diff --git a/advisories/unreviewed/2022/05/GHSA-qx3r-xm4v-rgrh/GHSA-qx3r-xm4v-rgrh.json b/advisories/unreviewed/2022/05/GHSA-qx3r-xm4v-rgrh/GHSA-qx3r-xm4v-rgrh.json index afcd79b1d3d..ecb953f2f87 100644 --- a/advisories/unreviewed/2022/05/GHSA-qx3r-xm4v-rgrh/GHSA-qx3r-xm4v-rgrh.json +++ b/advisories/unreviewed/2022/05/GHSA-qx3r-xm4v-rgrh/GHSA-qx3r-xm4v-rgrh.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qx3r-xm4v-rgrh", - "modified": "2022-05-02T03:43:30Z", + "modified": "2024-02-15T06:31:31Z", "published": "2022-05-02T03:43:30Z", "aliases": [ "CVE-2009-3278" ], "details": "The QNAP TS-239 Pro and TS-639 Pro with firmware 2.1.7 0613, 3.1.0 0627, and 3.1.1 0815 use the rand library function to generate a certain recovery key, which makes it easier for local users to determine this key via a brute-force attack.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -37,7 +40,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-338" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2023/11/GHSA-9jpv-w64v-mgr2/GHSA-9jpv-w64v-mgr2.json b/advisories/unreviewed/2023/11/GHSA-9jpv-w64v-mgr2/GHSA-9jpv-w64v-mgr2.json index 3e8a2489669..78158906bda 100644 --- a/advisories/unreviewed/2023/11/GHSA-9jpv-w64v-mgr2/GHSA-9jpv-w64v-mgr2.json +++ b/advisories/unreviewed/2023/11/GHSA-9jpv-w64v-mgr2/GHSA-9jpv-w64v-mgr2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-9jpv-w64v-mgr2", - "modified": "2024-02-01T03:30:22Z", + "modified": "2024-02-15T06:31:32Z", "published": "2023-11-02T09:30:18Z", "aliases": [ "CVE-2023-46595" diff --git a/advisories/unreviewed/2024/02/GHSA-2862-59r4-c989/GHSA-2862-59r4-c989.json b/advisories/unreviewed/2024/02/GHSA-2862-59r4-c989/GHSA-2862-59r4-c989.json index 7d46d189f10..2b79be0f0ff 100644 --- a/advisories/unreviewed/2024/02/GHSA-2862-59r4-c989/GHSA-2862-59r4-c989.json +++ b/advisories/unreviewed/2024/02/GHSA-2862-59r4-c989/GHSA-2862-59r4-c989.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2862-59r4-c989", - "modified": "2024-02-08T15:30:26Z", + "modified": "2024-02-15T06:31:34Z", "published": "2024-02-08T09:30:40Z", "aliases": [ "CVE-2024-23452" ], "details": "Request smuggling vulnerability in HTTP server in Apache bRPC 0.9.5~1.7.0 on all platforms allows attacker to smuggle request.\n\nVulnerability Cause Description:\n\nThe http_parser does not comply with the RFC-7230 HTTP 1.1 specification.\n\nAttack scenario:\nIf a message is received with both a Transfer-Encoding and a Content-Length header field, such a message might indicate an attempt to perform request smuggling or response splitting.\nOne particular attack scenario is that a bRPC made http server on the backend receiving requests in one persistent connection from frontend server that uses TE to parse request with the logic that 'chunk' is contained in the TE field. in that case an attacker can smuggle a request into the connection to the backend server. \n\nSolution:\nYou can choose one solution from below:\n1. Upgrade bRPC to version 1.8.0, which fixes this issue. Download link: https://github.com/apache/brpc/releases/tag/1.8.0\n 2. Apply this patch:  https://github.com/apache/brpc/pull/2518 \n\n", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ "CWE-444" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-08T09:15:46Z" diff --git a/advisories/unreviewed/2024/02/GHSA-2j3h-78mv-5phm/GHSA-2j3h-78mv-5phm.json b/advisories/unreviewed/2024/02/GHSA-2j3h-78mv-5phm/GHSA-2j3h-78mv-5phm.json index b2d011c2b38..9dc265db52b 100644 --- a/advisories/unreviewed/2024/02/GHSA-2j3h-78mv-5phm/GHSA-2j3h-78mv-5phm.json +++ b/advisories/unreviewed/2024/02/GHSA-2j3h-78mv-5phm/GHSA-2j3h-78mv-5phm.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2j3h-78mv-5phm", - "modified": "2024-02-13T00:30:27Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-13T00:30:27Z", "aliases": [ "CVE-2024-23760" ], "details": "Cleartext Storage of Sensitive Information in Gambio 4.9.2.0 allows attackers to obtain sensitive information via error-handler.log.json and legacy-error-handler.log.txt under the webroot.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-532" ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-12T22:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-34vw-rxxh-698f/GHSA-34vw-rxxh-698f.json b/advisories/unreviewed/2024/02/GHSA-34vw-rxxh-698f/GHSA-34vw-rxxh-698f.json index 5045b610010..4d22b312701 100644 --- a/advisories/unreviewed/2024/02/GHSA-34vw-rxxh-698f/GHSA-34vw-rxxh-698f.json +++ b/advisories/unreviewed/2024/02/GHSA-34vw-rxxh-698f/GHSA-34vw-rxxh-698f.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-34vw-rxxh-698f", - "modified": "2024-02-08T18:30:39Z", + "modified": "2024-02-15T06:31:34Z", "published": "2024-02-08T18:30:39Z", "aliases": [ "CVE-2024-24321" ], "details": "An issue in Dlink DIR-816A2 v.1.10CNB05 allows a remote attacker to execute arbitrary code via the wizardstep4_ssid_2 parameter in the sub_42DA54 function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -24,11 +27,11 @@ }, { "type": "WEB", - "url": "https://www.dlink.com/" + "url": "https://www.dlink.com" }, { "type": "WEB", - "url": "https://www.dlink.com/en/security-bulletin/" + "url": "https://www.dlink.com/en/security-bulletin" }, { "type": "WEB", @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-77" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-08T18:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-35qh-7f6c-rjf7/GHSA-35qh-7f6c-rjf7.json b/advisories/unreviewed/2024/02/GHSA-35qh-7f6c-rjf7/GHSA-35qh-7f6c-rjf7.json new file mode 100644 index 00000000000..ea1aa4ebf2e --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-35qh-7f6c-rjf7/GHSA-35qh-7f6c-rjf7.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-35qh-7f6c-rjf7", + "modified": "2024-02-15T06:31:36Z", + "published": "2024-02-15T06:31:35Z", + "aliases": [ + "CVE-2024-1488" + ], + "details": "A vulnerability was found in Unbound due to incorrect default permissions, allowing any process outside the unbound group to modify the unbound runtime configuration. If a process can connect over localhost to port 8953, it can alter the configuration of unbound.service. This flaw allows an unprivileged attacker to manipulate a running instance, potentially altering forwarders, allowing them to track all queries forwarded by the local resolver, and, in some cases, disrupting resolving altogether.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1488" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/security/cve/CVE-2024-1488" + }, + { + "type": "WEB", + "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2264183" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-15" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T05:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-3fc6-39hv-5fxc/GHSA-3fc6-39hv-5fxc.json b/advisories/unreviewed/2024/02/GHSA-3fc6-39hv-5fxc/GHSA-3fc6-39hv-5fxc.json index 14a0378a7c1..376a69e792e 100644 --- a/advisories/unreviewed/2024/02/GHSA-3fc6-39hv-5fxc/GHSA-3fc6-39hv-5fxc.json +++ b/advisories/unreviewed/2024/02/GHSA-3fc6-39hv-5fxc/GHSA-3fc6-39hv-5fxc.