From baf927d89d1af56416639b146edea476ff76d11d Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Tue, 27 Aug 2024 15:34:09 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-g488-m495-9mgj.json | 2 +- .../GHSA-xgr2-4f4q-m3p9.json | 2 +- .../GHSA-q94c-x56g-qr59.json | 2 +- .../GHSA-2942-jp7w-55rc.json | 11 ++++-- .../GHSA-fq86-8676-6j38.json | 9 +++-- .../GHSA-mfrg-mc7h-8xrw.json | 9 +++-- .../GHSA-f636-m6gc-99ch.json | 11 ++++-- .../GHSA-247v-6wr5-3wf3.json | 3 +- .../GHSA-53mw-8pff-677j.json | 1 + .../GHSA-7hm7-x364-qr2m.json | 11 ++++-- .../GHSA-994f-f72h-4mcv.json | 9 +++-- .../GHSA-hj3c-gwrc-6jch.json | 11 ++++-- .../GHSA-mwj6-494m-mx84.json | 11 ++++-- .../GHSA-2q4w-x8h2-2fvh.json | 38 +++++++++++++++++++ .../GHSA-2v3r-26j9-rjqh.json | 2 +- .../GHSA-338f-rfqj-8jxw.json | 2 +- .../GHSA-3cj6-45x3-vrjj.json | 2 +- .../GHSA-3g58-rjqp-pmgh.json | 11 ++++-- .../GHSA-48x4-mx8f-gr4h.json | 38 +++++++++++++++++++ .../GHSA-4pj3-wmgx-2h8r.json | 3 +- .../GHSA-5c96-24qg-f876.json | 2 +- .../GHSA-5vrp-5g78-5924.json | 3 +- .../GHSA-6355-v7q5-4p33.json | 11 ++++-- .../GHSA-6c2h-4vcm-x8p4.json | 2 +- .../GHSA-73hq-7p8j-4vp8.json | 38 +++++++++++++++++++ .../GHSA-73x9-2874-qfh4.json | 38 +++++++++++++++++++ .../GHSA-76rf-j9m6-mjgj.json | 11 ++++-- .../GHSA-7c66-8xr2-45gc.json | 2 +- .../GHSA-7vcw-f2gc-3g39.json | 11 ++++-- .../GHSA-7vp8-wwfv-6g24.json | 3 +- .../GHSA-7wc7-j82h-f9pw.json | 3 +- .../GHSA-8797-vvp8-wj9v.json | 2 +- .../GHSA-8j3f-9fhh-xf4c.json | 11 ++++-- .../GHSA-9fhr-488x-fp7h.json | 3 +- .../GHSA-9gr6-q98c-q2r4.json | 3 +- .../GHSA-9mmm-86g7-vp9g.json | 11 ++++-- .../GHSA-9rwc-r28x-rhwh.json | 2 +- .../GHSA-c23f-2mjw-h676.json | 3 +- .../GHSA-c7hp-v8hh-hvgp.json | 2 +- .../GHSA-cccq-559f-x22v.json | 11 ++++-- .../GHSA-cg6q-c353-f4qp.json | 11 ++++-- .../GHSA-cqxm-p8fm-64vf.json | 38 +++++++++++++++++++ .../GHSA-cwhx-w267-r8qh.json | 11 ++++-- .../GHSA-f2jj-rmrg-9rjx.json | 11 ++++-- .../GHSA-fmxx-4w94-fc85.json | 2 +- .../GHSA-fqxm-c9wh-542c.json | 38 +++++++++++++++++++ .../GHSA-g79x-6jx3-7f7g.json | 38 +++++++++++++++++++ .../GHSA-gj2j-3p2j-pmwr.json | 3 +- .../GHSA-gq64-pw9q-3fw2.json | 11 ++++-- .../GHSA-grmc-8w5p-47x7.json | 3 +- .../GHSA-h363-vrwv-gpwf.json | 3 +- .../GHSA-h43p-x2c2-9h92.json | 11 ++++-- .../GHSA-h5mc-wcjm-jrgw.json | 38 +++++++++++++++++++ .../GHSA-h7p8-gjr9-rp7c.json | 2 +- .../GHSA-hmrp-qqm4-qjf7.json | 3 +- .../GHSA-jqgm-j6xq-3v4q.json | 11 ++++-- .../GHSA-m56p-h3j2-3v46.json | 3 +- .../GHSA-mv84-ggqf-6q3w.json | 11 ++++-- .../GHSA-pfcw-98x8-f55c.json | 38 +++++++++++++++++++ .../GHSA-pg2r-prx2-mw84.json | 3 +- .../GHSA-pg9r-4fxg-8jcv.json | 11 ++++-- .../GHSA-r7rx-q42q-vq8v.json | 11 ++++-- .../GHSA-r936-6588-v9v4.json | 11 ++++-- .../GHSA-rp5g-xj9f-ghvw.json | 11 ++++-- .../GHSA-rpp5-g56w-xpgh.json | 2 +- .../GHSA-v25q-32rr-4cpj.json | 2 +- .../GHSA-vhrf-w875-h9vr.json | 11 ++++-- .../GHSA-w9pm-7cxw-vw6j.json | 38 +++++++++++++++++++ .../GHSA-whmw-7gjc-qj48.json | 11 ++++-- .../GHSA-wm87-x2vw-r6ch.json | 11 ++++-- .../GHSA-xxfg-vcwf-78fg.json | 11 ++++-- 71 files changed, 632 insertions(+), 147 deletions(-) create mode 100644 advisories/unreviewed/2024/08/GHSA-2q4w-x8h2-2fvh/GHSA-2q4w-x8h2-2fvh.json create mode 100644 advisories/unreviewed/2024/08/GHSA-48x4-mx8f-gr4h/GHSA-48x4-mx8f-gr4h.json create mode 100644 advisories/unreviewed/2024/08/GHSA-73hq-7p8j-4vp8/GHSA-73hq-7p8j-4vp8.json create mode 100644 advisories/unreviewed/2024/08/GHSA-73x9-2874-qfh4/GHSA-73x9-2874-qfh4.json create mode 100644 advisories/unreviewed/2024/08/GHSA-cqxm-p8fm-64vf/GHSA-cqxm-p8fm-64vf.json create mode 100644 advisories/unreviewed/2024/08/GHSA-fqxm-c9wh-542c/GHSA-fqxm-c9wh-542c.json create mode 100644 advisories/unreviewed/2024/08/GHSA-g79x-6jx3-7f7g/GHSA-g79x-6jx3-7f7g.json create mode 100644 advisories/unreviewed/2024/08/GHSA-h5mc-wcjm-jrgw/GHSA-h5mc-wcjm-jrgw.json create mode 100644 advisories/unreviewed/2024/08/GHSA-pfcw-98x8-f55c/GHSA-pfcw-98x8-f55c.json create mode 100644 advisories/unreviewed/2024/08/GHSA-w9pm-7cxw-vw6j/GHSA-w9pm-7cxw-vw6j.json diff --git a/advisories/unreviewed/2023/10/GHSA-g488-m495-9mgj/GHSA-g488-m495-9mgj.json b/advisories/unreviewed/2023/10/GHSA-g488-m495-9mgj/GHSA-g488-m495-9mgj.json index f490921cca3..fc771cd89b6 100644 --- a/advisories/unreviewed/2023/10/GHSA-g488-m495-9mgj/GHSA-g488-m495-9mgj.json +++ b/advisories/unreviewed/2023/10/GHSA-g488-m495-9mgj/GHSA-g488-m495-9mgj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-g488-m495-9mgj", - "modified": "2024-02-08T18:30:38Z", + "modified": "2024-08-27T15:32:42Z", "published": "2023-10-03T03:31:24Z", "aliases": [ "CVE-2023-5345" diff --git a/advisories/unreviewed/2023/11/GHSA-xgr2-4f4q-m3p9/GHSA-xgr2-4f4q-m3p9.json b/advisories/unreviewed/2023/11/GHSA-xgr2-4f4q-m3p9/GHSA-xgr2-4f4q-m3p9.json index c9bec1e8cc7..a914bfcc13d 100644 --- a/advisories/unreviewed/2023/11/GHSA-xgr2-4f4q-m3p9/GHSA-xgr2-4f4q-m3p9.json +++ b/advisories/unreviewed/2023/11/GHSA-xgr2-4f4q-m3p9/GHSA-xgr2-4f4q-m3p9.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-xgr2-4f4q-m3p9", - "modified": "2023-11-14T15:30:24Z", + "modified": "2024-08-27T15:32:42Z", "published": "2023-11-14T15:30:24Z", "aliases": [ "CVE-2023-6111" diff --git a/advisories/unreviewed/2024/01/GHSA-q94c-x56g-qr59/GHSA-q94c-x56g-qr59.json b/advisories/unreviewed/2024/01/GHSA-q94c-x56g-qr59/GHSA-q94c-x56g-qr59.json index cc714ebf29e..45c126543a5 100644 --- a/advisories/unreviewed/2024/01/GHSA-q94c-x56g-qr59/GHSA-q94c-x56g-qr59.json +++ b/advisories/unreviewed/2024/01/GHSA-q94c-x56g-qr59/GHSA-q94c-x56g-qr59.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-q94c-x56g-qr59", - "modified": "2024-01-15T21:30:24Z", + "modified": "2024-08-27T15:32:42Z", "published": "2024-01-15T21:30:24Z", "aliases": [ "CVE-2024-0562" diff --git a/advisories/unreviewed/2024/03/GHSA-2942-jp7w-55rc/GHSA-2942-jp7w-55rc.json b/advisories/unreviewed/2024/03/GHSA-2942-jp7w-55rc/GHSA-2942-jp7w-55rc.json index 4870a2af89a..0759b725eb2 100644 --- a/advisories/unreviewed/2024/03/GHSA-2942-jp7w-55rc/GHSA-2942-jp7w-55rc.json +++ b/advisories/unreviewed/2024/03/GHSA-2942-jp7w-55rc/GHSA-2942-jp7w-55rc.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2942-jp7w-55rc", - "modified": "2024-03-15T09:30:37Z", + "modified": "2024-08-27T15:32:42Z", "published": "2024-03-15T09:30:37Z", "aliases": [ "CVE-2024-27756" ], "details": "An issue in GLPI v.10.0.12 and before allows a remote attacker to execute arbitrary code, escalate privileges, and obtain sensitive information via a crafted script to the title field.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-94" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-15T07:15:09Z" diff --git a/advisories/unreviewed/2024/03/GHSA-fq86-8676-6j38/GHSA-fq86-8676-6j38.json b/advisories/unreviewed/2024/03/GHSA-fq86-8676-6j38/GHSA-fq86-8676-6j38.json index 9872d7b01fb..53f82cfc902 100644 --- a/advisories/unreviewed/2024/03/GHSA-fq86-8676-6j38/GHSA-fq86-8676-6j38.json +++ b/advisories/unreviewed/2024/03/GHSA-fq86-8676-6j38/GHSA-fq86-8676-6j38.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-fq86-8676-6j38", - "modified": "2024-03-19T18:32:00Z", + "modified": "2024-08-27T15:32:42Z", "published": "2024-03-19T18:32:00Z", "aliases": [ "CVE-2023-42920" ], "details": "Claris International has fixed a dylib hijacking vulnerability in the FileMaker Pro.app and Claris Pro.app versions on macOS.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-19T17:15:08Z" diff --git a/advisories/unreviewed/2024/03/GHSA-mfrg-mc7h-8xrw/GHSA-mfrg-mc7h-8xrw.json b/advisories/unreviewed/2024/03/GHSA-mfrg-mc7h-8xrw/GHSA-mfrg-mc7h-8xrw.json index aa2a7a73bb8..2af7330e453 100644 --- a/advisories/unreviewed/2024/03/GHSA-mfrg-mc7h-8xrw/GHSA-mfrg-mc7h-8xrw.json +++ b/advisories/unreviewed/2024/03/GHSA-mfrg-mc7h-8xrw/GHSA-mfrg-mc7h-8xrw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mfrg-mc7h-8xrw", - "modified": "2024-03-18T00:30:44Z", + "modified": "2024-08-27T15:32:42Z", "published": "2024-03-18T00:30:44Z", "aliases": [ "CVE-2024-23139" ], "details": "An Out-Of-Bounds Write Vulnerability in Autodesk FBX Review version 1.5.3.0 and prior may lead to code execution or information disclosure through maliciously crafted ActionScript Byte Code “ABC” files. ABC files are created by the Flash compiler and contain executable code. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.\n", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ "CWE-787" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-18T00:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-f636-m6gc-99ch/GHSA-f636-m6gc-99ch.json b/advisories/unreviewed/2024/04/GHSA-f636-m6gc-99ch/GHSA-f636-m6gc-99ch.json index 9b0733e67a5..bf6f847f1d2 100644 --- a/advisories/unreviewed/2024/04/GHSA-f636-m6gc-99ch/GHSA-f636-m6gc-99ch.json +++ b/advisories/unreviewed/2024/04/GHSA-f636-m6gc-99ch/GHSA-f636-m6gc-99ch.