diff --git a/advisories/github-reviewed/2024/03/GHSA-78hx-gp6g-7mj6/GHSA-78hx-gp6g-7mj6.json b/advisories/github-reviewed/2024/03/GHSA-78hx-gp6g-7mj6/GHSA-78hx-gp6g-7mj6.json index 960c3d5ba23..a7f97616564 100644 --- a/advisories/github-reviewed/2024/03/GHSA-78hx-gp6g-7mj6/GHSA-78hx-gp6g-7mj6.json +++ b/advisories/github-reviewed/2024/03/GHSA-78hx-gp6g-7mj6/GHSA-78hx-gp6g-7mj6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-78hx-gp6g-7mj6", - "modified": "2024-06-27T06:32:47Z", + "modified": "2024-07-08T18:31:15Z", "published": "2024-03-20T18:10:36Z", "aliases": [ "CVE-2024-1394" @@ -134,14 +134,6 @@ "type": "WEB", "url": "https://github.com/golang-fips/openssl/commit/85d31d0d257ce842c8a1e63c4d230ae850348136" }, - { - "type": "WEB", - "url": "https://access.redhat.com/errata/RHSA-2024:1462" - }, - { - "type": "WEB", - "url": "https://access.redhat.com/errata/RHSA-2024:2729" - }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:2730" @@ -162,6 +154,18 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:4146" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:4371" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:4378" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:4379" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-1394" @@ -190,6 +194,10 @@ "type": "WEB", "url": "https://vuln.go.dev/ID/GO-2024-2660.json" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:1462" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:1468" @@ -257,6 +265,10 @@ { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:2569" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:2729" } ], "database_specific": { diff --git a/advisories/unreviewed/2023/11/GHSA-jvj3-gqjm-cg8p/GHSA-jvj3-gqjm-cg8p.json b/advisories/unreviewed/2023/11/GHSA-jvj3-gqjm-cg8p/GHSA-jvj3-gqjm-cg8p.json index 645d51618c6..c727f930e54 100644 --- a/advisories/unreviewed/2023/11/GHSA-jvj3-gqjm-cg8p/GHSA-jvj3-gqjm-cg8p.json +++ b/advisories/unreviewed/2023/11/GHSA-jvj3-gqjm-cg8p/GHSA-jvj3-gqjm-cg8p.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-jvj3-gqjm-cg8p", - "modified": "2024-06-27T12:30:42Z", + "modified": "2024-07-08T18:31:14Z", "published": "2023-11-28T12:31:25Z", "aliases": [ "CVE-2023-5981" @@ -45,6 +45,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:1383" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:2094" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2023-5981" diff --git a/advisories/unreviewed/2023/12/GHSA-4m6w-vxqg-9rmm/GHSA-4m6w-vxqg-9rmm.json b/advisories/unreviewed/2023/12/GHSA-4m6w-vxqg-9rmm/GHSA-4m6w-vxqg-9rmm.json index 79e78fdf18c..207a579ae71 100644 --- a/advisories/unreviewed/2023/12/GHSA-4m6w-vxqg-9rmm/GHSA-4m6w-vxqg-9rmm.json +++ b/advisories/unreviewed/2023/12/GHSA-4m6w-vxqg-9rmm/GHSA-4m6w-vxqg-9rmm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4m6w-vxqg-9rmm", - "modified": "2024-06-25T21:31:10Z", + "modified": "2024-07-08T18:31:14Z", "published": "2023-12-08T18:30:42Z", "aliases": [ "CVE-2023-6606" @@ -49,6 +49,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:1404" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:2094" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2023-6606" diff --git a/advisories/unreviewed/2023/12/GHSA-jr4h-682w-x2ph/GHSA-jr4h-682w-x2ph.json b/advisories/unreviewed/2023/12/GHSA-jr4h-682w-x2ph/GHSA-jr4h-682w-x2ph.json index 235e0faea8f..b39b38714d6 100644 --- a/advisories/unreviewed/2023/12/GHSA-jr4h-682w-x2ph/GHSA-jr4h-682w-x2ph.json +++ b/advisories/unreviewed/2023/12/GHSA-jr4h-682w-x2ph/GHSA-jr4h-682w-x2ph.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-jr4h-682w-x2ph", - "modified": "2024-03-12T06:30:45Z", + "modified": "2024-07-08T18:31:14Z", "published": "2023-12-08T18:30:42Z", "aliases": [ "CVE-2023-6610" @@ -45,6 +45,14 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:1248" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:1404" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:2094" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2023-6610" diff --git a/advisories/unreviewed/2023/12/GHSA-v727-f437-6cxx/GHSA-v727-f437-6cxx.json b/advisories/unreviewed/2023/12/GHSA-v727-f437-6cxx/GHSA-v727-f437-6cxx.json index 31ad1927c40..7ba9ecd878f 100644 --- a/advisories/unreviewed/2023/12/GHSA-v727-f437-6cxx/GHSA-v727-f437-6cxx.json +++ b/advisories/unreviewed/2023/12/GHSA-v727-f437-6cxx/GHSA-v727-f437-6cxx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-v727-f437-6cxx", - "modified": "2024-05-08T09:30:50Z", + "modified": "2024-07-08T18:31:15Z", "published": "2023-12-21T21:30:31Z", "aliases": [ "CVE-2023-6546" @@ -49,6 +49,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:2394" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:2093" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:1614" diff --git a/advisories/unreviewed/2024/01/GHSA-4jrv-6m77-vrhq/GHSA-4jrv-6m77-vrhq.json b/advisories/unreviewed/2024/01/GHSA-4jrv-6m77-vrhq/GHSA-4jrv-6m77-vrhq.json index f032ff898e1..7e9d7977699 100644 --- a/advisories/unreviewed/2024/01/GHSA-4jrv-6m77-vrhq/GHSA-4jrv-6m77-vrhq.json +++ b/advisories/unreviewed/2024/01/GHSA-4jrv-6m77-vrhq/GHSA-4jrv-6m77-vrhq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4jrv-6m77-vrhq", - "modified": "2024-06-26T00:31:34Z", + "modified": "2024-07-08T18:31:15Z", "published": "2024-01-15T21:30:24Z", "aliases": [ "CVE-2024-0565" @@ -45,6 +45,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:1614" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:2093" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:2394" diff --git a/advisories/unreviewed/2024/01/GHSA-52x7-wcqq-wfjp/GHSA-52x7-wcqq-wfjp.json b/advisories/unreviewed/2024/01/GHSA-52x7-wcqq-wfjp/GHSA-52x7-wcqq-wfjp.json index d16dd23694a..82b586e85cf 100644 --- a/advisories/unreviewed/2024/01/GHSA-52x7-wcqq-wfjp/GHSA-52x7-wcqq-wfjp.json +++ b/advisories/unreviewed/2024/01/GHSA-52x7-wcqq-wfjp/GHSA-52x7-wcqq-wfjp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-52x7-wcqq-wfjp", - "modified": "2024-03-12T06:30:45Z", + "modified": "2024-07-08T18:31:14Z", "published": "2024-01-02T18:30:20Z", "aliases": [ "CVE-2024-0193" @@ -33,6 +33,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:1248" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:2094" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-0193" diff --git a/advisories/unreviewed/2024/01/GHSA-mcx8-9rrj-7qxm/GHSA-mcx8-9rrj-7qxm.json b/advisories/unreviewed/2024/01/GHSA-mcx8-9rrj-7qxm/GHSA-mcx8-9rrj-7qxm.json index b1819ee9411..093c1c6e606 100644 --- a/advisories/unreviewed/2024/01/GHSA-mcx8-9rrj-7qxm/GHSA-mcx8-9rrj-7qxm.json +++ b/advisories/unreviewed/2024/01/GHSA-mcx8-9rrj-7qxm/GHSA-mcx8-9rrj-7qxm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mcx8-9rrj-7qxm", - "modified": "2024-06-27T12:30:43Z", + "modified": "2024-07-08T18:31:15Z", "published": "2024-01-16T15:30:27Z", "aliases": [ "CVE-2024-0567" @@ -33,6 +33,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:1383" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:2094" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-0567" diff --git a/advisories/unreviewed/2024/01/GHSA-qmff-49xc-7rf6/GHSA-qmff-49xc-7rf6.json b/advisories/unreviewed/2024/01/GHSA-qmff-49xc-7rf6/GHSA-qmff-49xc-7rf6.json index 3809a90b16a..a7e8ece3173 100644 --- a/advisories/unreviewed/2024/01/GHSA-qmff-49xc-7rf6/GHSA-qmff-49xc-7rf6.json +++ b/advisories/unreviewed/2024/01/GHSA-qmff-49xc-7rf6/GHSA-qmff-49xc-7rf6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qmff-49xc-7rf6", - "modified": "2024-06-25T21:31:10Z", + "modified": "2024-07-08T18:31:15Z", "published": "2024-01-17T18:31:36Z", "aliases": [ "CVE-2024-0646" @@ -37,6 +37,10 @@ "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-0646" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:2094" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:1404" diff --git a/advisories/unreviewed/2024/01/GHSA-x697-v25m-6phv/GHSA-x697-v25m-6phv.json b/advisories/unreviewed/2024/01/GHSA-x697-v25m-6phv/GHSA-x697-v25m-6phv.json index 1e73d2de266..f18c1c09b33 100644 --- a/advisories/unreviewed/2024/01/GHSA-x697-v25m-6phv/GHSA-x697-v25m-6phv.json +++ b/advisories/unreviewed/2024/01/GHSA-x697-v25m-6phv/GHSA-x697-v25m-6phv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-x697-v25m-6phv", - "modified": "2024-06-27T12:30:42Z", + "modified": "2024-07-08T18:31:15Z", "published": "2024-01-16T12:30:26Z", "aliases": [ "CVE-2024-0553" @@ -45,6 +45,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:1383" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:2094" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-0553" diff --git a/advisories/unreviewed/2024/02/GHSA-98fx-x879-qp6f/GHSA-98fx-x879-qp6f.json b/advisories/unreviewed/2024/02/GHSA-98fx-x879-qp6f/GHSA-98fx-x879-qp6f.json index 4900941411f..8fcc3487e32 100644 --- a/advisories/unreviewed/2024/02/GHSA-98fx-x879-qp6f/GHSA-98fx-x879-qp6f.json +++ b/advisories/unreviewed/2024/02/GHSA-98fx-x879-qp6f/GHSA-98fx-x879-qp6f.