diff --git a/advisories/unreviewed/2024/03/GHSA-2x4j-58j9-x8c9/GHSA-2x4j-58j9-x8c9.json b/advisories/unreviewed/2024/03/GHSA-2x4j-58j9-x8c9/GHSA-2x4j-58j9-x8c9.json new file mode 100644 index 00000000000..54e6ff7eb6c --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-2x4j-58j9-x8c9/GHSA-2x4j-58j9-x8c9.json @@ -0,0 +1,50 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2x4j-58j9-x8c9", + "modified": "2024-03-25T09:32:33Z", + "published": "2024-03-25T09:32:33Z", + "aliases": [ + "CVE-2020-36826" + ], + "details": "A vulnerability was found in AwesomestCode LiveBot. It has been classified as problematic. Affected is the function parseSend of the file js/parseMessage.js. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. Upgrading to version 0.1 is able to address this issue. The name of the patch is 57505527f838d1e46e8f93d567ba552a30185bfa. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-257784.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-36826" + }, + { + "type": "WEB", + "url": "https://github.com/AwesomestCode/LiveBot/commit/57505527f838d1e46e8f93d567ba552a30185bfa" + }, + { + "type": "WEB", + "url": "https://github.com/AwesomestCode/LiveBot/releases/tag/0.1" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.257784" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.257784" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T07:15:49Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-563m-xr38-7c3j/GHSA-563m-xr38-7c3j.json b/advisories/unreviewed/2024/03/GHSA-563m-xr38-7c3j/GHSA-563m-xr38-7c3j.json new file mode 100644 index 00000000000..661ff907b70 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-563m-xr38-7c3j/GHSA-563m-xr38-7c3j.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-563m-xr38-7c3j", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47147" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nptp: ocp: Fix a resource leak in an error handling path\n\nIf an error occurs after a successful 'pci_ioremap_bar()' call, it must be\nundone by a corresponding 'pci_iounmap()' call, as already done in the\nremove function.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47147" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0e38e702f1152479e6afac34f151dbfd99417f99" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/9c1bb37f8cad5e2ee1933fa1da9a6baa7876a8e4" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-59gg-h898-v8m7/GHSA-59gg-h898-v8m7.json b/advisories/unreviewed/2024/03/GHSA-59gg-h898-v8m7/GHSA-59gg-h898-v8m7.json new file mode 100644 index 00000000000..1d98d94b1aa --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-59gg-h898-v8m7/GHSA-59gg-h898-v8m7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-59gg-h898-v8m7", + "modified": "2024-03-25T09:32:34Z", + "published": "2024-03-25T09:32:34Z", + "aliases": [ + "CVE-2024-2862" + ], + "details": "\nThis vulnerability allows remote attackers to reset the password of anonymous users without authorization on the affected LG LED Assistant.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2862" + }, + { + "type": "WEB", + "url": "https://lgsecurity.lge.com/bulletins/idproducts#updateDetails" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-287" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T07:15:50Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-5gv4-m6hr-96m6/GHSA-5gv4-m6hr-96m6.json b/advisories/unreviewed/2024/03/GHSA-5gv4-m6hr-96m6/GHSA-5gv4-m6hr-96m6.json new file mode 100644 index 00000000000..a70525d67ce --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-5gv4-m6hr-96m6/GHSA-5gv4-m6hr-96m6.json @@ -0,0 +1,58 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5gv4-m6hr-96m6", + "modified": "2024-03-25T09:32:33Z", + "published": "2024-03-25T09:32:33Z", + "aliases": [ + "CVE-2024-24899" + ], + "details": "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in openEuler aops-zeus on Linux allows Command Injection. This vulnerability is associated with program files https://gitee.Com/openeuler/aops-zeus/blob/master/zeus/conf/constant.Py.\n\nThis issue affects aops-zeus: from 1.2.0 through 1.4.0.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-24899" + }, + { + "type": "WEB", + "url": "https://gitee.com/src-openeuler/aops-zeus/pulls/107" + }, + { + "type": "WEB", + "url": "https://gitee.com/src-openeuler/aops-zeus/pulls/108" + }, + { + "type": "WEB", + "url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2024-1291" + }, + { + "type": "WEB", + "url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2024-1292" + }, + { + "type": "WEB", + "url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2024-1293" + }, + { + "type": "WEB", + "url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2024-1294" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T07:15:50Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-6cwm-qhmw-g438/GHSA-6cwm-qhmw-g438.json b/advisories/unreviewed/2024/03/GHSA-6cwm-qhmw-g438/GHSA-6cwm-qhmw-g438.json new file mode 100644 index 00000000000..9732128fda6 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-6cwm-qhmw-g438/GHSA-6cwm-qhmw-g438.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6cwm-qhmw-g438", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47139" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: hns3: put off calling register_netdev() until client initialize complete\n\nCurrently, the netdevice is registered before client initializing\ncomplete. So there is a timewindow between netdevice available\nand usable. In this case, if user try to change the channel number\nor ring param, it may cause the hns3_set_rx_cpu_rmap() being called\ntwice, and report bug.\n\n[47199.416502] hns3 0000:35:00.0 eth1: set channels: tqp_num=1, rxfh=0\n[47199.430340] hns3 0000:35:00.0 eth1: already uninitialized\n[47199.438554] hns3 0000:35:00.0: rss changes from 4 to 1\n[47199.511854] hns3 0000:35:00.0: Channels changed, rss_size from 4 to 1, tqps from 4 to 1\n[47200.163524] ------------[ cut here ]------------\n[47200.171674] kernel BUG at lib/cpu_rmap.c:142!