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/02/GHSA-3m2v-36rg-mxhc/GHSA-3m2v-36rg-mxhc.json b/advisories/unreviewed/2024/02/GHSA-3m2v-36rg-mxhc/GHSA-3m2v-36rg-mxhc.json new file mode 100644 index 00000000000..4fa905a8e5b --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-3m2v-36rg-mxhc/GHSA-3m2v-36rg-mxhc.json @@ -0,0 +1,31 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3m2v-36rg-mxhc", + "modified": "2024-02-15T06:31:36Z", + "published": "2024-02-15T06:31:36Z", + "aliases": [ + "CVE-2021-29633" + ], + "details": "Rejected reason: This candidate was in a CNA pool that was not assigned to any issues during 2021.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-29633" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T06:15:44Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-3mpr-9r86-mfv2/GHSA-3mpr-9r86-mfv2.json b/advisories/unreviewed/2024/02/GHSA-3mpr-9r86-mfv2/GHSA-3mpr-9r86-mfv2.json index 76c939f5441..3c54c327984 100644 --- a/advisories/unreviewed/2024/02/GHSA-3mpr-9r86-mfv2/GHSA-3mpr-9r86-mfv2.json +++ b/advisories/unreviewed/2024/02/GHSA-3mpr-9r86-mfv2/GHSA-3mpr-9r86-mfv2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-3mpr-9r86-mfv2", - "modified": "2024-02-14T18:30:25Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-14T18:30:25Z", "aliases": [ "CVE-2024-25215" ], "details": "Employee Managment System v1.0 was discovered to contain a SQL injection vulnerability via the pwd parameter at /aprocess.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-14T15:15:09Z" diff --git a/advisories/unreviewed/2024/02/GHSA-3q8j-579q-jx44/GHSA-3q8j-579q-jx44.json b/advisories/unreviewed/2024/02/GHSA-3q8j-579q-jx44/GHSA-3q8j-579q-jx44.json new file mode 100644 index 00000000000..adc6a3d4517 --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-3q8j-579q-jx44/GHSA-3q8j-579q-jx44.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3q8j-579q-jx44", + "modified": "2024-02-15T06:31:36Z", + "published": "2024-02-15T06:31:36Z", + "aliases": [ + "CVE-2022-23090" + ], + "details": "The aio_aqueue function, used by the lio_listio system call, fails to release a reference to a credential in an error case.\n\nAn attacker may cause the reference count to overflow, leading to a use after free (UAF).", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23090" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-22:10.aio.asc" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T06:15:45Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-45qp-5fqj-668c/GHSA-45qp-5fqj-668c.json b/advisories/unreviewed/2024/02/GHSA-45qp-5fqj-668c/GHSA-45qp-5fqj-668c.json new file mode 100644 index 00000000000..79d38c5f653 --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-45qp-5fqj-668c/GHSA-45qp-5fqj-668c.json @@ -0,0 +1,31 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-45qp-5fqj-668c", + "modified": "2024-02-15T06:31:36Z", + "published": "2024-02-15T06:31:36Z", + "aliases": [ + "CVE-2021-29637" + ], + "details": "Rejected reason: This candidate was in a CNA pool that was not assigned to any issues during 2021.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-29637" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T06:15:44Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-4qxf-cfrr-vxjg/GHSA-4qxf-cfrr-vxjg.json b/advisories/unreviewed/2024/02/GHSA-4qxf-cfrr-vxjg/GHSA-4qxf-cfrr-vxjg.json new file mode 100644 index 00000000000..3fd9a5ad9bf --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-4qxf-cfrr-vxjg/GHSA-4qxf-cfrr-vxjg.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4qxf-cfrr-vxjg", + "modified": "2024-02-15T06:31:35Z", + "published": "2024-02-15T06:31:35Z", + "aliases": [ + "CVE-2024-25559" + ], + "details": "URL spoofing vulnerability exists in a-blog cms Ver.3.1.0 to Ver.3.1.8. If an attacker sends a specially crafted request, the administrator of the product may be forced to access an arbitrary website when clicking a link in the audit log.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-25559" + }, + { + "type": "WEB", + "url": "https://developer.a-blogcms.jp/blog/news/JVN-48966481.html" + }, + { + "type": "WEB", + "url": "https://jvn.jp/en/jp/JVN48966481" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T05:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-4vg6-rmxw-vq23/GHSA-4vg6-rmxw-vq23.json b/advisories/unreviewed/2024/02/GHSA-4vg6-rmxw-vq23/GHSA-4vg6-rmxw-vq23.json new file mode 100644 index 00000000000..0e672db6873 --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-4vg6-rmxw-vq23/GHSA-4vg6-rmxw-vq23.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4vg6-rmxw-vq23", + "modified": "2024-02-15T06:31:36Z", + "published": "2024-02-15T06:31:36Z", + "aliases": [ + "CVE-2024-25941" + ], + "details": "The jail(2) system call has not limited a visiblity of allocated TTYs (the kern.ttys sysctl). This gives rise to an information leak about processes outside the current jail.\n\nAttacker can get information about TTYs allocated on the host or in other jails. Effectively, the information printed by \"pstat -t\" may be leaked.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-25941" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-24:02.tty.asc" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T05:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-5r2p-47vm-6fh9/GHSA-5r2p-47vm-6fh9.json b/advisories/unreviewed/2024/02/GHSA-5r2p-47vm-6fh9/GHSA-5r2p-47vm-6fh9.json index cf8be0e4d17..e6ea33374fe 100644 --- a/advisories/unreviewed/2024/02/GHSA-5r2p-47vm-6fh9/GHSA-5r2p-47vm-6fh9.json +++ b/advisories/unreviewed/2024/02/GHSA-5r2p-47vm-6fh9/GHSA-5r2p-47vm-6fh9.json @@ -32,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-307" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/02/GHSA-66rh-g7jv-6752/GHSA-66rh-g7jv-6752.json b/advisories/unreviewed/2024/02/GHSA-66rh-g7jv-6752/GHSA-66rh-g7jv-6752.json new file mode 100644 index 00000000000..d9ae91ce39b --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-66rh-g7jv-6752/GHSA-66rh-g7jv-6752.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-66rh-g7jv-6752", + "modified": "2024-02-15T06:31:36Z", + "published": "2024-02-15T06:31:36Z", + "aliases": [ + "CVE-2022-23091" + ], + "details": "A particular case of memory sharing is mishandled in the virtual memory system. This is very similar to SA-21:08.vm, but with a different root cause.\n\nAn unprivileged local user process can maintain a mapping of a page after it is freed, allowing that process to read private data belonging to other processes or the kernel.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23091" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-22:11.vm.asc" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T06:15:45Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-6qjv-w5w3-xfr7/GHSA-6qjv-w5w3-xfr7.json b/advisories/unreviewed/2024/02/GHSA-6qjv-w5w3-xfr7/GHSA-6qjv-w5w3-xfr7.json index cf9887d995a..fc3ebdfa249 100644 --- a/advisories/unreviewed/2024/02/GHSA-6qjv-w5w3-xfr7/GHSA-6qjv-w5w3-xfr7.json +++ b/advisories/unreviewed/2024/02/GHSA-6qjv-w5w3-xfr7/GHSA-6qjv-w5w3-xfr7.json @@ -32,7 +32,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-256" + "CWE-256", + "CWE-522" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/02/GHSA-77vw-jrxp-2648/GHSA-77vw-jrxp-2648.json b/advisories/unreviewed/2024/02/GHSA-77vw-jrxp-2648/GHSA-77vw-jrxp-2648.json index 5ab6c96c698..ad60a365016 100644 --- a/advisories/unreviewed/2024/02/GHSA-77vw-jrxp-2648/GHSA-77vw-jrxp-2648.json +++ b/advisories/unreviewed/2024/02/GHSA-77vw-jrxp-2648/GHSA-77vw-jrxp-2648.