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-98fx-x879-qp6f", - "modified": "2024-06-25T21:31:10Z", + "modified": "2024-07-08T18:31:15Z", "published": "2024-02-07T21:30:27Z", "aliases": [ "CVE-2023-6356" @@ -45,6 +45,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:1248" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:2094" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:3810" diff --git a/advisories/unreviewed/2024/02/GHSA-v8xr-j3gp-fmxj/GHSA-v8xr-j3gp-fmxj.json b/advisories/unreviewed/2024/02/GHSA-v8xr-j3gp-fmxj/GHSA-v8xr-j3gp-fmxj.json index 42284c0fda1..66611a98d75 100644 --- a/advisories/unreviewed/2024/02/GHSA-v8xr-j3gp-fmxj/GHSA-v8xr-j3gp-fmxj.json +++ b/advisories/unreviewed/2024/02/GHSA-v8xr-j3gp-fmxj/GHSA-v8xr-j3gp-fmxj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-v8xr-j3gp-fmxj", - "modified": "2024-06-25T21:31:10Z", + "modified": "2024-07-08T18:31:15Z", "published": "2024-02-07T21:30:27Z", "aliases": [ "CVE-2023-6535" @@ -45,6 +45,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:1248" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:2094" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:3810" diff --git a/advisories/unreviewed/2024/02/GHSA-xw3g-x45j-xxhh/GHSA-xw3g-x45j-xxhh.json b/advisories/unreviewed/2024/02/GHSA-xw3g-x45j-xxhh/GHSA-xw3g-x45j-xxhh.json index bc964279426..d6d8c863f4d 100644 --- a/advisories/unreviewed/2024/02/GHSA-xw3g-x45j-xxhh/GHSA-xw3g-x45j-xxhh.json +++ b/advisories/unreviewed/2024/02/GHSA-xw3g-x45j-xxhh/GHSA-xw3g-x45j-xxhh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-xw3g-x45j-xxhh", - "modified": "2024-06-25T21:31:10Z", + "modified": "2024-07-08T18:31:15Z", "published": "2024-02-07T21:30:27Z", "aliases": [ "CVE-2023-6536" @@ -45,6 +45,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:1248" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:2094" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:3810" diff --git a/advisories/unreviewed/2024/03/GHSA-pv98-48f2-5vjr/GHSA-pv98-48f2-5vjr.json b/advisories/unreviewed/2024/03/GHSA-pv98-48f2-5vjr/GHSA-pv98-48f2-5vjr.json index c63ed6cbead..51e1b0a2b95 100644 --- a/advisories/unreviewed/2024/03/GHSA-pv98-48f2-5vjr/GHSA-pv98-48f2-5vjr.json +++ b/advisories/unreviewed/2024/03/GHSA-pv98-48f2-5vjr/GHSA-pv98-48f2-5vjr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pv98-48f2-5vjr", - "modified": "2024-07-06T00:31:06Z", + "modified": "2024-07-08T18:31:15Z", "published": "2024-03-03T00:30:32Z", "aliases": [ "CVE-2024-26621" @@ -33,6 +33,10 @@ { "type": "WEB", "url": "https://zolutal.github.io/aslrnt" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2024/07/08/3" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/06/GHSA-rvm7-rc5g-c98q/GHSA-rvm7-rc5g-c98q.json b/advisories/unreviewed/2024/06/GHSA-rvm7-rc5g-c98q/GHSA-rvm7-rc5g-c98q.json index ca83c75a17e..e30ac8cea35 100644 --- a/advisories/unreviewed/2024/06/GHSA-rvm7-rc5g-c98q/GHSA-rvm7-rc5g-c98q.json +++ b/advisories/unreviewed/2024/06/GHSA-rvm7-rc5g-c98q/GHSA-rvm7-rc5g-c98q.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-rvm7-rc5g-c98q", - "modified": "2024-07-03T00:34:10Z", + "modified": "2024-07-08T18:31:15Z", "published": "2024-06-11T21:32:17Z", "aliases": [ "CVE-2023-4727" @@ -45,6 +45,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:4222" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:4367" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2023-4727" diff --git a/advisories/unreviewed/2024/07/GHSA-29w9-rxvw-c7w4/GHSA-29w9-rxvw-c7w4.json b/advisories/unreviewed/2024/07/GHSA-29w9-rxvw-c7w4/GHSA-29w9-rxvw-c7w4.json index 7fcbed5a1f2..cc26ed126bb 100644 --- a/advisories/unreviewed/2024/07/GHSA-29w9-rxvw-c7w4/GHSA-29w9-rxvw-c7w4.json +++ b/advisories/unreviewed/2024/07/GHSA-29w9-rxvw-c7w4/GHSA-29w9-rxvw-c7w4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-29w9-rxvw-c7w4", - "modified": "2024-07-05T09:33:44Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T09:33:44Z", "aliases": [ "CVE-2024-39481" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: mc: Fix graph walk in media_pipeline_start\n\nThe graph walk tries to follow all links, even if they are not between\npads. This causes a crash with, e.g. a MEDIA_LNK_FL_ANCILLARY_LINK link.\n\nFix this by allowing the walk to proceed only for MEDIA_LNK_FL_DATA_LINK\nlinks.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T07:15:10Z" diff --git a/advisories/unreviewed/2024/07/GHSA-2c6c-5vmc-49j8/GHSA-2c6c-5vmc-49j8.json b/advisories/unreviewed/2024/07/GHSA-2c6c-5vmc-49j8/GHSA-2c6c-5vmc-49j8.json new file mode 100644 index 00000000000..24aeeece797 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-2c6c-5vmc-49j8/GHSA-2c6c-5vmc-49j8.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2c6c-5vmc-49j8", + "modified": "2024-07-08T18:31:17Z", + "published": "2024-07-08T18:31:17Z", + "aliases": [ + "CVE-2023-49595" + ], + "details": "A stack-based buffer overflow vulnerability exists in the boa rollback_control_code functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of network requests can lead to arbitrary code execution. An attacker can send a sequence of requests to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-49595" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1878" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-2qjj-5hcf-4j4c/GHSA-2qjj-5hcf-4j4c.json b/advisories/unreviewed/2024/07/GHSA-2qjj-5hcf-4j4c/GHSA-2qjj-5hcf-4j4c.json new file mode 100644 index 00000000000..e392d2c2ab3 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-2qjj-5hcf-4j4c/GHSA-2qjj-5hcf-4j4c.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2qjj-5hcf-4j4c", + "modified": "2024-07-08T18:31:18Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2023-50240" + ], + "details": "Two stack-based buffer overflow vulnerabilities exist in the boa set_RadvdInterfaceParam functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of network requests can lead to remote code execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This stack-based buffer overflow is related to the `AdvDefaultPreference` request's parameter.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50240" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1893" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-2rg9-mqj3-xwq5/GHSA-2rg9-mqj3-xwq5.json b/advisories/unreviewed/2024/07/GHSA-2rg9-mqj3-xwq5/GHSA-2rg9-mqj3-xwq5.json new file mode 100644 index 00000000000..a04568669fc --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-2rg9-mqj3-xwq5/GHSA-2rg9-mqj3-xwq5.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2rg9-mqj3-xwq5", + "modified": "2024-07-08T18:31:18Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2023-50381" + ], + "details": "Three os command injection vulnerabilities exist in the boa formWsc functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to arbitrary command execution. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This command injection is related to the `targetAPSsid` request's parameter.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50381" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1899" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-2v2c-wv9c-g6cm/GHSA-2v2c-wv9c-g6cm.json b/advisories/unreviewed/2024/07/GHSA-2v2c-wv9c-g6cm/GHSA-2v2c-wv9c-g6cm.json index de0e4a36afb..7e0edc8ca9c 100644 --- a/advisories/unreviewed/2024/07/GHSA-2v2c-wv9c-g6cm/GHSA-2v2c-wv9c-g6cm.json +++ b/advisories/unreviewed/2024/07/GHSA-2v2c-wv9c-g6cm/GHSA-2v2c-wv9c-g6cm.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2v2c-wv9c-g6cm", - "modified": "2024-07-05T18:34:17Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T18:34:17Z", "aliases": [ "CVE-2024-37769" ], "details": "Insecure permissions in 14Finger v1.1 allow attackers to escalate privileges from normal user to Administrator via a crafted POST request.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T16:15:05Z" diff --git a/advisories/unreviewed/2024/07/GHSA-2x8c-95vh-gfv4/GHSA-2x8c-95vh-gfv4.json b/advisories/unreviewed/2024/07/GHSA-2x8c-95vh-gfv4/GHSA-2x8c-95vh-gfv4.json index 43e7cdd5657..54ae13a8a2a 100644 --- a/advisories/unreviewed/2024/07/GHSA-2x8c-95vh-gfv4/GHSA-2x8c-95vh-gfv4.json +++ b/advisories/unreviewed/2024/07/GHSA-2x8c-95vh-gfv4/GHSA-2x8c-95vh-gfv4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-2x8c-95vh-gfv4", - "modified": "2024-07-06T06:30:52Z", + "modified": "2024-07-08T18:31:15Z", "published": "2024-07-01T15:32:33Z", "aliases": [ "CVE-2024-6387" @@ -200,6 +200,14 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2024/07/04/2" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2024/07/08/2" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2024/07/08/3" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/07/GHSA-32jg-6c46-hc8j/GHSA-32jg-6c46-hc8j.json b/advisories/unreviewed/2024/07/GHSA-32jg-6c46-hc8j/GHSA-32jg-6c46-hc8j.json index 55d8d692e28..9afd1a81d55 100644 --- a/advisories/unreviewed/2024/07/GHSA-32jg-6c46-hc8j/GHSA-32jg-6c46-hc8j.json +++ b/advisories/unreviewed/2024/07/GHSA-32jg-6c46-hc8j/GHSA-32jg-6c46-hc8j.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-32jg-6c46-hc8j", - "modified": "2024-07-05T09:33:44Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T09:33:44Z", "aliases": [ "CVE-2024-39480" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nkdb: Fix buffer overflow during tab-complete\n\nCurrently, when the user attempts symbol completion with the Tab key, kdb\nwill use strncpy() to insert the completed symbol into the command buffer.\nUnfortunately it passes the size of the source buffer rather than the\ndestination to strncpy() with predictably horrible results. Most obviously\nif the command buffer is already full but cp, the cursor position, is in\nthe middle of the buffer, then we will write past the end of the supplied\nbuffer.\n\nFix this by replacing the dubious strncpy() calls with memmove()/memcpy()\ncalls plus explicit boundary checks to make sure we have enough space\nbefore we start moving characters around.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-120" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T07:15:10Z" diff --git a/advisories/unreviewed/2024/07/GHSA-3hv4-r3g6-p2wr/GHSA-3hv4-r3g6-p2wr.json b/advisories/unreviewed/2024/07/GHSA-3hv4-r3g6-p2wr/GHSA-3hv4-r3g6-p2wr.json new file mode 100644 index 00000000000..78f56f53926 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-3hv4-r3g6-p2wr/GHSA-3hv4-r3g6-p2wr.