From afcc390ecb21d2fd661930af733b758d138a761e Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Mon, 11 Mar 2024 03:32:30 +0000 Subject: [PATCH] Publish Advisories GHSA-3qrv-r8v8-pmw7 GHSA-76j8-6c8j-572v GHSA-94wh-fmx9-8mfh --- .../GHSA-3qrv-r8v8-pmw7.json | 6 ++- .../GHSA-76j8-6c8j-572v.json | 38 +++++++++++++++++++ .../GHSA-94wh-fmx9-8mfh.json | 35 +++++++++++++++++ 3 files changed, 78 insertions(+), 1 deletion(-) create mode 100644 advisories/unreviewed/2024/03/GHSA-76j8-6c8j-572v/GHSA-76j8-6c8j-572v.json create mode 100644 advisories/unreviewed/2024/03/GHSA-94wh-fmx9-8mfh/GHSA-94wh-fmx9-8mfh.json diff --git a/advisories/unreviewed/2024/02/GHSA-3qrv-r8v8-pmw7/GHSA-3qrv-r8v8-pmw7.json b/advisories/unreviewed/2024/02/GHSA-3qrv-r8v8-pmw7/GHSA-3qrv-r8v8-pmw7.json index bb86b8da51e..55e4ab6e65d 100644 --- a/advisories/unreviewed/2024/02/GHSA-3qrv-r8v8-pmw7/GHSA-3qrv-r8v8-pmw7.json +++ b/advisories/unreviewed/2024/02/GHSA-3qrv-r8v8-pmw7/GHSA-3qrv-r8v8-pmw7.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3qrv-r8v8-pmw7", - "modified": "2024-02-23T18:30:59Z", + "modified": "2024-03-11T03:30:48Z", "published": "2024-02-06T18:30:21Z", "aliases": [ "CVE-2024-1048" @@ -29,6 +29,10 @@ "type": "WEB", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2256827" }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XRZQCVZ3XOASVFT6XLO7F2ZXOLOHIJZQ" + }, { "type": "WEB", "url": "https://security.netapp.com/advisory/ntap-20240223-0007" diff --git a/advisories/unreviewed/2024/03/GHSA-76j8-6c8j-572v/GHSA-76j8-6c8j-572v.json b/advisories/unreviewed/2024/03/GHSA-76j8-6c8j-572v/GHSA-76j8-6c8j-572v.json new file mode 100644 index 00000000000..c4146307df4 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-76j8-6c8j-572v/GHSA-76j8-6c8j-572v.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-76j8-6c8j-572v", + "modified": "2024-03-11T03:30:49Z", + "published": "2024-03-11T03:30:49Z", + "aliases": [ + "CVE-2024-2184" + ], + "details": "Buffer overflow in identifier field of WSD probe request process of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code.*:Satera MF740C Series/Satera MF640C Series/Satera LBP660C Series/Satera LBP620C Series firmware v12.07 and earlier, and Satera MF750C Series/Satera LBP670C Series firmware v03.09 and earlier sold in Japan.Color imageCLASS MF740C Series/Color imageCLASS MF640C Series/Color imageCLASS X MF1127C/Color imageCLASS LBP664Cdw/Color imageCLASS LBP622Cdw/Color imageCLASS X LBP1127C firmware v12.07 and earlier, and Color imageCLASS MF750C Series/Color imageCLASS X MF1333C/Color imageCLASS LBP674Cdw/Color imageCLASS X LBP1333C firmware v03.09 and earlier sold in US.i-SENSYS MF740C Series/i-SENSYS MF640C Series/C1127i Series/i-SENSYS LBP660C Series/i-SENSYS LBP620C Series/C1127P firmware v12.07 and earlier, and i-SENSYS MF750C Series/C1333i Series/i-SENSYS LBP673Cdw/C1333P firmware v03.09 and earlier sold in Europe.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2184" + }, + { + "type": "WEB", + "url": "https://psirt.canon/advisory-information/cp2024-002" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-787" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-11T01:15:50Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-94wh-fmx9-8mfh/GHSA-94wh-fmx9-8mfh.json b/advisories/unreviewed/2024/03/GHSA-94wh-fmx9-8mfh/GHSA-94wh-fmx9-8mfh.json new file mode 100644 index 00000000000..99871c98c7a --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-94wh-fmx9-8mfh/GHSA-94wh-fmx9-8mfh.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-94wh-fmx9-8mfh", + "modified": "2024-03-11T03:30:49Z", + "published": "2024-03-11T03:30:49Z", + "aliases": [ + "CVE-2024-28816" + ], + "details": "Student Information Chatbot a0196ab allows SQL injection via the username to the login function in index.php.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-28816" + }, + { + "type": "WEB", + "url": "https://github.com/AaravRajSIngh/Chatbot/pull/10" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-11T03:15:05Z" + } +} \ No newline at end of file