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f636-m6gc-99ch", - "modified": "2024-04-03T18:30:43Z", + "modified": "2024-08-27T15:32:42Z", "published": "2024-04-03T18:30:43Z", "aliases": [ "CVE-2024-27674" ], "details": "Macro Expert through 4.9.4 allows BUILTIN\\Users:(OI)(CI)(M) access to the \"%PROGRAMFILES(X86)%\\GrassSoft\\Macro Expert\" folder and thus an unprivileged user can escalate to SYSTEM by replacing the MacroService.exe binary.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-277" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-03T17:15:55Z" diff --git a/advisories/unreviewed/2024/07/GHSA-247v-6wr5-3wf3/GHSA-247v-6wr5-3wf3.json b/advisories/unreviewed/2024/07/GHSA-247v-6wr5-3wf3/GHSA-247v-6wr5-3wf3.json index 257c9ddcb50..6fb15282aa5 100644 --- a/advisories/unreviewed/2024/07/GHSA-247v-6wr5-3wf3/GHSA-247v-6wr5-3wf3.json +++ b/advisories/unreviewed/2024/07/GHSA-247v-6wr5-3wf3/GHSA-247v-6wr5-3wf3.json @@ -40,7 +40,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/07/GHSA-53mw-8pff-677j/GHSA-53mw-8pff-677j.json b/advisories/unreviewed/2024/07/GHSA-53mw-8pff-677j/GHSA-53mw-8pff-677j.json index 87b7213a7e6..80a908bedff 100644 --- a/advisories/unreviewed/2024/07/GHSA-53mw-8pff-677j/GHSA-53mw-8pff-677j.json +++ b/advisories/unreviewed/2024/07/GHSA-53mw-8pff-677j/GHSA-53mw-8pff-677j.json @@ -28,6 +28,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-22", "CWE-73" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2024/07/GHSA-7hm7-x364-qr2m/GHSA-7hm7-x364-qr2m.json b/advisories/unreviewed/2024/07/GHSA-7hm7-x364-qr2m/GHSA-7hm7-x364-qr2m.json index 8cef631ca58..22eb94ffb26 100644 --- a/advisories/unreviewed/2024/07/GHSA-7hm7-x364-qr2m/GHSA-7hm7-x364-qr2m.json +++ b/advisories/unreviewed/2024/07/GHSA-7hm7-x364-qr2m/GHSA-7hm7-x364-qr2m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7hm7-x364-qr2m", - "modified": "2024-07-30T09:31:51Z", + "modified": "2024-08-27T15:32:42Z", "published": "2024-07-30T09:31:51Z", "aliases": [ "CVE-2024-42104" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnilfs2: add missing check for inode numbers on directory entries\n\nSyzbot reported that mounting and unmounting a specific pattern of\ncorrupted nilfs2 filesystem images causes a use-after-free of metadata\nfile inodes, which triggers a kernel bug in lru_add_fn().\n\nAs Jan Kara pointed out, this is because the link count of a metadata file\ngets corrupted to 0, and nilfs_evict_inode(), which is called from iput(),\ntries to delete that inode (ifile inode in this case).\n\nThe inconsistency occurs because directories containing the inode numbers\nof these metadata files that should not be visible in the namespace are\nread without checking.\n\nFix this issue by treating the inode numbers of these internal files as\nerrors in the sanity check helper when reading directory folios/pages.\n\nAlso thanks to Hillf Danton and Matthew Wilcox for their initial mm-layer\nanalysis.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-30T08:15:02Z" diff --git a/advisories/unreviewed/2024/07/GHSA-994f-f72h-4mcv/GHSA-994f-f72h-4mcv.json b/advisories/unreviewed/2024/07/GHSA-994f-f72h-4mcv/GHSA-994f-f72h-4mcv.json index 3750d55ce95..b2116e1a415 100644 --- a/advisories/unreviewed/2024/07/GHSA-994f-f72h-4mcv/GHSA-994f-f72h-4mcv.json +++ b/advisories/unreviewed/2024/07/GHSA-994f-f72h-4mcv/GHSA-994f-f72h-4mcv.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-994f-f72h-4mcv", - "modified": "2024-07-30T09:31:51Z", + "modified": "2024-08-27T15:32:42Z", "published": "2024-07-30T09:31:51Z", "aliases": [ "CVE-2024-42109" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nf_tables: unconditionally flush pending work before notifier\n\nsyzbot reports:\n\nKASAN: slab-uaf in nft_ctx_update include/net/netfilter/nf_tables.h:1831\nKASAN: slab-uaf in nft_commit_release net/netfilter/nf_tables_api.c:9530\nKASAN: slab-uaf int nf_tables_trans_destroy_work+0x152b/0x1750 net/netfilter/nf_tables_api.c:9597\nRead of size 2 at addr ffff88802b0051c4 by task kworker/1:1/45\n[..]\nWorkqueue: events nf_tables_trans_destroy_work\nCall Trace:\n nft_ctx_update include/net/netfilter/nf_tables.h:1831 [inline]\n nft_commit_release net/netfilter/nf_tables_api.c:9530 [inline]\n nf_tables_trans_destroy_work+0x152b/0x1750 net/netfilter/nf_tables_api.c:9597\n\nProblem is that the notifier does a conditional flush, but its possible\nthat the table-to-be-removed is still referenced by transactions being\nprocessed by the worker, so we need to flush unconditionally.\n\nWe could make the flush_work depend on whether we found a table to delete\nin nf-next to avoid the flush for most cases.\n\nAFAICS this problem is only exposed in nf-next, with\ncommit e169285f8c56 (\"netfilter: nf_tables: do not store nft_ctx in transaction objects\"),\nwith this commit applied there is an unconditional fetch of\ntable->family which is whats triggering the above splat.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -43,7 +46,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-30T08:15:03Z" diff --git a/advisories/unreviewed/2024/07/GHSA-hj3c-gwrc-6jch/GHSA-hj3c-gwrc-6jch.json b/advisories/unreviewed/2024/07/GHSA-hj3c-gwrc-6jch/GHSA-hj3c-gwrc-6jch.json index c0ae53a6266..c98b5a99a73 100644 --- a/advisories/unreviewed/2024/07/GHSA-hj3c-gwrc-6jch/GHSA-hj3c-gwrc-6jch.json +++ b/advisories/unreviewed/2024/07/GHSA-hj3c-gwrc-6jch/GHSA-hj3c-gwrc-6jch.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hj3c-gwrc-6jch", - "modified": "2024-08-19T06:30:52Z", + "modified": "2024-08-27T15:32:42Z", "published": "2024-07-30T09:31:51Z", "aliases": [ "CVE-2024-42114" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: cfg80211: restrict NL80211_ATTR_TXQ_QUANTUM values\n\nsyzbot is able to trigger softlockups, setting NL80211_ATTR_TXQ_QUANTUM\nto 2^31.\n\nWe had a similar issue in sch_fq, fixed with commit\nd9e15a273306 (\"pkt_sched: fq: do not accept silly TCA_FQ_QUANTUM\")\n\nwatchdog: BUG: soft lockup - CPU#1 stuck for 26s! [kworker/1:0:24]\nModules linked in:\nirq event stamp: 131135\n hardirqs last enabled at (131134): [] __exit_to_kernel_mode arch/arm64/kernel/entry-common.c:85 [inline]\n hardirqs last enabled at (131134): [] exit_to_kernel_mode+0xdc/0x10c arch/arm64/kernel/entry-common.c:95\n hardirqs last disabled at (131135): [] __el1_irq arch/arm64/kernel/entry-common.c:533 [inline]\n hardirqs last disabled at (131135): [] el1_interrupt+0x24/0x68 arch/arm64/kernel/entry-common.c:551\n softirqs last enabled at (125892): [] neigh_hh_init net/core/neighbour.c:1538 [inline]\n softirqs last enabled at (125892): [] neigh_resolve_output+0x268/0x658 net/core/neighbour.c:1553\n softirqs last disabled at (125896): [] local_bh_disable+0x10/0x34 include/linux/bottom_half.h:19\nCPU: 1 PID: 24 Comm: kworker/1:0 Not tainted 6.9.0-rc7-syzkaller-gfda5695d692c #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 03/27/2024\nWorkqueue: mld mld_ifc_work\npstate: 80400005 (Nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)\n pc : __list_del include/linux/list.h:195 [inline]\n pc : __list_del_entry include/linux/list.h:218 [inline]\n pc : list_move_tail include/linux/list.h:310 [inline]\n pc : fq_tin_dequeue include/net/fq_impl.h:112 [inline]\n pc : ieee80211_tx_dequeue+0x6b8/0x3b4c net/mac80211/tx.c:3854\n lr : __list_del_entry include/linux/list.h:218 [inline]\n lr : list_move_tail include/linux/list.h:310 [inline]\n lr : fq_tin_dequeue include/net/fq_impl.h:112 [inline]\n lr : ieee80211_tx_dequeue+0x67c/0x3b4c net/mac80211/tx.c:3854\nsp : ffff800093d36700\nx29: ffff800093d36a60 x28: ffff800093d36960 x27: dfff800000000000\nx26: ffff0000d800ad50 x25: ffff0000d800abe0 x24: ffff0000d800abf0\nx23: ffff0000e0032468 x22: ffff0000e00324d4 x21: ffff0000d800abf0\nx20: ffff0000d800abf8 x19: ffff0000d800abf0 x18: ffff800093d363c0\nx17: 000000000000d476 x16: ffff8000805519dc x15: ffff7000127a6cc8\nx14: 1ffff000127a6cc8 x13: 0000000000000004 x12: ffffffffffffffff\nx11: ffff7000127a6cc8 x10: 0000000000ff0100 x9 : 0000000000000000\nx8 : 0000000000000000 x7 : 0000000000000000 x6 : 0000000000000000\nx5 : ffff80009287aa08 x4 : 0000000000000008 x3 : ffff80008034c7fc\nx2 : ffff0000e0032468 x1 : 00000000da0e46b8 x0 : ffff0000e0032470\nCall trace:\n __list_del include/linux/list.h:195 [inline]\n __list_del_entry include/linux/list.h:218 [inline]\n list_move_tail include/linux/list.h:310 [inline]\n fq_tin_dequeue include/net/fq_impl.h:112 [inline]\n ieee80211_tx_dequeue+0x6b8/0x3b4c net/mac80211/tx.c:3854\n wake_tx_push_queue net/mac80211/util.c:294 [inline]\n ieee80211_handle_wake_tx_queue+0x118/0x274 net/mac80211/util.c:315\n drv_wake_tx_queue net/mac80211/driver-ops.h:1350 [inline]\n schedule_and_wake_txq net/mac80211/driver-ops.h:1357 [inline]\n ieee80211_queue_skb+0x18e8/0x2244 net/mac80211/tx.c:1664\n ieee80211_tx+0x260/0x400 net/mac80211/tx.c:1966\n ieee80211_xmit+0x278/0x354 net/mac80211/tx.c:2062\n __ieee80211_subif_start_xmit+0xab8/0x122c net/mac80211/tx.c:4338\n ieee80211_subif_start_xmit+0xe0/0x438 net/mac80211/tx.c:4532\n __netdev_start_xmit include/linux/netdevice.h:4903 [inline]\n netdev_start_xmit include/linux/netdevice.h:4917 [inline]\n xmit_one net/core/dev.c:3531 [inline]\n dev_hard_start_xmit+0x27c/0x938 net/core/dev.c:3547\n __dev_queue_xmit+0x1678/0x33fc net/core/dev.c:4341\n dev_queue_xmit include/linux/netdevice.h:3091 [inline]\n neigh_resolve_output+0x558/0x658 net/core/neighbour.c:1563\n neigh_output include/net/neighbour.h:542 [inline]\n ip6_fini\n---truncated---", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-667" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-30T08:15:03Z" diff --git a/advisories/unreviewed/2024/07/GHSA-mwj6-494m-mx84/GHSA-mwj6-494m-mx84.json b/advisories/unreviewed/2024/07/GHSA-mwj6-494m-mx84/GHSA-mwj6-494m-mx84.json index 75a83fce9ef..82e197ddaaf 100644 --- a/advisories/unreviewed/2024/07/GHSA-mwj6-494m-mx84/GHSA-mwj6-494m-mx84.json +++ b/advisories/unreviewed/2024/07/GHSA-mwj6-494m-mx84/GHSA-mwj6-494m-mx84.