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3hv4-r3g6-p2wr", + "modified": "2024-07-08T18:31:17Z", + "published": "2024-07-08T18:31:17Z", + "aliases": [ + "CVE-2023-48270" + ], + "details": "A stack-based buffer overflow vulnerability exists in the boa formDnsv6 functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of network requests can lead to arbitrary code execution. An attacker can send a sequence of requests to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-48270" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1876" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-3jrg-7968-639r/GHSA-3jrg-7968-639r.json b/advisories/unreviewed/2024/07/GHSA-3jrg-7968-639r/GHSA-3jrg-7968-639r.json new file mode 100644 index 00000000000..8bf8c941328 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-3jrg-7968-639r/GHSA-3jrg-7968-639r.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3jrg-7968-639r", + "modified": "2024-07-08T18:31:18Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2023-50330" + ], + "details": "A stack-based buffer overflow vulnerability exists in the boa getInfo functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to remote code execution. An attacker can send a series of HTTP requests to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50330" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1903" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-4chg-m3pc-3fcm/GHSA-4chg-m3pc-3fcm.json b/advisories/unreviewed/2024/07/GHSA-4chg-m3pc-3fcm/GHSA-4chg-m3pc-3fcm.json new file mode 100644 index 00000000000..09fc8f30ffb --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-4chg-m3pc-3fcm/GHSA-4chg-m3pc-3fcm.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4chg-m3pc-3fcm", + "modified": "2024-07-08T18:31:17Z", + "published": "2024-07-08T18:31:17Z", + "aliases": [ + "CVE-2023-46685" + ], + "details": "A hard-coded password vulnerability exists in the telnetd functionality of LevelOne WBR-6013 RER4_A_v3411b_2T2R_LEV_09_170623. A set of specially crafted network packets can lead to arbitrary command execution.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-46685" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1871" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-259" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-4f2h-f89q-3w95/GHSA-4f2h-f89q-3w95.json b/advisories/unreviewed/2024/07/GHSA-4f2h-f89q-3w95/GHSA-4f2h-f89q-3w95.json new file mode 100644 index 00000000000..6f48d5c6cf9 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-4f2h-f89q-3w95/GHSA-4f2h-f89q-3w95.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4f2h-f89q-3w95", + "modified": "2024-07-08T18:31:18Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2024-6564" + ], + "details": "Buffer overflow in \"rcar_dev_init\" due to using due to using untrusted data (rcar_image_number) as a loop counter before verifying it against RCAR_MAX_BL3X_IMAGE. This could lead to a full bypass of secure boot.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6564" + }, + { + "type": "WEB", + "url": "https://github.com/renesas-rcar/arm-trusted-firmware/commit/c9fb3558410032d2660c7f3b7d4b87dec09fe2f2" + }, + { + "type": "WEB", + "url": "https://asrg.io/security-advisories/cve-2024-6564" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-120" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-4h39-wwj7-hq2m/GHSA-4h39-wwj7-hq2m.json b/advisories/unreviewed/2024/07/GHSA-4h39-wwj7-hq2m/GHSA-4h39-wwj7-hq2m.json index 5d99aca3682..9ce36d9e6ca 100644 --- a/advisories/unreviewed/2024/07/GHSA-4h39-wwj7-hq2m/GHSA-4h39-wwj7-hq2m.json +++ b/advisories/unreviewed/2024/07/GHSA-4h39-wwj7-hq2m/GHSA-4h39-wwj7-hq2m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4h39-wwj7-hq2m", - "modified": "2024-07-05T09:33:44Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T09:33:44Z", "aliases": [ "CVE-2024-39475" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nfbdev: savage: Handle err return when savagefb_check_var failed\n\nThe commit 04e5eac8f3ab(\"fbdev: savage: Error out if pixclock equals zero\")\nchecks the value of pixclock to avoid divide-by-zero error. However\nthe function savagefb_probe doesn't handle the error return of\nsavagefb_check_var. When pixclock is 0, it will cause divide-by-zero error.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-369" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T07:15:10Z" diff --git a/advisories/unreviewed/2024/07/GHSA-4m48-vrcx-46f2/GHSA-4m48-vrcx-46f2.json b/advisories/unreviewed/2024/07/GHSA-4m48-vrcx-46f2/GHSA-4m48-vrcx-46f2.json index f744b7ec944..d186833aa65 100644 --- a/advisories/unreviewed/2024/07/GHSA-4m48-vrcx-46f2/GHSA-4m48-vrcx-46f2.json +++ b/advisories/unreviewed/2024/07/GHSA-4m48-vrcx-46f2/GHSA-4m48-vrcx-46f2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4m48-vrcx-46f2", - "modified": "2024-07-05T15:32:06Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T15:32:06Z", "aliases": [ "CVE-2024-39028" ], "details": "An issue was discovered in SeaCMS <=12.9 which allows remote attackers to execute arbitrary code via admin_ping.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T14:15:03Z" diff --git a/advisories/unreviewed/2024/07/GHSA-568c-fr2c-8m5p/GHSA-568c-fr2c-8m5p.json b/advisories/unreviewed/2024/07/GHSA-568c-fr2c-8m5p/GHSA-568c-fr2c-8m5p.json index 013a8a3b68e..81d2ec11934 100644 --- a/advisories/unreviewed/2024/07/GHSA-568c-fr2c-8m5p/GHSA-568c-fr2c-8m5p.json +++ b/advisories/unreviewed/2024/07/GHSA-568c-fr2c-8m5p/GHSA-568c-fr2c-8m5p.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-568c-fr2c-8m5p", - "modified": "2024-07-05T09:33:44Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T09:33:44Z", "aliases": [ "CVE-2024-39472" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nxfs: fix log recovery buffer allocation for the legacy h_size fixup\n\nCommit a70f9fe52daa (\"xfs: detect and handle invalid iclog size set by\nmkfs\") added a fixup for incorrect h_size values used for the initial\numount record in old xfsprogs versions. Later commit 0c771b99d6c9\n(\"xfs: clean up calculation of LR header blocks\") cleaned up the log\nreover buffer calculation, but stoped using the fixed up h_size value\nto size the log recovery buffer, which can lead to an out of bounds\naccess when the incorrect h_size does not come from the old mkfs\ntool, but a fuzzer.\n\nFix this by open coding xlog_logrec_hblks and taking the fixed h_size\ninto account for this calculation.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-770" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T07:15:10Z" diff --git a/advisories/unreviewed/2024/07/GHSA-57c8-xcw6-x8h7/GHSA-57c8-xcw6-x8h7.json b/advisories/unreviewed/2024/07/GHSA-57c8-xcw6-x8h7/GHSA-57c8-xcw6-x8h7.json new file mode 100644 index 00000000000..913a07ff534 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-57c8-xcw6-x8h7/GHSA-57c8-xcw6-x8h7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-57c8-xcw6-x8h7", + "modified": "2024-07-08T18:31:18Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2023-50239" + ], + "details": "Two stack-based buffer overflow vulnerabilities exist in the boa set_RadvdInterfaceParam functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of network requests can lead to remote code execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This stack-based buffer overflow is related to the `interfacename` request's parameter.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50239" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1893" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-5cwv-6xqx-92m5/GHSA-5cwv-6xqx-92m5.json b/advisories/unreviewed/2024/07/GHSA-5cwv-6xqx-92m5/GHSA-5cwv-6xqx-92m5.json index c1d9a7cde33..ebfd429709b 100644 --- a/advisories/unreviewed/2024/07/GHSA-5cwv-6xqx-92m5/GHSA-5cwv-6xqx-92m5.json +++ b/advisories/unreviewed/2024/07/GHSA-5cwv-6xqx-92m5/GHSA-5cwv-6xqx-92m5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5cwv-6xqx-92m5", - "modified": "2024-07-03T00:34:11Z", + "modified": "2024-07-08T18:31:15Z", "published": "2024-07-02T21:32:15Z", "aliases": [ "CVE-2024-4467" @@ -33,6 +33,18 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:4278" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:4372" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:4373" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:4374" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-4467" diff --git a/advisories/unreviewed/2024/07/GHSA-5f4x-hwv2-w9w2/GHSA-5f4x-hwv2-w9w2.json b/advisories/unreviewed/2024/07/GHSA-5f4x-hwv2-w9w2/GHSA-5f4x-hwv2-w9w2.json index 99f4cceaa46..ab8179f2937 100644 --- a/advisories/unreviewed/2024/07/GHSA-5f4x-hwv2-w9w2/GHSA-5f4x-hwv2-w9w2.json +++ b/advisories/unreviewed/2024/07/GHSA-5f4x-hwv2-w9w2/GHSA-5f4x-hwv2-w9w2.json @@ -36,7 +36,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-284" + "CWE-284", + "CWE-78" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/07/GHSA-5mvx-hm4v-mrqg/GHSA-5mvx-hm4v-mrqg.json b/advisories/unreviewed/2024/07/GHSA-5mvx-hm4v-mrqg/GHSA-5mvx-hm4v-mrqg.json new file mode 100644 index 00000000000..9c47de9c8ce --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-5mvx-hm4v-mrqg/GHSA-5mvx-hm4v-mrqg.