diff --git a/advisories/unreviewed/2022/10/GHSA-9wgq-fhm2-pjf3/GHSA-9wgq-fhm2-pjf3.json b/advisories/unreviewed/2022/10/GHSA-9wgq-fhm2-pjf3/GHSA-9wgq-fhm2-pjf3.json index 2c1929506e1..2c37544949a 100644 --- a/advisories/unreviewed/2022/10/GHSA-9wgq-fhm2-pjf3/GHSA-9wgq-fhm2-pjf3.json +++ b/advisories/unreviewed/2022/10/GHSA-9wgq-fhm2-pjf3/GHSA-9wgq-fhm2-pjf3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-9wgq-fhm2-pjf3", - "modified": "2022-10-24T19:00:17Z", + "modified": "2024-09-30T15:30:43Z", "published": "2022-10-24T19:00:17Z", "aliases": [ "CVE-2021-26731" @@ -36,6 +36,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-121", "CWE-77" ], "severity": "CRITICAL", diff --git a/advisories/unreviewed/2022/10/GHSA-wwhw-grq6-66rj/GHSA-wwhw-grq6-66rj.json b/advisories/unreviewed/2022/10/GHSA-wwhw-grq6-66rj/GHSA-wwhw-grq6-66rj.json index 3703c5dfb3e..d31ca4b2785 100644 --- a/advisories/unreviewed/2022/10/GHSA-wwhw-grq6-66rj/GHSA-wwhw-grq6-66rj.json +++ b/advisories/unreviewed/2022/10/GHSA-wwhw-grq6-66rj/GHSA-wwhw-grq6-66rj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wwhw-grq6-66rj", - "modified": "2022-10-24T19:00:17Z", + "modified": "2024-09-30T15:30:43Z", "published": "2022-10-24T19:00:17Z", "aliases": [ "CVE-2021-44467" @@ -36,7 +36,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-284" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-qhh4-wrfh-w5pg/GHSA-qhh4-wrfh-w5pg.json b/advisories/unreviewed/2024/05/GHSA-qhh4-wrfh-w5pg/GHSA-qhh4-wrfh-w5pg.json index 4795fb686fa..c7bb7eb1242 100644 --- a/advisories/unreviewed/2024/05/GHSA-qhh4-wrfh-w5pg/GHSA-qhh4-wrfh-w5pg.json +++ b/advisories/unreviewed/2024/05/GHSA-qhh4-wrfh-w5pg/GHSA-qhh4-wrfh-w5pg.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qhh4-wrfh-w5pg", - "modified": "2024-06-03T18:55:52Z", + "modified": "2024-09-30T15:30:43Z", "published": "2024-05-01T06:31:43Z", "aliases": [ "CVE-2024-27017" @@ -25,10 +25,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/29b359cf6d95fd60730533f7f10464e95bd17c73" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/52735a010f37580b3a569a996f878fdd87425650" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/721715655c72640567e8742567520c99801148ed" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f24d8abc2bb8cbf31ec713336e402eafa8f42f60" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4EZ6PJW7VOZ224TD7N4JZNU6KV32ZJ53" diff --git a/advisories/unreviewed/2024/07/GHSA-qxx3-fwc4-2mv7/GHSA-qxx3-fwc4-2mv7.json b/advisories/unreviewed/2024/07/GHSA-qxx3-fwc4-2mv7/GHSA-qxx3-fwc4-2mv7.json index 04faa751a42..b84c2cd2c70 100644 --- a/advisories/unreviewed/2024/07/GHSA-qxx3-fwc4-2mv7/GHSA-qxx3-fwc4-2mv7.json +++ b/advisories/unreviewed/2024/07/GHSA-qxx3-fwc4-2mv7/GHSA-qxx3-fwc4-2mv7.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qxx3-fwc4-2mv7", - "modified": "2024-08-12T21:31:32Z", + "modified": "2024-09-30T15:30:43Z", "published": "2024-07-31T15:31:18Z", "aliases": [ "CVE-2024-3082" diff --git a/advisories/unreviewed/2024/07/GHSA-r7gc-73mm-jqxm/GHSA-r7gc-73mm-jqxm.json b/advisories/unreviewed/2024/07/GHSA-r7gc-73mm-jqxm/GHSA-r7gc-73mm-jqxm.json index b61b86b66a0..72b365cd7b7 100644 --- a/advisories/unreviewed/2024/07/GHSA-r7gc-73mm-jqxm/GHSA-r7gc-73mm-jqxm.json +++ b/advisories/unreviewed/2024/07/GHSA-r7gc-73mm-jqxm/GHSA-r7gc-73mm-jqxm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-r7gc-73mm-jqxm", - "modified": "2024-07-29T09:36:14Z", + "modified": "2024-09-30T15:30:43Z", "published": "2024-07-29T09:36:14Z", "aliases": [ "CVE-2024-41016" @@ -21,6 +21,18 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/af77c4fc1871847b528d58b7fdafb4aa1f6a9262" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/c726dea9d0c806d64c26fcef483b1fb9474d8c5e" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/cfb926051fab19b10d1e65976211f364aa820180" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e4ffea01adf3323c821b6f37e9577d2d400adbaa" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/08/GHSA-94rm-mp59-j6h7/GHSA-94rm-mp59-j6h7.json b/advisories/unreviewed/2024/08/GHSA-94rm-mp59-j6h7/GHSA-94rm-mp59-j6h7.json index b42526cfb01..e9a5f166856 100644 --- a/advisories/unreviewed/2024/08/GHSA-94rm-mp59-j6h7/GHSA-94rm-mp59-j6h7.json +++ b/advisories/unreviewed/2024/08/GHSA-94rm-mp59-j6h7/GHSA-94rm-mp59-j6h7.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-94rm-mp59-j6h7", - "modified": "2024-08-17T12:30:32Z", + "modified": "2024-09-30T15:30:43Z", "published": "2024-08-17T12:30:32Z", "aliases": [ "CVE-2024-43825" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\niio: Fix the sorting functionality in iio_gts_build_avail_time_table\n\nThe sorting in iio_gts_build_avail_time_table is not working as intended.