From eece6b4c98b9ef4c03574409c69af9b6714af106 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Fri, 1 Nov 2024 21:33:04 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-45x3-7pqw-7q45.json | 11 ++-- .../GHSA-88cf-9f4g-48wr.json | 9 ++- .../GHSA-8j5h-7226-33mj.json | 9 ++- .../GHSA-ch34-vwch-58hx.json | 4 +- .../GHSA-5q6q-6936-g555.json | 9 ++- .../GHSA-5r32-8c3f-2rf4.json | 11 ++-- .../GHSA-6qq8-6m9g-4jh3.json | 11 ++-- .../GHSA-9pjm-qf9r-pjr4.json | 9 ++- .../GHSA-fhff-594f-mqr9.json | 11 ++-- .../GHSA-hgjm-23r8-g35c.json | 9 ++- .../GHSA-p98c-qx6j-cgvx.json | 11 ++-- .../GHSA-vc9f-mgxr-h32r.json | 9 ++- .../GHSA-3wrv-h289-483m.json | 9 ++- .../GHSA-6x3j-xjx9-j84h.json | 11 ++-- .../GHSA-989p-25jr-248m.json | 9 ++- .../GHSA-99g4-9pcm-g9gx.json | 11 ++-- .../GHSA-j68j-2qh2-c4cq.json | 9 ++- .../GHSA-mgwp-p2g9-cmqr.json | 9 ++- .../GHSA-pw3m-pc2q-29fr.json | 11 ++-- .../GHSA-rgc8-28v5-r3w9.json | 11 ++-- .../GHSA-vf3g-q2rg-c398.json | 9 ++- .../GHSA-vhc8-mq4m-7gwx.json | 2 +- .../GHSA-wmr5-hhc3-fqcx.json | 9 ++- .../GHSA-59jf-m5fh-82rq.json | 2 +- .../GHSA-63cq-cj6g-qfr2.json | 11 ++-- .../GHSA-928w-mwq7-xvqr.json | 9 ++- .../GHSA-95jj-pjw6-q9fr.json | 9 ++- .../GHSA-993r-p55m-g6w5.json | 9 ++- .../GHSA-j9h6-5r2h-wq4m.json | 11 ++-- .../GHSA-p8xf-2w27-6wqx.json | 9 ++- .../GHSA-q88x-259m-g943.json | 11 ++-- .../GHSA-qm46-frrw-r2cw.json | 9 ++- .../GHSA-wr76-p7r7-8vjv.json | 9 ++- .../GHSA-xq5f-88w9-ffw2.json | 9 ++- .../GHSA-26ch-39wc-5m9p.json | 1 + .../GHSA-4v9w-chqg-3pgp.json | 11 ++-- .../GHSA-x8j4-c7pg-jjg9.json | 11 ++-- .../GHSA-8336-h83v-jppm.json | 2 +- .../GHSA-cg2g-6w24-28fp.json | 2 +- .../GHSA-f7v4-xw4v-h9wq.json | 9 ++- .../GHSA-g9f9-gp4p-jc4g.json | 2 +- .../GHSA-j42f-wc6v-5xpq.json | 9 ++- .../GHSA-mc6w-w4fp-fg4v.json | 9 ++- .../GHSA-mq5w-h63c-48mj.json | 11 ++-- .../GHSA-2hx5-4rrf-crcp.json | 59 +++++++++++++++++++ .../GHSA-f974-j7q8-xmcc.json | 2 +- .../GHSA-hmx8-gff7-qvpr.json | 59 +++++++++++++++++++ .../GHSA-mfj7-v48v-2hh9.json | 59 +++++++++++++++++++ .../GHSA-rfpm-vfqf-wj57.json | 2 +- 49 files changed, 424 insertions(+), 135 deletions(-) create mode 100644 advisories/unreviewed/2024/11/GHSA-2hx5-4rrf-crcp/GHSA-2hx5-4rrf-crcp.json create mode 100644 advisories/unreviewed/2024/11/GHSA-hmx8-gff7-qvpr/GHSA-hmx8-gff7-qvpr.json create mode 100644 advisories/unreviewed/2024/11/GHSA-mfj7-v48v-2hh9/GHSA-mfj7-v48v-2hh9.json diff --git a/advisories/unreviewed/2024/02/GHSA-45x3-7pqw-7q45/GHSA-45x3-7pqw-7q45.json b/advisories/unreviewed/2024/02/GHSA-45x3-7pqw-7q45/GHSA-45x3-7pqw-7q45.json index d6b5a7328a8..a155d601b6f 100644 --- a/advisories/unreviewed/2024/02/GHSA-45x3-7pqw-7q45/GHSA-45x3-7pqw-7q45.json +++ b/advisories/unreviewed/2024/02/GHSA-45x3-7pqw-7q45/GHSA-45x3-7pqw-7q45.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-45x3-7pqw-7q45", - "modified": "2024-02-22T15:30:39Z", + "modified": "2024-11-01T21:31:45Z", "published": "2024-02-22T15:30:39Z", "aliases": [ "CVE-2024-26351" ], "details": "flusity-CMS v2.33 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /core/tools/update_place.php", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-352" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-22T14:15:47Z" diff --git a/advisories/unreviewed/2024/02/GHSA-88cf-9f4g-48wr/GHSA-88cf-9f4g-48wr.json b/advisories/unreviewed/2024/02/GHSA-88cf-9f4g-48wr/GHSA-88cf-9f4g-48wr.json index e7e124a245e..d3db10be45d 100644 --- a/advisories/unreviewed/2024/02/GHSA-88cf-9f4g-48wr/GHSA-88cf-9f4g-48wr.json +++ b/advisories/unreviewed/2024/02/GHSA-88cf-9f4g-48wr/GHSA-88cf-9f4g-48wr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-88cf-9f4g-48wr", - "modified": "2024-02-17T06:30:34Z", + "modified": "2024-11-01T21:31:45Z", "published": "2024-02-17T06:30:34Z", "aliases": [ "CVE-2023-31728" ], "details": "Teltonika RUT240 devices with firmware before 07.04.2, when bridge mode is used, sometimes make SSH and HTTP services available on the IPv6 WAN interface even though the UI shows that they are only available on the LAN interface.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-17T04:15:07Z" diff --git a/advisories/unreviewed/2024/02/GHSA-8j5h-7226-33mj/GHSA-8j5h-7226-33mj.json b/advisories/unreviewed/2024/02/GHSA-8j5h-7226-33mj/GHSA-8j5h-7226-33mj.json index 7a4f05add01..50abe2f22a2 100644 --- a/advisories/unreviewed/2024/02/GHSA-8j5h-7226-33mj/GHSA-8j5h-7226-33mj.json +++ b/advisories/unreviewed/2024/02/GHSA-8j5h-7226-33mj/GHSA-8j5h-7226-33mj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8j5h-7226-33mj", - "modified": "2024-02-21T09:31:00Z", + "modified": "2024-11-01T21:31:45Z", "published": "2024-02-21T09:31:00Z", "aliases": [ "CVE-2023-42855" ], "details": "This issue was addressed with improved state management. This issue is fixed in iOS 17.1 and iPadOS 17.1. An attacker with physical access may be able to silently persist an Apple ID on an erased device.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-21T07:15:49Z" diff --git a/advisories/unreviewed/2024/02/GHSA-ch34-vwch-58hx/GHSA-ch34-vwch-58hx.json b/advisories/unreviewed/2024/02/GHSA-ch34-vwch-58hx/GHSA-ch34-vwch-58hx.json index 72e526acc7b..d0a1be9712f 100644 --- a/advisories/unreviewed/2024/02/GHSA-ch34-vwch-58hx/GHSA-ch34-vwch-58hx.json +++ b/advisories/unreviewed/2024/02/GHSA-ch34-vwch-58hx/GHSA-ch34-vwch-58hx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-ch34-vwch-58hx", - "modified": "2024-02-29T03:33:17Z", + "modified": "2024-11-01T21:31:45Z", "published": "2024-02-29T03:33:17Z", "aliases": [ "CVE-2024-22251" @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/03/GHSA-5q6q-6936-g555/GHSA-5q6q-6936-g555.json b/advisories/unreviewed/2024/03/GHSA-5q6q-6936-g555/GHSA-5q6q-6936-g555.json index 17e74fc64b9..8494abaef93 100644 --- a/advisories/unreviewed/2024/03/GHSA-5q6q-6936-g555/GHSA-5q6q-6936-g555.json +++ b/advisories/unreviewed/2024/03/GHSA-5q6q-6936-g555/GHSA-5q6q-6936-g555.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5q6q-6936-g555", - "modified": "2024-03-08T06:30:32Z", + "modified": "2024-11-01T21:31:45Z", "published": "2024-03-08T06:30:32Z", "aliases": [ "CVE-2024-27612" ], "details": "Numbas editor before 7.3 mishandles editing of themes and extensions.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-08T06:15:52Z" diff --git a/advisories/unreviewed/2024/03/GHSA-5r32-8c3f-2rf4/GHSA-5r32-8c3f-2rf4.json b/advisories/unreviewed/2024/03/GHSA-5r32-8c3f-2rf4/GHSA-5r32-8c3f-2rf4.json index 7baef45a8f3..f344cab9a6b 100644 --- a/advisories/unreviewed/2024/03/GHSA-5r32-8c3f-2rf4/GHSA-5r32-8c3f-2rf4.json +++ b/advisories/unreviewed/2024/03/GHSA-5r32-8c3f-2rf4/GHSA-5r32-8c3f-2rf4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5r32-8c3f-2rf4", - "modified": "2024-03-11T21:31:24Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-03-11T21:31:24Z", "aliases": [ "CVE-2024-22007" ], "details": "In constraint_check of fvp.