Publish Advisories

GHSA-grhv-62hf-9jg3
GHSA-wqp9-f35v-h4f9
GHSA-44m4-gm9r-m853
GHSA-899c-qvc8-9hpp
GHSA-hqfw-8gwg-7r3q
GHSA-hxw3-49vc-4rrp
GHSA-mv84-ggqf-6q3w
GHSA-vgj5-hqjj-6hcj
GHSA-9chw-m2j3-37f5
GHSA-cmmj-jc2h-55pm
GHSA-mgf7-9fq3-64j5
GHSA-rhqc-rfxh-qj7g
This commit is contained in:
advisory-database[bot]
2024-09-12 12:31:58 +00:00
parent f4f31b9bf8
commit d4d5a2a2ce
12 changed files with 178 additions and 10 deletions
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-grhv-62hf-9jg3",
"modified": "2024-08-19T18:32:03Z",
"modified": "2024-09-12T12:30:27Z",
"published": "2024-06-20T12:31:21Z",
"aliases": [
"CVE-2022-48733"
@@ -25,6 +25,10 @@
"type": "WEB",
"url": "https://git.kernel.org/stable/c/28b21c558a3753171097193b6f6602a94169093a"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/7e4c72dbaf62f8978af8321a24dbd35566d3a78a"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/9372fa1d73da5f1673921e365d0cd2c27ec7adc2"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-wqp9-f35v-h4f9",
"modified": "2024-08-01T21:31:40Z",
"modified": "2024-09-12T12:30:27Z",
"published": "2024-06-19T15:30:53Z",
"aliases": [
"CVE-2024-38577"
@@ -25,6 +25,10 @@
"type": "WEB",
"url": "https://git.kernel.org/stable/c/08186d0c5fb64a1cc4b43e009314ee6b173ed222"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/17c43211d45f13d1badea3942b76bf16bcc49281"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/1a240e138071b25944ded0f5b3e357aa99fabcb7"
@@ -37,6 +41,10 @@
"type": "WEB",
"url": "https://git.kernel.org/stable/c/6593d857ce5b5b802fb73d8091ac9c84b92c1697"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/af7b560c88fb420099e29890aa682b8a3efc8784"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/cc5645fddb0ce28492b15520306d092730dffa48"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-44m4-gm9r-m853",
"modified": "2024-09-05T21:31:33Z",
"modified": "2024-09-12T12:30:28Z",
"published": "2024-08-26T12:31:19Z",
"aliases": [
"CVE-2024-43897"
@@ -25,6 +25,10 @@
"type": "WEB",
"url": "https://git.kernel.org/stable/c/2edbb3e8838c672cd7e247e47989df9d03fc6668"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/413e785a89f8bde0d4156a54b8ac2fa003c06756"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/6772c4868a8e7ad5305957cdb834ce881793acb7"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-899c-qvc8-9hpp",
"modified": "2024-08-08T15:31:29Z",
"modified": "2024-09-12T12:30:27Z",
"published": "2024-08-07T18:30:44Z",
"aliases": [
"CVE-2024-42246"
@@ -21,10 +21,26 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-42246"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/02ee1976edb21a96ce8e3fd4ef563f14cc16d041"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/5d8254e012996cee1a0f9cc920531cb7e4d9a011"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/626dfed5fa3bfb41e0dffd796032b555b69f9cde"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/934247ea65bc5eca8bdb7f8c0ddc15cef992a5d6"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/bc790261218952635f846aaf90bcc0974f6f62c6"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/d6c686c01c5f12ff8f7264e0ddf71df6cb0d4414"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-hqfw-8gwg-7r3q",
"modified": "2024-08-22T18:31:20Z",
"modified": "2024-09-12T12:30:27Z",
"published": "2024-08-17T12:30:33Z",
"aliases": [
"CVE-2024-43854"
@@ -21,14 +21,26 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43854"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/129f95948a96105c1fad8e612c9097763e88ac5f"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/23a19655fb56f241e592041156dfb1c6d04da644"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/3fd11fe4f20756b4c0847f755a64cd96f8c6a005"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/899ee2c3829c5ac14bfc7d3c4a5846c0b709b78f"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/9f4af4cf08f9a0329ade3d938f55d2220c40d0a6"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/cf6b45ea7a8df0f61bded1dc4a8561ac6ad143d2"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-hxw3-49vc-4rrp",
"modified": "2024-09-05T21:31:33Z",
"modified": "2024-09-12T12:30:28Z",
"published": "2024-08-26T12:31:19Z",
"aliases": [
"CVE-2024-43892"
@@ -29,9 +29,21 @@
"type": "WEB",