\nIt could result in an out-of-bounds access when the time is zero.\n\nHere are more details:\n\n1. When the gts->itime_table[i].time_us is zero, e.g., the time\nsequence is `3, 0, 1`, the inner for-loop will not terminate and do\nout-of-bound writes. This is because once `times[j] > new`, the value\n`new` will be added in the current position and the `times[j]` will be\nmoved to `j+1` position, which makes the if-condition always hold.\nMeanwhile, idx will be added one, making the loop keep running without\ntermination and out-of-bound write.\n2. If none of the gts->itime_table[i].time_us is zero, the elements\nwill just be copied without being sorted as described in the comment\n\"Sort times from all tables to one and remove duplicates\".\n\nFor more details, please refer to\nhttps://lore.kernel.org/all/6dd0d822-046c-4dd2-9532-79d7ab96ec05@gmail.com.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-787" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-17T10:15:08Z" diff --git a/advisories/unreviewed/2024/08/GHSA-cfx8-vqq2-xr93/GHSA-cfx8-vqq2-xr93.json b/advisories/unreviewed/2024/08/GHSA-cfx8-vqq2-xr93/GHSA-cfx8-vqq2-xr93.json index ffc6b19d5ae..2bf43730cd7 100644 --- a/advisories/unreviewed/2024/08/GHSA-cfx8-vqq2-xr93/GHSA-cfx8-vqq2-xr93.json +++ b/advisories/unreviewed/2024/08/GHSA-cfx8-vqq2-xr93/GHSA-cfx8-vqq2-xr93.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-cfx8-vqq2-xr93", - "modified": "2024-08-19T06:30:53Z", + "modified": "2024-09-30T15:30:43Z", "published": "2024-08-17T09:30:24Z", "aliases": [ "CVE-2024-42272" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nsched: act_ct: take care of padding in struct zones_ht_key\n\nBlamed commit increased lookup key size from 2 bytes to 16 bytes,\nbecause zones_ht_key got a struct net pointer.\n\nMake sure rhashtable_lookup() is not using the padding bytes\nwhich are not initialized.\n\n BUG: KMSAN: uninit-value in rht_ptr_rcu include/linux/rhashtable.h:376 [inline]\n BUG: KMSAN: uninit-value in __rhashtable_lookup include/linux/rhashtable.h:607 [inline]\n BUG: KMSAN: uninit-value in rhashtable_lookup include/linux/rhashtable.h:646 [inline]\n BUG: KMSAN: uninit-value in rhashtable_lookup_fast include/linux/rhashtable.h:672 [inline]\n BUG: KMSAN: uninit-value in tcf_ct_flow_table_get+0x611/0x2260 net/sched/act_ct.c:329\n rht_ptr_rcu include/linux/rhashtable.h:376 [inline]\n __rhashtable_lookup include/linux/rhashtable.h:607 [inline]\n rhashtable_lookup include/linux/rhashtable.h:646 [inline]\n rhashtable_lookup_fast include/linux/rhashtable.h:672 [inline]\n tcf_ct_flow_table_get+0x611/0x2260 net/sched/act_ct.c:329\n tcf_ct_init+0xa67/0x2890 net/sched/act_ct.c:1408\n tcf_action_init_1+0x6cc/0xb30 net/sched/act_api.c:1425\n tcf_action_init+0x458/0xf00 net/sched/act_api.c:1488\n tcf_action_add net/sched/act_api.c:2061 [inline]\n tc_ctl_action+0x4be/0x19d0 net/sched/act_api.c:2118\n rtnetlink_rcv_msg+0x12fc/0x1410 net/core/rtnetlink.c:6647\n netlink_rcv_skb+0x375/0x650 net/netlink/af_netlink.c:2550\n rtnetlink_rcv+0x34/0x40 net/core/rtnetlink.c:6665\n netlink_unicast_kernel net/netlink/af_netlink.c:1331 [inline]\n netlink_unicast+0xf52/0x1260 net/netlink/af_netlink.c:1357\n netlink_sendmsg+0x10da/0x11e0 net/netlink/af_netlink.c:1901\n sock_sendmsg_nosec net/socket.c:730 [inline]\n __sock_sendmsg+0x30f/0x380 net/socket.c:745\n ____sys_sendmsg+0x877/0xb60 net/socket.c:2597\n ___sys_sendmsg+0x28d/0x3c0 net/socket.c:2651\n __sys_sendmsg net/socket.c:2680 [inline]\n __do_sys_sendmsg net/socket.c:2689 [inline]\n __se_sys_sendmsg net/socket.c:2687 [inline]\n __x64_sys_sendmsg+0x307/0x4a0 net/socket.c:2687\n x64_sys_call+0x2dd6/0x3c10 arch/x86/include/generated/asm/syscalls_64.h:47\n do_syscall_x64 arch/x86/entry/common.c:52 [inline]\n do_syscall_64+0xcd/0x1e0 arch/x86/entry/common.c:83\n entry_SYSCALL_64_after_hwframe+0x77/0x7f\n\nLocal variable key created at:\n tcf_ct_flow_table_get+0x4a/0x2260 net/sched/act_ct.c:324\n tcf_ct_init+0xa67/0x2890 net/sched/act_ct.c:1408", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-908" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-17T09:15:08Z" diff --git a/advisories/unreviewed/2024/08/GHSA-cgvv-qq38-92ch/GHSA-cgvv-qq38-92ch.json b/advisories/unreviewed/2024/08/GHSA-cgvv-qq38-92ch/GHSA-cgvv-qq38-92ch.json index 854b46a03ba..472db7de155 100644 --- a/advisories/unreviewed/2024/08/GHSA-cgvv-qq38-92ch/GHSA-cgvv-qq38-92ch.json +++ b/advisories/unreviewed/2024/08/GHSA-cgvv-qq38-92ch/GHSA-cgvv-qq38-92ch.