From c0a06c122826e64ec65dc420bede1e22f18006ce Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Mon, 26 May 2025 06:32:09 +0000 Subject: [PATCH] Publish Advisories GHSA-24xc-5f2v-5mc5 GHSA-5wpj-mx2x-hx72 GHSA-829c-hx47-67xw GHSA-f3xf-ch76-j4mw GHSA-jg2v-6g6x-hx35 GHSA-p79q-2vjx-gr7p GHSA-wcrv-5jp3-rmqr --- .../GHSA-24xc-5f2v-5mc5.json | 52 ++++++++++++++++ .../GHSA-5wpj-mx2x-hx72.json | 60 +++++++++++++++++++ .../GHSA-829c-hx47-67xw.json | 60 +++++++++++++++++++ .../GHSA-f3xf-ch76-j4mw.json | 52 ++++++++++++++++ .../GHSA-jg2v-6g6x-hx35.json | 60 +++++++++++++++++++ .../GHSA-p79q-2vjx-gr7p.json | 60 +++++++++++++++++++ .../GHSA-wcrv-5jp3-rmqr.json | 52 ++++++++++++++++ 7 files changed, 396 insertions(+) create mode 100644 advisories/unreviewed/2025/05/GHSA-24xc-5f2v-5mc5/GHSA-24xc-5f2v-5mc5.json create mode 100644 advisories/unreviewed/2025/05/GHSA-5wpj-mx2x-hx72/GHSA-5wpj-mx2x-hx72.json create mode 100644 advisories/unreviewed/2025/05/GHSA-829c-hx47-67xw/GHSA-829c-hx47-67xw.json create mode 100644 advisories/unreviewed/2025/05/GHSA-f3xf-ch76-j4mw/GHSA-f3xf-ch76-j4mw.json create mode 100644 advisories/unreviewed/2025/05/GHSA-jg2v-6g6x-hx35/GHSA-jg2v-6g6x-hx35.json create mode 100644 advisories/unreviewed/2025/05/GHSA-p79q-2vjx-gr7p/GHSA-p79q-2vjx-gr7p.json create mode 100644 advisories/unreviewed/2025/05/GHSA-wcrv-5jp3-rmqr/GHSA-wcrv-5jp3-rmqr.json diff --git a/advisories/unreviewed/2025/05/GHSA-24xc-5f2v-5mc5/GHSA-24xc-5f2v-5mc5.json b/advisories/unreviewed/2025/05/GHSA-24xc-5f2v-5mc5/GHSA-24xc-5f2v-5mc5.json new file mode 100644 index 00000000000..8210bbfab05 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-24xc-5f2v-5mc5/GHSA-24xc-5f2v-5mc5.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-24xc-5f2v-5mc5", + "modified": "2025-05-26T06:30:29Z", + "published": "2025-05-26T06:30:29Z", + "aliases": [ + "CVE-2025-5170" + ], + "details": "A vulnerability classified as critical was found in llisoft MTA Maita Training System 4.5. This vulnerability affects the function AdminShitiListRequestVo of the file com\\llisoft\\controller\\admin\\shiti\\AdminShitiController.java. The manipulation of the argument stTypeIds leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5170" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.310258" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.310258" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.579069" + }, + { + "type": "WEB", + "url": "https://wx.mail.qq.com/s?k=oVXdxVkeZQAlUQwVe2" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-26T05:15:20Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-5wpj-mx2x-hx72/GHSA-5wpj-mx2x-hx72.json b/advisories/unreviewed/2025/05/GHSA-5wpj-mx2x-hx72/GHSA-5wpj-mx2x-hx72.json new file mode 100644 index 00000000000..f03fa4ec9a7 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-5wpj-mx2x-hx72/GHSA-5wpj-mx2x-hx72.json @@ -0,0 +1,60 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5wpj-mx2x-hx72", + "modified": "2025-05-26T06:30:29Z", + "published": "2025-05-26T06:30:29Z", + "aliases": [ + "CVE-2025-5169" + ], + "details": "A vulnerability classified as problematic has been found in Open Asset Import Library Assimp 5.4.3. This affects the function MDLImporter::InternReadFile_3DGS_MDL345 of the file assimp/code/AssetLib/MDL/MDLLoader.cpp. The manipulation leads to out-of-bounds read. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The project decided to collect all Fuzzer bugs in a main-issue to address them in the future.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5169" + }, + { + "type": "WEB", + "url": "https://github.com/assimp/assimp/issues/6128" + }, + { + "type": "WEB", + "url": "https://github.com/assimp/assimp/issues/6171" + }, + { + "type": "WEB", + "url": "https://github.com/user-attachments/files/20208891/reproducer.zip" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.310257" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.310257" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.578004" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-26T05:15:19Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-829c-hx47-67xw/GHSA-829c-hx47-67xw.json b/advisories/unreviewed/2025/05/GHSA-829c-hx47-67xw/GHSA-829c-hx47-67xw.json new file mode 100644 index 00000000000..a4969073cb6 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-829c-hx47-67xw/GHSA-829c-hx47-67xw.json @@ -0,0 +1,60 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-829c-hx47-67xw", + "modified": "2025-05-26T06:30:28Z", + "published": "2025-05-26T06:30:28Z", + "aliases": [ + "CVE-2025-5167" + ], + "details": "A vulnerability was found in Open Asset Import Library Assimp 5.4.3. It has been declared as problematic. Affected by this vulnerability is the function LWOImporter::GetS0 in the library assimp/code/AssetLib/LWO/LWOLoader.h. The manipulation of the argument out leads to out-of-bounds read. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The project decided to collect all Fuzzer bugs in a main-issue to address them in the future.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5167" + }, + { + "type": "WEB", + "url": "https://github.com/assimp/assimp/issues/6128" + }, + { + "type": "WEB", + "url": "https://github.com/assimp/assimp/issues/6169" + }, + { + "type": "WEB", + "url": "https://github.com/user-attachments/files/20208666/reproducer.zip" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.310255" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.310255" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.578002" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-26T04:15:43Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-f3xf-ch76-j4mw/GHSA-f3xf-ch76-j4mw.json b/advisories/unreviewed/2025/05/GHSA-f3xf-ch76-j4mw/GHSA-f3xf-ch76-j4mw.json new file mode 100644 index 00000000000..81aade80b35 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-f3xf-ch76-j4mw/GHSA-f3xf-ch76-j4mw.