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-77vw-jrxp-2648", - "modified": "2024-02-09T15:31:27Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-09T15:31:27Z", "aliases": [ "CVE-2024-25448" ], "details": "An issue in the imlib_free_image_and_decache function of imlib2 v1.9.1 allows attackers to cause a heap buffer overflow via parsing a crafted image.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-787" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-09T15:15:09Z" diff --git a/advisories/unreviewed/2024/02/GHSA-7p28-5p54-rq49/GHSA-7p28-5p54-rq49.json b/advisories/unreviewed/2024/02/GHSA-7p28-5p54-rq49/GHSA-7p28-5p54-rq49.json new file mode 100644 index 00000000000..a9aa1dcf7f8 --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-7p28-5p54-rq49/GHSA-7p28-5p54-rq49.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7p28-5p54-rq49", + "modified": "2024-02-15T06:31:36Z", + "published": "2024-02-15T06:31:36Z", + "aliases": [ + "CVE-2022-23093" + ], + "details": "ping reads raw IP packets from the network to process responses in the pr_pack() function. As part of processing a response ping has to reconstruct the IP header, the ICMP header and if present a \"quoted packet,\" which represents the packet that generated an ICMP error. The quoted packet again has an IP header and an ICMP header.\n\nThe pr_pack() copies received IP and ICMP headers into stack buffers for further processing. In so doing, it fails to take into account the possible presence of IP option headers following the IP header in either the response or the quoted packet. When IP options are present, pr_pack() overflows the destination buffer by up to 40 bytes.\n\nThe memory safety bugs described above can be triggered by a remote host, causing the ping program to crash.\n\nThe ping process runs in a capability mode sandbox on all affected versions of FreeBSD and is thus very constrained in how it can interact with the rest of the system at the point where the bug can occur.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23093" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-22:15.ping.asc" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T06:15:45Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-7xg3-5hhv-932f/GHSA-7xg3-5hhv-932f.json b/advisories/unreviewed/2024/02/GHSA-7xg3-5hhv-932f/GHSA-7xg3-5hhv-932f.json new file mode 100644 index 00000000000..67b9ffbae7d --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-7xg3-5hhv-932f/GHSA-7xg3-5hhv-932f.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7xg3-5hhv-932f", + "modified": "2024-02-15T06:31:35Z", + "published": "2024-02-15T06:31:35Z", + "aliases": [ + "CVE-2022-23088" + ], + "details": "The 802.11 beacon handling routine failed to validate the length of an IEEE 802.11s Mesh ID before copying it to a heap-allocated buffer.\n\nWhile a FreeBSD Wi-Fi client is in scanning mode (i.e., not associated with a SSID) a malicious beacon frame may overwrite kernel memory, leading to remote code execution.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23088" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-22:07.wifi_meshid.asc" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T05:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-8qcx-87fj-rcvf/GHSA-8qcx-87fj-rcvf.json b/advisories/unreviewed/2024/02/GHSA-8qcx-87fj-rcvf/GHSA-8qcx-87fj-rcvf.json index 57a0f0fd3e3..4aaaf58cfd8 100644 --- a/advisories/unreviewed/2024/02/GHSA-8qcx-87fj-rcvf/GHSA-8qcx-87fj-rcvf.json +++ b/advisories/unreviewed/2024/02/GHSA-8qcx-87fj-rcvf/GHSA-8qcx-87fj-rcvf.json @@ -32,6 +32,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-319", "CWE-614" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2024/02/GHSA-8xxh-r5gq-2wxg/GHSA-8xxh-r5gq-2wxg.json b/advisories/unreviewed/2024/02/GHSA-8xxh-r5gq-2wxg/GHSA-8xxh-r5gq-2wxg.json new file mode 100644 index 00000000000..58671e53da0 --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-8xxh-r5gq-2wxg/GHSA-8xxh-r5gq-2wxg.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8xxh-r5gq-2wxg", + "modified": "2024-02-15T06:31:35Z", + "published": "2024-02-15T06:31:35Z", + "aliases": [ + "CVE-2022-23086" + ], + "details": "Handlers for *_CFG_PAGE read / write ioctls in the mpr, mps, and mpt drivers allocated a buffer of a caller-specified size, but copied to it a fixed size header. Other heap content would be overwritten if the specified size was too small.\n\nUsers with access to the mpr, mps or mpt device node may overwrite heap data, potentially resulting in privilege escalation. Note that the device node is only accessible to root and members of the operator group.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23086" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-22:06.ioctl.asc" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T05:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-93m3-2qc8-7wmc/GHSA-93m3-2qc8-7wmc.json b/advisories/unreviewed/2024/02/GHSA-93m3-2qc8-7wmc/GHSA-93m3-2qc8-7wmc.json index e46bd2642f7..6aaec3124de 100644 --- a/advisories/unreviewed/2024/02/GHSA-93m3-2qc8-7wmc/GHSA-93m3-2qc8-7wmc.json +++ b/advisories/unreviewed/2024/02/GHSA-93m3-2qc8-7wmc/GHSA-93m3-2qc8-7wmc.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-93m3-2qc8-7wmc", - "modified": "2024-02-14T18:30:24Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-14T18:30:24Z", "aliases": [ "CVE-2024-25207" ], "details": "Barangay Population Monitoring System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the Add Resident function at /barangay-population-monitoring-system/masterlist.php. This vulnerabiity allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Contact Number parameter.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-14T15:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-975j-m6j8-qh4v/GHSA-975j-m6j8-qh4v.json b/advisories/unreviewed/2024/02/GHSA-975j-m6j8-qh4v/GHSA-975j-m6j8-qh4v.json index 5910d833853..1ac71f10bf7 100644 --- a/advisories/unreviewed/2024/02/GHSA-975j-m6j8-qh4v/GHSA-975j-m6j8-qh4v.json +++ b/advisories/unreviewed/2024/02/GHSA-975j-m6j8-qh4v/GHSA-975j-m6j8-qh4v.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-975j-m6j8-qh4v", - "modified": "2024-02-13T03:30:21Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-13T03:30:21Z", "aliases": [ "CVE-2023-50358" @@ -21,6 +21,14 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50358" }, + { + "type": "WEB", + "url": "https://unit42.paloaltonetworks.com/qnap-qts-firmware-cve-2023-50358" + }, + { + "type": "WEB", + "url": "https://www.bsi.bund.de/SharedDocs/Cybersicherheitswarnungen/DE/2024/2024-213941-1032" + }, { "type": "WEB", "url": "https://www.qnap.com/en/security-advisory/qsa-23-57" diff --git a/advisories/unreviewed/2024/02/GHSA-9h2p-2c35-fq37/GHSA-9h2p-2c35-fq37.json b/advisories/unreviewed/2024/02/GHSA-9h2p-2c35-fq37/GHSA-9h2p-2c35-fq37.json index 9c5e9215ebe..0689ca3074f 100644 --- a/advisories/unreviewed/2024/02/GHSA-9h2p-2c35-fq37/GHSA-9h2p-2c35-fq37.json +++ b/advisories/unreviewed/2024/02/GHSA-9h2p-2c35-fq37/GHSA-9h2p-2c35-fq37.