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mwj6-494m-mx84", - "modified": "2024-07-29T18:30:43Z", + "modified": "2024-08-27T15:32:42Z", "published": "2024-07-29T18:30:43Z", "aliases": [ "CVE-2024-42094" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet/iucv: Avoid explicit cpumask var allocation on stack\n\nFor CONFIG_CPUMASK_OFFSTACK=y kernel, explicit allocation of cpumask\nvariable on stack is not recommended since it can cause potential stack\noverflow.\n\nInstead, kernel code should always use *cpumask_var API(s) to allocate\ncpumask var in config-neutral way, leaving allocation strategy to\nCONFIG_CPUMASK_OFFSTACK.\n\nUse *cpumask_var API(s) to address it.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-787" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-29T18:15:11Z" diff --git a/advisories/unreviewed/2024/08/GHSA-2q4w-x8h2-2fvh/GHSA-2q4w-x8h2-2fvh.json b/advisories/unreviewed/2024/08/GHSA-2q4w-x8h2-2fvh/GHSA-2q4w-x8h2-2fvh.json new file mode 100644 index 00000000000..fad03b71c46 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-2q4w-x8h2-2fvh/GHSA-2q4w-x8h2-2fvh.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2q4w-x8h2-2fvh", + "modified": "2024-08-27T15:32:49Z", + "published": "2024-08-27T15:32:49Z", + "aliases": [ + "CVE-2024-8181" + ], + "details": "An Authentication Bypass vulnerability exists in Flowise version 1.8.2. This could allow a remote, unauthenticated attacker to access API endpoints as an administrator and allow them to access restricted functionality.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8181" + }, + { + "type": "WEB", + "url": "https://tenable.com/security/research/tra-2024-22-0" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-27T13:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-2v3r-26j9-rjqh/GHSA-2v3r-26j9-rjqh.json b/advisories/unreviewed/2024/08/GHSA-2v3r-26j9-rjqh/GHSA-2v3r-26j9-rjqh.json index b218d089991..b38a8be1642 100644 --- a/advisories/unreviewed/2024/08/GHSA-2v3r-26j9-rjqh/GHSA-2v3r-26j9-rjqh.json +++ b/advisories/unreviewed/2024/08/GHSA-2v3r-26j9-rjqh/GHSA-2v3r-26j9-rjqh.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-787" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-338f-rfqj-8jxw/GHSA-338f-rfqj-8jxw.json b/advisories/unreviewed/2024/08/GHSA-338f-rfqj-8jxw/GHSA-338f-rfqj-8jxw.json index 141741a5755..d696f0c269c 100644 --- a/advisories/unreviewed/2024/08/GHSA-338f-rfqj-8jxw/GHSA-338f-rfqj-8jxw.json +++ b/advisories/unreviewed/2024/08/GHSA-338f-rfqj-8jxw/GHSA-338f-rfqj-8jxw.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-338f-rfqj-8jxw", - "modified": "2024-08-23T15:30:34Z", + "modified": "2024-08-27T15:32:43Z", "published": "2024-08-23T15:30:34Z", "aliases": [ "CVE-2024-36516" diff --git a/advisories/unreviewed/2024/08/GHSA-3cj6-45x3-vrjj/GHSA-3cj6-45x3-vrjj.json b/advisories/unreviewed/2024/08/GHSA-3cj6-45x3-vrjj/GHSA-3cj6-45x3-vrjj.json index 5648b2c04f9..1d900233d1b 100644 --- a/advisories/unreviewed/2024/08/GHSA-3cj6-45x3-vrjj/GHSA-3cj6-45x3-vrjj.json +++ b/advisories/unreviewed/2024/08/GHSA-3cj6-45x3-vrjj/GHSA-3cj6-45x3-vrjj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3cj6-45x3-vrjj", - "modified": "2024-08-23T15:30:34Z", + "modified": "2024-08-27T15:32:43Z", "published": "2024-08-23T15:30:34Z", "aliases": [ "CVE-2024-5466" diff --git a/advisories/unreviewed/2024/08/GHSA-3g58-rjqp-pmgh/GHSA-3g58-rjqp-pmgh.json b/advisories/unreviewed/2024/08/GHSA-3g58-rjqp-pmgh/GHSA-3g58-rjqp-pmgh.json index cc7ecd67ba9..f619d2fa6e8 100644 --- a/advisories/unreviewed/2024/08/GHSA-3g58-rjqp-pmgh/GHSA-3g58-rjqp-pmgh.json +++ b/advisories/unreviewed/2024/08/GHSA-3g58-rjqp-pmgh/GHSA-3g58-rjqp-pmgh.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-3g58-rjqp-pmgh", - "modified": "2024-08-26T18:33:34Z", + "modified": "2024-08-27T15:32:46Z", "published": "2024-08-26T18:33:34Z", "aliases": [ "CVE-2024-45265" ], "details": "A SQL injection vulnerability in the poll component in SkySystem Arfa-CMS before 5.1.3124 allows remote attackers to execute arbitrary SQL commands via the psid parameter.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T18:15:07Z" diff --git a/advisories/unreviewed/2024/08/GHSA-48x4-mx8f-gr4h/GHSA-48x4-mx8f-gr4h.json b/advisories/unreviewed/2024/08/GHSA-48x4-mx8f-gr4h/GHSA-48x4-mx8f-gr4h.json new file mode 100644 index 00000000000..53ef96118cf --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-48x4-mx8f-gr4h/GHSA-48x4-mx8f-gr4h.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-48x4-mx8f-gr4h", + "modified": "2024-08-27T15:32:51Z", + "published": "2024-08-27T15:32:51Z", + "aliases": [ + "CVE-2024-8182" + ], + "details": "An Unauthenticated Denial of Service (DoS) vulnerability exists in Flowise version 1.8.2 leading to a complete crash of the instance running a vulnerable version due to improper handling of user supplied input to the “/api/v1/get-upload-file” api endpoint.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8182" + }, + { + "type": "WEB", + "url": "https://tenable.com/security/research/tra-2024-34" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-400" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-27T13:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-4pj3-wmgx-2h8r/GHSA-4pj3-wmgx-2h8r.json b/advisories/unreviewed/2024/08/GHSA-4pj3-wmgx-2h8r/GHSA-4pj3-wmgx-2h8r.json index 5a6c851277f..b9f0bbca59d 100644 --- a/advisories/unreviewed/2024/08/GHSA-4pj3-wmgx-2h8r/GHSA-4pj3-wmgx-2h8r.json +++ b/advisories/unreviewed/2024/08/GHSA-4pj3-wmgx-2h8r/GHSA-4pj3-wmgx-2h8r.json @@ -32,7 +32,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-125" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-5c96-24qg-f876/GHSA-5c96-24qg-f876.json b/advisories/unreviewed/2024/08/GHSA-5c96-24qg-f876/GHSA-5c96-24qg-f876.json index b885dae00da..d5f6ca7053e 100644 --- a/advisories/unreviewed/2024/08/GHSA-5c96-24qg-f876/GHSA-5c96-24qg-f876.json +++ b/advisories/unreviewed/2024/08/GHSA-5c96-24qg-f876/GHSA-5c96-24qg-f876.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5c96-24qg-f876", - "modified": "2024-08-23T15:30:34Z", + "modified": "2024-08-27T15:32:43Z", "published": "2024-08-23T15:30:34Z", "aliases": [ "CVE-2024-38869" diff --git a/advisories/unreviewed/2024/08/GHSA-5vrp-5g78-5924/GHSA-5vrp-5g78-5924.json b/advisories/unreviewed/2024/08/GHSA-5vrp-5g78-5924/GHSA-5vrp-5g78-5924.json index 5f0dde6fc35..1829aff3f2f 100644 --- a/advisories/unreviewed/2024/08/GHSA-5vrp-5g78-5924/GHSA-5vrp-5g78-5924.json +++ b/advisories/unreviewed/2024/08/GHSA-5vrp-5g78-5924/GHSA-5vrp-5g78-5924.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-120" + "CWE-120", + "CWE-787" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-6355-v7q5-4p33/GHSA-6355-v7q5-4p33.json b/advisories/unreviewed/2024/08/GHSA-6355-v7q5-4p33/GHSA-6355-v7q5-4p33.json index 062d44393fb..96a3379e847 100644 --- a/advisories/unreviewed/2024/08/GHSA-6355-v7q5-4p33/GHSA-6355-v7q5-4p33.json +++ b/advisories/unreviewed/2024/08/GHSA-6355-v7q5-4p33/GHSA-6355-v7q5-4p33.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6355-v7q5-4p33", - "modified": "2024-08-26T12:31:20Z", + "modified": "2024-08-27T15:32:44Z", "published": "2024-08-26T12:31:20Z", "aliases": [ "CVE-2024-43908" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amdgpu: Fix the null pointer dereference to ras_manager\n\nCheck ras_manager before using it", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -49,9 +52,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T11:15:05Z" diff --git a/advisories/unreviewed/2024/08/GHSA-6c2h-4vcm-x8p4/GHSA-6c2h-4vcm-x8p4.json b/advisories/unreviewed/2024/08/GHSA-6c2h-4vcm-x8p4/GHSA-6c2h-4vcm-x8p4.json index fb16f178a97..2004b56790a 100644 --- a/advisories/unreviewed/2024/08/GHSA-6c2h-4vcm-x8p4/GHSA-6c2h-4vcm-x8p4.json +++ b/advisories/unreviewed/2024/08/GHSA-6c2h-4vcm-x8p4/GHSA-6c2h-4vcm-x8p4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6c2h-4vcm-x8p4", - "modified": "2024-08-23T15:30:34Z", + "modified": "2024-08-27T15:32:43Z", "published": "2024-08-23T15:30:34Z", "aliases": [ "CVE-2024-41150" diff --git a/advisories/unreviewed/2024/08/GHSA-73hq-7p8j-4vp8/GHSA-73hq-7p8j-4vp8.json b/advisories/unreviewed/2024/08/GHSA-73hq-7p8j-4vp8/GHSA-73hq-7p8j-4vp8.json new file mode 100644 index 00000000000..3fcb2c2a13c --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-73hq-7p8j-4vp8/GHSA-73hq-7p8j-4vp8.