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-cgvv-qq38-92ch", - "modified": "2024-08-17T12:30:33Z", + "modified": "2024-09-30T15:30:43Z", "published": "2024-08-17T12:30:33Z", "aliases": [ "CVE-2024-43850" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nsoc: qcom: icc-bwmon: Fix refcount imbalance seen during bwmon_remove\n\nThe following warning is seen during bwmon_remove due to refcount\nimbalance, fix this by releasing the OPPs after use.\n\nLogs:\nWARNING: at drivers/opp/core.c:1640 _opp_table_kref_release+0x150/0x158\nHardware name: Qualcomm Technologies, Inc. X1E80100 CRD (DT)\n...\nCall trace:\n_opp_table_kref_release+0x150/0x158\ndev_pm_opp_remove_table+0x100/0x1b4\ndevm_pm_opp_of_table_release+0x10/0x1c\ndevm_action_release+0x14/0x20\ndevres_release_all+0xa4/0x104\ndevice_unbind_cleanup+0x18/0x60\ndevice_release_driver_internal+0x1ec/0x228\ndriver_detach+0x50/0x98\nbus_remove_driver+0x6c/0xbc\ndriver_unregister+0x30/0x60\nplatform_driver_unregister+0x14/0x20\nbwmon_driver_exit+0x18/0x524 [icc_bwmon]\n__arm64_sys_delete_module+0x184/0x264\ninvoke_syscall+0x48/0x118\nel0_svc_common.constprop.0+0xc8/0xe8\ndo_el0_svc+0x20/0x2c\nel0_svc+0x34/0xdc\nel0t_64_sync_handler+0x13c/0x158\nel0t_64_sync+0x190/0x194\n--[ end trace 0000000000000000 ]---", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-17T10:15:10Z" diff --git a/advisories/unreviewed/2024/08/GHSA-cxw8-j5f9-53mh/GHSA-cxw8-j5f9-53mh.json b/advisories/unreviewed/2024/08/GHSA-cxw8-j5f9-53mh/GHSA-cxw8-j5f9-53mh.json index 386a90b89db..fda28395dac 100644 --- a/advisories/unreviewed/2024/08/GHSA-cxw8-j5f9-53mh/GHSA-cxw8-j5f9-53mh.json +++ b/advisories/unreviewed/2024/08/GHSA-cxw8-j5f9-53mh/GHSA-cxw8-j5f9-53mh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cxw8-j5f9-53mh", - "modified": "2024-09-05T18:30:51Z", + "modified": "2024-09-30T15:30:43Z", "published": "2024-08-26T12:31:20Z", "aliases": [ "CVE-2024-44931" @@ -25,6 +25,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/1b955f786a4bcde8c0ccb2b7d519def2acb6f3cc" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/672c19165fc96dfad531a5458e0b3cdab414aae4" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/d776c0486b03a5c4afca65b8ff44573592bf93bb" diff --git a/advisories/unreviewed/2024/08/GHSA-frrf-pwhq-w5pw/GHSA-frrf-pwhq-w5pw.json b/advisories/unreviewed/2024/08/GHSA-frrf-pwhq-w5pw/GHSA-frrf-pwhq-w5pw.json index 79e573505ef..7e7d3cc9fb1 100644 --- a/advisories/unreviewed/2024/08/GHSA-frrf-pwhq-w5pw/GHSA-frrf-pwhq-w5pw.json +++ b/advisories/unreviewed/2024/08/GHSA-frrf-pwhq-w5pw/GHSA-frrf-pwhq-w5pw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-frrf-pwhq-w5pw", - "modified": "2024-08-17T12:30:33Z", + "modified": "2024-09-30T15:30:43Z", "published": "2024-08-17T12:30:32Z", "aliases": [ "CVE-2024-43842" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: rtw89: Fix array index mistake in rtw89_sta_info_get_iter()\n\nIn rtw89_sta_info_get_iter() 'status->he_gi' is compared to array size.\nBut then 'rate->he_gi' is used as array index instead of 'status->he_gi'.\nThis can lead to go beyond array boundaries in case of 'rate->he_gi' is\nnot equal to 'status->he_gi' and is bigger than array size. Looks like\n\"copy-paste\" mistake.\n\nFix this mistake by replacing 'rate->he_gi' with 'status->he_gi'.\n\nFound by Linux Verification Center (linuxtesting.org) with SVACE.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-129" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-17T10:15:09Z" diff --git a/advisories/unreviewed/2024/08/GHSA-hqrm-rrc5-v8pg/GHSA-hqrm-rrc5-v8pg.json b/advisories/unreviewed/2024/08/GHSA-hqrm-rrc5-v8pg/GHSA-hqrm-rrc5-v8pg.json index bc0e997b2b7..8872172672f 100644 --- a/advisories/unreviewed/2024/08/GHSA-hqrm-rrc5-v8pg/GHSA-hqrm-rrc5-v8pg.json +++ b/advisories/unreviewed/2024/08/GHSA-hqrm-rrc5-v8pg/GHSA-hqrm-rrc5-v8pg.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hqrm-rrc5-v8pg", - "modified": "2024-08-19T06:30:54Z", + "modified": "2024-09-30T15:30:43Z", "published": "2024-08-17T12:30:32Z", "aliases": [ "CVE-2024-43829" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/qxl: Add check for drm_cvt_mode\n\nAdd check for the return value of drm_cvt_mode() and return the error if\nit fails in order to avoid NULL pointer dereference.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -49,9 +52,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-17T10:15:08Z" diff --git a/advisories/unreviewed/2024/08/GHSA-mvqg-p94v-j4rg/GHSA-mvqg-p94v-j4rg.json b/advisories/unreviewed/2024/08/GHSA-mvqg-p94v-j4rg/GHSA-mvqg-p94v-j4rg.json index 7830c5bbeae..8229d3ddef4 100644 --- a/advisories/unreviewed/2024/08/GHSA-mvqg-p94v-j4rg/GHSA-mvqg-p94v-j4rg.json +++ b/advisories/unreviewed/2024/08/GHSA-mvqg-p94v-j4rg/GHSA-mvqg-p94v-j4rg.