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9h2p-2c35-fq37", - "modified": "2024-02-13T00:30:27Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-13T00:30:27Z", "aliases": [ "CVE-2024-23762" ], "details": "Unrestricted File Upload vulnerability in Content Manager feature in Gambio 4.9.2.0 allows attackers to execute arbitrary code via upload of crafted PHP file.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-434" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-12T22:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-9mp4-h7q5-2rgq/GHSA-9mp4-h7q5-2rgq.json b/advisories/unreviewed/2024/02/GHSA-9mp4-h7q5-2rgq/GHSA-9mp4-h7q5-2rgq.json index 14d38b17adb..c458eaeb589 100644 --- a/advisories/unreviewed/2024/02/GHSA-9mp4-h7q5-2rgq/GHSA-9mp4-h7q5-2rgq.json +++ b/advisories/unreviewed/2024/02/GHSA-9mp4-h7q5-2rgq/GHSA-9mp4-h7q5-2rgq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-9mp4-h7q5-2rgq", - "modified": "2024-02-13T18:38:24Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-13T18:38:24Z", "aliases": [ "CVE-2024-21413" @@ -24,6 +24,10 @@ { "type": "WEB", "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21413" + }, + { + "type": "WEB", + "url": "https://research.checkpoint.com/2024/the-risks-of-the-monikerlink-bug-in-microsoft-outlook-and-the-big-picture" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-c5vv-2cvx-x67j/GHSA-c5vv-2cvx-x67j.json b/advisories/unreviewed/2024/02/GHSA-c5vv-2cvx-x67j/GHSA-c5vv-2cvx-x67j.json index f5eff640d3b..0ab9086bf40 100644 --- a/advisories/unreviewed/2024/02/GHSA-c5vv-2cvx-x67j/GHSA-c5vv-2cvx-x67j.json +++ b/advisories/unreviewed/2024/02/GHSA-c5vv-2cvx-x67j/GHSA-c5vv-2cvx-x67j.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-c5vv-2cvx-x67j", - "modified": "2024-02-13T00:30:27Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-13T00:30:27Z", "aliases": [ "CVE-2024-23761" ], "details": "Server Side Template Injection in Gambio 4.9.2.0 allows attackers to run arbitrary code via crafted smarty email template.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-918" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-12T22:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-c842-547h-7gp8/GHSA-c842-547h-7gp8.json b/advisories/unreviewed/2024/02/GHSA-c842-547h-7gp8/GHSA-c842-547h-7gp8.json index 3e619e82015..cb628b54188 100644 --- a/advisories/unreviewed/2024/02/GHSA-c842-547h-7gp8/GHSA-c842-547h-7gp8.json +++ b/advisories/unreviewed/2024/02/GHSA-c842-547h-7gp8/GHSA-c842-547h-7gp8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-c842-547h-7gp8", - "modified": "2024-02-09T15:31:27Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-09T15:31:27Z", "aliases": [ "CVE-2024-25442" ], "details": "An issue in the HuginBase::PanoramaMemento::loadPTScript function of Hugin v2022.0.0 allows attackers to cause a heap buffer overflow via parsing a crafted image.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-787" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-09T15:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-f9xc-7r8v-hf32/GHSA-f9xc-7r8v-hf32.json b/advisories/unreviewed/2024/02/GHSA-f9xc-7r8v-hf32/GHSA-f9xc-7r8v-hf32.json index e2b929ca0f1..7630f0fed31 100644 --- a/advisories/unreviewed/2024/02/GHSA-f9xc-7r8v-hf32/GHSA-f9xc-7r8v-hf32.json +++ b/advisories/unreviewed/2024/02/GHSA-f9xc-7r8v-hf32/GHSA-f9xc-7r8v-hf32.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f9xc-7r8v-hf32", - "modified": "2024-02-13T00:30:27Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-13T00:30:27Z", "aliases": [ "CVE-2024-23759" ], "details": "Deserialization of Untrusted Data in Gambio through 4.9.2.0 allows attackers to run arbitrary code via \"search\" parameter of the Parcelshopfinder/AddAddressBookEntry\" function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-434" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-12T22:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-fc4m-r3qf-679q/GHSA-fc4m-r3qf-679q.json b/advisories/unreviewed/2024/02/GHSA-fc4m-r3qf-679q/GHSA-fc4m-r3qf-679q.json new file mode 100644 index 00000000000..4c1c4fba674 --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-fc4m-r3qf-679q/GHSA-fc4m-r3qf-679q.json @@ -0,0 +1,31 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fc4m-r3qf-679q", + "modified": "2024-02-15T06:31:36Z", + "published": "2024-02-15T06:31:36Z", + "aliases": [ + "CVE-2021-29636" + ], + "details": "Rejected reason: This candidate was in a CNA pool that was not assigned to any issues during 2021.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-29636" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T06:15:44Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-fw94-hm7w-5pfg/GHSA-fw94-hm7w-5pfg.json b/advisories/unreviewed/2024/02/GHSA-fw94-hm7w-5pfg/GHSA-fw94-hm7w-5pfg.json index cb860a30ba0..ad777586367 100644 --- a/advisories/unreviewed/2024/02/GHSA-fw94-hm7w-5pfg/GHSA-fw94-hm7w-5pfg.json +++ b/advisories/unreviewed/2024/02/GHSA-fw94-hm7w-5pfg/GHSA-fw94-hm7w-5pfg.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-fw94-hm7w-5pfg", - "modified": "2024-02-09T15:31:27Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-09T15:31:27Z", "aliases": [ "CVE-2024-25450" ], "details": "imlib2 v1.9.1 was discovered to mishandle memory allocation in the function init_imlib_fonts().", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-09T15:15:09Z" diff --git a/advisories/unreviewed/2024/02/GHSA-g39f-q9cx-h4c7/GHSA-g39f-q9cx-h4c7.json b/advisories/unreviewed/2024/02/GHSA-g39f-q9cx-h4c7/GHSA-g39f-q9cx-h4c7.json index 602cd8bcb1f..6877e3022ca 100644 --- a/advisories/unreviewed/2024/02/GHSA-g39f-q9cx-h4c7/GHSA-g39f-q9cx-h4c7.json +++ b/advisories/unreviewed/2024/02/GHSA-g39f-q9cx-h4c7/GHSA-g39f-q9cx-h4c7.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-g39f-q9cx-h4c7", - "modified": "2024-02-08T18:30:39Z", + "modified": "2024-02-15T06:31:34Z", "published": "2024-02-08T18:30:39Z", "aliases": [ "CVE-2024-25191" ], "details": "php-jwt 1.0.0 uses strcmp (which is not constant time) to verify authentication, which makes it easier to bypass authentication via a timing side channel.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-203" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-08T17:15:11Z" diff --git a/advisories/unreviewed/2024/02/GHSA-g6qj-g5mr-fhx5/GHSA-g6qj-g5mr-fhx5.json b/advisories/unreviewed/2024/02/GHSA-g6qj-g5mr-fhx5/GHSA-g6qj-g5mr-fhx5.json new file mode 100644 index 00000000000..a4f319bff32 --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-g6qj-g5mr-fhx5/GHSA-g6qj-g5mr-fhx5.json @@ -0,0 +1,31 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g6qj-g5mr-fhx5", + "modified": "2024-02-15T06:31:36Z", + "published": "2024-02-15T06:31:36Z", + "aliases": [ + "CVE-2021-29640" + ], + "details": "Rejected reason: This candidate was in a CNA pool that was not assigned to any issues during 2021.