"url": "https://git.kernel.org/stable/c/51c0b1bb7541f8893ec1accba59eb04361a70946"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/56fd70f4aa8b82199dbe7e99366b1fd7a04d86fb"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/912736a0435ef40e6a4ae78197ccb5553cb80b05"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/9972605a238339b85bd16b084eed5f18414d22db"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/e6cc9ff2ac0b5df9f25eb790934c3104f6710278"
}
],
"database_specific": {
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-mv84-ggqf-6q3w",
"modified": "2024-08-27T15:32:44Z",
"modified": "2024-09-12T12:30:28Z",
"published": "2024-08-26T12:31:20Z",
"aliases": [
"CVE-2024-43905"
@@ -21,6 +21,14 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43905"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/0fa11f9df96217c2785b040629ff1a16900fb51c"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/2ac9deb7e087f0b461c3559d9eaa6b9cf19d3fa8"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/2e538944996d0dd497faf8ee81f8bfcd3aca7d80"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-vgj5-hqjj-6hcj",
"modified": "2024-09-08T09:30:27Z",
"modified": "2024-09-12T12:30:27Z",
"published": "2024-08-17T12:30:32Z",
"aliases": [
"CVE-2024-43835"
@@ -18,6 +18,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43835"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/19ac6f29bf64304ef04630c8ab56ecd2059d7aa1"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/468a729b78895893d0e580ceea49bed8ada2a2bd"
@@ -26,6 +30,18 @@
"type": "WEB",
"url": "https://git.kernel.org/stable/c/6b5325f2457521bbece29499970c0117a648c620"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/842a97b5e44f0c8a9fc356fe976e0e13ddcf7783"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/cc7340f18e45886121c131227985d64ef666012f"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/d3af435e8ace119e58d8e21d3d2d6a4e7c4a4baa"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/f5e9a22d19bb98a7e86034db85eb295e94187caa"
@@ -0,0 +1,38 @@
{
"schema_version": "1.4.0",
"id": "GHSA-9chw-m2j3-37f5",
"modified": "2024-09-12T12:30:28Z",
"published": "2024-09-12T12:30:28Z",
"aliases": [
"CVE-2024-8749"
],
"details": "SQL injection vulnerability in idoit pro version 28. This vulnerability could allow an attacker to send a specially crafted query to the ID parameter in /var/www/html/src/classes/modules/api/model/cmdb/isys_api_model_cmdb_objects_by_relation.class.php and retrieve all the information stored in the database.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8749"
},
{
"type": "WEB",
"url": "https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-synetics-idoit-pro"
}
],
"database_specific": {
"cwe_ids": [
"CWE-89"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-09-12T12:15:53Z"
}
}
@@ -0,0 +1,38 @@
{
"schema_version": "1.4.0",
"id": "GHSA-cmmj-jc2h-55pm",
"modified": "2024-09-12T12:30:28Z",
"published": "2024-09-12T12:30:28Z",
"aliases": [
"CVE-2024-8750"
],
"details": "Cross-site Scripting (XSS) vulnerability in idoit pro version 28. This vulnerability allows an attacker to retrieve session details of an authenticated user due to lack of proper sanitization of the following parameters (id,lang,mNavID,name,pID,treeNode,type,view).",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N"
}
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8750"
},
{
"type": "WEB",
"url": "https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-synetics-idoit-pro"
}
],
"database_specific": {
"cwe_ids": [
"CWE-79"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-09-12T12:15:54Z"
}
}
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-mgf7-9fq3-64j5",
"modified": "2024-09-08T09:30:27Z",
"modified": "2024-09-12T12:30:28Z",
"published": "2024-09-04T21:30:32Z",
"aliases": [
"CVE-2024-44974"
@@ -36,6 +36,14 @@
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/9a9afbbc3fbfca4975eea4aa5b18556db5a0c0b8"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/ddee5b4b6a1cc03c1e9921cf34382e094c2009f1"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/f2c865e9e3ca44fc06b5f73b29a954775e4dbb38"
}
],
"database_specific": {
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-rhqc-rfxh-qj7g",
"modified": "2024-09-11T18:31:04Z",
"modified": "2024-09-12T12:30:28Z",
"published": "2024-09-11T18:31:04Z",
"aliases": [
"CVE-2024-45009"
@@ -26,6 +26,10 @@
"type": "WEB",
"url": "https://git.kernel.org/stable/c/2060f1efab370b496c4903b840844ecaff324c3c"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/35b31f5549ede4070566b949781e83495906b43d"
},
{
"type": "WEB",
"url": "https://git.kernel.org/stable/c/85b866e4c4e63a1d7afb58f1e24273caad03d0b7"