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5mvx-hm4v-mrqg", + "modified": "2024-07-08T18:31:18Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2024-6563" + ], + "details": "Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Renesas arm-trusted-firmware allows Local Execution of Code. This vulnerability is associated with program files https://github.Com/renesas-rcar/arm-trusted-firmware/blob/rcar_gen3_v2.5/drivers/renesas/common/io/i... https://github.Com/renesas-rcar/arm-trusted-firmware/blob/rcar_gen3_v2.5/drivers/renesas/common/io/io_rcar.C .\n\n\n\n\nIn line 313 \"addr_loaded_cnt\" is checked not to be \"CHECK_IMAGE_AREA_CNT\" (5) or larger, this check does not halt the function. Immediately after (line 317) there will be an overflow in the buffer and the value of \"dst\" will be written to the area immediately after the buffer, which is \"addr_loaded_cnt\". This will allow an attacker to freely control the value of \"addr_loaded_cnt\" and thus control the destination of the write immediately after (line 318). The write in line 318 will then be fully controlled by said attacker, with whichever address and whichever value (\"len\") they desire.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6563" + }, + { + "type": "WEB", + "url": "https://github.com/renesas-rcar/arm-trusted-firmware/commit/235f85b654a031f7647e81b86fc8e4ffeb430164" + }, + { + "type": "WEB", + "url": "https://asrg.io/security-advisories/cve-2024-6563" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-120" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-5mxx-vm3f-3vgh/GHSA-5mxx-vm3f-3vgh.json b/advisories/unreviewed/2024/07/GHSA-5mxx-vm3f-3vgh/GHSA-5mxx-vm3f-3vgh.json new file mode 100644 index 00000000000..96853ac0691 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-5mxx-vm3f-3vgh/GHSA-5mxx-vm3f-3vgh.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5mxx-vm3f-3vgh", + "modified": "2024-07-08T18:31:17Z", + "published": "2024-07-08T18:31:17Z", + "aliases": [ + "CVE-2023-49593" + ], + "details": "Leftover debug code exists in the boa formSysCmd functionality of LevelOne WBR-6013 RER4_A_v3411b_2T2R_LEV_09_170623. A specially crafted network request can lead to arbitrary command execution.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-49593" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1873" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-489" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-5qj7-735j-qhqj/GHSA-5qj7-735j-qhqj.json b/advisories/unreviewed/2024/07/GHSA-5qj7-735j-qhqj/GHSA-5qj7-735j-qhqj.json index 5b517541f39..bfdc7dca908 100644 --- a/advisories/unreviewed/2024/07/GHSA-5qj7-735j-qhqj/GHSA-5qj7-735j-qhqj.json +++ b/advisories/unreviewed/2024/07/GHSA-5qj7-735j-qhqj/GHSA-5qj7-735j-qhqj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5qj7-735j-qhqj", - "modified": "2024-07-05T18:34:17Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T18:34:17Z", "aliases": [ "CVE-2024-29318" ], "details": "Volmarg Personal Management System 1.4.64 is vulnerable to stored cross site scripting (XSS) via upload of a SVG file with embedded javascript code.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T16:15:04Z" diff --git a/advisories/unreviewed/2024/07/GHSA-638w-x7fx-cgrj/GHSA-638w-x7fx-cgrj.json b/advisories/unreviewed/2024/07/GHSA-638w-x7fx-cgrj/GHSA-638w-x7fx-cgrj.json index a13d7bcc86d..96f5d608fea 100644 --- a/advisories/unreviewed/2024/07/GHSA-638w-x7fx-cgrj/GHSA-638w-x7fx-cgrj.json +++ b/advisories/unreviewed/2024/07/GHSA-638w-x7fx-cgrj/GHSA-638w-x7fx-cgrj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-638w-x7fx-cgrj", - "modified": "2024-07-05T03:30:42Z", + "modified": "2024-07-08T18:31:15Z", "published": "2024-07-05T03:30:42Z", "aliases": [ "CVE-2024-34481" ], "details": "drupal-wiki.com Drupal Wiki before 8.31.1 allows XSS via comments, captions, and image titles of a Wiki page.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T02:15:09Z" diff --git a/advisories/unreviewed/2024/07/GHSA-6f22-c225-fcxm/GHSA-6f22-c225-fcxm.json b/advisories/unreviewed/2024/07/GHSA-6f22-c225-fcxm/GHSA-6f22-c225-fcxm.json new file mode 100644 index 00000000000..4bb13a25f4b --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-6f22-c225-fcxm/GHSA-6f22-c225-fcxm.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6f22-c225-fcxm", + "modified": "2024-07-08T18:31:18Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2023-50383" + ], + "details": "Three os command injection vulnerabilities exist in the boa formWsc functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to arbitrary command execution. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This command injection is related to the `localPin` request's parameter.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50383" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1899" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-6fc2-jr2c-4p94/GHSA-6fc2-jr2c-4p94.json b/advisories/unreviewed/2024/07/GHSA-6fc2-jr2c-4p94/GHSA-6fc2-jr2c-4p94.json new file mode 100644 index 00000000000..43d11172d69 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-6fc2-jr2c-4p94/GHSA-6fc2-jr2c-4p94.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6fc2-jr2c-4p94", + "modified": "2024-07-08T18:31:17Z", + "published": "2024-07-08T18:31:17Z", + "aliases": [ + "CVE-2023-34435" + ], + "details": "A firmware update vulnerability exists in the boa formUpload functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted network packets can lead to arbitrary firmware update. An attacker can provide a malicious file to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34435" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1874" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-347" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-6gfx-cx3g-jx7c/GHSA-6gfx-cx3g-jx7c.json b/advisories/unreviewed/2024/07/GHSA-6gfx-cx3g-jx7c/GHSA-6gfx-cx3g-jx7c.json index 5e6abc9828a..30e1d7a820f 100644 --- a/advisories/unreviewed/2024/07/GHSA-6gfx-cx3g-jx7c/GHSA-6gfx-cx3g-jx7c.json +++ b/advisories/unreviewed/2024/07/GHSA-6gfx-cx3g-jx7c/GHSA-6gfx-cx3g-jx7c.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6gfx-cx3g-jx7c", - "modified": "2024-07-05T09:33:44Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T09:33:44Z", "aliases": [ "CVE-2024-39485" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: v4l: async: Properly re-initialise notifier entry in unregister\n\nThe notifier_entry of a notifier is not re-initialised after unregistering\nthe notifier. This leads to dangling pointers being left there so use\nlist_del_init() to return the notifier_entry an empty list.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-665" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T07:15:10Z" diff --git a/advisories/unreviewed/2024/07/GHSA-74q6-xqm8-hxcj/GHSA-74q6-xqm8-hxcj.json b/advisories/unreviewed/2024/07/GHSA-74q6-xqm8-hxcj/GHSA-74q6-xqm8-hxcj.json new file mode 100644 index 00000000000..0e4dfe29f3f --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-74q6-xqm8-hxcj/GHSA-74q6-xqm8-hxcj.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-74q6-xqm8-hxcj", + "modified": "2024-07-08T18:31:18Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2024-31504" + ], + "details": "Buffer Overflow vulnerability in SILA Embedded Solutions GmbH freemodbus v.2018-09-12 allows a remtoe attacker to cause a denial of service via the LINUXTCP server component.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-31504" + }, + { + "type": "WEB", + "url": "https://gist.github.com/CAPCOMIN/a0361511068dce21a557cf9fa01d0a02" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-76gm-vjp3-ccm7/GHSA-76gm-vjp3-ccm7.json b/advisories/unreviewed/2024/07/GHSA-76gm-vjp3-ccm7/GHSA-76gm-vjp3-ccm7.json new file mode 100644 index 00000000000..608585bb886 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-76gm-vjp3-ccm7/GHSA-76gm-vjp3-ccm7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-76gm-vjp3-ccm7", + "modified": "2024-07-08T18:31:17Z", + "published": "2024-07-08T18:31:17Z", + "aliases": [ + "CVE-2023-47856" + ], + "details": "A stack-based buffer overflow vulnerability exists in the boa set_RadvdPrefixParam functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of network requests can lead to remote code execution. An attacker can send a sequence of requests to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-47856" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1892" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-78wj-996p-5487/GHSA-78wj-996p-5487.json b/advisories/unreviewed/2024/07/GHSA-78wj-996p-5487/GHSA-78wj-996p-5487.json new file mode 100644 index 00000000000..850aa897325 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-78wj-996p-5487/GHSA-78wj-996p-5487.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-78wj-996p-5487", + "modified": "2024-07-08T18:31:17Z", + "published": "2024-07-08T18:31:17Z", + "aliases": [ + "CVE-2023-49073" + ], + "details": "A stack-based buffer overflow vulnerability exists in the boa formFilter functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to arbitrary code execution. An attacker can send a sequence of requests to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-49073" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1875" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-79hg-h6r6-64mm/GHSA-79hg-h6r6-64mm.json b/advisories/unreviewed/2024/07/GHSA-79hg-h6r6-64mm/GHSA-79hg-h6r6-64mm.json new file mode 100644 index 00000000000..cc28073dcfc --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-79hg-h6r6-64mm/GHSA-79hg-h6r6-64mm.