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-29640" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T06:15:45Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-gm7v-79x8-9c9q/GHSA-gm7v-79x8-9c9q.json b/advisories/unreviewed/2024/02/GHSA-gm7v-79x8-9c9q/GHSA-gm7v-79x8-9c9q.json index 6dba661da31..9868b16ce8f 100644 --- a/advisories/unreviewed/2024/02/GHSA-gm7v-79x8-9c9q/GHSA-gm7v-79x8-9c9q.json +++ b/advisories/unreviewed/2024/02/GHSA-gm7v-79x8-9c9q/GHSA-gm7v-79x8-9c9q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gm7v-79x8-9c9q", - "modified": "2024-02-14T18:30:25Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-14T18:30:25Z", "aliases": [ "CVE-2024-25213" ], "details": "Employee Managment System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /edit.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-14T15:15:09Z" diff --git a/advisories/unreviewed/2024/02/GHSA-gmxc-263m-5hqx/GHSA-gmxc-263m-5hqx.json b/advisories/unreviewed/2024/02/GHSA-gmxc-263m-5hqx/GHSA-gmxc-263m-5hqx.json index acc2cad7946..441928fbcea 100644 --- a/advisories/unreviewed/2024/02/GHSA-gmxc-263m-5hqx/GHSA-gmxc-263m-5hqx.json +++ b/advisories/unreviewed/2024/02/GHSA-gmxc-263m-5hqx/GHSA-gmxc-263m-5hqx.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-20" + "CWE-20", + "CWE-79" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/02/GHSA-gr4v-q65c-996m/GHSA-gr4v-q65c-996m.json b/advisories/unreviewed/2024/02/GHSA-gr4v-q65c-996m/GHSA-gr4v-q65c-996m.json new file mode 100644 index 00000000000..fd93971fa06 --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-gr4v-q65c-996m/GHSA-gr4v-q65c-996m.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gr4v-q65c-996m", + "modified": "2024-02-15T06:31:35Z", + "published": "2024-02-15T06:31:35Z", + "aliases": [ + "CVE-2022-23089" + ], + "details": "When dumping core and saving process information, proc_getargv() might return an sbuf which have a sbuf_len() of 0 or -1, which is not properly handled.\n\nAn out-of-bound read can happen when user constructs a specially crafted ps_string, which in turn can cause the kernel to crash.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23089" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-22:09.elf.asc" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T05:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-gvf3-496w-8fm9/GHSA-gvf3-496w-8fm9.json b/advisories/unreviewed/2024/02/GHSA-gvf3-496w-8fm9/GHSA-gvf3-496w-8fm9.json new file mode 100644 index 00000000000..887732a107d --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-gvf3-496w-8fm9/GHSA-gvf3-496w-8fm9.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gvf3-496w-8fm9", + "modified": "2024-02-15T06:31:36Z", + "published": "2024-02-15T06:31:36Z", + "aliases": [ + "CVE-2022-23092" + ], + "details": "The implementation of lib9p's handling of RWALK messages was missing a bounds check needed when unpacking the message contents. The missing check means that the receipt of a specially crafted message will cause lib9p to overwrite unrelated memory.\n\nThe bug can be triggered by a malicious bhyve guest kernel to overwrite memory in the bhyve(8) process. This could potentially lead to user-mode code execution on the host, subject to bhyve's Capsicum sandbox.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23092" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-22:12.lib9p.asc" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T06:15:45Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-hg2c-f5rw-v45v/GHSA-hg2c-f5rw-v45v.json b/advisories/unreviewed/2024/02/GHSA-hg2c-f5rw-v45v/GHSA-hg2c-f5rw-v45v.json index 73e2948c85c..90a22a1ca7b 100644 --- a/advisories/unreviewed/2024/02/GHSA-hg2c-f5rw-v45v/GHSA-hg2c-f5rw-v45v.json +++ b/advisories/unreviewed/2024/02/GHSA-hg2c-f5rw-v45v/GHSA-hg2c-f5rw-v45v.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hg2c-f5rw-v45v", - "modified": "2024-02-10T09:30:20Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-10T09:30:20Z", "aliases": [ "CVE-2023-51404" diff --git a/advisories/unreviewed/2024/02/GHSA-j269-5p85-wxpq/GHSA-j269-5p85-wxpq.json b/advisories/unreviewed/2024/02/GHSA-j269-5p85-wxpq/GHSA-j269-5p85-wxpq.json index 9a4acbc0444..7e66f01bf5a 100644 --- a/advisories/unreviewed/2024/02/GHSA-j269-5p85-wxpq/GHSA-j269-5p85-wxpq.json +++ b/advisories/unreviewed/2024/02/GHSA-j269-5p85-wxpq/GHSA-j269-5p85-wxpq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-j269-5p85-wxpq", - "modified": "2024-02-13T03:30:20Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-13T03:30:20Z", "aliases": [ "CVE-2023-47218" @@ -24,6 +24,10 @@ { "type": "WEB", "url": "https://www.qnap.com/en/security-advisory/qsa-23-57" + }, + { + "type": "WEB", + "url": "https://www.rapid7.com/blog/post/2024/02/13/cve-2023-47218-qnap-qts-and-quts-hero-unauthenticated-command-injection-fixed" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-j347-m6ww-35jg/GHSA-j347-m6ww-35jg.json b/advisories/unreviewed/2024/02/GHSA-j347-m6ww-35jg/GHSA-j347-m6ww-35jg.json new file mode 100644 index 00000000000..4bbcb7ceaab --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-j347-m6ww-35jg/GHSA-j347-m6ww-35jg.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j347-m6ww-35jg", + "modified": "2024-02-15T06:31:36Z", + "published": "2024-02-15T06:31:35Z", + "aliases": [ + "CVE-2024-25940" + ], + "details": "`bhyveload -h ` may be used to grant loader access to the directory tree on the host. Affected versions of bhyveload(8) do not make any attempt to restrict loader's access to , allowing the loader to read any file the host user has access to. In the bhyveload(8) model, the host supplies a userboot.so to boot with, but the loader scripts generally come from the guest image. A maliciously crafted script could be used to exfiltrate sensitive data from the host accessible to the user running bhyhveload(8), which is often the system root.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-25940" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-24:01.bhyveload.asc" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T05:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-jcfw-r7j2-hvv7/GHSA-jcfw-r7j2-hvv7.json b/advisories/unreviewed/2024/02/GHSA-jcfw-r7j2-hvv7/GHSA-jcfw-r7j2-hvv7.json index 81fbcea5121..54d4657d87c 100644 --- a/advisories/unreviewed/2024/02/GHSA-jcfw-r7j2-hvv7/GHSA-jcfw-r7j2-hvv7.json +++ b/advisories/unreviewed/2024/02/GHSA-jcfw-r7j2-hvv7/GHSA-jcfw-r7j2-hvv7.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-jcfw-r7j2-hvv7", - "modified": "2024-02-10T09:30:20Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-10T09:30:20Z", "aliases": [ "CVE-2023-51488" diff --git a/advisories/unreviewed/2024/02/GHSA-jwgq-m238-m247/GHSA-jwgq-m238-m247.json b/advisories/unreviewed/2024/02/GHSA-jwgq-m238-m247/GHSA-jwgq-m238-m247.json new file mode 100644 index 00000000000..d972634f32f --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-jwgq-m238-m247/GHSA-jwgq-m238-m247.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jwgq-m238-m247", + "modified": "2024-02-15T06:31:36Z", + "published": "2024-02-15T06:31:36Z", + "aliases": [ + "CVE-2023-51787" + ], + "details": "An issue was discovered in Wind River VxWorks 7 22.09 and 23.03. If a VxWorks task or POSIX thread that uses OpenSSL exits, limited per-task memory is not freed, resulting in a memory leak.