\n[47200.177847] Internal error: Oops - BUG: 0 [#1] PREEMPT SMP\n[47200.185259] Modules linked in: hclge(+) hns3(-) hns3_cae(O) hns_roce_hw_v2 hnae3 vfio_iommu_type1 vfio_pci vfio_virqfd vfio pv680_mii(O) [last unloaded: hclge]\n[47200.205912] CPU: 1 PID: 8260 Comm: ethtool Tainted: G O 5.11.0-rc3+ #1\n[47200.215601] Hardware name: , xxxxxx 02/04/2021\n[47200.223052] pstate: 60400009 (nZCv daif +PAN -UAO -TCO BTYPE=--)\n[47200.230188] pc : cpu_rmap_add+0x38/0x40\n[47200.237472] lr : irq_cpu_rmap_add+0x84/0x140\n[47200.243291] sp : ffff800010e93a30\n[47200.247295] x29: ffff800010e93a30 x28: ffff082100584880\n[47200.254155] x27: 0000000000000000 x26: 0000000000000000\n[47200.260712] x25: 0000000000000000 x24: 0000000000000004\n[47200.267241] x23: ffff08209ba03000 x22: ffff08209ba038c0\n[47200.273789] x21: 000000000000003f x20: ffff0820e2bc1680\n[47200.280400] x19: ffff0820c970ec80 x18: 00000000000000c0\n[47200.286944] x17: 0000000000000000 x16: ffffb43debe4a0d0\n[47200.293456] x15: fffffc2082990600 x14: dead000000000122\n[47200.300059] x13: ffffffffffffffff x12: 000000000000003e\n[47200.306606] x11: ffff0820815b8080 x10: ffff53e411988000\n[47200.313171] x9 : 0000000000000000 x8 : ffff0820e2bc1700\n[47200.319682] x7 : 0000000000000000 x6 : 000000000000003f\n[47200.326170] x5 : 0000000000000040 x4 : ffff800010e93a20\n[47200.332656] x3 : 0000000000000004 x2 : ffff0820c970ec80\n[47200.339168] x1 : ffff0820e2bc1680 x0 : 0000000000000004\n[47200.346058] Call trace:\n[47200.349324] cpu_rmap_add+0x38/0x40\n[47200.354300] hns3_set_rx_cpu_rmap+0x6c/0xe0 [hns3]\n[47200.362294] hns3_reset_notify_init_enet+0x1cc/0x340 [hns3]\n[47200.370049] hns3_change_channels+0x40/0xb0 [hns3]\n[47200.376770] hns3_set_channels+0x12c/0x2a0 [hns3]\n[47200.383353] ethtool_set_channels+0x140/0x250\n[47200.389772] dev_ethtool+0x714/0x23d0\n[47200.394440] dev_ioctl+0x4cc/0x640\n[47200.399277] sock_do_ioctl+0x100/0x2a0\n[47200.404574] sock_ioctl+0x28c/0x470\n[47200.409079] __arm64_sys_ioctl+0xb4/0x100\n[47200.415217] el0_svc_common.constprop.0+0x84/0x210\n[47200.422088] do_el0_svc+0x28/0x34\n[47200.426387] el0_svc+0x28/0x70\n[47200.431308] el0_sync_handler+0x1a4/0x1b0\n[47200.436477] el0_sync+0x174/0x180\n[47200.441562] Code: 11000405 79000c45 f8247861 d65f03c0 (d4210000)\n[47200.448869] ---[ end trace a01efe4ce42e5f34 ]---\n\nThe process is like below:\nexcuting hns3_client_init\n|\nregister_netdev()\n| hns3_set_channels()\n| |\nhns3_set_rx_cpu_rmap() hns3_reset_notify_uninit_enet()\n| |\n| quit without calling function\n| hns3_free_rx_cpu_rmap for flag\n| HNS3_NIC_STATE_INITED is unset.\n| |\n| hns3_reset_notify_init_enet()\n| |\nset HNS3_NIC_STATE_INITED call hns3_set_rx_cpu_rmap()-- crash\n\nFix it by calling register_netdev() at the end of function\nhns3_client_init().", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47139" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0921a0620b5077796fddffb22a8e6bc635a4bb50" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a289a7e5c1d49b7d47df9913c1cc81fb48fab613" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a663c1e418a3b5b8e8edfad4bc8e7278c312d6fc" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-6x4q-xmhw-jmpw/GHSA-6x4q-xmhw-jmpw.json b/advisories/unreviewed/2024/03/GHSA-6x4q-xmhw-jmpw/GHSA-6x4q-xmhw-jmpw.json new file mode 100644 index 00000000000..4e293f5c560 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-6x4q-xmhw-jmpw/GHSA-6x4q-xmhw-jmpw.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6x4q-xmhw-jmpw", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47148" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nocteontx2-pf: fix a buffer overflow in otx2_set_rxfh_context()\n\nThis function is called from ethtool_set_rxfh() and \"*rss_context\"\ncomes from the user. Add some bounds checking to prevent memory\ncorruption.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47148" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/389146bc6d2bbb20714d06624b74856320ce40f7" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e5cc361e21648b75f935f9571d4003aaee480214" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-75vr-rxgp-h26f/GHSA-75vr-rxgp-h26f.json b/advisories/unreviewed/2024/03/GHSA-75vr-rxgp-h26f/GHSA-75vr-rxgp-h26f.json new file mode 100644 index 00000000000..ee30adb8633 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-75vr-rxgp-h26f/GHSA-75vr-rxgp-h26f.json @@ -0,0 +1,50 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-75vr-rxgp-h26f", + "modified": "2024-03-25T09:32:34Z", + "published": "2024-03-25T09:32:33Z", + "aliases": [ + "CVE-2024-24897" + ], + "details": "Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in openEuler A-Tune-Collector on Linux allows Command Injection. This vulnerability is associated with program files https://gitee.Com/openeuler/A-Tune-Collector/blob/master/atune_collector/plugin/monitor/process/sched.Py.\n\nThis issue affects A-Tune-Collector: from 1.1.0-3 through 1.3.0.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-24897" + }, + { + "type": "WEB", + "url": "https://gitee.com/src-openeuler/A-Tune-Collector/pulls/45" + }, + { + "type": "WEB", + "url": "https://gitee.com/src-openeuler/A-Tune-Collector/pulls/47" + }, + { + "type": "WEB", + "url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2024-1271" + }, + { + "type": "WEB", + "url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2024-1273" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T07:15:50Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-7cg4-mp48-cggr/GHSA-7cg4-mp48-cggr.json b/advisories/unreviewed/2024/03/GHSA-7cg4-mp48-cggr/GHSA-7cg4-mp48-cggr.json new file mode 100644 index 00000000000..8a0c2bbd4ab --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-7cg4-mp48-cggr/GHSA-7cg4-mp48-cggr.