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mvqg-p94v-j4rg", - "modified": "2024-08-17T12:30:32Z", + "modified": "2024-09-30T15:30:43Z", "published": "2024-08-17T12:30:32Z", "aliases": [ "CVE-2024-43827" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Add null check before access structs\n\nIn enable_phantom_plane, we should better check null pointer before\naccessing various structs.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-17T10:15:08Z" diff --git a/advisories/unreviewed/2024/08/GHSA-q637-fwgw-hj6c/GHSA-q637-fwgw-hj6c.json b/advisories/unreviewed/2024/08/GHSA-q637-fwgw-hj6c/GHSA-q637-fwgw-hj6c.json index 645314b2390..db4916800a8 100644 --- a/advisories/unreviewed/2024/08/GHSA-q637-fwgw-hj6c/GHSA-q637-fwgw-hj6c.json +++ b/advisories/unreviewed/2024/08/GHSA-q637-fwgw-hj6c/GHSA-q637-fwgw-hj6c.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-q637-fwgw-hj6c", - "modified": "2024-08-19T06:30:53Z", + "modified": "2024-09-30T15:30:43Z", "published": "2024-08-17T09:30:24Z", "aliases": [ "CVE-2024-42297" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nf2fs: fix to don't dirty inode for readonly filesystem\n\nsyzbot reports f2fs bug as below:\n\nkernel BUG at fs/f2fs/inode.c:933!\nRIP: 0010:f2fs_evict_inode+0x1576/0x1590 fs/f2fs/inode.c:933\nCall Trace:\n evict+0x2a4/0x620 fs/inode.c:664\n dispose_list fs/inode.c:697 [inline]\n evict_inodes+0x5f8/0x690 fs/inode.c:747\n generic_shutdown_super+0x9d/0x2c0 fs/super.c:675\n kill_block_super+0x44/0x90 fs/super.c:1667\n kill_f2fs_super+0x303/0x3b0 fs/f2fs/super.c:4894\n deactivate_locked_super+0xc1/0x130 fs/super.c:484\n cleanup_mnt+0x426/0x4c0 fs/namespace.c:1256\n task_work_run+0x24a/0x300 kernel/task_work.c:180\n ptrace_notify+0x2cd/0x380 kernel/signal.c:2399\n ptrace_report_syscall include/linux/ptrace.h:411 [inline]\n ptrace_report_syscall_exit include/linux/ptrace.h:473 [inline]\n syscall_exit_work kernel/entry/common.c:251 [inline]\n syscall_exit_to_user_mode_prepare kernel/entry/common.c:278 [inline]\n __syscall_exit_to_user_mode_work kernel/entry/common.c:283 [inline]\n syscall_exit_to_user_mode+0x15c/0x280 kernel/entry/common.c:296\n do_syscall_64+0x50/0x110 arch/x86/entry/common.c:88\n entry_SYSCALL_64_after_hwframe+0x63/0x6b\n\nThe root cause is:\n- do_sys_open\n - f2fs_lookup\n - __f2fs_find_entry\n - f2fs_i_depth_write\n - f2fs_mark_inode_dirty_sync\n - f2fs_dirty_inode\n - set_inode_flag(inode, FI_DIRTY_INODE)\n\n- umount\n - kill_f2fs_super\n - kill_block_super\n - generic_shutdown_super\n - sync_filesystem\n : sb is readonly, skip sync_filesystem()\n - evict_inodes\n - iput\n - f2fs_evict_inode\n - f2fs_bug_on(sbi, is_inode_flag_set(inode, FI_DIRTY_INODE))\n : trigger kernel panic\n\nWhen we try to repair i_current_depth in readonly filesystem, let's\nskip dirty inode to avoid panic in later f2fs_evict_inode().", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -55,7 +58,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-17T09:15:10Z" diff --git a/advisories/unreviewed/2024/08/GHSA-vx56-8x3p-3hvp/GHSA-vx56-8x3p-3hvp.json b/advisories/unreviewed/2024/08/GHSA-vx56-8x3p-3hvp/GHSA-vx56-8x3p-3hvp.json index 75fe37a542c..b0a6e8fce40 100644 --- a/advisories/unreviewed/2024/08/GHSA-vx56-8x3p-3hvp/GHSA-vx56-8x3p-3hvp.json +++ b/advisories/unreviewed/2024/08/GHSA-vx56-8x3p-3hvp/GHSA-vx56-8x3p-3hvp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vx56-8x3p-3hvp", - "modified": "2024-08-17T09:30:24Z", + "modified": "2024-09-30T15:30:43Z", "published": "2024-08-17T09:30:24Z", "aliases": [ "CVE-2024-42278" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: TAS2781: Fix tasdev_load_calibrated_data()\n\nThis function has a reversed if statement so it's either a no-op or it\nleads to a NULL dereference.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-17T09:15:08Z" diff --git a/advisories/unreviewed/2024/08/GHSA-wqg8-c24w-4mwh/GHSA-wqg8-c24w-4mwh.json b/advisories/unreviewed/2024/08/GHSA-wqg8-c24w-4mwh/GHSA-wqg8-c24w-4mwh.json index b7785223a4c..54d751e33cf 100644 --- a/advisories/unreviewed/2024/08/GHSA-wqg8-c24w-4mwh/GHSA-wqg8-c24w-4mwh.json +++ b/advisories/unreviewed/2024/08/GHSA-wqg8-c24w-4mwh/GHSA-wqg8-c24w-4mwh.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-wqg8-c24w-4mwh", - "modified": "2024-08-17T09:30:25Z", + "modified": "2024-09-30T15:30:43Z", "published": "2024-08-17T09:30:25Z", "aliases": [ "CVE-2024-42320" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ns390/dasd: fix error checks in dasd_copy_pair_store()\n\ndasd_add_busid() can return an error via ERR_PTR() if an allocation\nfails. However, two callsites in dasd_copy_pair_store() do not check\nthe result, potentially resulting in a NULL pointer dereference. Fix\nthis by checking the result with IS_ERR() and returning the error up\nthe stack.