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-79hg-h6r6-64mm", + "modified": "2024-07-08T18:31:19Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2024-6409" + ], + "details": "A signal handler race condition vulnerability was found in OpenSSH's server (sshd), where a client does not authenticate within LoginGraceTime seconds (120 by default, 600 in old OpenSSH versions), then sshd's SIGALRM handler is called asynchronously. However, this signal handler calls various functions that are not async-signal-safe, for example, syslog(). This issue leaves it vulnerable to a signal handler race condition on the cleanup_exit() function, which introduces the same vulnerability as CVE-2024-6387 in the unprivileged child of the SSHD server.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6409" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/security/cve/CVE-2024-6409" + }, + { + "type": "WEB", + "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2295085" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2024/07/08/2" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-364" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T18:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-7q4j-f74f-6h5j/GHSA-7q4j-f74f-6h5j.json b/advisories/unreviewed/2024/07/GHSA-7q4j-f74f-6h5j/GHSA-7q4j-f74f-6h5j.json index 89704a9e38d..268256ebd89 100644 --- a/advisories/unreviewed/2024/07/GHSA-7q4j-f74f-6h5j/GHSA-7q4j-f74f-6h5j.json +++ b/advisories/unreviewed/2024/07/GHSA-7q4j-f74f-6h5j/GHSA-7q4j-f74f-6h5j.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7q4j-f74f-6h5j", - "modified": "2024-07-05T03:30:41Z", + "modified": "2024-07-08T18:31:15Z", "published": "2024-07-05T03:30:41Z", "aliases": [ "CVE-2023-52340" ], "details": "The IPv6 implementation in the Linux kernel before 6.3 has a net/ipv6/route.c max_size threshold that can be consumed easily, e.g., leading to a denial of service (network is unreachable errors) when IPv6 packets are sent in a loop via a raw socket.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T02:15:09Z" diff --git a/advisories/unreviewed/2024/07/GHSA-7xfq-9m67-9j5j/GHSA-7xfq-9m67-9j5j.json b/advisories/unreviewed/2024/07/GHSA-7xfq-9m67-9j5j/GHSA-7xfq-9m67-9j5j.json index 81b64b2509e..e5ae0d40e7b 100644 --- a/advisories/unreviewed/2024/07/GHSA-7xfq-9m67-9j5j/GHSA-7xfq-9m67-9j5j.json +++ b/advisories/unreviewed/2024/07/GHSA-7xfq-9m67-9j5j/GHSA-7xfq-9m67-9j5j.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7xfq-9m67-9j5j", - "modified": "2024-07-05T03:30:42Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T03:30:42Z", "aliases": [ "CVE-2024-36041" ], "details": "KSmserver in KDE Plasma Workspace (aka plasma-workspace) before 5.27.11.1 and 6.x before 6.0.5.1 allows connections via ICE based purely on the host, i.e., all local connections are accepted. This allows another user on the same machine to gain access to the session manager, e.g., use the session-restore feature to execute arbitrary code as the victim (on the next boot) via earlier use of the /tmp directory.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T02:15:10Z" diff --git a/advisories/unreviewed/2024/07/GHSA-8gfm-8wff-rjvj/GHSA-8gfm-8wff-rjvj.json b/advisories/unreviewed/2024/07/GHSA-8gfm-8wff-rjvj/GHSA-8gfm-8wff-rjvj.json index 569f765a771..16ca4330902 100644 --- a/advisories/unreviewed/2024/07/GHSA-8gfm-8wff-rjvj/GHSA-8gfm-8wff-rjvj.json +++ b/advisories/unreviewed/2024/07/GHSA-8gfm-8wff-rjvj/GHSA-8gfm-8wff-rjvj.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-367" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/07/GHSA-8m6g-73m4-9jxj/GHSA-8m6g-73m4-9jxj.json b/advisories/unreviewed/2024/07/GHSA-8m6g-73m4-9jxj/GHSA-8m6g-73m4-9jxj.json new file mode 100644 index 00000000000..b0904bd91f2 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-8m6g-73m4-9jxj/GHSA-8m6g-73m4-9jxj.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8m6g-73m4-9jxj", + "modified": "2024-07-08T18:31:18Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2024-39203" + ], + "details": "A cross-site scripting (XSS) vulnerability in the Backend Theme Management module of Z-BlogPHP v1.7.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-39203" + }, + { + "type": "WEB", + "url": "https://github.com/5r1an/CVE-2024-39203/issues/1" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-927f-2f7r-vg99/GHSA-927f-2f7r-vg99.json b/advisories/unreviewed/2024/07/GHSA-927f-2f7r-vg99/GHSA-927f-2f7r-vg99.json index 4ad6bd62324..cd7cf0f5c86 100644 --- a/advisories/unreviewed/2024/07/GHSA-927f-2f7r-vg99/GHSA-927f-2f7r-vg99.json +++ b/advisories/unreviewed/2024/07/GHSA-927f-2f7r-vg99/GHSA-927f-2f7r-vg99.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-927f-2f7r-vg99", - "modified": "2024-07-05T18:34:18Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T18:34:17Z", "aliases": [ "CVE-2024-39210" ], "details": "Best House Rental Management System v1.0 was discovered to contain an arbitrary file read vulnerability via the Page parameter at index.php. This vulnerability allows attackers to read arbitrary PHP files and access other sensitive information within the application.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T16:15:05Z" diff --git a/advisories/unreviewed/2024/07/GHSA-9jxr-3g3h-9m36/GHSA-9jxr-3g3h-9m36.json b/advisories/unreviewed/2024/07/GHSA-9jxr-3g3h-9m36/GHSA-9jxr-3g3h-9m36.json index 5b5f6fb1beb..50bfeadd03c 100644 --- a/advisories/unreviewed/2024/07/GHSA-9jxr-3g3h-9m36/GHSA-9jxr-3g3h-9m36.json +++ b/advisories/unreviewed/2024/07/GHSA-9jxr-3g3h-9m36/GHSA-9jxr-3g3h-9m36.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9jxr-3g3h-9m36", - "modified": "2024-07-05T18:34:17Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T18:34:17Z", "aliases": [ "CVE-2024-23997" ], "details": "Lukas Bach yana =<1.0.16 is vulnerable to Cross Site Scripting (XSS) via src/electron-main.ts.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T16:15:04Z" diff --git a/advisories/unreviewed/2024/07/GHSA-9vwx-mwx6-73vm/GHSA-9vwx-mwx6-73vm.json b/advisories/unreviewed/2024/07/GHSA-9vwx-mwx6-73vm/GHSA-9vwx-mwx6-73vm.json new file mode 100644 index 00000000000..b28b1201d13 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-9vwx-mwx6-73vm/GHSA-9vwx-mwx6-73vm.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9vwx-mwx6-73vm", + "modified": "2024-07-08T18:31:17Z", + "published": "2024-07-08T18:31:17Z", + "aliases": [ + "CVE-2023-41251" + ], + "details": "A stack-based buffer overflow vulnerability exists in the boa formRoute functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to remote code execution. An attacker can send an HTTP request to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-41251" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1894" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-cmq9-qx35-rrm2/GHSA-cmq9-qx35-rrm2.json b/advisories/unreviewed/2024/07/GHSA-cmq9-qx35-rrm2/GHSA-cmq9-qx35-rrm2.json new file mode 100644 index 00000000000..8fb246e63bf --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-cmq9-qx35-rrm2/GHSA-cmq9-qx35-rrm2.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cmq9-qx35-rrm2", + "modified": "2024-07-08T18:31:18Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2024-23562" + ], + "details": "A security vulnerability in HCL Domino could allow disclosure of sensitive configuration information. A remote unauthenticated attacker could exploit this vulnerability to obtain information to launch further attacks against the affected system.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-23562" + }, + { + "type": "WEB", + "url": "https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0113822" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-f33q-f757-3cjh/GHSA-f33q-f757-3cjh.json b/advisories/unreviewed/2024/07/GHSA-f33q-f757-3cjh/GHSA-f33q-f757-3cjh.json index 8048898bd4c..b3fde3aeb91 100644 --- a/advisories/unreviewed/2024/07/GHSA-f33q-f757-3cjh/GHSA-f33q-f757-3cjh.json +++ b/advisories/unreviewed/2024/07/GHSA-f33q-f757-3cjh/GHSA-f33q-f757-3cjh.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f33q-f757-3cjh", - "modified": "2024-07-05T18:34:17Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T18:34:17Z", "aliases": [ "CVE-2024-37768" ], "details": "14Finger v1.1 was discovered to contain an arbitrary user deletion vulnerability via the component /api/admin/user?id.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T16:15:05Z" diff --git a/advisories/unreviewed/2024/07/GHSA-fpvc-fj96-p4xw/GHSA-fpvc-fj96-p4xw.json b/advisories/unreviewed/2024/07/GHSA-fpvc-fj96-p4xw/GHSA-fpvc-fj96-p4xw.json new file mode 100644 index 00000000000..7350688d245 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-fpvc-fj96-p4xw/GHSA-fpvc-fj96-p4xw.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fpvc-fj96-p4xw", + "modified": "2024-07-08T18:31:17Z", + "published": "2024-07-08T18:31:17Z", + "aliases": [ + "CVE-2023-45742" + ], + "details": "An integer overflow vulnerability exists in the boa updateConfigIntoFlash functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to arbitrary code execution. An attacker can send a sequence of requests to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-45742" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1877" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-190" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-fv4p-hrvc-c34g/GHSA-fv4p-hrvc-c34g.json b/advisories/unreviewed/2024/07/GHSA-fv4p-hrvc-c34g/GHSA-fv4p-hrvc-c34g.json new file mode 100644 index 00000000000..287e7562107 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-fv4p-hrvc-c34g/GHSA-fv4p-hrvc-c34g.