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51787" + }, + { + "type": "WEB", + "url": "https://support2.windriver.com/index.php?page=cve&on=view&id=CVE-2023-51787" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T06:15:46Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-m5gq-732f-j9v6/GHSA-m5gq-732f-j9v6.json b/advisories/unreviewed/2024/02/GHSA-m5gq-732f-j9v6/GHSA-m5gq-732f-j9v6.json index 935b545e057..3e80251b1f8 100644 --- a/advisories/unreviewed/2024/02/GHSA-m5gq-732f-j9v6/GHSA-m5gq-732f-j9v6.json +++ b/advisories/unreviewed/2024/02/GHSA-m5gq-732f-j9v6/GHSA-m5gq-732f-j9v6.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-m5gq-732f-j9v6", - "modified": "2024-02-08T18:30:39Z", + "modified": "2024-02-15T06:31:34Z", "published": "2024-02-08T18:30:39Z", "aliases": [ "CVE-2024-25189" ], "details": "libjwt 1.15.3 uses strcmp (which is not constant time) to verify authentication, which makes it easier to bypass authentication via a timing side channel.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-203" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-08T17:15:10Z" diff --git a/advisories/unreviewed/2024/02/GHSA-m7x8-rvvc-g243/GHSA-m7x8-rvvc-g243.json b/advisories/unreviewed/2024/02/GHSA-m7x8-rvvc-g243/GHSA-m7x8-rvvc-g243.json index 4ec4eb6f933..dbe9d4fd2e8 100644 --- a/advisories/unreviewed/2024/02/GHSA-m7x8-rvvc-g243/GHSA-m7x8-rvvc-g243.json +++ b/advisories/unreviewed/2024/02/GHSA-m7x8-rvvc-g243/GHSA-m7x8-rvvc-g243.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-m7x8-rvvc-g243", - "modified": "2024-02-09T15:31:27Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-09T15:31:27Z", "aliases": [ "CVE-2024-25447" ], "details": "An issue in the imlib_load_image_with_error_return function of imlib2 v1.9.1 allows attackers to cause a heap buffer overflow via parsing a crafted image.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-787" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-09T15:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-mqpg-qh9p-8qwv/GHSA-mqpg-qh9p-8qwv.json b/advisories/unreviewed/2024/02/GHSA-mqpg-qh9p-8qwv/GHSA-mqpg-qh9p-8qwv.json index 9a55b1392b1..b92c93f42da 100644 --- a/advisories/unreviewed/2024/02/GHSA-mqpg-qh9p-8qwv/GHSA-mqpg-qh9p-8qwv.json +++ b/advisories/unreviewed/2024/02/GHSA-mqpg-qh9p-8qwv/GHSA-mqpg-qh9p-8qwv.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mqpg-qh9p-8qwv", - "modified": "2024-02-13T00:30:27Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-13T00:30:27Z", "aliases": [ "CVE-2024-23763" ], "details": "SQL Injection vulnerability in Gambio through 4.9.2.0 allows attackers to run arbitrary SQL commands via crafted GET request using modifiers[attribute][] parameter.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-12T22:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-mxwf-cc98-j5gr/GHSA-mxwf-cc98-j5gr.json b/advisories/unreviewed/2024/02/GHSA-mxwf-cc98-j5gr/GHSA-mxwf-cc98-j5gr.json index 540292606d3..d1bfcdd74f8 100644 --- a/advisories/unreviewed/2024/02/GHSA-mxwf-cc98-j5gr/GHSA-mxwf-cc98-j5gr.json +++ b/advisories/unreviewed/2024/02/GHSA-mxwf-cc98-j5gr/GHSA-mxwf-cc98-j5gr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mxwf-cc98-j5gr", - "modified": "2024-02-14T18:30:24Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-14T18:30:24Z", "aliases": [ "CVE-2024-25208" ], "details": "Barangay Population Monitoring System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the Add Resident function at /barangay-population-monitoring-system/masterlist.php. This vulnerabiity allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Full Name parameter.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-14T15:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-p943-xf69-x33h/GHSA-p943-xf69-x33h.json b/advisories/unreviewed/2024/02/GHSA-p943-xf69-x33h/GHSA-p943-xf69-x33h.json index 507e075de4a..e3593424632 100644 --- a/advisories/unreviewed/2024/02/GHSA-p943-xf69-x33h/GHSA-p943-xf69-x33h.json +++ b/advisories/unreviewed/2024/02/GHSA-p943-xf69-x33h/GHSA-p943-xf69-x33h.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-p943-xf69-x33h", - "modified": "2024-02-08T18:30:39Z", + "modified": "2024-02-15T06:31:34Z", "published": "2024-02-08T18:30:39Z", "aliases": [ "CVE-2023-50061" ], "details": "PrestaShop Op'art Easy Redirect >= 1.3.8 and <= 1.3.12 is vulnerable to SQL Injection via Oparteasyredirect::hookActionDispatcher().", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-08T18:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-pcf5-ghf3-p4x7/GHSA-pcf5-ghf3-p4x7.json b/advisories/unreviewed/2024/02/GHSA-pcf5-ghf3-p4x7/GHSA-pcf5-ghf3-p4x7.json new file mode 100644 index 00000000000..2d6f826b05d --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-pcf5-ghf3-p4x7/GHSA-pcf5-ghf3-p4x7.json @@ -0,0 +1,31 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pcf5-ghf3-p4x7", + "modified": "2024-02-15T06:31:36Z", + "published": "2024-02-15T06:31:36Z", + "aliases": [ + "CVE-2021-29638" + ], + "details": "Rejected reason: This candidate was in a CNA pool that was not assigned to any issues during 2021.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-29638" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T06:15:44Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-pwj3-3mcg-r7q2/GHSA-pwj3-3mcg-r7q2.json b/advisories/unreviewed/2024/02/GHSA-pwj3-3mcg-r7q2/GHSA-pwj3-3mcg-r7q2.json new file mode 100644 index 00000000000..32d06bc265c --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-pwj3-3mcg-r7q2/GHSA-pwj3-3mcg-r7q2.json @@ -0,0 +1,31 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pwj3-3mcg-r7q2", + "modified": "2024-02-15T06:31:36Z", + "published": "2024-02-15T06:31:36Z", + "aliases": [ + "CVE-2021-29635" + ], + "details": "Rejected reason: This candidate was in a CNA pool that was not assigned to any issues during 2021.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-29635" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T06:15:44Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-q23x-m6hh-jvf5/GHSA-q23x-m6hh-jvf5.json b/advisories/unreviewed/2024/02/GHSA-q23x-m6hh-jvf5/GHSA-q23x-m6hh-jvf5.json index 2e472d0e05f..4c0ccd12945 100644 --- a/advisories/unreviewed/2024/02/GHSA-q23x-m6hh-jvf5/GHSA-q23x-m6hh-jvf5.json +++ b/advisories/unreviewed/2024/02/GHSA-q23x-m6hh-jvf5/GHSA-q23x-m6hh-jvf5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-q23x-m6hh-jvf5", - "modified": "2024-02-09T00:31:36Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-09T00:31:36Z", "aliases": [ "CVE-2023-40263" ], "details": "An issue was discovered in Atos Unify OpenScape Voice Trace Manager V8 before V8 R0.9.11. It allows authenticated command injection via ftp.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-77" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-08T23:15:09Z" diff --git a/advisories/unreviewed/2024/02/GHSA-q765-9q4w-796w/GHSA-q765-9q4w-796w.json b/advisories/unreviewed/2024/02/GHSA-q765-9q4w-796w/GHSA-q765-9q4w-796w.json index 89f2367bcf7..3e62bdfa691 100644 --- a/advisories/unreviewed/2024/02/GHSA-q765-9q4w-796w/GHSA-q765-9q4w-796w.json +++ b/advisories/unreviewed/2024/02/GHSA-q765-9q4w-796w/GHSA-q765-9q4w-796w.