": "2024-01-24T21:30:33Z", + "modified": "2024-02-01T18:31:07Z", "published": "2024-01-24T21:30:33Z", "aliases": [ "CVE-2021-42147" ], "details": "Buffer over-read vulnerability in the dtls_sha256_update function in Contiki-NG tinyDTLS through master branch 53a0d97 allows remote attackers to cause a denial of service via crafted data packet.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-01-24T19:15:08Z" diff --git a/advisories/unreviewed/2024/01/GHSA-ccwc-jrj7-h4v6/GHSA-ccwc-jrj7-h4v6.json b/advisories/unreviewed/2024/01/GHSA-ccwc-jrj7-h4v6/GHSA-ccwc-jrj7-h4v6.json index 6586d9988b1..0a77eff2536 100644 --- a/advisories/unreviewed/2024/01/GHSA-ccwc-jrj7-h4v6/GHSA-ccwc-jrj7-h4v6.json +++ b/advisories/unreviewed/2024/01/GHSA-ccwc-jrj7-h4v6/GHSA-ccwc-jrj7-h4v6.json @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-20932" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0002/" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpujan2024.html" diff --git a/advisories/unreviewed/2024/01/GHSA-g5c3-fv5w-x2cw/GHSA-g5c3-fv5w-x2cw.json b/advisories/unreviewed/2024/01/GHSA-g5c3-fv5w-x2cw/GHSA-g5c3-fv5w-x2cw.json index 98684dac9e6..5dcb1c8fe76 100644 --- a/advisories/unreviewed/2024/01/GHSA-g5c3-fv5w-x2cw/GHSA-g5c3-fv5w-x2cw.json +++ b/advisories/unreviewed/2024/01/GHSA-g5c3-fv5w-x2cw/GHSA-g5c3-fv5w-x2cw.json @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-20975" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0007/" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpujan2024.html" diff --git a/advisories/unreviewed/2024/01/GHSA-hjh6-9v4w-w32w/GHSA-hjh6-9v4w-w32w.json b/advisories/unreviewed/2024/01/GHSA-hjh6-9v4w-w32w/GHSA-hjh6-9v4w-w32w.json index 060266d3710..54fe9959c37 100644 --- a/advisories/unreviewed/2024/01/GHSA-hjh6-9v4w-w32w/GHSA-hjh6-9v4w-w32w.json +++ b/advisories/unreviewed/2024/01/GHSA-hjh6-9v4w-w32w/GHSA-hjh6-9v4w-w32w.json @@ -25,6 +25,10 @@ "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2024/01/msg00023.html" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0002/" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpujan2024.html" diff --git a/advisories/unreviewed/2024/01/GHSA-mj6p-jggh-hr8w/GHSA-mj6p-jggh-hr8w.json b/advisories/unreviewed/2024/01/GHSA-mj6p-jggh-hr8w/GHSA-mj6p-jggh-hr8w.json index 9d38e4ddd56..07f919fecec 100644 --- a/advisories/unreviewed/2024/01/GHSA-mj6p-jggh-hr8w/GHSA-mj6p-jggh-hr8w.json +++ b/advisories/unreviewed/2024/01/GHSA-mj6p-jggh-hr8w/GHSA-mj6p-jggh-hr8w.json @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-20961" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0003/" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpujan2024.html" diff --git a/advisories/unreviewed/2024/01/GHSA-pg84-6g27-3r3m/GHSA-pg84-6g27-3r3m.json b/advisories/unreviewed/2024/01/GHSA-pg84-6g27-3r3m/GHSA-pg84-6g27-3r3m.json index 37d3baf46c6..a03d4d0dc0f 100644 --- a/advisories/unreviewed/2024/01/GHSA-pg84-6g27-3r3m/GHSA-pg84-6g27-3r3m.json +++ b/advisories/unreviewed/2024/01/GHSA-pg84-6g27-3r3m/GHSA-pg84-6g27-3r3m.json @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-20971" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0003/" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpujan2024.html" diff --git a/advisories/unreviewed/2024/01/GHSA-pvw6-vc2c-x7v5/GHSA-pvw6-vc2c-x7v5.json b/advisories/unreviewed/2024/01/GHSA-pvw6-vc2c-x7v5/GHSA-pvw6-vc2c-x7v5.json index 88a93800a86..fd90cc26061 100644 --- a/advisories/unreviewed/2024/01/GHSA-pvw6-vc2c-x7v5/GHSA-pvw6-vc2c-x7v5.json +++ b/advisories/unreviewed/2024/01/GHSA-pvw6-vc2c-x7v5/GHSA-pvw6-vc2c-x7v5.json @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-20983" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0009/" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpujan2024.html" diff --git a/advisories/unreviewed/2024/01/GHSA-w32c-gg4j-5fxv/GHSA-w32c-gg4j-5fxv.json b/advisories/unreviewed/2024/01/GHSA-w32c-gg4j-5fxv/GHSA-w32c-gg4j-5fxv.json index c66cee5c066..a67426e2c63 100644 --- a/advisories/unreviewed/2024/01/GHSA-w32c-gg4j-5fxv/GHSA-w32c-gg4j-5fxv.json +++ b/advisories/unreviewed/2024/01/GHSA-w32c-gg4j-5fxv/GHSA-w32c-gg4j-5fxv.json @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-20985" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0003/" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpujan2024.html" diff --git a/advisories/unreviewed/2024/01/GHSA-w45w-99c9-fqr4/GHSA-w45w-99c9-fqr4.json b/advisories/unreviewed/2024/01/GHSA-w45w-99c9-fqr4/GHSA-w45w-99c9-fqr4.json index 7884938ed9c..790a4706a9c 100644 --- a/advisories/unreviewed/2024/01/GHSA-w45w-99c9-fqr4/GHSA-w45w-99c9-fqr4.json +++ b/advisories/unreviewed/2024/01/GHSA-w45w-99c9-fqr4/GHSA-w45w-99c9-fqr4.json @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-20973" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0003/" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpujan2024.html" diff --git a/advisories/unreviewed/2024/01/GHSA-xvjx-j3q9-j35p/GHSA-xvjx-j3q9-j35p.json b/advisories/unreviewed/2024/01/GHSA-xvjx-j3q9-j35p/GHSA-xvjx-j3q9-j35p.json index b4787627da2..f508b010969 100644 --- a/advisories/unreviewed/2024/01/GHSA-xvjx-j3q9-j35p/GHSA-xvjx-j3q9-j35p.json +++ b/advisories/unreviewed/2024/01/GHSA-xvjx-j3q9-j35p/GHSA-xvjx-j3q9-j35p.json @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-20969" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240201-0003/" + }, { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpujan2024.html" diff --git a/advisories/unreviewed/2024/02/GHSA-8frx-325f-xvxg/GHSA-8frx-325f-xvxg.json b/advisories/unreviewed/2024/02/GHSA-8frx-325f-xvxg/GHSA-8frx-325f-xvxg.json new file mode 100644 index 00000000000..52f46dfea25 --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-8frx-325f-xvxg/GHSA-8frx-325f-xvxg.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8frx-325f-xvxg", + "modified": "2024-02-01T18:31:08Z", + "published": "2024-02-01T18:31:08Z", + "aliases": [ + "CVE-2024-1167" + ], + "details": "\nWhen SEW-EURODRIVE MOVITOOLS MotionStudio processes XML information unrestricted file access can occur.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1167" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-24-016-01" + }, + { + "type": "WEB", + "url": "https://www.seweurodrive.com/contact_us/contact_us.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-611" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-01T18:15:53Z" + } +} \ No newline at end of file