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-17T09:15:11Z" diff --git a/advisories/unreviewed/2024/09/GHSA-4x6v-7m8g-5v5x/GHSA-4x6v-7m8g-5v5x.json b/advisories/unreviewed/2024/09/GHSA-4x6v-7m8g-5v5x/GHSA-4x6v-7m8g-5v5x.json index d5340721b21..113b5afafa8 100644 --- a/advisories/unreviewed/2024/09/GHSA-4x6v-7m8g-5v5x/GHSA-4x6v-7m8g-5v5x.json +++ b/advisories/unreviewed/2024/09/GHSA-4x6v-7m8g-5v5x/GHSA-4x6v-7m8g-5v5x.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4x6v-7m8g-5v5x", - "modified": "2024-09-25T03:30:36Z", + "modified": "2024-09-30T15:30:44Z", "published": "2024-09-25T03:30:36Z", "aliases": [ "CVE-2024-6590" diff --git a/advisories/unreviewed/2024/09/GHSA-52jr-7fqr-h29h/GHSA-52jr-7fqr-h29h.json b/advisories/unreviewed/2024/09/GHSA-52jr-7fqr-h29h/GHSA-52jr-7fqr-h29h.json index 8201901dd0c..cb82c9f1d0f 100644 --- a/advisories/unreviewed/2024/09/GHSA-52jr-7fqr-h29h/GHSA-52jr-7fqr-h29h.json +++ b/advisories/unreviewed/2024/09/GHSA-52jr-7fqr-h29h/GHSA-52jr-7fqr-h29h.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-52jr-7fqr-h29h", - "modified": "2024-09-25T03:30:36Z", + "modified": "2024-09-30T15:30:44Z", "published": "2024-09-25T03:30:36Z", "aliases": [ "CVE-2024-8878" ], "details": "The password recovery mechanism for the forgotten password in Riello Netman 204 allows an attacker to reset the admin password and take over control of the device.This issue affects Netman 204: through 4.05.", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" diff --git a/advisories/unreviewed/2024/09/GHSA-57m6-hpvh-pg7p/GHSA-57m6-hpvh-pg7p.json b/advisories/unreviewed/2024/09/GHSA-57m6-hpvh-pg7p/GHSA-57m6-hpvh-pg7p.json new file mode 100644 index 00000000000..ddb424c5fe9 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-57m6-hpvh-pg7p/GHSA-57m6-hpvh-pg7p.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-57m6-hpvh-pg7p", + "modified": "2024-09-30T15:30:49Z", + "published": "2024-09-30T15:30:49Z", + "aliases": [ + "CVE-2024-46313" + ], + "details": "TP-Link WR941ND V6 has a stack overflow vulnerability in the ssid parameter in /userRpm/popupSiteSurveyRpm.htm.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46313" + }, + { + "type": "WEB", + "url": "https://github.com/abcdefg-png/IoT-vulnerable/blob/main/TP-LINK/WR-941ND/popupSiteSurveyRpm.md" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-30T15:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-5v8x-4q2p-r884/GHSA-5v8x-4q2p-r884.json b/advisories/unreviewed/2024/09/GHSA-5v8x-4q2p-r884/GHSA-5v8x-4q2p-r884.json new file mode 100644 index 00000000000..568de73d54d --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-5v8x-4q2p-r884/GHSA-5v8x-4q2p-r884.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5v8x-4q2p-r884", + "modified": "2024-09-30T15:30:49Z", + "published": "2024-09-30T15:30:49Z", + "aliases": [ + "CVE-2024-47641" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPDeveloperr Confetti Fall Animation allows Stored XSS.This issue affects Confetti Fall Animation: from n/a through 1.3.0.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47641" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/confetti-fall-animation/wordpress-confetti-fall-animation-plugin-1-3-0-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-30T13:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-6399-3x37-fjv2/GHSA-6399-3x37-fjv2.json b/advisories/unreviewed/2024/09/GHSA-6399-3x37-fjv2/GHSA-6399-3x37-fjv2.json new file mode 100644 index 00000000000..4db283e0118 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-6399-3x37-fjv2/GHSA-6399-3x37-fjv2.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6399-3x37-fjv2", + "modified": "2024-09-30T15:30:49Z", + "published": "2024-09-30T15:30:49Z", + "aliases": [ + "CVE-2024-45920" + ], + "details": "A Stored Cross-Site Scripting (XSS) vulnerability in Solvait 24.4.2 allows remote attackers to inject malicious scripts into the application. This issue arises due to insufficient input validation and sanitization in \"Intrest\" feature.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45920" + }, + { + "type": "WEB", + "url": "https://gist.github.com/ipxsec/10526db2cbfcb899a70dcb8f0ee53a99" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-30T13:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-6443-r9mf-j2mj/GHSA-6443-r9mf-j2mj.json b/advisories/unreviewed/2024/09/GHSA-6443-r9mf-j2mj/GHSA-6443-r9mf-j2mj.json index f79425cfafc..820e77cbc08 100644 --- a/advisories/unreviewed/2024/09/GHSA-6443-r9mf-j2mj/GHSA-6443-r9mf-j2mj.json +++ b/advisories/unreviewed/2024/09/GHSA-6443-r9mf-j2mj/GHSA-6443-r9mf-j2mj.