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7cg4-mp48-cggr", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47136" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: zero-initialize tc skb extension on allocation\n\nFunction skb_ext_add() doesn't initialize created skb extension with any\nvalue and leaves it up to the user. However, since extension of type\nTC_SKB_EXT originally contained only single value tc_skb_ext->chain its\nusers used to just assign the chain value without setting whole extension\nmemory to zero first. This assumption changed when TC_SKB_EXT extension was\nextended with additional fields but not all users were updated to\ninitialize the new fields which leads to use of uninitialized memory\nafterwards. UBSAN log:\n\n[ 778.299821] UBSAN: invalid-load in net/openvswitch/flow.c:899:28\n[ 778.301495] load of value 107 is not a valid value for type '_Bool'\n[ 778.303215] CPU: 0 PID: 0 Comm: swapper/0 Not tainted 5.12.0-rc7+ #2\n[ 778.304933] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS rel-1.13.0-0-gf21b5a4aeb02-prebuilt.qemu.org 04/01/2014\n[ 778.307901] Call Trace:\n[ 778.308680] \n[ 778.309358] dump_stack+0xbb/0x107\n[ 778.310307] ubsan_epilogue+0x5/0x40\n[ 778.311167] __ubsan_handle_load_invalid_value.cold+0x43/0x48\n[ 778.312454] ? memset+0x20/0x40\n[ 778.313230] ovs_flow_key_extract.cold+0xf/0x14 [openvswitch]\n[ 778.314532] ovs_vport_receive+0x19e/0x2e0 [openvswitch]\n[ 778.315749] ? ovs_vport_find_upcall_portid+0x330/0x330 [openvswitch]\n[ 778.317188] ? create_prof_cpu_mask+0x20/0x20\n[ 778.318220] ? arch_stack_walk+0x82/0xf0\n[ 778.319153] ? secondary_startup_64_no_verify+0xb0/0xbb\n[ 778.320399] ? stack_trace_save+0x91/0xc0\n[ 778.321362] ? stack_trace_consume_entry+0x160/0x160\n[ 778.322517] ? lock_release+0x52e/0x760\n[ 778.323444] netdev_frame_hook+0x323/0x610 [openvswitch]\n[ 778.324668] ? ovs_netdev_get_vport+0xe0/0xe0 [openvswitch]\n[ 778.325950] __netif_receive_skb_core+0x771/0x2db0\n[ 778.327067] ? lock_downgrade+0x6e0/0x6f0\n[ 778.328021] ? lock_acquire+0x565/0x720\n[ 778.328940] ? generic_xdp_tx+0x4f0/0x4f0\n[ 778.329902] ? inet_gro_receive+0x2a7/0x10a0\n[ 778.330914] ? lock_downgrade+0x6f0/0x6f0\n[ 778.331867] ? udp4_gro_receive+0x4c4/0x13e0\n[ 778.332876] ? lock_release+0x52e/0x760\n[ 778.333808] ? dev_gro_receive+0xcc8/0x2380\n[ 778.334810] ? lock_downgrade+0x6f0/0x6f0\n[ 778.335769] __netif_receive_skb_list_core+0x295/0x820\n[ 778.336955] ? process_backlog+0x780/0x780\n[ 778.337941] ? mlx5e_rep_tc_netdevice_event_unregister+0x20/0x20 [mlx5_core]\n[ 778.339613] ? seqcount_lockdep_reader_access.constprop.0+0xa7/0xc0\n[ 778.341033] ? kvm_clock_get_cycles+0x14/0x20\n[ 778.342072] netif_receive_skb_list_internal+0x5f5/0xcb0\n[ 778.343288] ? __kasan_kmalloc+0x7a/0x90\n[ 778.344234] ? mlx5e_handle_rx_cqe_mpwrq+0x9e0/0x9e0 [mlx5_core]\n[ 778.345676] ? mlx5e_xmit_xdp_frame_mpwqe+0x14d0/0x14d0 [mlx5_core]\n[ 778.347140] ? __netif_receive_skb_list_core+0x820/0x820\n[ 778.348351] ? mlx5e_post_rx_mpwqes+0xa6/0x25d0 [mlx5_core]\n[ 778.349688] ? napi_gro_flush+0x26c/0x3c0\n[ 778.350641] napi_complete_done+0x188/0x6b0\n[ 778.351627] mlx5e_napi_poll+0x373/0x1b80 [mlx5_core]\n[ 778.352853] __napi_poll+0x9f/0x510\n[ 778.353704] ? mlx5_flow_namespace_set_mode+0x260/0x260 [mlx5_core]\n[ 778.355158] net_rx_action+0x34c/0xa40\n[ 778.356060] ? napi_threaded_poll+0x3d0/0x3d0\n[ 778.357083] ? sched_clock_cpu+0x18/0x190\n[ 778.358041] ? __common_interrupt+0x8e/0x1a0\n[ 778.359045] __do_softirq+0x1ce/0x984\n[ 778.359938] __irq_exit_rcu+0x137/0x1d0\n[ 778.360865] irq_exit_rcu+0xa/0x20\n[ 778.361708] common_interrupt+0x80/0xa0\n[ 778.362640] \n[ 778.363212] asm_common_interrupt+0x1e/0x40\n[ 778.364204] RIP: 0010:native_safe_halt+0xe/0x10\n[ 778.365273] Code: 4f ff ff ff 4c 89 e7 e8 50 3f 40 fe e9 dc fe ff ff 48 89 df e8 43 3f 40 fe eb 90 cc e9 07 00 00 00 0f 00 2d 74 05 62 00 fb f4 90 e9 07 00 00 00 0f 00 2d 64 05 62 00 f4 c3 cc cc 0f 1f 44 00\n[ 778.369355] RSP: 0018:ffffffff84407e48 EFLAGS: 00000246\n[ 778.370570] RAX\n---truncated---", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47136" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/86ab133b695ed7ba1f8786b12f4ca43137ad8c18" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/9453d45ecb6c2199d72e73c993e9d98677a2801b" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ac493452e937b8939eaf2d24cac51a4804b6c20e" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-9pv7-rcfr-x287/GHSA-9pv7-rcfr-x287.json b/advisories/unreviewed/2024/03/GHSA-9pv7-rcfr-x287/GHSA-9pv7-rcfr-x287.json new file mode 100644 index 00000000000..776ece6195f --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-9pv7-rcfr-x287/GHSA-9pv7-rcfr-x287.json @@ -0,0 +1,51 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9pv7-rcfr-x287", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47150" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: fec: fix the potential memory leak in fec_enet_init()\n\nIf the memory allocated for cbd_base is failed, it should\nfree the memory allocated for the queues, otherwise it causes\nmemory leak.\n\nAnd if the memory allocated for the queues is failed, it can\nreturn error directly.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47150" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/15102886bc8f5f29daaadf2d925591d564c17e9f" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/20255d41ac560397b6a07d8d87dcc5e2efc7672a" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/32a1777fd113335c3f70dc445dffee0ad1c6870f" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/619fee9eb13b5d29e4267cb394645608088c28a8" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/8ee7ef4a57a9e1228b6f345aaa70aa8951c7e9cd" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-c2qm-qfp9-hx5m/GHSA-c2qm-qfp9-hx5m.json b/advisories/unreviewed/2024/03/GHSA-c2qm-qfp9-hx5m/GHSA-c2qm-qfp9-hx5m.json new file mode 100644 index 00000000000..c45f194ff91 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-c2qm-qfp9-hx5m/GHSA-c2qm-qfp9-hx5m.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c2qm-qfp9-hx5m", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2024-25964" + ], + "details": "Dell PowerScale OneFS 9.5.0.x through 9.7.0.x contain a covert timing channel vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to denial of service.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-25964" + }, + { + "type": "WEB", + "url": "https://www.dell.com/support/kbdoc/en-us/000222691/dsa-2024-062-security-update-for-dell-powerscale-onefs-for-proprietary-code-vulnerabilities" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-385" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-c76f-cr24-9g74/GHSA-c76f-cr24-9g74.json b/advisories/unreviewed/2024/03/GHSA-c76f-cr24-9g74/GHSA-c76f-cr24-9g74.json new file mode 100644 index 00000000000..fad820825df --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-c76f-cr24-9g74/GHSA-c76f-cr24-9g74.