Publish Advisories

GHSA-vvwv-h69m-wg6f
GHSA-35r7-vh9q-xpf7
GHSA-4cv2-qh42-x2j4
GHSA-68m9-mw54-x3jx
GHSA-85qp-mxrm-pxg7
GHSA-c2fx-6qc9-26x9
GHSA-c9gw-j4mh-mj26
GHSA-fggx-frxq-cpx8
GHSA-gv4f-48g4-9pqh
GHSA-gvr6-g64h-9mj2
GHSA-h4m4-6cfw-5q6g
GHSA-jg57-vh55-3g23
GHSA-mwwq-v92j-38xr
GHSA-p99v-qjfm-8vvq
GHSA-qvr4-hgxw-v9xj
This commit is contained in:
advisory-database[bot]
2023-11-23 03:35:09 +00:00
parent e854e530d1
commit de101bd4c9
15 changed files with 99 additions and 5 deletions
@@ -40,6 +40,14 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2019-12331"
},
{
"type": "WEB",
"url": "https://github.com/PHPOffice/PhpSpreadsheet/pull/1041"
},
{
"type": "WEB",
"url": "https://github.com/PHPOffice/PhpSpreadsheet/commit/0e6238c69e863b58aeece61e48ea032696c6dccd"
},
{
"type": "PACKAGE",
"url": "https://github.com/PHPOffice/PhpSpreadsheet"
@@ -29,6 +29,10 @@
"type": "WEB",
"url": "https://crbug.com/1499298"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XWHRLW3GDNFBFSBHDD4QOPUPX7ORTUEC/"
},
{
"type": "WEB",
"url": "https://www.debian.org/security/2023/dsa-5556"
@@ -22,6 +22,10 @@
"type": "WEB",
"url": "https://bugzilla.mozilla.org/buglist.cgi?bug_id=1658432%2C1820983%2C1829252%2C1856072%2C1856091%2C1859030%2C1860943%2C1862782"
},
{
"type": "WEB",
"url": "https://www.debian.org/security/2023/dsa-5561"
},
{
"type": "WEB",
"url": "https://www.mozilla.org/security/advisories/mfsa2023-49/"
@@ -22,6 +22,10 @@
"type": "WEB",
"url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1857430"
},
{
"type": "WEB",
"url": "https://www.debian.org/security/2023/dsa-5561"
},
{
"type": "WEB",
"url": "https://www.mozilla.org/security/advisories/mfsa2023-49/"
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-85qp-mxrm-pxg7",
"modified": "2023-11-10T09:30:30Z",
"modified": "2023-11-23T03:34:08Z",
"published": "2023-11-10T09:30:30Z",
"aliases": [
"CVE-2023-47800"
],
"details": "Natus NeuroWorks and SleepWorks before 8.4 GMA3 utilize a default password of xltek for the Microsoft SQL Server service sa account, allowing a threat actor to perform remote code execution, data exfiltration, or other nefarious actions such as tampering with data or destroying/disrupting MSSQL services.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
"CWE-798"
],
"severity": null,
"severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2023-11-10T07:15:07Z"
@@ -22,6 +22,10 @@
"type": "WEB",
"url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1858570"
},
{
"type": "WEB",
"url": "https://www.debian.org/security/2023/dsa-5561"
},
{
"type": "WEB",
"url": "https://www.mozilla.org/security/advisories/mfsa2023-49/"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-c9gw-j4mh-mj26",
"modified": "2023-11-22T18:30:55Z",
"modified": "2023-11-23T03:34:08Z",
"published": "2023-11-21T15:30:20Z",
"aliases": [
"CVE-2023-6204"
@@ -22,6 +22,10 @@
"type": "WEB",
"url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1841050"
},
{
"type": "WEB",
"url": "https://www.debian.org/security/2023/dsa-5561"
},
{
"type": "WEB",
"url": "https://www.mozilla.org/security/advisories/mfsa2023-49/"
@@ -29,6 +29,10 @@
"type": "WEB",
"url": "https://crbug.com/1497997"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XWHRLW3GDNFBFSBHDD4QOPUPX7ORTUEC/"
},
{
"type": "WEB",
"url": "https://www.debian.org/security/2023/dsa-5556"
@@ -0,0 +1,35 @@
{
"schema_version": "1.4.0",
"id": "GHSA-gv4f-48g4-9pqh",
"modified": "2023-11-23T03:34:08Z",
"published": "2023-11-23T03:34:08Z",
"aliases": [
"CVE-2023-29073"
],
"details": "A maliciously crafted MODEL file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cause a Heap-Based Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.\n",
"severity": [
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-29073"
},
{
"type": "WEB",
"url": "https://www.autodesk.com/trust/security-advisories/adsk-sa-2023-0018"
}
],
"database_specific": {
"cwe_ids": [
"CWE-122"
],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2023-11-23T03:15:41Z"
}
}
@@ -22,6 +22,10 @@
"type": "WEB",
"url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1855345"
},
{
"type": "WEB",
"url": "https://www.debian.org/security/2023/dsa-5561"
},
{
"type": "WEB",
"url": "https://www.mozilla.org/security/advisories/mfsa2023-49/"
@@ -22,6 +22,10 @@
"type": "WEB",
"url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1854076"
},
{
"type": "WEB",
"url": "https://www.debian.org/security/2023/dsa-5561"
},
{
"type": "WEB",
"url": "https://www.mozilla.org/security/advisories/mfsa2023-49/"
@@ -22,6 +22,10 @@
"type": "WEB",
"url": "https://community.openvpn.net/openvpn/wiki/CVE-2023-46850"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/L3FS46ANNTAVLIQY56ZKGM5CBTRVBUNE/"
},
{
"type": "WEB",
"url": "https://openvpn.net/security-advisory/access-server-security-update-cve-2023-46849-cve-2023-46850/"
@@ -25,6 +25,10 @@
"type": "WEB",
"url": "https://advisory.splunk.com/advisories/SVD-2023-1104"
},
{
"type": "WEB",
"url": "https://research.splunk.com/application/6cb7e011-55fb-48e3-a98d-164fa854e37e/"
},
{
"type": "WEB",
"url": "https://research.splunk.com/application/a053e6a6-2146-483a-9798-2d43652f3299/"
@@ -22,6 +22,10 @@
"type": "WEB",
"url": "https://community.openvpn.net/openvpn/wiki/CVE-2023-46849"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/L3FS46ANNTAVLIQY56ZKGM5CBTRVBUNE/"
},
{
"type": "WEB",
"url": "https://openvpn.net/security-advisory/access-server-security-update-cve-2023-46849-cve-2023-46850/"
@@ -22,6 +22,10 @@
"type": "WEB",
"url": "https://bugzilla.mozilla.org/show_bug.cgi?id=1861344"
},
{
"type": "WEB",
"url": "https://www.debian.org/security/2023/dsa-5561"
},
{
"type": "WEB",
"url": "https://www.mozilla.org/security/advisories/mfsa2023-49/"