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f3xf-ch76-j4mw", + "modified": "2025-05-26T06:30:29Z", + "published": "2025-05-26T06:30:29Z", + "aliases": [ + "CVE-2025-5172" + ], + "details": "A vulnerability, which was classified as critical, was found in Econtrata up to 20250516. Affected is an unknown function of the file /valida. The manipulation of the argument usuario leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5172" + }, + { + "type": "WEB", + "url": "https://github.com/yago3008/cves" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.310260" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.310260" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.579248" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-26T06:17:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-jg2v-6g6x-hx35/GHSA-jg2v-6g6x-hx35.json b/advisories/unreviewed/2025/05/GHSA-jg2v-6g6x-hx35/GHSA-jg2v-6g6x-hx35.json new file mode 100644 index 00000000000..9622239665d --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-jg2v-6g6x-hx35/GHSA-jg2v-6g6x-hx35.json @@ -0,0 +1,60 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jg2v-6g6x-hx35", + "modified": "2025-05-26T06:30:28Z", + "published": "2025-05-26T06:30:28Z", + "aliases": [ + "CVE-2025-5166" + ], + "details": "A vulnerability was found in Open Asset Import Library Assimp 5.4.3. It has been classified as problematic. Affected is the function MDCImporter::InternReadFile of the file assimp/code/AssetLib/MDC/MDCLoader.cpp of the component MDC File Parser. The manipulation of the argument pcVerts leads to out-of-bounds read. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used. The project decided to collect all Fuzzer bugs in a main-issue to address them in the future.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5166" + }, + { + "type": "WEB", + "url": "https://github.com/assimp/assimp/issues/6128" + }, + { + "type": "WEB", + "url": "https://github.com/assimp/assimp/issues/6168" + }, + { + "type": "WEB", + "url": "https://github.com/user-attachments/files/20208318/reproducer.zip" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.310254" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.310254" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.578001" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-26T04:15:28Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-p79q-2vjx-gr7p/GHSA-p79q-2vjx-gr7p.json b/advisories/unreviewed/2025/05/GHSA-p79q-2vjx-gr7p/GHSA-p79q-2vjx-gr7p.json new file mode 100644 index 00000000000..98fe3f30153 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-p79q-2vjx-gr7p/GHSA-p79q-2vjx-gr7p.json @@ -0,0 +1,60 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p79q-2vjx-gr7p", + "modified": "2025-05-26T06:30:29Z", + "published": "2025-05-26T06:30:28Z", + "aliases": [ + "CVE-2025-5168" + ], + "details": "A vulnerability was found in Open Asset Import Library Assimp 5.4.3. It has been rated as problematic. Affected by this issue is the function MDLImporter::ImportUVCoordinate_3DGS_MDL345 of the file assimp/code/AssetLib/MDL/MDLLoader.cpp. The manipulation of the argument iIndex leads to out-of-bounds read. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. The project decided to collect all Fuzzer bugs in a main-issue to address them in the future.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5168" + }, + { + "type": "WEB", + "url": "https://github.com/assimp/assimp/issues/6128" + }, + { + "type": "WEB", + "url": "https://github.com/assimp/assimp/issues/6170" + }, + { + "type": "WEB", + "url": "https://github.com/user-attachments/files/20208878/reproducer.zip" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.310256" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.310256" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.578003" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-26T04:15:44Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-wcrv-5jp3-rmqr/GHSA-wcrv-5jp3-rmqr.json b/advisories/unreviewed/2025/05/GHSA-wcrv-5jp3-rmqr/GHSA-wcrv-5jp3-rmqr.json new file mode 100644 index 00000000000..b4e802086b2 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-wcrv-5jp3-rmqr/GHSA-wcrv-5jp3-rmqr.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wcrv-5jp3-rmqr", + "modified": "2025-05-26T06:30:29Z", + "published": "2025-05-26T06:30:29Z", + "aliases": [ + "CVE-2025-5171" + ], + "details": "A vulnerability, which was classified as critical, has been found in llisoft MTA Maita Training System 4.5. This issue affects the function this.fileService.download of the file com\\llisoft\\controller\\OpenController.java. The manipulation of the argument url leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5171" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.310259" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.310259" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.579088" + }, + { + "type": "WEB", + "url": "https://wx.mail.qq.com/s?k=o3X5wV0ZZH0nuusQdO" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-284" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-26T06:17:03Z" + } +} \ No newline at end of file