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c76f-cr24-9g74", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47151" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ninterconnect: qcom: bcm-voter: add a missing of_node_put()\n\nAdd a missing of_node_put() in of_bcm_voter_get() to avoid the\nreference leak.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47151" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/4e3cea8035b6f1b9055e69cc6ebf9fa4e50763ae" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/93d1dbe7043b3c9492bdf396b2e98a008435b55b" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a00593737f8bac2c9e97b696e7ff84a4446653e8" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-ffg6-3wfr-47xc/GHSA-ffg6-3wfr-47xc.json b/advisories/unreviewed/2024/03/GHSA-ffg6-3wfr-47xc/GHSA-ffg6-3wfr-47xc.json new file mode 100644 index 00000000000..9f6bc563648 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-ffg6-3wfr-47xc/GHSA-ffg6-3wfr-47xc.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-ffg6-3wfr-47xc", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47152" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmptcp: fix data stream corruption\n\nMaxim reported several issues when forcing a TCP transparent proxy\nto use the MPTCP protocol for the inbound connections. He also\nprovided a clean reproducer.\n\nThe problem boils down to 'mptcp_frag_can_collapse_to()' assuming\nthat only MPTCP will use the given page_frag.\n\nIf others - e.g. the plain TCP protocol - allocate page fragments,\nwe can end-up re-using already allocated memory for mptcp_data_frag.\n\nFix the issue ensuring that the to-be-expanded data fragment is\nlocated at the current page frag end.\n\nv1 -> v2:\n - added missing fixes tag (Mat)", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47152" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/18e7f0580da15cac1e79d73683ada5a9e70980f8" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/29249eac5225429b898f278230a6ca2baa1ae154" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/3267a061096efc91eda52c2a0c61ba76e46e4b34" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-fjp9-rfvr-287m/GHSA-fjp9-rfvr-287m.json b/advisories/unreviewed/2024/03/GHSA-fjp9-rfvr-287m/GHSA-fjp9-rfvr-287m.json new file mode 100644 index 00000000000..df0e66dec6c --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-fjp9-rfvr-287m/GHSA-fjp9-rfvr-287m.json @@ -0,0 +1,51 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fjp9-rfvr-287m", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47144" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/amdgpu: fix refcount leak\n\n[Why]\nthe gem object rfb->base.obj[0] is get according to num_planes\nin amdgpufb_create, but is not put according to num_planes\n\n[How]\nput rfb->base.obj[0] in amdgpu_fbdev_destroy according to num_planes", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47144" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/599e5d61ace952b0bb9bd942b198bbd0cfded1d7" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/95a4ec905e51a30c64cf2d78b04a7acbeae5ca94" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/9fdb8ed37a3a44f9c49372b69f87fd5f61cb3240" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/dde2656e0bbb2ac7d83a7bd95a8d5c3c95bbc009" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/fa7e6abc75f3d491bc561734312d065dc9dc2a77" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-fmvv-3w6j-94vx/GHSA-fmvv-3w6j-94vx.json b/advisories/unreviewed/2024/03/GHSA-fmvv-3w6j-94vx/GHSA-fmvv-3w6j-94vx.json new file mode 100644 index 00000000000..bcb265bc510 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-fmvv-3w6j-94vx/GHSA-fmvv-3w6j-94vx.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fmvv-3w6j-94vx", + "modified": "2024-03-25T09:32:33Z", + "published": "2024-03-25T09:32:33Z", + "aliases": [ + "CVE-2024-24892" + ], + "details": "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection'), Improper Privilege Management vulnerability in openEuler migration-tools on Linux allows Command Injection, Restful Privilege Elevation. This vulnerability is associated with program files https://gitee.Com/openeuler/migration-tools/blob/master/index.Py.\n\nThis issue affects migration-tools: from 1.0.0 through 1.0.1.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-24892" + }, + { + "type": "WEB", + "url": "https://gitee.com/src-openeuler/migration-tools/pulls/12" + }, + { + "type": "WEB", + "url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2024-1275" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-269" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T07:15:50Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-fxx6-99pg-x743/GHSA-fxx6-99pg-x743.json b/advisories/unreviewed/2024/03/GHSA-fxx6-99pg-x743/GHSA-fxx6-99pg-x743.json new file mode 100644 index 00000000000..718e1f8f4c2 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-fxx6-99pg-x743/GHSA-fxx6-99pg-x743.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fxx6-99pg-x743", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47143" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet/smc: remove device from smcd_dev_list after failed device_add()\n\nIf the device_add() for a smcd_dev fails, there's no cleanup step that\nrolls back the earlier list_add(). The device subsequently gets freed,\nand we end up with a corrupted list.\n\nAdd some error handling that removes the device from the list.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47143" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/40588782f1016c655ae1d302892f61d35af96842" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/444d7be9532dcfda8e0385226c862fd7e986f607" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/8b2cdc004d21a7255f219706dca64411108f7897" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-g2m6-m2m8-q4qh/GHSA-g2m6-m2m8-q4qh.json b/advisories/unreviewed/2024/03/GHSA-g2m6-m2m8-q4qh/GHSA-g2m6-m2m8-q4qh.json new file mode 100644 index 00000000000..99fab854efc --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-g2m6-m2m8-q4qh/GHSA-g2m6-m2m8-q4qh.