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-352" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/09/GHSA-6g6v-3rwx-w42j/GHSA-6g6v-3rwx-w42j.json b/advisories/unreviewed/2024/09/GHSA-6g6v-3rwx-w42j/GHSA-6g6v-3rwx-w42j.json index 203d41a0002..2673c298c78 100644 --- a/advisories/unreviewed/2024/09/GHSA-6g6v-3rwx-w42j/GHSA-6g6v-3rwx-w42j.json +++ b/advisories/unreviewed/2024/09/GHSA-6g6v-3rwx-w42j/GHSA-6g6v-3rwx-w42j.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6g6v-3rwx-w42j", - "modified": "2024-09-18T09:30:37Z", + "modified": "2024-09-30T15:30:44Z", "published": "2024-09-18T09:30:37Z", "aliases": [ "CVE-2024-46769" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nspi: intel: Add check devm_kasprintf() returned value\n\nintel_spi_populate_chip() use devm_kasprintf() to set pdata->name.\nThis can return a NULL pointer on failure but this returned value\nis not checked.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-18T08:15:04Z" diff --git a/advisories/unreviewed/2024/09/GHSA-86jj-7q3j-f287/GHSA-86jj-7q3j-f287.json b/advisories/unreviewed/2024/09/GHSA-86jj-7q3j-f287/GHSA-86jj-7q3j-f287.json index cdbd5dcab57..983e7fb97d9 100644 --- a/advisories/unreviewed/2024/09/GHSA-86jj-7q3j-f287/GHSA-86jj-7q3j-f287.json +++ b/advisories/unreviewed/2024/09/GHSA-86jj-7q3j-f287/GHSA-86jj-7q3j-f287.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-86jj-7q3j-f287", - "modified": "2024-09-18T09:30:36Z", + "modified": "2024-09-30T15:30:44Z", "published": "2024-09-18T09:30:36Z", "aliases": [ "CVE-2024-46727" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Add otg_master NULL check within resource_log_pipe_topology_update\n\n[Why]\nCoverity reports NULL_RETURN warning.\n\n[How]\nAdd otg_master NULL check.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-18T07:15:03Z" diff --git a/advisories/unreviewed/2024/09/GHSA-8pxm-qm8q-434m/GHSA-8pxm-qm8q-434m.json b/advisories/unreviewed/2024/09/GHSA-8pxm-qm8q-434m/GHSA-8pxm-qm8q-434m.json index c1edaaa896e..75c14cdad34 100644 --- a/advisories/unreviewed/2024/09/GHSA-8pxm-qm8q-434m/GHSA-8pxm-qm8q-434m.json +++ b/advisories/unreviewed/2024/09/GHSA-8pxm-qm8q-434m/GHSA-8pxm-qm8q-434m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8pxm-qm8q-434m", - "modified": "2024-09-18T09:30:35Z", + "modified": "2024-09-30T15:30:44Z", "published": "2024-09-18T09:30:35Z", "aliases": [ "CVE-2024-46714" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Skip wbscl_set_scaler_filter if filter is null\n\nCallers can pass null in filter (i.e. from returned from the function\nwbscl_get_filter_coeffs_16p) and a null check is added to ensure that is\nnot the case.\n\nThis fixes 4 NULL_RETURNS issues reported by Coverity.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -49,9 +52,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-18T07:15:03Z" diff --git a/advisories/unreviewed/2024/09/GHSA-8w9v-r586-45j6/GHSA-8w9v-r586-45j6.json b/advisories/unreviewed/2024/09/GHSA-8w9v-r586-45j6/GHSA-8w9v-r586-45j6.json index a3da719e38f..45cac01477a 100644 --- a/advisories/unreviewed/2024/09/GHSA-8w9v-r586-45j6/GHSA-8w9v-r586-45j6.json +++ b/advisories/unreviewed/2024/09/GHSA-8w9v-r586-45j6/GHSA-8w9v-r586-45j6.json @@ -36,7 +36,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-200" + "CWE-200", + "CWE-312" ], "severity": "LOW", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/09/GHSA-fxvq-h88x-3jfr/GHSA-fxvq-h88x-3jfr.json b/advisories/unreviewed/2024/09/GHSA-fxvq-h88x-3jfr/GHSA-fxvq-h88x-3jfr.json index 9cca3dfe6d8..7a1ebe37eb5 100644 --- a/advisories/unreviewed/2024/09/GHSA-fxvq-h88x-3jfr/GHSA-fxvq-h88x-3jfr.json +++ b/advisories/unreviewed/2024/09/GHSA-fxvq-h88x-3jfr/GHSA-fxvq-h88x-3jfr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-fxvq-h88x-3jfr", - "modified": "2024-09-18T09:30:36Z", + "modified": "2024-09-30T15:30:44Z", "published": "2024-09-18T09:30:36Z", "aliases": [ "CVE-2024-46744" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nSquashfs: sanity check symbolic link size\n\nSyzkiller reports a \"KMSAN: uninit-value in pick_link\" bug.\n\nThis is caused by an uninitialised page, which is ultimately caused\nby a corrupted symbolic link size read from disk.\n\nThe reason why the corrupted symlink size causes an uninitialised\npage is due to the following sequence of events:\n\n1. squashfs_read_inode() is called to read the symbolic\n link from disk. This assigns the corrupted value\n 3875536935 to inode->i_size.\n\n2. Later squashfs_symlink_read_folio() is called, which assigns\n this corrupted value to the length variable, which being a\n signed int, overflows producing a negative number.\n\n3. The following loop that fills in the page contents checks that\n the copied bytes is less than length, which being negative means\n the loop is skipped, producing an uninitialised page.