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fv4p-hrvc-c34g", + "modified": "2024-07-08T18:31:18Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2024-1305" + ], + "details": "tap-windows6 driver version 9.26 and earlier does not properly \ncheck the size data of incomming write operations which an attacker can \nuse to overflow memory buffers, resulting in a bug check and potentially\n arbitrary code execution in kernel space", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1305" + }, + { + "type": "WEB", + "url": "https://community.openvpn.net/openvpn/wiki/CVE-2024-1305" + }, + { + "type": "WEB", + "url": "https://www.mail-archive.com/openvpn-users@lists.sourceforge.net/msg07534.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-190" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T18:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-g9g3-2xqr-578p/GHSA-g9g3-2xqr-578p.json b/advisories/unreviewed/2024/07/GHSA-g9g3-2xqr-578p/GHSA-g9g3-2xqr-578p.json index 487bfaa3dcf..a3149169c5a 100644 --- a/advisories/unreviewed/2024/07/GHSA-g9g3-2xqr-578p/GHSA-g9g3-2xqr-578p.json +++ b/advisories/unreviewed/2024/07/GHSA-g9g3-2xqr-578p/GHSA-g9g3-2xqr-578p.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-g9g3-2xqr-578p", - "modified": "2024-07-05T18:34:17Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T18:34:17Z", "aliases": [ "CVE-2024-23998" ], "details": "goanother Another Redis Desktop Manager =<1.6.1 is vulnerable to Cross Site Scripting (XSS) via src/components/Setting.vue.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T16:15:04Z" diff --git a/advisories/unreviewed/2024/07/GHSA-gp73-3ff5-pfqm/GHSA-gp73-3ff5-pfqm.json b/advisories/unreviewed/2024/07/GHSA-gp73-3ff5-pfqm/GHSA-gp73-3ff5-pfqm.json new file mode 100644 index 00000000000..b6a916c16e9 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-gp73-3ff5-pfqm/GHSA-gp73-3ff5-pfqm.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gp73-3ff5-pfqm", + "modified": "2024-07-08T18:31:18Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2024-4882" + ], + "details": "The user may be redirected to an arbitrary site in Sitefinity 15.1.8321.0 and previous versions.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4882" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/Open-Redirect-vulnerability-CVE-2024-4882" + }, + { + "type": "WEB", + "url": "https://www.progress.com/sitefinity-cms" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-601" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T18:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-h9fh-4377-wfq4/GHSA-h9fh-4377-wfq4.json b/advisories/unreviewed/2024/07/GHSA-h9fh-4377-wfq4/GHSA-h9fh-4377-wfq4.json index 9160c4afd20..13b8645b34d 100644 --- a/advisories/unreviewed/2024/07/GHSA-h9fh-4377-wfq4/GHSA-h9fh-4377-wfq4.json +++ b/advisories/unreviewed/2024/07/GHSA-h9fh-4377-wfq4/GHSA-h9fh-4377-wfq4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-h9fh-4377-wfq4", - "modified": "2024-07-05T09:33:44Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T09:33:44Z", "aliases": [ "CVE-2024-39474" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmm/vmalloc: fix vmalloc which may return null if called with __GFP_NOFAIL\n\ncommit a421ef303008 (\"mm: allow !GFP_KERNEL allocations for kvmalloc\")\nincludes support for __GFP_NOFAIL, but it presents a conflict with commit\ndd544141b9eb (\"vmalloc: back off when the current task is OOM-killed\"). A\npossible scenario is as follows:\n\nprocess-a\n__vmalloc_node_range(GFP_KERNEL | __GFP_NOFAIL)\n __vmalloc_area_node()\n vm_area_alloc_pages()\n\t\t--> oom-killer send SIGKILL to process-a\n if (fatal_signal_pending(current)) break;\n--> return NULL;\n\nTo fix this, do not check fatal_signal_pending() in vm_area_alloc_pages()\nif __GFP_NOFAIL set.\n\nThis issue occurred during OPLUS KASAN TEST. Below is part of the log\n-> oom-killer sends signal to process\n[65731.222840] [ T1308] oom-kill:constraint=CONSTRAINT_NONE,nodemask=(null),cpuset=/,mems_allowed=0,global_oom,task_memcg=/apps/uid_10198,task=gs.intelligence,pid=32454,uid=10198\n\n[65731.259685] [T32454] Call trace:\n[65731.259698] [T32454] dump_backtrace+0xf4/0x118\n[65731.259734] [T32454] show_stack+0x18/0x24\n[65731.259756] [T32454] dump_stack_lvl+0x60/0x7c\n[65731.259781] [T32454] dump_stack+0x18/0x38\n[65731.259800] [T32454] mrdump_common_die+0x250/0x39c [mrdump]\n[65731.259936] [T32454] ipanic_die+0x20/0x34 [mrdump]\n[65731.260019] [T32454] atomic_notifier_call_chain+0xb4/0xfc\n[65731.260047] [T32454] notify_die+0x114/0x198\n[65731.260073] [T32454] die+0xf4/0x5b4\n[65731.260098] [T32454] die_kernel_fault+0x80/0x98\n[65731.260124] [T32454] __do_kernel_fault+0x160/0x2a8\n[65731.260146] [T32454] do_bad_area+0x68/0x148\n[65731.260174] [T32454] do_mem_abort+0x151c/0x1b34\n[65731.260204] [T32454] el1_abort+0x3c/0x5c\n[65731.260227] [T32454] el1h_64_sync_handler+0x54/0x90\n[65731.260248] [T32454] el1h_64_sync+0x68/0x6c\n\n[65731.260269] [T32454] z_erofs_decompress_queue+0x7f0/0x2258\n--> be->decompressed_pages = kvcalloc(be->nr_pages, sizeof(struct page *), GFP_KERNEL | __GFP_NOFAIL);\n\tkernel panic by NULL pointer dereference.\n\terofs assume kvmalloc with __GFP_NOFAIL never return NULL.\n[65731.260293] [T32454] z_erofs_runqueue+0xf30/0x104c\n[65731.260314] [T32454] z_erofs_readahead+0x4f0/0x968\n[65731.260339] [T32454] read_pages+0x170/0xadc\n[65731.260364] [T32454] page_cache_ra_unbounded+0x874/0xf30\n[65731.260388] [T32454] page_cache_ra_order+0x24c/0x714\n[65731.260411] [T32454] filemap_fault+0xbf0/0x1a74\n[65731.260437] [T32454] __do_fault+0xd0/0x33c\n[65731.260462] [T32454] handle_mm_fault+0xf74/0x3fe0\n[65731.260486] [T32454] do_mem_abort+0x54c/0x1b34\n[65731.260509] [T32454] el0_da+0x44/0x94\n[65731.260531] [T32454] el0t_64_sync_handler+0x98/0xb4\n[65731.260553] [T32454] el0t_64_sync+0x198/0x19c", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-770" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T07:15:10Z" diff --git a/advisories/unreviewed/2024/07/GHSA-hx8j-p33g-vmxv/GHSA-hx8j-p33g-vmxv.json b/advisories/unreviewed/2024/07/GHSA-hx8j-p33g-vmxv/GHSA-hx8j-p33g-vmxv.json index 0a89978227f..27e5dc87913 100644 --- a/advisories/unreviewed/2024/07/GHSA-hx8j-p33g-vmxv/GHSA-hx8j-p33g-vmxv.json +++ b/advisories/unreviewed/2024/07/GHSA-hx8j-p33g-vmxv/GHSA-hx8j-p33g-vmxv.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hx8j-p33g-vmxv", - "modified": "2024-07-05T18:34:17Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T18:34:17Z", "aliases": [ "CVE-2024-29319" ], "details": "Volmarg Personal Management System 1.4.64 is vulnerable to SSRF (Server Side Request Forgery) via uploading a SVG file. The server can make unintended HTTP and DNS requests to a server that the attacker controls.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-918" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T16:15:04Z" diff --git a/advisories/unreviewed/2024/07/GHSA-jx29-mm4x-qpqh/GHSA-jx29-mm4x-qpqh.json b/advisories/unreviewed/2024/07/GHSA-jx29-mm4x-qpqh/GHSA-jx29-mm4x-qpqh.json index d49390dcf7f..7a889ee5c41 100644 --- a/advisories/unreviewed/2024/07/GHSA-jx29-mm4x-qpqh/GHSA-jx29-mm4x-qpqh.json +++ b/advisories/unreviewed/2024/07/GHSA-jx29-mm4x-qpqh/GHSA-jx29-mm4x-qpqh.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jx29-mm4x-qpqh", - "modified": "2024-07-05T09:33:44Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T09:33:44Z", "aliases": [ "CVE-2024-39483" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: SVM: WARN on vNMI + NMI window iff NMIs are outright masked\n\nWhen requesting an NMI window, WARN on vNMI support being enabled if and\nonly if NMIs are actually masked, i.e. if the vCPU is already handling an\nNMI. KVM's ABI for NMIs that arrive simultanesouly (from KVM's point of\nview) is to inject one NMI and pend the other. When using vNMI, KVM pends\nthe second NMI simply by setting V_NMI_PENDING, and lets the CPU do the\nrest (hardware automatically sets V_NMI_BLOCKING when an NMI is injected).\n\nHowever, if KVM can't immediately inject an NMI, e.g. because the vCPU is\nin an STI shadow or is running with GIF=0, then KVM will request an NMI\nwindow and trigger the WARN (but still function correctly).\n\nWhether or not the GIF=0 case makes sense is debatable, as the intent of\nKVM's behavior is to provide functionality that is as close to real\nhardware as possible. E.g. if two NMIs are sent in quick succession, the\nprobability of both NMIs arriving in an STI shadow is infinitesimally low\non real hardware, but significantly larger in a virtual environment, e.g.\nif the vCPU is preempted in the STI shadow. For GIF=0, the argument isn't\nas clear cut, because the window where two NMIs can collide is much larger\nin bare metal (though still small).\n\nThat said, KVM should not have divergent behavior for the GIF=0 case based\non whether or not vNMI support is enabled. And KVM has allowed\nsimultaneous NMIs with GIF=0 for over a decade, since commit 7460fb4a3400\n(\"KVM: Fix simultaneous NMIs\"). I.e. KVM's GIF=0 handling shouldn't be\nmodified without a *really* good reason to do so, and if KVM's behavior\nwere to be modified, it should be done irrespective of vNMI support.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T07:15:10Z" diff --git a/advisories/unreviewed/2024/07/GHSA-mj2c-vqcj-67qc/GHSA-mj2c-vqcj-67qc.json b/advisories/unreviewed/2024/07/GHSA-mj2c-vqcj-67qc/GHSA-mj2c-vqcj-67qc.json index 8edba6ff59b..b9828992eba 100644 --- a/advisories/unreviewed/2024/07/GHSA-mj2c-vqcj-67qc/GHSA-mj2c-vqcj-67qc.json +++ b/advisories/unreviewed/2024/07/GHSA-mj2c-vqcj-67qc/GHSA-mj2c-vqcj-67qc.