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-73hq-7p8j-4vp8", + "modified": "2024-08-27T15:32:47Z", + "published": "2024-08-27T15:32:47Z", + "aliases": [ + "CVE-2024-3982" + ], + "details": "An attacker with local access to machine where MicroSCADA X\nSYS600 is installed, could enable the session logging supporting the product and try to exploit a session hijacking of an already established session. By default, the session logging level\nis not enabled and only users with administrator rights can enable it.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-3982" + }, + { + "type": "WEB", + "url": "https://publisher.hitachienergy.com/preview?DocumentID=8DBD000160&LanguageCode=en&DocumentPartId=&Action=Launch" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-294" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-27T13:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-73x9-2874-qfh4/GHSA-73x9-2874-qfh4.json b/advisories/unreviewed/2024/08/GHSA-73x9-2874-qfh4/GHSA-73x9-2874-qfh4.json new file mode 100644 index 00000000000..97324cb8b5f --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-73x9-2874-qfh4/GHSA-73x9-2874-qfh4.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-73x9-2874-qfh4", + "modified": "2024-08-27T15:32:47Z", + "published": "2024-08-27T15:32:47Z", + "aliases": [ + "CVE-2024-4872" + ], + "details": "The product does not validate any query towards persistent\ndata, resulting in a risk of injection attacks.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4872" + }, + { + "type": "WEB", + "url": "https://publisher.hitachienergy.com/preview?DocumentID=8DBD000160&LanguageCode=en&DocumentPartId=&Action=Launch" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-27T13:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-76rf-j9m6-mjgj/GHSA-76rf-j9m6-mjgj.json b/advisories/unreviewed/2024/08/GHSA-76rf-j9m6-mjgj/GHSA-76rf-j9m6-mjgj.json index 45b032779b4..c4b6be14b95 100644 --- a/advisories/unreviewed/2024/08/GHSA-76rf-j9m6-mjgj/GHSA-76rf-j9m6-mjgj.json +++ b/advisories/unreviewed/2024/08/GHSA-76rf-j9m6-mjgj/GHSA-76rf-j9m6-mjgj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-76rf-j9m6-mjgj", - "modified": "2024-08-26T12:31:19Z", + "modified": "2024-08-27T15:32:44Z", "published": "2024-08-26T12:31:19Z", "aliases": [ "CVE-2024-43899" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Fix null pointer deref in dcn20_resource.c\n\nFixes a hang thats triggered when MPV is run on a DCN401 dGPU:\n\nmpv --hwdec=vaapi --vo=gpu --hwdec-codecs=all\n\nand then enabling fullscreen playback (double click on the video)\n\nThe following calltrace will be seen:\n\n[ 181.843989] BUG: kernel NULL pointer dereference, address: 0000000000000000\n[ 181.843997] #PF: supervisor instruction fetch in kernel mode\n[ 181.844003] #PF: error_code(0x0010) - not-present page\n[ 181.844009] PGD 0 P4D 0\n[ 181.844020] Oops: 0010 [#1] PREEMPT SMP NOPTI\n[ 181.844028] CPU: 6 PID: 1892 Comm: gnome-shell Tainted: G W OE 6.5.0-41-generic #41~22.04.2-Ubuntu\n[ 181.844038] Hardware name: System manufacturer System Product Name/CROSSHAIR VI HERO, BIOS 6302 10/23/2018\n[ 181.844044] RIP: 0010:0x0\n[ 181.844079] Code: Unable to access opcode bytes at 0xffffffffffffffd6.\n[ 181.844084] RSP: 0018:ffffb593c2b8f7b0 EFLAGS: 00010246\n[ 181.844093] RAX: 0000000000000000 RBX: 0000000000000000 RCX: 0000000000000004\n[ 181.844099] RDX: ffffb593c2b8f804 RSI: ffffb593c2b8f7e0 RDI: ffff9e3c8e758400\n[ 181.844105] RBP: ffffb593c2b8f7b8 R08: ffffb593c2b8f9c8 R09: ffffb593c2b8f96c\n[ 181.844110] R10: 0000000000000000 R11: 0000000000000000 R12: ffffb593c2b8f9c8\n[ 181.844115] R13: 0000000000000001 R14: ffff9e3c88000000 R15: 0000000000000005\n[ 181.844121] FS: 00007c6e323bb5c0(0000) GS:ffff9e3f85f80000(0000) knlGS:0000000000000000\n[ 181.844128] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n[ 181.844134] CR2: ffffffffffffffd6 CR3: 0000000140fbe000 CR4: 00000000003506e0\n[ 181.844141] Call Trace:\n[ 181.844146] \n[ 181.844153] ? show_regs+0x6d/0x80\n[ 181.844167] ? __die+0x24/0x80\n[ 181.844179] ? page_fault_oops+0x99/0x1b0\n[ 181.844192] ? do_user_addr_fault+0x31d/0x6b0\n[ 181.844204] ? exc_page_fault+0x83/0x1b0\n[ 181.844216] ? asm_exc_page_fault+0x27/0x30\n[ 181.844237] dcn20_get_dcc_compression_cap+0x23/0x30 [amdgpu]\n[ 181.845115] amdgpu_dm_plane_validate_dcc.constprop.0+0xe5/0x180 [amdgpu]\n[ 181.845985] amdgpu_dm_plane_fill_plane_buffer_attributes+0x300/0x580 [amdgpu]\n[ 181.846848] fill_dc_plane_info_and_addr+0x258/0x350 [amdgpu]\n[ 181.847734] fill_dc_plane_attributes+0x162/0x350 [amdgpu]\n[ 181.848748] dm_update_plane_state.constprop.0+0x4e3/0x6b0 [amdgpu]\n[ 181.849791] ? dm_update_plane_state.constprop.0+0x4e3/0x6b0 [amdgpu]\n[ 181.850840] amdgpu_dm_atomic_check+0xdfe/0x1760 [amdgpu]", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T11:15:04Z" diff --git a/advisories/unreviewed/2024/08/GHSA-7c66-8xr2-45gc/GHSA-7c66-8xr2-45gc.json b/advisories/unreviewed/2024/08/GHSA-7c66-8xr2-45gc/GHSA-7c66-8xr2-45gc.json index 40710251cb0..34a09fe3880 100644 --- a/advisories/unreviewed/2024/08/GHSA-7c66-8xr2-45gc/GHSA-7c66-8xr2-45gc.json +++ b/advisories/unreviewed/2024/08/GHSA-7c66-8xr2-45gc/GHSA-7c66-8xr2-45gc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7c66-8xr2-45gc", - "modified": "2024-08-23T15:30:34Z", + "modified": "2024-08-27T15:32:43Z", "published": "2024-08-23T15:30:34Z", "aliases": [ "CVE-2024-36514" diff --git a/advisories/unreviewed/2024/08/GHSA-7vcw-f2gc-3g39/GHSA-7vcw-f2gc-3g39.json b/advisories/unreviewed/2024/08/GHSA-7vcw-f2gc-3g39/GHSA-7vcw-f2gc-3g39.json index d77ea972c2a..31f9fc1756b 100644 --- a/advisories/unreviewed/2024/08/GHSA-7vcw-f2gc-3g39/GHSA-7vcw-f2gc-3g39.json +++ b/advisories/unreviewed/2024/08/GHSA-7vcw-f2gc-3g39/GHSA-7vcw-f2gc-3g39.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7vcw-f2gc-3g39", - "modified": "2024-08-26T12:31:20Z", + "modified": "2024-08-27T15:32:44Z", "published": "2024-08-26T12:31:20Z", "aliases": [ "CVE-2024-43907" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amdgpu/pm: Fix the null pointer dereference in apply_state_adjust_rules\n\nCheck the pointer value to fix potential null pointer\ndereference", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T11:15:05Z" diff --git a/advisories/unreviewed/2024/08/GHSA-7vp8-wwfv-6g24/GHSA-7vp8-wwfv-6g24.json b/advisories/unreviewed/2024/08/GHSA-7vp8-wwfv-6g24/GHSA-7vp8-wwfv-6g24.json index 6bf38d59e4e..74aee6f4a64 100644 --- a/advisories/unreviewed/2024/08/GHSA-7vp8-wwfv-6g24/GHSA-7vp8-wwfv-6g24.json +++ b/advisories/unreviewed/2024/08/GHSA-7vp8-wwfv-6g24/GHSA-7vp8-wwfv-6g24.json @@ -52,7 +52,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-77" + "CWE-77", + "CWE-78" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-7wc7-j82h-f9pw/GHSA-7wc7-j82h-f9pw.json b/advisories/unreviewed/2024/08/GHSA-7wc7-j82h-f9pw/GHSA-7wc7-j82h-f9pw.json index 74561ee62c4..bf24daa361b 100644 --- a/advisories/unreviewed/2024/08/GHSA-7wc7-j82h-f9pw/GHSA-7wc7-j82h-f9pw.json +++ b/advisories/unreviewed/2024/08/GHSA-7wc7-j82h-f9pw/GHSA-7wc7-j82h-f9pw.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-8797-vvp8-wj9v/GHSA-8797-vvp8-wj9v.json b/advisories/unreviewed/2024/08/GHSA-8797-vvp8-wj9v/GHSA-8797-vvp8-wj9v.json index 11512c08819..d6c5b5d6794 100644 --- a/advisories/unreviewed/2024/08/GHSA-8797-vvp8-wj9v/GHSA-8797-vvp8-wj9v.json +++ b/advisories/unreviewed/2024/08/GHSA-8797-vvp8-wj9v/GHSA-8797-vvp8-wj9v.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-787" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-8j3f-9fhh-xf4c/GHSA-8j3f-9fhh-xf4c.json b/advisories/unreviewed/2024/08/GHSA-8j3f-9fhh-xf4c/GHSA-8j3f-9fhh-xf4c.json index a427257d08e..9840afb57da 100644 --- a/advisories/unreviewed/2024/08/GHSA-8j3f-9fhh-xf4c/GHSA-8j3f-9fhh-xf4c.json +++ b/advisories/unreviewed/2024/08/GHSA-8j3f-9fhh-xf4c/GHSA-8j3f-9fhh-xf4c.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8j3f-9fhh-xf4c", - "modified": "2024-08-26T12:31:19Z", + "modified": "2024-08-27T15:32:44Z", "published": "2024-08-26T12:31:19Z", "aliases": [ "CVE-2024-43900" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: xc2028: avoid use-after-free in load_firmware_cb()\n\nsyzkaller reported use-after-free in load_firmware_cb() [1].\nThe reason is because the module allocated a struct tuner in tuner_probe(),\nand then the module initialization failed, the struct tuner was released.\nA worker which created during module initialization accesses this struct\ntuner later, it caused use-after-free.\n\nThe process is as follows:\n\ntask-6504 worker_thread\ntuner_probe <= alloc dvb_frontend [2]\n...\nrequest_firmware_nowait <= create a worker\n...\ntuner_remove <= free dvb_frontend\n...