\n\nThis patch adds a sanity check which checks that the symbolic\nlink size is not larger than expected.\n\n--\n\nV2: fix spelling mistake.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-59" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-18T08:15:03Z" diff --git a/advisories/unreviewed/2024/09/GHSA-g4xf-vj7c-7443/GHSA-g4xf-vj7c-7443.json b/advisories/unreviewed/2024/09/GHSA-g4xf-vj7c-7443/GHSA-g4xf-vj7c-7443.json index e1c6c0d4b20..cefe2a80075 100644 --- a/advisories/unreviewed/2024/09/GHSA-g4xf-vj7c-7443/GHSA-g4xf-vj7c-7443.json +++ b/advisories/unreviewed/2024/09/GHSA-g4xf-vj7c-7443/GHSA-g4xf-vj7c-7443.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-g4xf-vj7c-7443", - "modified": "2024-09-18T09:30:36Z", + "modified": "2024-09-30T15:30:44Z", "published": "2024-09-18T09:30:36Z", "aliases": [ "CVE-2024-46730" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Ensure array index tg_inst won't be -1\n\n[WHY & HOW]\ntg_inst will be a negative if timing_generator_count equals 0, which\nshould be checked before used.\n\nThis fixes 2 OVERRUN issues reported by Coverity.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-191" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-18T07:15:04Z" diff --git a/advisories/unreviewed/2024/09/GHSA-gwqg-23x2-cww4/GHSA-gwqg-23x2-cww4.json b/advisories/unreviewed/2024/09/GHSA-gwqg-23x2-cww4/GHSA-gwqg-23x2-cww4.json new file mode 100644 index 00000000000..13ae11aa23e --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-gwqg-23x2-cww4/GHSA-gwqg-23x2-cww4.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gwqg-23x2-cww4", + "modified": "2024-09-30T15:30:49Z", + "published": "2024-09-30T15:30:49Z", + "aliases": [ + "CVE-2024-6051" + ], + "details": "Cross Application Scripting vulnerability in Vercom S.A. Redlink SDK in specific situations allows local code injection and to manipulate the view of a vulnerable application.This issue affects Redlink SDK versions through 1.13.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:H/AT:P/PR:H/UI:A/VC:N/VI:H/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:D/RE:L/U:Clear" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6051" + }, + { + "type": "WEB", + "url": "https://cert.pl/en/posts/2024/09/CVE-2024-6051" + }, + { + "type": "WEB", + "url": "https://cert.pl/posts/2024/09/CVE-2024-6051" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-99" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-30T13:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-h8vm-65gc-gw46/GHSA-h8vm-65gc-gw46.json b/advisories/unreviewed/2024/09/GHSA-h8vm-65gc-gw46/GHSA-h8vm-65gc-gw46.json index 545ac7d50ec..cfb218323cf 100644 --- a/advisories/unreviewed/2024/09/GHSA-h8vm-65gc-gw46/GHSA-h8vm-65gc-gw46.json +++ b/advisories/unreviewed/2024/09/GHSA-h8vm-65gc-gw46/GHSA-h8vm-65gc-gw46.json @@ -28,6 +28,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-295", "CWE-297" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2024/09/GHSA-m27f-2cq8-j66v/GHSA-m27f-2cq8-j66v.json b/advisories/unreviewed/2024/09/GHSA-m27f-2cq8-j66v/GHSA-m27f-2cq8-j66v.json new file mode 100644 index 00000000000..347cc24757e --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-m27f-2cq8-j66v/GHSA-m27f-2cq8-j66v.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-m27f-2cq8-j66v", + "modified": "2024-09-30T15:30:49Z", + "published": "2024-09-30T15:30:49Z", + "aliases": [ + "CVE-2024-46280" + ], + "details": "PIX-LINK LV-WR22 RE3002-P1-01_V117.0 is vulnerable to Improper Access Control. The TELNET service is enabled with weak credentials for a root-level account, without the possibility of changing them.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46280" + }, + { + "type": "WEB", + "url": "https://0xmupa.github.io/pixlink-weak-telnet" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-30T15:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-m62c-4m95-xpcr/GHSA-m62c-4m95-xpcr.json b/advisories/unreviewed/2024/09/GHSA-m62c-4m95-xpcr/GHSA-m62c-4m95-xpcr.json index f6d4a8d9126..1faa8350c63 100644 --- a/advisories/unreviewed/2024/09/GHSA-m62c-4m95-xpcr/GHSA-m62c-4m95-xpcr.json +++ b/advisories/unreviewed/2024/09/GHSA-m62c-4m95-xpcr/GHSA-m62c-4m95-xpcr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-m62c-4m95-xpcr", - "modified": "2024-09-23T21:30:47Z", + "modified": "2024-09-30T15:30:44Z", "published": "2024-09-23T21:30:47Z", "aliases": [ "CVE-2024-47222" ], "details": "New Cloud MyOffice SDK Collaborative Editing Server 2.2.2 through 2.8 allows SSRF via manipulation of requests from external document storage via the MS-WOPI protocol.