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g2m6-m2m8-q4qh", + "modified": "2024-03-25T09:32:34Z", + "published": "2024-03-25T09:32:34Z", + "aliases": [ + "CVE-2024-29216" + ], + "details": "Exposed IOCTL with insufficient access control issue exists in cg6kwin2k.sys prior to 2.1.7.0. By sending a specific IOCTL request, a user without the administrator privilege may perform I/O to arbitrary hardware port or physical address, resulting in erasing or altering the firmware.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-29216" + }, + { + "type": "WEB", + "url": "https://jvn.jp/en/vu/JVNVU90671953" + }, + { + "type": "WEB", + "url": "https://sangomakb.atlassian.net/wiki/spaces/DVC/pages/45351279/Natural+Access+Software+Download" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T07:15:50Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-mh64-ppph-hcxx/GHSA-mh64-ppph-hcxx.json b/advisories/unreviewed/2024/03/GHSA-mh64-ppph-hcxx/GHSA-mh64-ppph-hcxx.json new file mode 100644 index 00000000000..d28d4493745 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-mh64-ppph-hcxx/GHSA-mh64-ppph-hcxx.json @@ -0,0 +1,63 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mh64-ppph-hcxx", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47145" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: do not BUG_ON in link_to_fixup_dir\n\nWhile doing error injection testing I got the following panic\n\n kernel BUG at fs/btrfs/tree-log.c:1862!\n invalid opcode: 0000 [#1] SMP NOPTI\n CPU: 1 PID: 7836 Comm: mount Not tainted 5.13.0-rc1+ #305\n Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.13.0-2.fc32 04/01/2014\n RIP: 0010:link_to_fixup_dir+0xd5/0xe0\n RSP: 0018:ffffb5800180fa30 EFLAGS: 00010216\n RAX: fffffffffffffffb RBX: 00000000fffffffb RCX: ffff8f595287faf0\n RDX: ffffb5800180fa37 RSI: ffff8f5954978800 RDI: 0000000000000000\n RBP: ffff8f5953af9450 R08: 0000000000000019 R09: 0000000000000001\n R10: 000151f408682970 R11: 0000000120021001 R12: ffff8f5954978800\n R13: ffff8f595287faf0 R14: ffff8f5953c77dd0 R15: 0000000000000065\n FS: 00007fc5284c8c40(0000) GS:ffff8f59bbd00000(0000) knlGS:0000000000000000\n CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n CR2: 00007fc5287f47c0 CR3: 000000011275e002 CR4: 0000000000370ee0\n Call Trace:\n replay_one_buffer+0x409/0x470\n ? btree_read_extent_buffer_pages+0xd0/0x110\n walk_up_log_tree+0x157/0x1e0\n walk_log_tree+0xa6/0x1d0\n btrfs_recover_log_trees+0x1da/0x360\n ? replay_one_extent+0x7b0/0x7b0\n open_ctree+0x1486/0x1720\n btrfs_mount_root.cold+0x12/0xea\n ? __kmalloc_track_caller+0x12f/0x240\n legacy_get_tree+0x24/0x40\n vfs_get_tree+0x22/0xb0\n vfs_kern_mount.part.0+0x71/0xb0\n btrfs_mount+0x10d/0x380\n ? vfs_parse_fs_string+0x4d/0x90\n legacy_get_tree+0x24/0x40\n vfs_get_tree+0x22/0xb0\n path_mount+0x433/0xa10\n __x64_sys_mount+0xe3/0x120\n do_syscall_64+0x3d/0x80\n entry_SYSCALL_64_after_hwframe+0x44/0xae\n\nWe can get -EIO or any number of legitimate errors from\nbtrfs_search_slot(), panicing here is not the appropriate response. The\nerror path for this code handles errors properly, simply return the\nerror.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47145" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0eaf383c6a4a83c09f60fd07a1bea9f1a9181611" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0ed102453aa1cd12fefde8f6b60b9519b0b1f003" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6eccfb28f8dca70c9b1b3bb3194ca54cbe73a9fa" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/76bfd8ac20bebeae599452a03dfc5724c0475dcf" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7e13db503918820e6333811cdc6f151dcea5090a" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/91df99a6eb50d5a1bc70fff4a09a0b7ae6aab96d" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b545442133580dcb2f2496133bf850824d41255c" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e934c4ee17b33bafb0444f2f9766cda7166d3c40" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-mrfq-6jmf-4q53/GHSA-mrfq-6jmf-4q53.json b/advisories/unreviewed/2024/03/GHSA-mrfq-6jmf-4q53/GHSA-mrfq-6jmf-4q53.json new file mode 100644 index 00000000000..e95b853729b --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-mrfq-6jmf-4q53/GHSA-mrfq-6jmf-4q53.json @@ -0,0 +1,62 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mrfq-6jmf-4q53", + "modified": "2024-03-25T09:32:33Z", + "published": "2024-03-25T09:32:33Z", + "aliases": [ + "CVE-2021-33632" + ], + "details": "Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in openEuler iSulad on Linux allows Leveraging Time-of-Check and Time-of-Use (TOCTOU) Race Conditions. This vulnerability is associated with program files https://gitee.Com/openeuler/iSulad/blob/master/src/cmd/isulad/main.C.\n\nThis issue affects iSulad: 2.0.18-13, from 2.1.4-1 through 2.1.4-2.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-33632" + }, + { + "type": "WEB", + "url": "https://gitee.com/src-openeuler/iSulad/pulls/639" + }, + { + "type": "WEB", + "url": "https://gitee.com/src-openeuler/iSulad/pulls/640" + }, + { + "type": "WEB", + "url": "https://gitee.com/src-openeuler/iSulad/pulls/645" + }, + { + "type": "WEB", + "url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2024-1287" + }, + { + "type": "WEB", + "url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2024-1289" + }, + { + "type": "WEB", + "url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2024-1290" + }, + { + "type": "WEB", + "url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2024-1307" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-367" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T07:15:49Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-mx9m-w3w5-w7q4/GHSA-mx9m-w3w5-w7q4.json b/advisories/unreviewed/2024/03/GHSA-mx9m-w3w5-w7q4/GHSA-mx9m-w3w5-w7q4.json new file mode 100644 index 00000000000..e5b10cad7d2 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-mx9m-w3w5-w7q4/GHSA-mx9m-w3w5-w7q4.json @@ -0,0 +1,63 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mx9m-w3w5-w7q4", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47149" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: fujitsu: fix potential null-ptr-deref\n\nIn fmvj18x_get_hwinfo(), if ioremap fails there will be NULL pointer\nderef. To fix this, check the return value of ioremap and return -1\nto the caller in case of failure.