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mj2c-vqcj-67qc", - "modified": "2024-07-05T12:31:01Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T12:31:01Z", "aliases": [ "CVE-2024-6209" ], "details": "Unauthorized file access in WEB Server in ABB ASPECT - Enterprise v <=3.08.01; NEXUS Series\n\n v <=3.08.01\n\n; MATRIX Series \n\n v<=3.08.01 allows Attacker to access files unauthorized", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:I/V:C/RE:H/U:Red" diff --git a/advisories/unreviewed/2024/07/GHSA-p42v-6r34-hjg9/GHSA-p42v-6r34-hjg9.json b/advisories/unreviewed/2024/07/GHSA-p42v-6r34-hjg9/GHSA-p42v-6r34-hjg9.json new file mode 100644 index 00000000000..ca0a31c1a79 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-p42v-6r34-hjg9/GHSA-p42v-6r34-hjg9.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p42v-6r34-hjg9", + "modified": "2024-07-08T18:31:17Z", + "published": "2024-07-08T18:31:17Z", + "aliases": [ + "CVE-2023-45215" + ], + "details": "A stack-based buffer overflow vulnerability exists in the boa setRepeaterSsid functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of network requests can lead to arbitrary code execution. An attacker can send a sequence of requests to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-45215" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1891" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-pjqw-c568-j595/GHSA-pjqw-c568-j595.json b/advisories/unreviewed/2024/07/GHSA-pjqw-c568-j595/GHSA-pjqw-c568-j595.json new file mode 100644 index 00000000000..8d9532f0e75 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-pjqw-c568-j595/GHSA-pjqw-c568-j595.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pjqw-c568-j595", + "modified": "2024-07-08T18:31:18Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2024-21778" + ], + "details": "A heap-based buffer overflow vulnerability exists in the configuration file mib_init_value_array functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted .dat file can lead to arbitrary code execution. An attacker can upload a malicious file to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21778" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2024-1911" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-122" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-pqcx-8276-jv6c/GHSA-pqcx-8276-jv6c.json b/advisories/unreviewed/2024/07/GHSA-pqcx-8276-jv6c/GHSA-pqcx-8276-jv6c.json index cf5412722f0..32168e0b801 100644 --- a/advisories/unreviewed/2024/07/GHSA-pqcx-8276-jv6c/GHSA-pqcx-8276-jv6c.json +++ b/advisories/unreviewed/2024/07/GHSA-pqcx-8276-jv6c/GHSA-pqcx-8276-jv6c.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-pqcx-8276-jv6c", - "modified": "2024-07-05T09:33:44Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T09:33:44Z", "aliases": [ "CVE-2024-39477" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmm/hugetlb: do not call vma_add_reservation upon ENOMEM\n\nsysbot reported a splat [1] on __unmap_hugepage_range(). This is because\nvma_needs_reservation() can return -ENOMEM if\nallocate_file_region_entries() fails to allocate the file_region struct\nfor the reservation.\n\nCheck for that and do not call vma_add_reservation() if that is the case,\notherwise region_abort() and region_del() will see that we do not have any\nfile_regions.\n\nIf we detect that vma_needs_reservation() returned -ENOMEM, we clear the\nhugetlb_restore_reserve flag as if this reservation was still consumed, so\nfree_huge_folio() will not increment the resv count.\n\n[1] https://lore.kernel.org/linux-mm/0000000000004096100617c58d54@google.com/T/#ma5983bc1ab18a54910da83416b3f89f3c7ee43aa", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-770" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T07:15:10Z" diff --git a/advisories/unreviewed/2024/07/GHSA-q745-94ch-rjhg/GHSA-q745-94ch-rjhg.json b/advisories/unreviewed/2024/07/GHSA-q745-94ch-rjhg/GHSA-q745-94ch-rjhg.json index e10e59c9648..8752982d149 100644 --- a/advisories/unreviewed/2024/07/GHSA-q745-94ch-rjhg/GHSA-q745-94ch-rjhg.json +++ b/advisories/unreviewed/2024/07/GHSA-q745-94ch-rjhg/GHSA-q745-94ch-rjhg.json @@ -32,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-22" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/07/GHSA-qgm4-625p-5hgm/GHSA-qgm4-625p-5hgm.json b/advisories/unreviewed/2024/07/GHSA-qgm4-625p-5hgm/GHSA-qgm4-625p-5hgm.json new file mode 100644 index 00000000000..db9ca74b6b0 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-qgm4-625p-5hgm/GHSA-qgm4-625p-5hgm.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qgm4-625p-5hgm", + "modified": "2024-07-08T18:31:17Z", + "published": "2024-07-08T18:31:17Z", + "aliases": [ + "CVE-2023-47677" + ], + "details": "A cross-site request forgery (csrf) vulnerability exists in the boa CSRF protection functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted network request can lead to CSRF. An attacker can send an HTTP request to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-47677" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1872" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-qjm7-3fx4-3hf8/GHSA-qjm7-3fx4-3hf8.json b/advisories/unreviewed/2024/07/GHSA-qjm7-3fx4-3hf8/GHSA-qjm7-3fx4-3hf8.json new file mode 100644 index 00000000000..96c6747b467 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-qjm7-3fx4-3hf8/GHSA-qjm7-3fx4-3hf8.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qjm7-3fx4-3hf8", + "modified": "2024-07-08T18:31:18Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2023-50382" + ], + "details": "Three os command injection vulnerabilities exist in the boa formWsc functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to arbitrary command execution. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This command injection is related to the `peerPin` request's parameter.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50382" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1899" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-r4v4-w9pv-6fph/GHSA-r4v4-w9pv-6fph.json b/advisories/unreviewed/2024/07/GHSA-r4v4-w9pv-6fph/GHSA-r4v4-w9pv-6fph.json index 14d87226299..69eda97e616 100644 --- a/advisories/unreviewed/2024/07/GHSA-r4v4-w9pv-6fph/GHSA-r4v4-w9pv-6fph.json +++ b/advisories/unreviewed/2024/07/GHSA-r4v4-w9pv-6fph/GHSA-r4v4-w9pv-6fph.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r4v4-w9pv-6fph", - "modified": "2024-07-05T03:30:42Z", + "modified": "2024-07-08T18:31:15Z", "published": "2024-07-05T03:30:42Z", "aliases": [ "CVE-2024-32498" ], "details": "An issue was discovered in OpenStack Cinder through 24.0.0, Glance before 28.0.2, and Nova before 29.0.3. Arbitrary file access can occur via custom QCOW2 external data. By supplying a crafted QCOW2 image that references a specific data file path, an authenticated user may convince systems to return a copy of that file's contents from the server, resulting in unauthorized access to potentially sensitive data. All Cinder and Nova deployments are affected; only Glance deployments with image conversion enabled are affected.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T02:15:09Z" diff --git a/advisories/unreviewed/2024/07/GHSA-rjhj-vqcv-2qcm/GHSA-rjhj-vqcv-2qcm.json b/advisories/unreviewed/2024/07/GHSA-rjhj-vqcv-2qcm/GHSA-rjhj-vqcv-2qcm.json new file mode 100644 index 00000000000..cde2bf7ba65 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-rjhj-vqcv-2qcm/GHSA-rjhj-vqcv-2qcm.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rjhj-vqcv-2qcm", + "modified": "2024-07-08T18:31:18Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2023-50243" + ], + "details": "Two stack-based buffer overflow vulnerabilities exist in the boa formIpQoS functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to remote code execution. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This stack-based buffer overflow is related to the `comment` request's parameter.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50243" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1895" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-rp28-w34f-g6rm/GHSA-rp28-w34f-g6rm.json b/advisories/unreviewed/2024/07/GHSA-rp28-w34f-g6rm/GHSA-rp28-w34f-g6rm.json index 61bdd307a93..2782a8f1916 100644 --- a/advisories/unreviewed/2024/07/GHSA-rp28-w34f-g6rm/GHSA-rp28-w34f-g6rm.json +++ b/advisories/unreviewed/2024/07/GHSA-rp28-w34f-g6rm/GHSA-rp28-w34f-g6rm.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-rp28-w34f-g6rm", - "modified": "2024-07-05T09:33:44Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T09:33:44Z", "aliases": [ "CVE-2024-39482" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbcache: fix variable length array abuse in btree_iter\n\nbtree_iter is used in two ways: either allocated on the stack with a\nfixed size MAX_BSETS, or from a mempool with a dynamic size based on the\nspecific cache set. Previously, the struct had a fixed-length array of\nsize MAX_BSETS which was indexed out-of-bounds for the dynamically-sized\niterators, which causes UBSAN to complain.\n\nThis patch uses the same approach as in bcachefs's sort_iter and splits\nthe iterator into a btree_iter with a flexible array member and a\nbtree_iter_stack which embeds a btree_iter as well as a fixed-length\ndata array.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-770" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T07:15:10Z" diff --git a/advisories/unreviewed/2024/07/GHSA-v693-ww24-qwmw/GHSA-v693-ww24-qwmw.json b/advisories/unreviewed/2024/07/GHSA-v693-ww24-qwmw/GHSA-v693-ww24-qwmw.json new file mode 100644 index 00000000000..951e7f36e09 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-v693-ww24-qwmw/GHSA-v693-ww24-qwmw.