\n request_firmware_work_func <= the firmware is ready\n load_firmware_cb <= but now the dvb_frontend has been freed\n\nTo fix the issue, check the dvd_frontend in load_firmware_cb(), if it is\nnull, report a warning and just return.\n\n[1]:\n ==================================================================\n BUG: KASAN: use-after-free in load_firmware_cb+0x1310/0x17a0\n Read of size 8 at addr ffff8000d7ca2308 by task kworker/2:3/6504\n\n Call trace:\n load_firmware_cb+0x1310/0x17a0\n request_firmware_work_func+0x128/0x220\n process_one_work+0x770/0x1824\n worker_thread+0x488/0xea0\n kthread+0x300/0x430\n ret_from_fork+0x10/0x20\n\n Allocated by task 6504:\n kzalloc\n tuner_probe+0xb0/0x1430\n i2c_device_probe+0x92c/0xaf0\n really_probe+0x678/0xcd0\n driver_probe_device+0x280/0x370\n __device_attach_driver+0x220/0x330\n bus_for_each_drv+0x134/0x1c0\n __device_attach+0x1f4/0x410\n device_initial_probe+0x20/0x30\n bus_probe_device+0x184/0x200\n device_add+0x924/0x12c0\n device_register+0x24/0x30\n i2c_new_device+0x4e0/0xc44\n v4l2_i2c_new_subdev_board+0xbc/0x290\n v4l2_i2c_new_subdev+0xc8/0x104\n em28xx_v4l2_init+0x1dd0/0x3770\n\n Freed by task 6504:\n kfree+0x238/0x4e4\n tuner_remove+0x144/0x1c0\n i2c_device_remove+0xc8/0x290\n __device_release_driver+0x314/0x5fc\n device_release_driver+0x30/0x44\n bus_remove_device+0x244/0x490\n device_del+0x350/0x900\n device_unregister+0x28/0xd0\n i2c_unregister_device+0x174/0x1d0\n v4l2_device_unregister+0x224/0x380\n em28xx_v4l2_init+0x1d90/0x3770\n\n The buggy address belongs to the object at ffff8000d7ca2000\n which belongs to the cache kmalloc-2k of size 2048\n The buggy address is located 776 bytes inside of\n 2048-byte region [ffff8000d7ca2000, ffff8000d7ca2800)\n The buggy address belongs to the page:\n page:ffff7fe00035f280 count:1 mapcount:0 mapping:ffff8000c001f000 index:0x0\n flags: 0x7ff800000000100(slab)\n raw: 07ff800000000100 ffff7fe00049d880 0000000300000003 ffff8000c001f000\n raw: 0000000000000000 0000000080100010 00000001ffffffff 0000000000000000\n page dumped because: kasan: bad access detected\n\n Memory state around the buggy address:\n ffff8000d7ca2200: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb\n ffff8000d7ca2280: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb\n >ffff8000d7ca2300: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb\n ^\n ffff8000d7ca2380: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb\n ffff8000d7ca2400: fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb\n ==================================================================\n\n[2]\n Actually, it is allocated for struct tuner, and dvb_frontend is inside.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T11:15:04Z" diff --git a/advisories/unreviewed/2024/08/GHSA-9fhr-488x-fp7h/GHSA-9fhr-488x-fp7h.json b/advisories/unreviewed/2024/08/GHSA-9fhr-488x-fp7h/GHSA-9fhr-488x-fp7h.json index 4de8e55c81f..46c1ba3d224 100644 --- a/advisories/unreviewed/2024/08/GHSA-9fhr-488x-fp7h/GHSA-9fhr-488x-fp7h.json +++ b/advisories/unreviewed/2024/08/GHSA-9fhr-488x-fp7h/GHSA-9fhr-488x-fp7h.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-9gr6-q98c-q2r4/GHSA-9gr6-q98c-q2r4.json b/advisories/unreviewed/2024/08/GHSA-9gr6-q98c-q2r4/GHSA-9gr6-q98c-q2r4.json index 546c3235cbb..813771e5c82 100644 --- a/advisories/unreviewed/2024/08/GHSA-9gr6-q98c-q2r4/GHSA-9gr6-q98c-q2r4.json +++ b/advisories/unreviewed/2024/08/GHSA-9gr6-q98c-q2r4/GHSA-9gr6-q98c-q2r4.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-9mmm-86g7-vp9g/GHSA-9mmm-86g7-vp9g.json b/advisories/unreviewed/2024/08/GHSA-9mmm-86g7-vp9g/GHSA-9mmm-86g7-vp9g.json index 878405e243f..0af9b85f384 100644 --- a/advisories/unreviewed/2024/08/GHSA-9mmm-86g7-vp9g/GHSA-9mmm-86g7-vp9g.json +++ b/advisories/unreviewed/2024/08/GHSA-9mmm-86g7-vp9g/GHSA-9mmm-86g7-vp9g.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9mmm-86g7-vp9g", - "modified": "2024-08-27T06:30:32Z", + "modified": "2024-08-27T15:32:46Z", "published": "2024-08-27T06:30:32Z", "aliases": [ "CVE-2024-45321" ], "details": "The App::cpanminus package through 1.7047 for Perl downloads code via insecure HTTP, enabling code execution for network attackers.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-94" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-27T04:15:09Z" diff --git a/advisories/unreviewed/2024/08/GHSA-9rwc-r28x-rhwh/GHSA-9rwc-r28x-rhwh.json b/advisories/unreviewed/2024/08/GHSA-9rwc-r28x-rhwh/GHSA-9rwc-r28x-rhwh.json index a0067d51243..310c8d6bf8e 100644 --- a/advisories/unreviewed/2024/08/GHSA-9rwc-r28x-rhwh/GHSA-9rwc-r28x-rhwh.json +++ b/advisories/unreviewed/2024/08/GHSA-9rwc-r28x-rhwh/GHSA-9rwc-r28x-rhwh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-9rwc-r28x-rhwh", - "modified": "2024-08-23T15:30:34Z", + "modified": "2024-08-27T15:32:43Z", "published": "2024-08-23T15:30:34Z", "aliases": [ "CVE-2024-5490" diff --git a/advisories/unreviewed/2024/08/GHSA-c23f-2mjw-h676/GHSA-c23f-2mjw-h676.json b/advisories/unreviewed/2024/08/GHSA-c23f-2mjw-h676/GHSA-c23f-2mjw-h676.json index 9b1078a77b1..6407738bf2f 100644 --- a/advisories/unreviewed/2024/08/GHSA-c23f-2mjw-h676/GHSA-c23f-2mjw-h676.json +++ b/advisories/unreviewed/2024/08/GHSA-c23f-2mjw-h676/GHSA-c23f-2mjw-h676.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-c7hp-v8hh-hvgp/GHSA-c7hp-v8hh-hvgp.json b/advisories/unreviewed/2024/08/GHSA-c7hp-v8hh-hvgp/GHSA-c7hp-v8hh-hvgp.json index 46a8de9d668..428d2eb0cc9 100644 --- a/advisories/unreviewed/2024/08/GHSA-c7hp-v8hh-hvgp/GHSA-c7hp-v8hh-hvgp.json +++ b/advisories/unreviewed/2024/08/GHSA-c7hp-v8hh-hvgp/GHSA-c7hp-v8hh-hvgp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-c7hp-v8hh-hvgp", - "modified": "2024-08-23T15:30:34Z", + "modified": "2024-08-27T15:32:43Z", "published": "2024-08-23T15:30:34Z", "aliases": [ "CVE-2024-5556" diff --git a/advisories/unreviewed/2024/08/GHSA-cccq-559f-x22v/GHSA-cccq-559f-x22v.json b/advisories/unreviewed/2024/08/GHSA-cccq-559f-x22v/GHSA-cccq-559f-x22v.json index cce91716d2c..5efdda770e1 100644 --- a/advisories/unreviewed/2024/08/GHSA-cccq-559f-x22v/GHSA-cccq-559f-x22v.json +++ b/advisories/unreviewed/2024/08/GHSA-cccq-559f-x22v/GHSA-cccq-559f-x22v.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-cccq-559f-x22v", - "modified": "2024-08-26T12:31:19Z", + "modified": "2024-08-27T15:32:44Z", "published": "2024-08-26T12:31:19Z", "aliases": [ "CVE-2024-43904" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Add null checks for 'stream' and 'plane' before dereferencing\n\nThis commit adds null checks for the 'stream' and 'plane' variables in\nthe dcn30_apply_idle_power_optimizations function. These variables were\npreviously assumed to be null at line 922, but they were used later in\nthe code without checking if they were null. This could potentially lead\nto a null pointer dereference, which would cause a crash.\n\nThe null checks ensure that 'stream' and 'plane' are not null before\nthey are used, preventing potential crashes.\n\nFixes the below static smatch checker:\ndrivers/gpu/drm/amd/amdgpu/../display/dc/hwss/dcn30/dcn30_hwseq.c:938 dcn30_apply_idle_power_optimizations() error: we previously assumed 'stream' could be null (see line 922)\ndrivers/gpu/drm/amd/amdgpu/../display/dc/hwss/dcn30/dcn30_hwseq.c:940 dcn30_apply_idle_power_optimizations() error: we previously assumed 'plane' could be null (see line 922)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T11:15:04Z" diff --git a/advisories/unreviewed/2024/08/GHSA-cg6q-c353-f4qp/GHSA-cg6q-c353-f4qp.json b/advisories/unreviewed/2024/08/GHSA-cg6q-c353-f4qp/GHSA-cg6q-c353-f4qp.json index cc3e61bfbc7..e358aa3ff41 100644 --- a/advisories/unreviewed/2024/08/GHSA-cg6q-c353-f4qp/GHSA-cg6q-c353-f4qp.json +++ b/advisories/unreviewed/2024/08/GHSA-cg6q-c353-f4qp/GHSA-cg6q-c353-f4qp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-cg6q-c353-f4qp", - "modified": "2024-08-26T12:31:19Z", + "modified": "2024-08-27T15:32:44Z", "published": "2024-08-26T12:31:19Z", "aliases": [ "CVE-2024-43902" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Add null checker before passing variables\n\nChecks null pointer before passing variables to functions.\n\nThis fixes 3 NULL_RETURNS issues reported by Coverity.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -41,9 +44,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T11:15:04Z" diff --git a/advisories/unreviewed/2024/08/GHSA-cqxm-p8fm-64vf/GHSA-cqxm-p8fm-64vf.json b/advisories/unreviewed/2024/08/GHSA-cqxm-p8fm-64vf/GHSA-cqxm-p8fm-64vf.json new file mode 100644 index 00000000000..abf520c9f4d --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-cqxm-p8fm-64vf/GHSA-cqxm-p8fm-64vf.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cqxm-p8fm-64vf", + "modified": "2024-08-27T15:32:52Z", + "published": "2024-08-27T15:32:52Z", + "aliases": [ + "CVE-2024-7071" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), CWE - 564 - SQL Injection: Hibernate vulnerability in Brain Information Technologies Inc. Brain Low-Code allows SQL Injection.This issue affects Brain Low-Code: before 2.1.0.