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47149" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/22049c3d40f08facd1867548716a484dad6b3251" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/52202be1cd996cde6e8969a128dc27ee45a7cb5e" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6dbf1101594f7c76990b63c35b5a40205a914b6b" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/71723a796ab7881f491d663c6cd94b29be5fba50" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7883d3895d0fbb0ba9bff0f8665f99974b45210f" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b92170e209f7746ed72eaac98f2c2f4b9af734e6" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/c4f1c23edbe921ab2ecd6140d700e756cd44c5f7" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f14bf57a08779a5dee9936f63ada0149ea89c5e6" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-mxmg-v768-hh7w/GHSA-mxmg-v768-hh7w.json b/advisories/unreviewed/2024/03/GHSA-mxmg-v768-hh7w/GHSA-mxmg-v768-hh7w.json new file mode 100644 index 00000000000..9fc194ed913 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-mxmg-v768-hh7w/GHSA-mxmg-v768-hh7w.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mxmg-v768-hh7w", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2024-30187" + ], + "details": "Anope before 2.0.15 does not prevent resetting the password of a suspended account.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-30187" + }, + { + "type": "WEB", + "url": "https://github.com/anope/anope/issues/351" + }, + { + "type": "WEB", + "url": "https://github.com/anope/anope/commit/2b7872139c40ea5b0ca96c1d6595b7d5f9fa60a5" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T08:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-q35v-9jf2-h48r/GHSA-q35v-9jf2-h48r.json b/advisories/unreviewed/2024/03/GHSA-q35v-9jf2-h48r/GHSA-q35v-9jf2-h48r.json new file mode 100644 index 00000000000..65995026d3e --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-q35v-9jf2-h48r/GHSA-q35v-9jf2-h48r.json @@ -0,0 +1,58 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q35v-9jf2-h48r", + "modified": "2024-03-25T09:32:33Z", + "published": "2024-03-25T09:32:33Z", + "aliases": [ + "CVE-2024-24890" + ], + "details": "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in openEuler gala-gopher on Linux allows Command Injection. This vulnerability is associated with program files https://gitee.Com/openeuler/gala-gopher/blob/master/src/probes/extends/ebpf.Probe/src/ioprobe/ioprobe.C.\n\nThis issue affects gala-gopher: through 1.0.2.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-24890" + }, + { + "type": "WEB", + "url": "https://gitee.com/src-openeuler/gala-gopher/pulls/81" + }, + { + "type": "WEB", + "url": "https://gitee.com/src-openeuler/gala-gopher/pulls/82" + }, + { + "type": "WEB", + "url": "https://gitee.com/src-openeuler/gala-gopher/pulls/85" + }, + { + "type": "WEB", + "url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2024-1277" + }, + { + "type": "WEB", + "url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2024-1278" + }, + { + "type": "WEB", + "url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2024-1279" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T07:15:49Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-qjmm-w6cw-3hf3/GHSA-qjmm-w6cw-3hf3.json b/advisories/unreviewed/2024/03/GHSA-qjmm-w6cw-3hf3/GHSA-qjmm-w6cw-3hf3.json new file mode 100644 index 00000000000..e5947a9ec83 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-qjmm-w6cw-3hf3/GHSA-qjmm-w6cw-3hf3.json @@ -0,0 +1,47 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qjmm-w6cw-3hf3", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47138" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ncxgb4: avoid accessing registers when clearing filters\n\nHardware register having the server TID base can contain\ninvalid values when adapter is in bad state (for example,\ndue to AER fatal error). Reading these invalid values in the\nregister can lead to out-of-bound memory access. So, fix\nby using the saved server TID base when clearing filters.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47138" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/02f03883fdb10ad7e66717c70ea163a8d27ae6e7" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0bf49b3c8d8b3a43ce09f1b2db70e5484d31fcdf" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/285207a558ab456aa7d8aa877ecc7e91fcc51710" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/88c380df84fbd03f9b137c2b9d0a44b9f2f553b0" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-rfwv-p62g-fm8q/GHSA-rfwv-p62g-fm8q.json b/advisories/unreviewed/2024/03/GHSA-rfwv-p62g-fm8q/GHSA-rfwv-p62g-fm8q.json new file mode 100644 index 00000000000..64b29c3b7b0 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-rfwv-p62g-fm8q/GHSA-rfwv-p62g-fm8q.json @@ -0,0 +1,63 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rfwv-p62g-fm8q", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47142" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amdgpu: Fix a use-after-free\n\nlooks like we forget to set ttm->sg to NULL.\nHit panic below\n\n[ 1235.844104] general protection fault, probably for non-canonical address 0x6b6b6b6b6b6b7b4b: 0000 [#1] SMP DEBUG_PAGEALLOC NOPTI\n[ 1235.989074] Call Trace:\n[ 1235.991751] sg_free_table+0x17/0x20\n[ 1235.995667] amdgpu_ttm_backend_unbind.cold+0x4d/0xf7 [amdgpu]\n[ 1236.002288] amdgpu_ttm_backend_destroy+0x29/0x130 [amdgpu]\n[ 1236.008464] ttm_tt_destroy+0x1e/0x30 [ttm]\n[ 1236.013066] ttm_bo_cleanup_memtype_use+0x51/0xa0 [ttm]\n[ 1236.018783] ttm_bo_release+0x262/0xa50 [ttm]\n[ 1236.023547] ttm_bo_put+0x82/0xd0 [ttm]\n[ 1236.027766] amdgpu_bo_unref+0x26/0x50 [amdgpu]\n[ 1236.032809] amdgpu_amdkfd_gpuvm_alloc_memory_of_gpu+0x7aa/0xd90 [amdgpu]\n[ 1236.040400] kfd_ioctl_alloc_memory_of_gpu+0xe2/0x330 [amdgpu]\n[ 1236.046912] kfd_ioctl+0x463/0x690 [amdgpu]", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47142" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0707c3fea8102d211631ba515ef2159707561b0d" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1e5c37385097c35911b0f8a0c67ffd10ee1af9a2" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/3293cf3513d69f00c14d43e2020826d45ea0e46a" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7398c2aab4da960761ec182d04d6d5abbb4a226e" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/952ab3f9f48eb0e8050596d41951cf516be6b122" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a849e218556f932576c0fb1c5a88714b61709a17" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d4ea141fd4b40636a8326df5a377d9c5cf9b3faa" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f98cdf084405333ee2f5be548a91b2d168e49276" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-v728-2v4r-c686/GHSA-v728-2v4r-c686.json b/advisories/unreviewed/2024/03/GHSA-v728-2v4r-c686/GHSA-v728-2v4r-c686.json new file mode 100644 index 00000000000..3212f7160b5 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-v728-2v4r-c686/GHSA-v728-2v4r-c686.