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-q765-9q4w-796w", - "modified": "2024-02-14T18:30:25Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-14T18:30:25Z", "aliases": [ "CVE-2024-25216" ], "details": "Employee Managment System v1.0 was discovered to contain a SQL injection vulnerability via the mailud parameter at /aprocess.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-14T15:15:09Z" diff --git a/advisories/unreviewed/2024/02/GHSA-qg2q-3q8w-8v7r/GHSA-qg2q-3q8w-8v7r.json b/advisories/unreviewed/2024/02/GHSA-qg2q-3q8w-8v7r/GHSA-qg2q-3q8w-8v7r.json new file mode 100644 index 00000000000..fc8968ca5b8 --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-qg2q-3q8w-8v7r/GHSA-qg2q-3q8w-8v7r.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qg2q-3q8w-8v7r", + "modified": "2024-02-15T06:31:35Z", + "published": "2024-02-15T06:31:35Z", + "aliases": [ + "CVE-2022-23084" + ], + "details": "The total size of the user-provided nmreq to nmreq_copyin() was first computed and then trusted during the copyin. This time-of-check to time-of-use bug could lead to kernel memory corruption.\n\nOn systems configured to include netmap in their devfs_ruleset, a privileged process running in a jail can affect the host environment.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23084" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-22:04.netmap.asc" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T05:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-qg68-gmvv-vmqw/GHSA-qg68-gmvv-vmqw.json b/advisories/unreviewed/2024/02/GHSA-qg68-gmvv-vmqw/GHSA-qg68-gmvv-vmqw.json index f0433b5d17e..36560eddfe8 100644 --- a/advisories/unreviewed/2024/02/GHSA-qg68-gmvv-vmqw/GHSA-qg68-gmvv-vmqw.json +++ b/advisories/unreviewed/2024/02/GHSA-qg68-gmvv-vmqw/GHSA-qg68-gmvv-vmqw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qg68-gmvv-vmqw", - "modified": "2024-02-09T00:31:36Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-09T00:31:36Z", "aliases": [ "CVE-2023-40262" ], "details": "An issue was discovered in Atos Unify OpenScape Voice Trace Manager V8 before V8 R0.9.11. It allows unauthenticated Stored Cross-Site Scripting (XSS) in the administration component via Access Request.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-08T23:15:09Z" diff --git a/advisories/unreviewed/2024/02/GHSA-qhwj-cgvq-4h8w/GHSA-qhwj-cgvq-4h8w.json b/advisories/unreviewed/2024/02/GHSA-qhwj-cgvq-4h8w/GHSA-qhwj-cgvq-4h8w.json index 119c631fec9..b1c0e5c4500 100644 --- a/advisories/unreviewed/2024/02/GHSA-qhwj-cgvq-4h8w/GHSA-qhwj-cgvq-4h8w.json +++ b/advisories/unreviewed/2024/02/GHSA-qhwj-cgvq-4h8w/GHSA-qhwj-cgvq-4h8w.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qhwj-cgvq-4h8w", - "modified": "2024-02-09T15:31:27Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-09T15:31:27Z", "aliases": [ "CVE-2024-25443" ], "details": "An issue in the HuginBase::ImageVariable::linkWith function of Hugin v2022.0.0 allows attackers to cause a heap-use-after-free via parsing a crafted image.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-09T15:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-qmj7-qjqp-qh5p/GHSA-qmj7-qjqp-qh5p.json b/advisories/unreviewed/2024/02/GHSA-qmj7-qjqp-qh5p/GHSA-qmj7-qjqp-qh5p.json index fcc830b1ee7..cd7446c12f0 100644 --- a/advisories/unreviewed/2024/02/GHSA-qmj7-qjqp-qh5p/GHSA-qmj7-qjqp-qh5p.json +++ b/advisories/unreviewed/2024/02/GHSA-qmj7-qjqp-qh5p/GHSA-qmj7-qjqp-qh5p.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qmj7-qjqp-qh5p", - "modified": "2024-02-09T15:31:27Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-09T15:31:27Z", "aliases": [ "CVE-2024-25446" ], "details": "An issue in the HuginBase::PTools::setDestImage function of Hugin v2022.0.0 allows attackers to cause a heap buffer overflow via parsing a crafted image.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-787" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-09T15:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-qxwj-fm5r-rhx8/GHSA-qxwj-fm5r-rhx8.json b/advisories/unreviewed/2024/02/GHSA-qxwj-fm5r-rhx8/GHSA-qxwj-fm5r-rhx8.json new file mode 100644 index 00000000000..e46e2110dc7 --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-qxwj-fm5r-rhx8/GHSA-qxwj-fm5r-rhx8.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qxwj-fm5r-rhx8", + "modified": "2024-02-15T06:31:36Z", + "published": "2024-02-15T06:31:36Z", + "aliases": [ + "CVE-2023-46596" + ], + "details": "Improper input validation in Algosec FireFlow VisualFlow workflow editor via Name, Description and Configuration File field in version A32.20, A32.50, A32.60 allows an attacker to initiate an XSS attack by injecting malicious executable scripts into the code of application. Fixed in version A32.20 (b600 and\nabove), A32.50 (b430 and\nabove), A32.60 (b250 and\nabove)", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:H/PR:H/UI:R/S:U/C:H/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-46596" + }, + { + "type": "WEB", + "url": "https://cwe.mitre.org/data/definitions/79.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T06:15:45Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-r4qm-57w7-w36w/GHSA-r4qm-57w7-w36w.json b/advisories/unreviewed/2024/02/GHSA-r4qm-57w7-w36w/GHSA-r4qm-57w7-w36w.json new file mode 100644 index 00000000000..193f81f6c61 --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-r4qm-57w7-w36w/GHSA-r4qm-57w7-w36w.json @@ -0,0 +1,31 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r4qm-57w7-w36w", + "modified": "2024-02-15T06:31:36Z", + "published": "2024-02-15T06:31:36Z", + "aliases": [ + "CVE-2021-29639" + ], + "details": "Rejected reason: This candidate was in a CNA pool that was not assigned to any issues during 2021.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-29639" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T06:15:45Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-r7g7-x99g-rrxx/GHSA-r7g7-x99g-rrxx.json b/advisories/unreviewed/2024/02/GHSA-r7g7-x99g-rrxx/GHSA-r7g7-x99g-rrxx.json new file mode 100644 index 00000000000..932f1e771b2 --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-r7g7-x99g-rrxx/GHSA-r7g7-x99g-rrxx.json @@ -0,0 +1,31 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r7g7-x99g-rrxx", + "modified": "2024-02-15T06:31:36Z", + "published": "2024-02-15T06:31:36Z", + "aliases": [ + "CVE-2021-29634" + ], + "details": "Rejected reason: This candidate was in a CNA pool that was not assigned to any issues during 2021.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-29634" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T06:15:44Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-rmqc-8468-5wx2/GHSA-rmqc-8468-5wx2.json b/advisories/unreviewed/2024/02/GHSA-rmqc-8468-5wx2/GHSA-rmqc-8468-5wx2.json new file mode 100644 index 00000000000..80bf7d0d5f9 --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-rmqc-8468-5wx2/GHSA-rmqc-8468-5wx2.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rmqc-8468-5wx2", + "modified": "2024-02-15T06:31:35Z", + "published": "2024-02-15T06:31:35Z", + "aliases": [ + "CVE-2022-23087" + ], + "details": "The e1000 network adapters permit a variety of modifications to an Ethernet packet when it is being transmitted. These include the insertion of IP and TCP checksums, insertion of an Ethernet VLAN header, and TCP segmentation offload (\"TSO\"). The e1000 device model uses an on-stack buffer to generate the modified packet header when simulating these modifications on transmitted packets.