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v693-ww24-qwmw", + "modified": "2024-07-08T18:31:17Z", + "published": "2024-07-08T18:31:17Z", + "aliases": [ + "CVE-2023-49867" + ], + "details": "A stack-based buffer overflow vulnerability exists in the boa formWsc functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to remote code execution. An attacker can send a series of HTTP requests to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-49867" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1904" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-v9c2-2jfc-5c5c/GHSA-v9c2-2jfc-5c5c.json b/advisories/unreviewed/2024/07/GHSA-v9c2-2jfc-5c5c/GHSA-v9c2-2jfc-5c5c.json index d16f9526df9..0945f3b0701 100644 --- a/advisories/unreviewed/2024/07/GHSA-v9c2-2jfc-5c5c/GHSA-v9c2-2jfc-5c5c.json +++ b/advisories/unreviewed/2024/07/GHSA-v9c2-2jfc-5c5c/GHSA-v9c2-2jfc-5c5c.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-v9c2-2jfc-5c5c", - "modified": "2024-07-05T09:33:44Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T09:33:44Z", "aliases": [ "CVE-2024-39484" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmmc: davinci: Don't strip remove function when driver is builtin\n\nUsing __exit for the remove function results in the remove callback being\ndiscarded with CONFIG_MMC_DAVINCI=y. When such a device gets unbound (e.g.\nusing sysfs or hotplug), the driver is just removed without the cleanup\nbeing performed. This results in resource leaks. Fix it by compiling in the\nremove callback unconditionally.\n\nThis also fixes a W=1 modpost warning:\n\nWARNING: modpost: drivers/mmc/host/davinci_mmc: section mismatch in\nreference: davinci_mmcsd_driver+0x10 (section: .data) ->\ndavinci_mmcsd_remove (section: .exit.text)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-770" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T07:15:10Z" diff --git a/advisories/unreviewed/2024/07/GHSA-vfcx-wcgr-9vc5/GHSA-vfcx-wcgr-9vc5.json b/advisories/unreviewed/2024/07/GHSA-vfcx-wcgr-9vc5/GHSA-vfcx-wcgr-9vc5.json index 3b991697b3e..b41320a0d16 100644 --- a/advisories/unreviewed/2024/07/GHSA-vfcx-wcgr-9vc5/GHSA-vfcx-wcgr-9vc5.json +++ b/advisories/unreviewed/2024/07/GHSA-vfcx-wcgr-9vc5/GHSA-vfcx-wcgr-9vc5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vfcx-wcgr-9vc5", - "modified": "2024-07-05T09:33:44Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T09:33:44Z", "aliases": [ "CVE-2024-39478" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: starfive - Do not free stack buffer\n\nRSA text data uses variable length buffer allocated in software stack.\nCalling kfree on it causes undefined behaviour in subsequent operations.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-770" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T07:15:10Z" diff --git a/advisories/unreviewed/2024/07/GHSA-vqv4-c7v8-752q/GHSA-vqv4-c7v8-752q.json b/advisories/unreviewed/2024/07/GHSA-vqv4-c7v8-752q/GHSA-vqv4-c7v8-752q.json index f6f0b016a9e..812ef2ccbf4 100644 --- a/advisories/unreviewed/2024/07/GHSA-vqv4-c7v8-752q/GHSA-vqv4-c7v8-752q.json +++ b/advisories/unreviewed/2024/07/GHSA-vqv4-c7v8-752q/GHSA-vqv4-c7v8-752q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vqv4-c7v8-752q", - "modified": "2024-07-05T15:32:06Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T15:32:06Z", "aliases": [ "CVE-2024-39027" ], "details": "SeaCMS v12.9 has an unauthorized SQL injection vulnerability. The vulnerability is caused by the SQL injection through the cid parameter at /js/player/dmplayer/dmku/index.php?ac=edit, which can cause sensitive database information to be leaked.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T14:15:02Z" diff --git a/advisories/unreviewed/2024/07/GHSA-w76v-3936-3wp3/GHSA-w76v-3936-3wp3.json b/advisories/unreviewed/2024/07/GHSA-w76v-3936-3wp3/GHSA-w76v-3936-3wp3.json index 062a3f0ccbb..67387ef0d54 100644 --- a/advisories/unreviewed/2024/07/GHSA-w76v-3936-3wp3/GHSA-w76v-3936-3wp3.json +++ b/advisories/unreviewed/2024/07/GHSA-w76v-3936-3wp3/GHSA-w76v-3936-3wp3.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-w76v-3936-3wp3", - "modified": "2024-07-05T12:31:01Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T12:31:01Z", "aliases": [ "CVE-2024-6298" ], "details": "Improper Input Validation vulnerability in ABB ASPECT-Enterprise on Linux, ABB NEXUS Series on Linux, ABB MATRIX Series on Linux allows Remote Code Inclusion.This issue affects ASPECT-Enterprise: through 3.08.01; NEXUS Series: through 3.08.01; MATRIX Series: through 3.08.01.", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:I/V:C/RE:H/U:Red" diff --git a/advisories/unreviewed/2024/07/GHSA-wf8f-frxx-4hqv/GHSA-wf8f-frxx-4hqv.json b/advisories/unreviewed/2024/07/GHSA-wf8f-frxx-4hqv/GHSA-wf8f-frxx-4hqv.json new file mode 100644 index 00000000000..c8ab28b0466 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-wf8f-frxx-4hqv/GHSA-wf8f-frxx-4hqv.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wf8f-frxx-4hqv", + "modified": "2024-07-08T18:31:18Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2024-39202" + ], + "details": "D-Link DIR-823X firmware - 240126 was discovered to contain a remote command execution (RCE) vulnerability via the dhcpd_startip parameter at /goform/set_lan_settings.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-39202" + }, + { + "type": "WEB", + "url": "https://gist.github.com/Swind1er/40c33f1b1549028677cb4e2e5ef69109" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/07/GHSA-wx95-q6gv-qpp4/GHSA-wx95-q6gv-qpp4.json b/advisories/unreviewed/2024/07/GHSA-wx95-q6gv-qpp4/GHSA-wx95-q6gv-qpp4.json index 0caad695f15..2ce1f4c0de6 100644 --- a/advisories/unreviewed/2024/07/GHSA-wx95-q6gv-qpp4/GHSA-wx95-q6gv-qpp4.json +++ b/advisories/unreviewed/2024/07/GHSA-wx95-q6gv-qpp4/GHSA-wx95-q6gv-qpp4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-wx95-q6gv-qpp4", - "modified": "2024-07-05T09:33:44Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T09:33:44Z", "aliases": [ "CVE-2024-39476" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmd/raid5: fix deadlock that raid5d() wait for itself to clear MD_SB_CHANGE_PENDING\n\nXiao reported that lvm2 test lvconvert-raid-takeover.sh can hang with\nsmall possibility, the root cause is exactly the same as commit\nbed9e27baf52 (\"Revert \"md/raid5: Wait for MD_SB_CHANGE_PENDING in raid5d\"\")\n\nHowever, Dan reported another hang after that, and junxiao investigated\nthe problem and found out that this is caused by plugged bio can't issue\nfrom raid5d().\n\nCurrent implementation in raid5d() has a weird dependence:\n\n1) md_check_recovery() from raid5d() must hold 'reconfig_mutex' to clear\n MD_SB_CHANGE_PENDING;\n2) raid5d() handles IO in a deadloop, until all IO are issued;\n3) IO from raid5d() must wait for MD_SB_CHANGE_PENDING to be cleared;\n\nThis behaviour is introduce before v2.6, and for consequence, if other\ncontext hold 'reconfig_mutex', and md_check_recovery() can't update\nsuper_block, then raid5d() will waste one cpu 100% by the deadloop, until\n'reconfig_mutex' is released.\n\nRefer to the implementation from raid1 and raid10, fix this problem by\nskipping issue IO if MD_SB_CHANGE_PENDING is still set after\nmd_check_recovery(), daemon thread will be woken up when 'reconfig_mutex'\nis released. Meanwhile, the hang problem will be fixed as well.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-667" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T07:15:10Z" diff --git a/advisories/unreviewed/2024/07/GHSA-xgf3-qx4m-5q5j/GHSA-xgf3-qx4m-5q5j.json b/advisories/unreviewed/2024/07/GHSA-xgf3-qx4m-5q5j/GHSA-xgf3-qx4m-5q5j.json index 81553dca705..e3551a066f3 100644 --- a/advisories/unreviewed/2024/07/GHSA-xgf3-qx4m-5q5j/GHSA-xgf3-qx4m-5q5j.json +++ b/advisories/unreviewed/2024/07/GHSA-xgf3-qx4m-5q5j/GHSA-xgf3-qx4m-5q5j.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-xgf3-qx4m-5q5j", - "modified": "2024-07-05T09:33:44Z", + "modified": "2024-07-08T18:31:16Z", "published": "2024-07-05T09:33:44Z", "aliases": [ "CVE-2024-39473" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: SOF: ipc4-topology: Fix input format query of process modules without base extension\n\nIf a process module does not have base config extension then the same\nformat applies to all of it's inputs and the process->base_config_ext is\nNULL, causing NULL dereference when specifically crafted topology and\nsequences used.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-05T07:15:10Z" diff --git a/advisories/unreviewed/2024/07/GHSA-xvjg-4qjv-mmc7/GHSA-xvjg-4qjv-mmc7.json b/advisories/unreviewed/2024/07/GHSA-xvjg-4qjv-mmc7/GHSA-xvjg-4qjv-mmc7.json new file mode 100644 index 00000000000..2693795d3b8 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-xvjg-4qjv-mmc7/GHSA-xvjg-4qjv-mmc7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xvjg-4qjv-mmc7", + "modified": "2024-07-08T18:31:18Z", + "published": "2024-07-08T18:31:18Z", + "aliases": [ + "CVE-2023-50244" + ], + "details": "Two stack-based buffer overflow vulnerabilities exist in the boa formIpQoS functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to remote code execution. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This stack-based buffer overflow is related to the `entry_name` request's parameter.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50244" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1895" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-08T16:15:06Z" + } +} \ No newline at end of file