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-7071" + }, + { + "type": "WEB", + "url": "https://www.usom.gov.tr/bildirim/tr-24-1349" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-27T14:15:20Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-cwhx-w267-r8qh/GHSA-cwhx-w267-r8qh.json b/advisories/unreviewed/2024/08/GHSA-cwhx-w267-r8qh/GHSA-cwhx-w267-r8qh.json index cd63b1a91ca..4ea36f501ce 100644 --- a/advisories/unreviewed/2024/08/GHSA-cwhx-w267-r8qh/GHSA-cwhx-w267-r8qh.json +++ b/advisories/unreviewed/2024/08/GHSA-cwhx-w267-r8qh/GHSA-cwhx-w267-r8qh.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-cwhx-w267-r8qh", - "modified": "2024-08-26T21:30:34Z", + "modified": "2024-08-27T15:32:46Z", "published": "2024-08-26T21:30:34Z", "aliases": [ "CVE-2024-44794" ], "details": "A cross-site scripting (XSS) vulnerability in the component /master/auth/OnedriveRedirect.php of PicUploader commit fcf82ea allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the error_description parameter.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T20:15:08Z" diff --git a/advisories/unreviewed/2024/08/GHSA-f2jj-rmrg-9rjx/GHSA-f2jj-rmrg-9rjx.json b/advisories/unreviewed/2024/08/GHSA-f2jj-rmrg-9rjx/GHSA-f2jj-rmrg-9rjx.json index c1e698aa761..26ec3a61dd1 100644 --- a/advisories/unreviewed/2024/08/GHSA-f2jj-rmrg-9rjx/GHSA-f2jj-rmrg-9rjx.json +++ b/advisories/unreviewed/2024/08/GHSA-f2jj-rmrg-9rjx/GHSA-f2jj-rmrg-9rjx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f2jj-rmrg-9rjx", - "modified": "2024-08-26T09:30:44Z", + "modified": "2024-08-27T15:32:43Z", "published": "2024-08-26T09:30:44Z", "aliases": [ "CVE-2024-43884" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: MGMT: Add error handling to pair_device()\n\nhci_conn_params_add() never checks for a NULL value and could lead to a NULL\npointer dereference causing a crash.\n\nFixed by adding error handling in the function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T08:15:03Z" diff --git a/advisories/unreviewed/2024/08/GHSA-fmxx-4w94-fc85/GHSA-fmxx-4w94-fc85.json b/advisories/unreviewed/2024/08/GHSA-fmxx-4w94-fc85/GHSA-fmxx-4w94-fc85.json index b5fcb0d1d6d..187973695cb 100644 --- a/advisories/unreviewed/2024/08/GHSA-fmxx-4w94-fc85/GHSA-fmxx-4w94-fc85.json +++ b/advisories/unreviewed/2024/08/GHSA-fmxx-4w94-fc85/GHSA-fmxx-4w94-fc85.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-fmxx-4w94-fc85", - "modified": "2024-08-23T15:30:34Z", + "modified": "2024-08-27T15:32:43Z", "published": "2024-08-23T15:30:34Z", "aliases": [ "CVE-2024-5467" diff --git a/advisories/unreviewed/2024/08/GHSA-fqxm-c9wh-542c/GHSA-fqxm-c9wh-542c.json b/advisories/unreviewed/2024/08/GHSA-fqxm-c9wh-542c/GHSA-fqxm-c9wh-542c.json new file mode 100644 index 00000000000..8165b2c4232 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-fqxm-c9wh-542c/GHSA-fqxm-c9wh-542c.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fqxm-c9wh-542c", + "modified": "2024-08-27T15:32:48Z", + "published": "2024-08-27T15:32:48Z", + "aliases": [ + "CVE-2024-7941" + ], + "details": "An HTTP parameter may contain a URL value and could cause\nthe web application to redirect the request to the specified URL.\nBy modifying the URL value to a malicious site, an attacker may\nsuccessfully launch a phishing scam and steal user credentials.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-7941" + }, + { + "type": "WEB", + "url": "https://publisher.hitachienergy.com/preview?DocumentID=8DBD000160&LanguageCode=en&DocumentPartId=&Action=Launch" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-601" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-27T13:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-g79x-6jx3-7f7g/GHSA-g79x-6jx3-7f7g.json b/advisories/unreviewed/2024/08/GHSA-g79x-6jx3-7f7g/GHSA-g79x-6jx3-7f7g.json new file mode 100644 index 00000000000..df77a7c0c56 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-g79x-6jx3-7f7g/GHSA-g79x-6jx3-7f7g.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g79x-6jx3-7f7g", + "modified": "2024-08-27T15:32:53Z", + "published": "2024-08-27T15:32:53Z", + "aliases": [ + "CVE-2024-6633" + ], + "details": "The default credentials for the setup HSQL database (HSQLDB) for FileCatalyst Workflow are published in a vendor knowledgebase article. Misuse of these credentials could lead to a compromise of confidentiality, integrity, or availability of the software.\n\nThe HSQLDB is only included to facilitate installation, has been deprecated, and is not intended for production use per vendor guides. However, users who have not configured FileCatalyst Workflow to use an alternative database per recommendations are vulnerable to attack from any source that can reach the HSQLDB.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6633" + }, + { + "type": "WEB", + "url": "https://www.fortra.com/security/advisories/product-security/fi-2024-011" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-27T15:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-gj2j-3p2j-pmwr/GHSA-gj2j-3p2j-pmwr.json b/advisories/unreviewed/2024/08/GHSA-gj2j-3p2j-pmwr/GHSA-gj2j-3p2j-pmwr.json index 9fa0cc464f9..9debc2b6770 100644 --- a/advisories/unreviewed/2024/08/GHSA-gj2j-3p2j-pmwr/GHSA-gj2j-3p2j-pmwr.json +++ b/advisories/unreviewed/2024/08/GHSA-gj2j-3p2j-pmwr/GHSA-gj2j-3p2j-pmwr.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-gq64-pw9q-3fw2/GHSA-gq64-pw9q-3fw2.json b/advisories/unreviewed/2024/08/GHSA-gq64-pw9q-3fw2/GHSA-gq64-pw9q-3fw2.json index 650a87fac13..c0afb096b0e 100644 --- a/advisories/unreviewed/2024/08/GHSA-gq64-pw9q-3fw2/GHSA-gq64-pw9q-3fw2.json +++ b/advisories/unreviewed/2024/08/GHSA-gq64-pw9q-3fw2/GHSA-gq64-pw9q-3fw2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gq64-pw9q-3fw2", - "modified": "2024-08-26T12:31:19Z", + "modified": "2024-08-27T15:32:44Z", "published": "2024-08-26T12:31:19Z", "aliases": [ "CVE-2024-43889" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\npadata: Fix possible divide-by-0 panic in padata_mt_helper()\n\nWe are hit with a not easily reproducible divide-by-0 panic in padata.c at\nbootup time.\n\n [ 10.017908] Oops: divide error: 0000 1 PREEMPT SMP NOPTI\n [ 10.017908] CPU: 26 PID: 2627 Comm: kworker/u1666:1 Not tainted 6.10.0-15.el10.x86_64 #1\n [ 10.017908] Hardware name: Lenovo ThinkSystem SR950 [7X12CTO1WW]/[7X12CTO1WW], BIOS [PSE140J-2.30] 07/20/2021\n [ 10.017908] Workqueue: events_unbound padata_mt_helper\n [ 10.017908] RIP: 0010:padata_mt_helper+0x39/0xb0\n :\n [ 10.017963] Call Trace:\n [ 10.017968] \n [ 10.018004] ? padata_mt_helper+0x39/0xb0\n [ 10.018084] process_one_work+0x174/0x330\n [ 10.018093] worker_thread+0x266/0x3a0\n [ 10.018111] kthread+0xcf/0x100\n [ 10.018124] ret_from_fork+0x31/0x50\n [ 10.018138] ret_from_fork_asm+0x1a/0x30\n [ 10.018147] \n\nLooking at the padata_mt_helper() function, the only way a divide-by-0\npanic can happen is when ps->chunk_size is 0. The way that chunk_size is\ninitialized in padata_do_multithreaded(), chunk_size can be 0 when the\nmin_chunk in the passed-in padata_mt_job structure is 0.\n\nFix this divide-by-0 panic by making sure that chunk_size will be at least\n1 no matter what the input parameters are.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-369" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T11:15:03Z" diff --git a/advisories/unreviewed/2024/08/GHSA-grmc-8w5p-47x7/GHSA-grmc-8w5p-47x7.json b/advisories/unreviewed/2024/08/GHSA-grmc-8w5p-47x7/GHSA-grmc-8w5p-47x7.json index e13deb04bcf..02f64e5d933 100644 --- a/advisories/unreviewed/2024/08/GHSA-grmc-8w5p-47x7/GHSA-grmc-8w5p-47x7.json +++ b/advisories/unreviewed/2024/08/GHSA-grmc-8w5p-47x7/GHSA-grmc-8w5p-47x7.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-h363-vrwv-gpwf/GHSA-h363-vrwv-gpwf.json b/advisories/unreviewed/2024/08/GHSA-h363-vrwv-gpwf/GHSA-h363-vrwv-gpwf.json index 28f67726406..53a5c3d86fb 100644 --- a/advisories/unreviewed/2024/08/GHSA-h363-vrwv-gpwf/GHSA-h363-vrwv-gpwf.json +++ b/advisories/unreviewed/2024/08/GHSA-h363-vrwv-gpwf/GHSA-h363-vrwv-gpwf.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-h43p-x2c2-9h92/GHSA-h43p-x2c2-9h92.json b/advisories/unreviewed/2024/08/GHSA-h43p-x2c2-9h92/GHSA-h43p-x2c2-9h92.json index ae72da4353a..b7c99c625f2 100644 --- a/advisories/unreviewed/2024/08/GHSA-h43p-x2c2-9h92/GHSA-h43p-x2c2-9h92.json +++ b/advisories/unreviewed/2024/08/GHSA-h43p-x2c2-9h92/GHSA-h43p-x2c2-9h92.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-h43p-x2c2-9h92", - "modified": "2024-08-26T12:31:20Z", + "modified": "2024-08-27T15:32:44Z", "published": "2024-08-26T12:31:19Z", "aliases": [ "CVE-2024-43906" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/admgpu: fix dereferencing null pointer context\n\nWhen user space sets an invalid ta type, the pointer context will be empty.