\n\nWhen checksum offload is requested for a transmitted packet, the e1000 device model used a guest-provided value to specify the checksum offset in the on-stack buffer. The offset was not validated for certain packet types.\n\nA misbehaving bhyve guest could overwrite memory in the bhyve process on the host, possibly leading to code execution in the host context.\n\nThe bhyve process runs in a Capsicum sandbox, which (depending on the FreeBSD version and bhyve configuration) limits the impact of exploiting this issue.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23087" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-22:05.bhyve.asc" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T05:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-v9hf-gmhj-865f/GHSA-v9hf-gmhj-865f.json b/advisories/unreviewed/2024/02/GHSA-v9hf-gmhj-865f/GHSA-v9hf-gmhj-865f.json index 2508d4cdf2b..d407636764d 100644 --- a/advisories/unreviewed/2024/02/GHSA-v9hf-gmhj-865f/GHSA-v9hf-gmhj-865f.json +++ b/advisories/unreviewed/2024/02/GHSA-v9hf-gmhj-865f/GHSA-v9hf-gmhj-865f.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-v9hf-gmhj-865f", - "modified": "2024-02-10T09:30:20Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-10T09:30:20Z", "aliases": [ "CVE-2023-51415" diff --git a/advisories/unreviewed/2024/02/GHSA-w8p8-q938-ccr8/GHSA-w8p8-q938-ccr8.json b/advisories/unreviewed/2024/02/GHSA-w8p8-q938-ccr8/GHSA-w8p8-q938-ccr8.json new file mode 100644 index 00000000000..3ce0d77a1e2 --- /dev/null +++ b/advisories/unreviewed/2024/02/GHSA-w8p8-q938-ccr8/GHSA-w8p8-q938-ccr8.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w8p8-q938-ccr8", + "modified": "2024-02-15T06:31:35Z", + "published": "2024-02-15T06:31:35Z", + "aliases": [ + "CVE-2022-23085" + ], + "details": "A user-provided integer option was passed to nmreq_copyin() without checking if it would overflow. This insufficient bounds checking could lead to kernel memory corruption.\n\nOn systems configured to include netmap in their devfs_ruleset, a privileged process running in a jail can affect the host environment.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23085" + }, + { + "type": "WEB", + "url": "https://security.freebsd.org/advisories/FreeBSD-SA-22:04.netmap.asc" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-02-15T05:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/02/GHSA-wjx7-x5p3-4x8m/GHSA-wjx7-x5p3-4x8m.json b/advisories/unreviewed/2024/02/GHSA-wjx7-x5p3-4x8m/GHSA-wjx7-x5p3-4x8m.json index eb8fdeb9860..396b57f02d7 100644 --- a/advisories/unreviewed/2024/02/GHSA-wjx7-x5p3-4x8m/GHSA-wjx7-x5p3-4x8m.json +++ b/advisories/unreviewed/2024/02/GHSA-wjx7-x5p3-4x8m/GHSA-wjx7-x5p3-4x8m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-wjx7-x5p3-4x8m", - "modified": "2024-02-14T18:30:25Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-14T18:30:25Z", "aliases": [ "CVE-2024-25214" ], "details": "An issue in Employee Managment System v1.0 allows attackers to bypass authentication via injecting a crafted payload into the E-mail and Password parameters at /alogin.html.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-14T15:15:09Z" diff --git a/advisories/unreviewed/2024/02/GHSA-wq4q-4vw5-q8j3/GHSA-wq4q-4vw5-q8j3.json b/advisories/unreviewed/2024/02/GHSA-wq4q-4vw5-q8j3/GHSA-wq4q-4vw5-q8j3.json index 7dbba104d32..14b1076c338 100644 --- a/advisories/unreviewed/2024/02/GHSA-wq4q-4vw5-q8j3/GHSA-wq4q-4vw5-q8j3.json +++ b/advisories/unreviewed/2024/02/GHSA-wq4q-4vw5-q8j3/GHSA-wq4q-4vw5-q8j3.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-wq4q-4vw5-q8j3", - "modified": "2024-02-09T15:31:27Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-09T15:31:27Z", "aliases": [ "CVE-2024-25445" ], "details": "Improper handling of values in HuginBase::PTools::Transform::transform of Hugin 2022.0.0 leads to an assertion failure.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-617" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-09T15:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-x379-72wq-8vwf/GHSA-x379-72wq-8vwf.json b/advisories/unreviewed/2024/02/GHSA-x379-72wq-8vwf/GHSA-x379-72wq-8vwf.json index b6188d8f3cc..b9da79e817b 100644 --- a/advisories/unreviewed/2024/02/GHSA-x379-72wq-8vwf/GHSA-x379-72wq-8vwf.json +++ b/advisories/unreviewed/2024/02/GHSA-x379-72wq-8vwf/GHSA-x379-72wq-8vwf.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-195" + "CWE-195", + "CWE-681" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/02/GHSA-xjf9-7g5v-6jqf/GHSA-xjf9-7g5v-6jqf.json b/advisories/unreviewed/2024/02/GHSA-xjf9-7g5v-6jqf/GHSA-xjf9-7g5v-6jqf.json index c57febe624b..0162da2beea 100644 --- a/advisories/unreviewed/2024/02/GHSA-xjf9-7g5v-6jqf/GHSA-xjf9-7g5v-6jqf.json +++ b/advisories/unreviewed/2024/02/GHSA-xjf9-7g5v-6jqf/GHSA-xjf9-7g5v-6jqf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-xjf9-7g5v-6jqf", - "modified": "2024-02-14T18:30:25Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-14T18:30:25Z", "aliases": [ "CVE-2024-25212" ], "details": "Employee Managment System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /delete.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-14T15:15:09Z" diff --git a/advisories/unreviewed/2024/02/GHSA-xpmf-hwm7-p279/GHSA-xpmf-hwm7-p279.json b/advisories/unreviewed/2024/02/GHSA-xpmf-hwm7-p279/GHSA-xpmf-hwm7-p279.json index 7b84ba3dbf8..06c6dc72421 100644 --- a/advisories/unreviewed/2024/02/GHSA-xpmf-hwm7-p279/GHSA-xpmf-hwm7-p279.json +++ b/advisories/unreviewed/2024/02/GHSA-xpmf-hwm7-p279/GHSA-xpmf-hwm7-p279.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-xpmf-hwm7-p279", - "modified": "2024-02-08T18:30:39Z", + "modified": "2024-02-15T06:31:34Z", "published": "2024-02-08T18:30:39Z", "aliases": [ "CVE-2024-25190" ], "details": "l8w8jwt 2.2.1 uses memcmp (which is not constant time) to verify authentication, which makes it easier to bypass authentication via a timing side channel.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-203" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-08T17:15:11Z" diff --git a/advisories/unreviewed/2024/02/GHSA-xrf8-cmrg-7436/GHSA-xrf8-cmrg-7436.json b/advisories/unreviewed/2024/02/GHSA-xrf8-cmrg-7436/GHSA-xrf8-cmrg-7436.json index 09a17a80c7d..fd9c6118dee 100644 --- a/advisories/unreviewed/2024/02/GHSA-xrf8-cmrg-7436/GHSA-xrf8-cmrg-7436.json +++ b/advisories/unreviewed/2024/02/GHSA-xrf8-cmrg-7436/GHSA-xrf8-cmrg-7436.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-xrf8-cmrg-7436", - "modified": "2024-02-09T09:31:30Z", + "modified": "2024-02-15T06:31:35Z", "published": "2024-02-09T09:31:30Z", "aliases": [ "CVE-2023-31506" ], "details": "A cross-site scripting (XSS) vulnerability in Grav versions 1.7.44 and before, allows remote authenticated attackers to execute arbitrary web scripts or HTML via the onmouseover attribute of an ISINDEX element.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-09T07:15:59Z"