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-918" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-23T20:15:05Z" diff --git a/advisories/unreviewed/2024/09/GHSA-mgvj-6w35-qhj7/GHSA-mgvj-6w35-qhj7.json b/advisories/unreviewed/2024/09/GHSA-mgvj-6w35-qhj7/GHSA-mgvj-6w35-qhj7.json index 30fa156f53a..0786889b7f7 100644 --- a/advisories/unreviewed/2024/09/GHSA-mgvj-6w35-qhj7/GHSA-mgvj-6w35-qhj7.json +++ b/advisories/unreviewed/2024/09/GHSA-mgvj-6w35-qhj7/GHSA-mgvj-6w35-qhj7.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mgvj-6w35-qhj7", - "modified": "2024-09-18T09:30:36Z", + "modified": "2024-09-30T15:30:44Z", "published": "2024-09-18T09:30:36Z", "aliases": [ "CVE-2024-46750" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nPCI: Add missing bridge lock to pci_bus_lock()\n\nOne of the true positives that the cfg_access_lock lockdep effort\nidentified is this sequence:\n\n WARNING: CPU: 14 PID: 1 at drivers/pci/pci.c:4886 pci_bridge_secondary_bus_reset+0x5d/0x70\n RIP: 0010:pci_bridge_secondary_bus_reset+0x5d/0x70\n Call Trace:\n \n ? __warn+0x8c/0x190\n ? pci_bridge_secondary_bus_reset+0x5d/0x70\n ? report_bug+0x1f8/0x200\n ? handle_bug+0x3c/0x70\n ? exc_invalid_op+0x18/0x70\n ? asm_exc_invalid_op+0x1a/0x20\n ? pci_bridge_secondary_bus_reset+0x5d/0x70\n pci_reset_bus+0x1d8/0x270\n vmd_probe+0x778/0xa10\n pci_device_probe+0x95/0x120\n\nWhere pci_reset_bus() users are triggering unlocked secondary bus resets.\nIronically pci_bus_reset(), several calls down from pci_reset_bus(), uses\npci_bus_lock() before issuing the reset which locks everything *but* the\nbridge itself.\n\nFor the same motivation as adding:\n\n bridge = pci_upstream_bridge(dev);\n if (bridge)\n pci_dev_lock(bridge);\n\nto pci_reset_function() for the \"bus\" and \"cxl_bus\" reset cases, add\npci_dev_lock() for @bus->self to pci_bus_lock().\n\n[bhelgaas: squash in recursive locking deadlock fix from Keith Busch:\nhttps://lore.kernel.org/r/20240711193650.701834-1-kbusch@meta.com]", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-667" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-18T08:15:03Z" diff --git a/advisories/unreviewed/2024/09/GHSA-q97c-vhwv-v5w3/GHSA-q97c-vhwv-v5w3.json b/advisories/unreviewed/2024/09/GHSA-q97c-vhwv-v5w3/GHSA-q97c-vhwv-v5w3.json index 7523e605b15..d0baabd5321 100644 --- a/advisories/unreviewed/2024/09/GHSA-q97c-vhwv-v5w3/GHSA-q97c-vhwv-v5w3.json +++ b/advisories/unreviewed/2024/09/GHSA-q97c-vhwv-v5w3/GHSA-q97c-vhwv-v5w3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-q97c-vhwv-v5w3", - "modified": "2024-09-25T03:30:36Z", + "modified": "2024-09-30T15:30:44Z", "published": "2024-09-25T03:30:36Z", "aliases": [ "CVE-2024-7426" @@ -32,7 +32,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-200" + "CWE-200", + "CWE-209" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/09/GHSA-v4f9-5946-4v4f/GHSA-v4f9-5946-4v4f.json b/advisories/unreviewed/2024/09/GHSA-v4f9-5946-4v4f/GHSA-v4f9-5946-4v4f.json new file mode 100644 index 00000000000..5285610f3d7 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-v4f9-5946-4v4f/GHSA-v4f9-5946-4v4f.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v4f9-5946-4v4f", + "modified": "2024-09-30T15:30:49Z", + "published": "2024-09-30T15:30:49Z", + "aliases": [ + "CVE-2024-46293" + ], + "details": "Sourcecodester Online Medicine Ordering System 1.0 is vulnerable to Incorrect Access Control. There is a lack of authorization checks for admin operations. Specifically, an attacker can perform admin-level actions without possessing a valid session token. The application does not verify whether the user is logged in as an admin or even check for a session token at all.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46293" + }, + { + "type": "WEB", + "url": "https://github.com/bunyamindemir/vulnerability-disclosures/blob/main/omos-authorization-bypass.md" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-30T15:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-v5h4-3gwf-6343/GHSA-v5h4-3gwf-6343.json b/advisories/unreviewed/2024/09/GHSA-v5h4-3gwf-6343/GHSA-v5h4-3gwf-6343.json index 6613032dbbb..46e42f3114a 100644 --- a/advisories/unreviewed/2024/09/GHSA-v5h4-3gwf-6343/GHSA-v5h4-3gwf-6343.json +++ b/advisories/unreviewed/2024/09/GHSA-v5h4-3gwf-6343/GHSA-v5h4-3gwf-6343.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-v5h4-3gwf-6343", - "modified": "2024-09-18T09:30:36Z", + "modified": "2024-09-30T15:30:44Z", "published": "2024-09-18T09:30:36Z", "aliases": [ "CVE-2024-46751" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: don't BUG_ON() when 0 reference count at btrfs_lookup_extent_info()\n\nInstead of doing a BUG_ON() handle the error by returning -EUCLEAN,\naborting the transaction and logging an error message.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-18T08:15:04Z"