\nSo it need to check the pointer context before using it", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T11:15:04Z" diff --git a/advisories/unreviewed/2024/08/GHSA-h5mc-wcjm-jrgw/GHSA-h5mc-wcjm-jrgw.json b/advisories/unreviewed/2024/08/GHSA-h5mc-wcjm-jrgw/GHSA-h5mc-wcjm-jrgw.json new file mode 100644 index 00000000000..f0360968472 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-h5mc-wcjm-jrgw/GHSA-h5mc-wcjm-jrgw.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h5mc-wcjm-jrgw", + "modified": "2024-08-27T15:32:52Z", + "published": "2024-08-27T15:32:52Z", + "aliases": [ + "CVE-2024-6632" + ], + "details": "A vulnerability exists in FileCatalyst Workflow whereby a field accessible to the super admin can be used to perform an SQL injection attack which can lead to a loss of confidentiality, integrity, and availability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6632" + }, + { + "type": "WEB", + "url": "https://www.fortra.com/security/advisories/product-security/fi-2024-010" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-27T15:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-h7p8-gjr9-rp7c/GHSA-h7p8-gjr9-rp7c.json b/advisories/unreviewed/2024/08/GHSA-h7p8-gjr9-rp7c/GHSA-h7p8-gjr9-rp7c.json index 33da2068716..232f875201d 100644 --- a/advisories/unreviewed/2024/08/GHSA-h7p8-gjr9-rp7c/GHSA-h7p8-gjr9-rp7c.json +++ b/advisories/unreviewed/2024/08/GHSA-h7p8-gjr9-rp7c/GHSA-h7p8-gjr9-rp7c.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-h7p8-gjr9-rp7c", - "modified": "2024-08-23T15:30:34Z", + "modified": "2024-08-27T15:32:43Z", "published": "2024-08-23T15:30:34Z", "aliases": [ "CVE-2024-36515" diff --git a/advisories/unreviewed/2024/08/GHSA-hmrp-qqm4-qjf7/GHSA-hmrp-qqm4-qjf7.json b/advisories/unreviewed/2024/08/GHSA-hmrp-qqm4-qjf7/GHSA-hmrp-qqm4-qjf7.json index 3338efc182e..6324cb22f79 100644 --- a/advisories/unreviewed/2024/08/GHSA-hmrp-qqm4-qjf7/GHSA-hmrp-qqm4-qjf7.json +++ b/advisories/unreviewed/2024/08/GHSA-hmrp-qqm4-qjf7/GHSA-hmrp-qqm4-qjf7.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-jqgm-j6xq-3v4q/GHSA-jqgm-j6xq-3v4q.json b/advisories/unreviewed/2024/08/GHSA-jqgm-j6xq-3v4q/GHSA-jqgm-j6xq-3v4q.json index f1bf50308a6..df88c588168 100644 --- a/advisories/unreviewed/2024/08/GHSA-jqgm-j6xq-3v4q/GHSA-jqgm-j6xq-3v4q.json +++ b/advisories/unreviewed/2024/08/GHSA-jqgm-j6xq-3v4q/GHSA-jqgm-j6xq-3v4q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jqgm-j6xq-3v4q", - "modified": "2024-08-26T12:31:19Z", + "modified": "2024-08-27T15:32:43Z", "published": "2024-08-26T12:31:19Z", "aliases": [ "CVE-2024-43886" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Add null check in resource_log_pipe_topology_update\n\n[WHY]\nWhen switching from \"Extend\" to \"Second Display Only\" we sometimes\ncall resource_get_otg_master_for_stream on a stream for the eDP,\nwhich is disconnected. This leads to a null pointer dereference.\n\n[HOW]\nAdded a null check in dc_resource.c/resource_log_pipe_topology_update.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T11:15:03Z" diff --git a/advisories/unreviewed/2024/08/GHSA-m56p-h3j2-3v46/GHSA-m56p-h3j2-3v46.json b/advisories/unreviewed/2024/08/GHSA-m56p-h3j2-3v46/GHSA-m56p-h3j2-3v46.json index a6a2b375994..6fe4d70e782 100644 --- a/advisories/unreviewed/2024/08/GHSA-m56p-h3j2-3v46/GHSA-m56p-h3j2-3v46.json +++ b/advisories/unreviewed/2024/08/GHSA-m56p-h3j2-3v46/GHSA-m56p-h3j2-3v46.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-mv84-ggqf-6q3w/GHSA-mv84-ggqf-6q3w.json b/advisories/unreviewed/2024/08/GHSA-mv84-ggqf-6q3w/GHSA-mv84-ggqf-6q3w.json index 8ecf38e5e37..d07ac183ae4 100644 --- a/advisories/unreviewed/2024/08/GHSA-mv84-ggqf-6q3w/GHSA-mv84-ggqf-6q3w.json +++ b/advisories/unreviewed/2024/08/GHSA-mv84-ggqf-6q3w/GHSA-mv84-ggqf-6q3w.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mv84-ggqf-6q3w", - "modified": "2024-08-26T12:31:20Z", + "modified": "2024-08-27T15:32:44Z", "published": "2024-08-26T12:31:20Z", "aliases": [ "CVE-2024-43905" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/pm: Fix the null pointer dereference for vega10_hwmgr\n\nCheck return value and conduct null pointer handling to avoid null pointer dereference.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T11:15:04Z" diff --git a/advisories/unreviewed/2024/08/GHSA-pfcw-98x8-f55c/GHSA-pfcw-98x8-f55c.json b/advisories/unreviewed/2024/08/GHSA-pfcw-98x8-f55c/GHSA-pfcw-98x8-f55c.json new file mode 100644 index 00000000000..a39bcc87bd9 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-pfcw-98x8-f55c/GHSA-pfcw-98x8-f55c.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pfcw-98x8-f55c", + "modified": "2024-08-27T15:32:48Z", + "published": "2024-08-27T15:32:48Z", + "aliases": [ + "CVE-2024-7940" + ], + "details": "The product exposes a service that is intended for local only to\nall network interfaces without any authentication.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-7940" + }, + { + "type": "WEB", + "url": "https://publisher.hitachienergy.com/preview?DocumentID=8DBD000160&LanguageCode=en&DocumentPartId=&Action=Launch" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-306" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-27T13:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-pg2r-prx2-mw84/GHSA-pg2r-prx2-mw84.json b/advisories/unreviewed/2024/08/GHSA-pg2r-prx2-mw84/GHSA-pg2r-prx2-mw84.json index 2e08896df28..04d82284e01 100644 --- a/advisories/unreviewed/2024/08/GHSA-pg2r-prx2-mw84/GHSA-pg2r-prx2-mw84.json +++ b/advisories/unreviewed/2024/08/GHSA-pg2r-prx2-mw84/GHSA-pg2r-prx2-mw84.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-pg9r-4fxg-8jcv/GHSA-pg9r-4fxg-8jcv.json b/advisories/unreviewed/2024/08/GHSA-pg9r-4fxg-8jcv/GHSA-pg9r-4fxg-8jcv.json index 38c45a1cd20..ecf107ce61f 100644 --- a/advisories/unreviewed/2024/08/GHSA-pg9r-4fxg-8jcv/GHSA-pg9r-4fxg-8jcv.json +++ b/advisories/unreviewed/2024/08/GHSA-pg9r-4fxg-8jcv/GHSA-pg9r-4fxg-8jcv.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-pg9r-4fxg-8jcv", - "modified": "2024-08-26T18:33:34Z", + "modified": "2024-08-27T15:32:46Z", "published": "2024-08-26T18:33:34Z", "aliases": [ "CVE-2024-42790" ], "details": "A Reflected Cross Site Scripting (XSS) vulnerability was found in \"/music/index.php?page=test\" in Kashipara Music Management System v1.0. This vulnerability allows remote attackers to execute arbitrary code via the \"page\" parameter.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T17:15:06Z" diff --git a/advisories/unreviewed/2024/08/GHSA-r7rx-q42q-vq8v/GHSA-r7rx-q42q-vq8v.json b/advisories/unreviewed/2024/08/GHSA-r7rx-q42q-vq8v/GHSA-r7rx-q42q-vq8v.json index d77858b4d54..da10b1b9fd6 100644 --- a/advisories/unreviewed/2024/08/GHSA-r7rx-q42q-vq8v/GHSA-r7rx-q42q-vq8v.json +++ b/advisories/unreviewed/2024/08/GHSA-r7rx-q42q-vq8v/GHSA-r7rx-q42q-vq8v.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r7rx-q42q-vq8v", - "modified": "2024-08-26T12:31:18Z", + "modified": "2024-08-27T15:32:43Z", "published": "2024-08-26T12:31:18Z", "aliases": [ "CVE-2024-43885" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: fix double inode unlock for direct IO sync writes\n\nIf we do a direct IO sync write, at btrfs_sync_file(), and we need to skip\ninode logging or we get an error starting a transaction or an error when\nflushing delalloc, we end up unlocking the inode when we shouldn't under\nthe 'out_release_extents' label, and then unlock it again at\nbtrfs_direct_write().\n\nFix that by checking if we have to skip inode unlocking under that label.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -41,9 +44,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-667" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T11:15:03Z" diff --git a/advisories/unreviewed/2024/08/GHSA-r936-6588-v9v4/GHSA-r936-6588-v9v4.json b/advisories/unreviewed/2024/08/GHSA-r936-6588-v9v4/GHSA-r936-6588-v9v4.json index 722ab3d5c27..8a1d76e4780 100644 --- a/advisories/unreviewed/2024/08/GHSA-r936-6588-v9v4/GHSA-r936-6588-v9v4.json +++ b/advisories/unreviewed/2024/08/GHSA-r936-6588-v9v4/GHSA-r936-6588-v9v4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r936-6588-v9v4", - "modified": "2024-08-23T18:33:03Z", + "modified": "2024-08-27T15:32:43Z", "published": "2024-08-23T18:33:03Z", "aliases": [ "CVE-2024-42918" ], "details": "itsourcecode Online Accreditation Management System contains a Cross Site Scripting vulnerability, which allows an attacker to execute arbitrary code via a crafted payload to the SCHOOLNAME, EMAILADDRES, CONTACTNO, COMPANYNAME and COMPANYCONTACTNO parameters in controller.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-23T17:15:09Z" diff --git a/advisories/unreviewed/2024/08/GHSA-rp5g-xj9f-ghvw/GHSA-rp5g-xj9f-ghvw.json b/advisories/unreviewed/2024/08/GHSA-rp5g-xj9f-ghvw/GHSA-rp5g-xj9f-ghvw.json index d220d9c0414..10ff90a314d 100644 --- a/advisories/unreviewed/2024/08/GHSA-rp5g-xj9f-ghvw/GHSA-rp5g-xj9f-ghvw.json +++ b/advisories/unreviewed/2024/08/GHSA-rp5g-xj9f-ghvw/GHSA-rp5g-xj9f-ghvw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-rp5g-xj9f-ghvw", - "modified": "2024-08-26T18:33:34Z", + "modified": "2024-08-27T15:32:45Z", "published": "2024-08-26T18:33:34Z", "aliases": [ "CVE-2024-44551" ], "details": "Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function formGetIptv.