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v728-2v4r-c686", + "modified": "2024-03-25T09:32:34Z", + "published": "2024-03-25T09:32:34Z", + "aliases": [ + "CVE-2024-2863" + ], + "details": "This vulnerability allows remote attackers to traverse paths via file upload on the affected LG LED Assistant.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2863" + }, + { + "type": "WEB", + "url": "https://lgsecurity.lge.com/bulletins/idproducts#updateDetails" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-35" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T07:15:51Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-vpgg-8ccq-gwhg/GHSA-vpgg-8ccq-gwhg.json b/advisories/unreviewed/2024/03/GHSA-vpgg-8ccq-gwhg/GHSA-vpgg-8ccq-gwhg.json new file mode 100644 index 00000000000..253c6fcbbe0 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-vpgg-8ccq-gwhg/GHSA-vpgg-8ccq-gwhg.json @@ -0,0 +1,63 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vpgg-8ccq-gwhg", + "modified": "2024-03-25T09:32:36Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47153" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ni2c: i801: Don't generate an interrupt on bus reset\n\nNow that the i2c-i801 driver supports interrupts, setting the KILL bit\nin a attempt to recover from a timed out transaction triggers an\ninterrupt. Unfortunately, the interrupt handler (i801_isr) is not\nprepared for this situation and will try to process the interrupt as\nif it was signaling the end of a successful transaction. In the case\nof a block transaction, this can result in an out-of-range memory\naccess.\n\nThis condition was reproduced several times by syzbot:\nhttps://syzkaller.appspot.com/bug?extid=ed71512d469895b5b34e\nhttps://syzkaller.appspot.com/bug?extid=8c8dedc0ba9e03f6c79e\nhttps://syzkaller.appspot.com/bug?extid=c8ff0b6d6c73d81b610e\nhttps://syzkaller.appspot.com/bug?extid=33f6c360821c399d69eb\nhttps://syzkaller.appspot.com/bug?extid=be15dc0b1933f04b043a\nhttps://syzkaller.appspot.com/bug?extid=b4d3fd1dfd53e90afd79\n\nSo disable interrupts while trying to reset the bus. Interrupts will\nbe enabled again for the following transaction.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47153" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/04cc05e3716ae31b17ecdab7bc55c8170def1b8b" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/09c9e79f4c10cfb6b9e0e1b4dd355232e4b5a3b3" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1f583d3813f204449037cd2acbfc09168171362a" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b523feb7e8e44652f92f3babb953a976e7ccbbef" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/c70e1ba2e7e65255a0ce004f531dd90dada97a8c" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/dfa8929e117b0228a7765f5c3f5988a4a028f3c6" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e4d8716c3dcec47f1557024add24e1f3c09eb24b" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f9469082126cebb7337db3992d143f5e4edfe629" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-vr5f-v75p-g4qw/GHSA-vr5f-v75p-g4qw.json b/advisories/unreviewed/2024/03/GHSA-vr5f-v75p-g4qw/GHSA-vr5f-v75p-g4qw.json new file mode 100644 index 00000000000..1605bf37c6d --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-vr5f-v75p-g4qw/GHSA-vr5f-v75p-g4qw.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vr5f-v75p-g4qw", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47140" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\niommu/amd: Clear DMA ops when switching domain\n\nSince commit 08a27c1c3ecf (\"iommu: Add support to change default domain\nof an iommu group\") a user can switch a device between IOMMU and direct\nDMA through sysfs. This doesn't work for AMD IOMMU at the moment because\ndev->dma_ops is not cleared when switching from a DMA to an identity\nIOMMU domain. The DMA layer thus attempts to use the dma-iommu ops on an\nidentity domain, causing an oops:\n\n # echo 0000:00:05.0 > /sys/sys/bus/pci/drivers/e1000e/unbind\n # echo identity > /sys/bus/pci/devices/0000:00:05.0/iommu_group/type\n # echo 0000:00:05.0 > /sys/sys/bus/pci/drivers/e1000e/bind\n ...\n BUG: kernel NULL pointer dereference, address: 0000000000000028\n ...\n Call Trace:\n iommu_dma_alloc\n e1000e_setup_tx_resources\n e1000e_open\n\nSince iommu_change_dev_def_domain() calls probe_finalize() again, clear\nthe dma_ops there like Vt-d does.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47140" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d6177a6556f853785867e2ec6d5b7f4906f0d809" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f3f2cf46291a693eab21adb94171b0128c2a9ec1" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-w7p2-j7r7-m47f/GHSA-w7p2-j7r7-m47f.json b/advisories/unreviewed/2024/03/GHSA-w7p2-j7r7-m47f/GHSA-w7p2-j7r7-m47f.json new file mode 100644 index 00000000000..6e04191f879 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-w7p2-j7r7-m47f/GHSA-w7p2-j7r7-m47f.json @@ -0,0 +1,63 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w7p2-j7r7-m47f", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47146" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmld: fix panic in mld_newpack()\n\nmld_newpack() doesn't allow to allocate high order page,\nonly order-0 allocation is allowed.\nIf headroom size is too large, a kernel panic could occur in skb_put().\n\nTest commands:\n ip netns del A\n ip netns del B\n ip netns add A\n ip netns add B\n ip link add veth0 type veth peer name veth1\n ip link set veth0 netns A\n ip link set veth1 netns B\n\n ip netns exec A ip link set lo up\n ip netns exec A ip link set veth0 up\n ip netns exec A ip -6 a a 2001:db8:0::1/64 dev veth0\n ip netns exec B ip link set lo up\n ip netns exec B ip link set veth1 up\n ip netns exec B ip -6 a a 2001:db8:0::2/64 dev veth1\n for i in {1..99}\n do\n let A=$i-1\n ip netns exec A ip link add ip6gre$i type ip6gre \\\n\tlocal 2001:db8:$A::1 remote 2001:db8:$A::2 encaplimit 100\n ip netns exec A ip -6 a a 2001:db8:$i::1/64 dev ip6gre$i\n ip netns exec A ip link set ip6gre$i up\n\n ip netns exec B ip link add ip6gre$i type ip6gre \\\n\tlocal 2001:db8:$A::2 remote 2001:db8:$A::1 encaplimit 100\n ip netns exec B ip -6 a a 2001:db8:$i::2/64 dev ip6gre$i\n ip netns exec B ip link set ip6gre$i up\n done\n\nSplat looks like:\nkernel BUG at net/core/skbuff.c:110!\ninvalid opcode: 0000 [#1] SMP DEBUG_PAGEALLOC KASAN PTI\nCPU: 0 PID: 7 Comm: kworker/0:1 Not tainted 5.12.0+ #891\nWorkqueue: ipv6_addrconf addrconf_dad_work\nRIP: 0010:skb_panic+0x15d/0x15f\nCode: 92 fe 4c 8b 4c 24 10 53 8b 4d 70 45 89 e0 48 c7 c7 00 ae 79 83\n41 57 41 56 41 55 48 8b 54 24 a6 26 f9 ff <0f> 0b 48 8b 6c 24 20 89\n34 24 e8 4a 4e 92 fe 8b 34 24 48 c7 c1 20\nRSP: 0018:ffff88810091f820 EFLAGS: 00010282\nRAX: 0000000000000089 RBX: ffff8881086e9000 RCX: 0000000000000000\nRDX: 0000000000000089 RSI: 0000000000000008 RDI: ffffed1020123efb\nRBP: ffff888005f6eac0 R08: ffffed1022fc0031 R09: ffffed1022fc0031\nR10: ffff888117e00187 R11: ffffed1022fc0030 R12: 0000000000000028\nR13: ffff888008284eb0 R14: 0000000000000ed8 R15: 0000000000000ec0\nFS: 0000000000000000(0000) GS:ffff888117c00000(0000)\nknlGS:0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: 00007f8b801c5640 CR3: 0000000033c2c006 CR4: 00000000003706f0\nDR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\nDR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\nCall Trace:\n ? ip6_mc_hdr.isra.26.constprop.46+0x12a/0x600\n ? ip6_mc_hdr.isra.26.constprop.46+0x12a/0x600\n skb_put.cold.104+0x22/0x22\n ip6_mc_hdr.isra.26.constprop.46+0x12a/0x600\n ? rcu_read_lock_sched_held+0x91/0xc0\n mld_newpack+0x398/0x8f0\n ? ip6_mc_hdr.isra.26.constprop.46+0x600/0x600\n ? lock_contended+0xc40/0xc40\n add_grhead.isra.33+0x280/0x380\n add_grec+0x5ca/0xff0\n ? mld_sendpack+0xf40/0xf40\n ? lock_downgrade+0x690/0x690\n mld_send_initial_cr.part.34+0xb9/0x180\n ipv6_mc_dad_complete+0x15d/0x1b0\n addrconf_dad_completed+0x8d2/0xbb0\n ? lock_downgrade+0x690/0x690\n ? addrconf_rs_timer+0x660/0x660\n ? addrconf_dad_work+0x73c/0x10e0\n addrconf_dad_work+0x73c/0x10e0\n\nAllowing high order page allocation could fix this problem.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47146" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/020ef930b826d21c5446fdc9db80fd72a791bc21" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0e35b7457b7b6e73ffeaaca1a577fdf1af0feca1" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/17728616a4c85baf0edc975c60ba4e4157684d9a" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/221142038f36d9f28b64e83e954774da4d4ccd17" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/37d697759958d111439080bab7e14d2b0e7b39f5" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/4b77ad9097067b31237eeeee0bf70f80849680a0" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a76fb9ba545289379acf409653ad5f74417be59c" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/beb39adb150f8f3b516ddf7c39835a9788704d23" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-x7cq-pgcc-cqqm/GHSA-x7cq-pgcc-cqqm.json b/advisories/unreviewed/2024/03/GHSA-x7cq-pgcc-cqqm/GHSA-x7cq-pgcc-cqqm.json new file mode 100644 index 00000000000..67b0e5128ec --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-x7cq-pgcc-cqqm/GHSA-x7cq-pgcc-cqqm.json @@ -0,0 +1,47 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x7cq-pgcc-cqqm", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47137" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: lantiq: fix memory corruption in RX ring\n\nIn a situation where memory allocation or dma mapping fails, an\ninvalid address is programmed into the descriptor. This can lead\nto memory corruption. If the memory allocation fails, DMA should\nreuse the previous skb and mapping and drop the packet. This patch\nalso increments rx drop counter.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47137" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/46dd4abced3cb2c912916f4a5353e0927db0c4a2" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/5ac72351655f8b033a2935646f53b7465c903418" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/8bb1077448d43a871ed667520763e3b9f9b7975d" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/c7718ee96dbc2f9c5fc3b578abdf296dd44b9c20" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-xv6v-85pc-qw3p/GHSA-xv6v-85pc-qw3p.json b/advisories/unreviewed/2024/03/GHSA-xv6v-85pc-qw3p/GHSA-xv6v-85pc-qw3p.json new file mode 100644 index 00000000000..e9ba3d942dc --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-xv6v-85pc-qw3p/GHSA-xv6v-85pc-qw3p.json @@ -0,0 +1,47 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xv6v-85pc-qw3p", + "modified": "2024-03-25T09:32:35Z", + "published": "2024-03-25T09:32:35Z", + "aliases": [ + "CVE-2021-47141" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ngve: Add NULL pointer checks when freeing irqs.\n\nWhen freeing notification blocks, we index priv->msix_vectors.\nIf we failed to allocate priv->msix_vectors (see abort_with_msix_vectors)\nthis could lead to a NULL pointer dereference if the driver is unloaded.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47141" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/5218e919c8d06279884aa0baf76778a6817d5b93" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/5278c75266c5094d3c0958793bf12fc90300e580" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/821149ee88c206fa37e79c1868cc270518484876" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/da21a35c00ff1a1794d4f166d3b3fa8db4d0f6fb" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-25T09:15:08Z" + } +} \ No newline at end of file