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-787" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T16:15:10Z" diff --git a/advisories/unreviewed/2024/08/GHSA-rpp5-g56w-xpgh/GHSA-rpp5-g56w-xpgh.json b/advisories/unreviewed/2024/08/GHSA-rpp5-g56w-xpgh/GHSA-rpp5-g56w-xpgh.json index f87e4c32424..0defcd9de52 100644 --- a/advisories/unreviewed/2024/08/GHSA-rpp5-g56w-xpgh/GHSA-rpp5-g56w-xpgh.json +++ b/advisories/unreviewed/2024/08/GHSA-rpp5-g56w-xpgh/GHSA-rpp5-g56w-xpgh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-rpp5-g56w-xpgh", - "modified": "2024-08-23T15:30:34Z", + "modified": "2024-08-27T15:32:43Z", "published": "2024-08-23T15:30:34Z", "aliases": [ "CVE-2024-5586" diff --git a/advisories/unreviewed/2024/08/GHSA-v25q-32rr-4cpj/GHSA-v25q-32rr-4cpj.json b/advisories/unreviewed/2024/08/GHSA-v25q-32rr-4cpj/GHSA-v25q-32rr-4cpj.json index 8fc1d7e841b..2a11dec6125 100644 --- a/advisories/unreviewed/2024/08/GHSA-v25q-32rr-4cpj/GHSA-v25q-32rr-4cpj.json +++ b/advisories/unreviewed/2024/08/GHSA-v25q-32rr-4cpj/GHSA-v25q-32rr-4cpj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-v25q-32rr-4cpj", - "modified": "2024-08-23T15:30:34Z", + "modified": "2024-08-27T15:32:43Z", "published": "2024-08-23T15:30:34Z", "aliases": [ "CVE-2024-36517" diff --git a/advisories/unreviewed/2024/08/GHSA-vhrf-w875-h9vr/GHSA-vhrf-w875-h9vr.json b/advisories/unreviewed/2024/08/GHSA-vhrf-w875-h9vr/GHSA-vhrf-w875-h9vr.json index cf81c07bfc0..83cb69eb284 100644 --- a/advisories/unreviewed/2024/08/GHSA-vhrf-w875-h9vr/GHSA-vhrf-w875-h9vr.json +++ b/advisories/unreviewed/2024/08/GHSA-vhrf-w875-h9vr/GHSA-vhrf-w875-h9vr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vhrf-w875-h9vr", - "modified": "2024-08-26T12:31:19Z", + "modified": "2024-08-27T15:32:44Z", "published": "2024-08-26T12:31:19Z", "aliases": [ "CVE-2024-43901" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Fix NULL pointer dereference for DTN log in DCN401\n\nWhen users run the command:\n\ncat /sys/kernel/debug/dri/0/amdgpu_dm_dtn_log\n\nThe following NULL pointer dereference happens:\n\n[ +0.000003] BUG: kernel NULL pointer dereference, address: NULL\n[ +0.000005] #PF: supervisor instruction fetch in kernel mode\n[ +0.000002] #PF: error_code(0x0010) - not-present page\n[ +0.000002] PGD 0 P4D 0\n[ +0.000004] Oops: 0010 [#1] PREEMPT SMP NOPTI\n[ +0.000003] RIP: 0010:0x0\n[ +0.000008] Code: Unable to access opcode bytes at 0xffffffffffffffd6.\n[...]\n[ +0.000002] PKRU: 55555554\n[ +0.000002] Call Trace:\n[ +0.000002] \n[ +0.000003] ? show_regs+0x65/0x70\n[ +0.000006] ? __die+0x24/0x70\n[ +0.000004] ? page_fault_oops+0x160/0x470\n[ +0.000006] ? do_user_addr_fault+0x2b5/0x690\n[ +0.000003] ? prb_read_valid+0x1c/0x30\n[ +0.000005] ? exc_page_fault+0x8c/0x1a0\n[ +0.000005] ? asm_exc_page_fault+0x27/0x30\n[ +0.000012] dcn10_log_color_state+0xf9/0x510 [amdgpu]\n[ +0.000306] ? srso_alias_return_thunk+0x5/0xfbef5\n[ +0.000003] ? vsnprintf+0x2fb/0x600\n[ +0.000009] dcn10_log_hw_state+0xfd0/0xfe0 [amdgpu]\n[ +0.000218] ? __mod_memcg_lruvec_state+0xe8/0x170\n[ +0.000008] ? srso_alias_return_thunk+0x5/0xfbef5\n[ +0.000002] ? debug_smp_processor_id+0x17/0x20\n[ +0.000003] ? srso_alias_return_thunk+0x5/0xfbef5\n[ +0.000002] ? srso_alias_return_thunk+0x5/0xfbef5\n[ +0.000002] ? set_ptes.isra.0+0x2b/0x90\n[ +0.000004] ? srso_alias_return_thunk+0x5/0xfbef5\n[ +0.000002] ? _raw_spin_unlock+0x19/0x40\n[ +0.000004] ? srso_alias_return_thunk+0x5/0xfbef5\n[ +0.000002] ? do_anonymous_page+0x337/0x700\n[ +0.000004] dtn_log_read+0x82/0x120 [amdgpu]\n[ +0.000207] full_proxy_read+0x66/0x90\n[ +0.000007] vfs_read+0xb0/0x340\n[ +0.000005] ? __count_memcg_events+0x79/0xe0\n[ +0.000002] ? srso_alias_return_thunk+0x5/0xfbef5\n[ +0.000003] ? count_memcg_events.constprop.0+0x1e/0x40\n[ +0.000003] ? handle_mm_fault+0xb2/0x370\n[ +0.000003] ksys_read+0x6b/0xf0\n[ +0.000004] __x64_sys_read+0x19/0x20\n[ +0.000003] do_syscall_64+0x60/0x130\n[ +0.000004] entry_SYSCALL_64_after_hwframe+0x6e/0x76\n[ +0.000003] RIP: 0033:0x7fdf32f147e2\n[...]\n\nThis error happens when the color log tries to read the gamut remap\ninformation from DCN401 which is not initialized in the dcn401_dpp_funcs\nwhich leads to a null pointer dereference. This commit addresses this\nissue by adding a proper guard to access the gamut_remap callback in\ncase the specific ASIC did not implement this function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T11:15:04Z" diff --git a/advisories/unreviewed/2024/08/GHSA-w9pm-7cxw-vw6j/GHSA-w9pm-7cxw-vw6j.json b/advisories/unreviewed/2024/08/GHSA-w9pm-7cxw-vw6j/GHSA-w9pm-7cxw-vw6j.json new file mode 100644 index 00000000000..8c0d0e5d491 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-w9pm-7cxw-vw6j/GHSA-w9pm-7cxw-vw6j.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w9pm-7cxw-vw6j", + "modified": "2024-08-27T15:32:47Z", + "published": "2024-08-27T15:32:47Z", + "aliases": [ + "CVE-2024-3980" + ], + "details": "The product allows user input to control or influence paths or file\nnames that are used in filesystem operations, allowing the attacker to access or modify system files or other files that are\ncritical to the application.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-3980" + }, + { + "type": "WEB", + "url": "https://publisher.hitachienergy.com/preview?DocumentID=8DBD000160&LanguageCode=en&DocumentPartId=&Action=Launch" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-88" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-27T13:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-whmw-7gjc-qj48/GHSA-whmw-7gjc-qj48.json b/advisories/unreviewed/2024/08/GHSA-whmw-7gjc-qj48/GHSA-whmw-7gjc-qj48.json index 34719c9398b..283fd39e031 100644 --- a/advisories/unreviewed/2024/08/GHSA-whmw-7gjc-qj48/GHSA-whmw-7gjc-qj48.json +++ b/advisories/unreviewed/2024/08/GHSA-whmw-7gjc-qj48/GHSA-whmw-7gjc-qj48.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-whmw-7gjc-qj48", - "modified": "2024-08-26T12:31:20Z", + "modified": "2024-08-27T15:32:44Z", "published": "2024-08-26T12:31:20Z", "aliases": [ "CVE-2024-43909" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amdgpu/pm: Fix the null pointer dereference for smu7\n\noptimize the code to avoid pass a null pointer (hwmgr->backend)\nto function smu7_update_edc_leakage_table.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -41,9 +44,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T11:15:05Z" diff --git a/advisories/unreviewed/2024/08/GHSA-wm87-x2vw-r6ch/GHSA-wm87-x2vw-r6ch.json b/advisories/unreviewed/2024/08/GHSA-wm87-x2vw-r6ch/GHSA-wm87-x2vw-r6ch.json index 361fb7b705e..de99fa50151 100644 --- a/advisories/unreviewed/2024/08/GHSA-wm87-x2vw-r6ch/GHSA-wm87-x2vw-r6ch.json +++ b/advisories/unreviewed/2024/08/GHSA-wm87-x2vw-r6ch/GHSA-wm87-x2vw-r6ch.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-wm87-x2vw-r6ch", - "modified": "2024-08-26T12:31:19Z", + "modified": "2024-08-27T15:32:43Z", "published": "2024-08-26T12:31:19Z", "aliases": [ "CVE-2024-43888" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmm: list_lru: fix UAF for memory cgroup\n\nThe mem_cgroup_from_slab_obj() is supposed to be called under rcu lock or\ncgroup_mutex or others which could prevent returned memcg from being\nfreed. Fix it by adding missing rcu read lock.\n\nFound by code inspection.\n\n[songmuchun@bytedance.com: only grab rcu lock when necessary, per Vlastimil]\n Link: https://lkml.kernel.org/r/20240801024603.1865-1-songmuchun@bytedance.com", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T11:15:03Z" diff --git a/advisories/unreviewed/2024/08/GHSA-xxfg-vcwf-78fg/GHSA-xxfg-vcwf-78fg.json b/advisories/unreviewed/2024/08/GHSA-xxfg-vcwf-78fg/GHSA-xxfg-vcwf-78fg.json index f5575c29037..808f095e886 100644 --- a/advisories/unreviewed/2024/08/GHSA-xxfg-vcwf-78fg/GHSA-xxfg-vcwf-78fg.json +++ b/advisories/unreviewed/2024/08/GHSA-xxfg-vcwf-78fg/GHSA-xxfg-vcwf-78fg.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-xxfg-vcwf-78fg", - "modified": "2024-08-26T12:31:19Z", + "modified": "2024-08-27T15:32:44Z", "published": "2024-08-26T12:31:19Z", "aliases": [ "CVE-2024-43903" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Add NULL check for 'afb' before dereferencing in amdgpu_dm_plane_handle_cursor_update\n\nThis commit adds a null check for the 'afb' variable in the\namdgpu_dm_plane_handle_cursor_update function. Previously, 'afb' was\nassumed to be null, but was used later in the code without a null check.\nThis could potentially lead to a null pointer dereference.\n\nFixes the below:\ndrivers/gpu/drm/amd/amdgpu/../display/amdgpu_dm/amdgpu_dm_plane.c:1298 amdgpu_dm_plane_handle_cursor_update() error: we previously assumed 'afb' could be null (see line 1252)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-26T11:15:04Z"