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-11T19:15:47Z" diff --git a/advisories/unreviewed/2024/03/GHSA-6qq8-6m9g-4jh3/GHSA-6qq8-6m9g-4jh3.json b/advisories/unreviewed/2024/03/GHSA-6qq8-6m9g-4jh3/GHSA-6qq8-6m9g-4jh3.json index 173a2996dfb..e740f8fe91d 100644 --- a/advisories/unreviewed/2024/03/GHSA-6qq8-6m9g-4jh3/GHSA-6qq8-6m9g-4jh3.json +++ b/advisories/unreviewed/2024/03/GHSA-6qq8-6m9g-4jh3/GHSA-6qq8-6m9g-4jh3.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6qq8-6m9g-4jh3", - "modified": "2024-03-11T06:30:48Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-03-11T06:30:48Z", "aliases": [ "CVE-2024-28823" ], "details": "Amazon AWS aws-js-s3-explorer (aka AWS JavaScript S3 Explorer) 1.0.0 allows XSS via a crafted S3 bucket name to index.html.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-11T05:15:05Z" diff --git a/advisories/unreviewed/2024/03/GHSA-9pjm-qf9r-pjr4/GHSA-9pjm-qf9r-pjr4.json b/advisories/unreviewed/2024/03/GHSA-9pjm-qf9r-pjr4/GHSA-9pjm-qf9r-pjr4.json index feb96ec71a0..a1c373deb24 100644 --- a/advisories/unreviewed/2024/03/GHSA-9pjm-qf9r-pjr4/GHSA-9pjm-qf9r-pjr4.json +++ b/advisories/unreviewed/2024/03/GHSA-9pjm-qf9r-pjr4/GHSA-9pjm-qf9r-pjr4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9pjm-qf9r-pjr4", - "modified": "2024-03-13T21:31:02Z", + "modified": "2024-11-01T21:31:45Z", "published": "2024-03-08T03:31:25Z", "aliases": [ "CVE-2024-23260" ], "details": "This issue was addressed by removing additional entitlements. This issue is fixed in macOS Sonoma 14.4. An app may be able to access user-sensitive data.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-08T02:15:48Z" diff --git a/advisories/unreviewed/2024/03/GHSA-fhff-594f-mqr9/GHSA-fhff-594f-mqr9.json b/advisories/unreviewed/2024/03/GHSA-fhff-594f-mqr9/GHSA-fhff-594f-mqr9.json index 7e6d4fef261..46405519558 100644 --- a/advisories/unreviewed/2024/03/GHSA-fhff-594f-mqr9/GHSA-fhff-594f-mqr9.json +++ b/advisories/unreviewed/2024/03/GHSA-fhff-594f-mqr9/GHSA-fhff-594f-mqr9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-fhff-594f-mqr9", - "modified": "2024-05-01T18:30:36Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-03-20T15:32:38Z", "aliases": [ "CVE-2024-28564" ], "details": "Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the Imf_2_2::CharPtrIO::readChars() function when reading images in EXR format.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-120" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-20T06:15:08Z" diff --git a/advisories/unreviewed/2024/03/GHSA-hgjm-23r8-g35c/GHSA-hgjm-23r8-g35c.json b/advisories/unreviewed/2024/03/GHSA-hgjm-23r8-g35c/GHSA-hgjm-23r8-g35c.json index d82f9ffc1a4..ad7ef20af42 100644 --- a/advisories/unreviewed/2024/03/GHSA-hgjm-23r8-g35c/GHSA-hgjm-23r8-g35c.json +++ b/advisories/unreviewed/2024/03/GHSA-hgjm-23r8-g35c/GHSA-hgjm-23r8-g35c.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hgjm-23r8-g35c", - "modified": "2024-03-11T18:31:09Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-03-11T18:31:09Z", "aliases": [ "CVE-2024-1290" ], "details": "The User Registration WordPress plugin before 2.12 does not prevent users with at least the contributor role from rendering sensitive shortcodes, allowing them to generate, and leak, valid password reset URLs, which they can use to take over any accounts.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-11T18:15:18Z" diff --git a/advisories/unreviewed/2024/03/GHSA-p98c-qx6j-cgvx/GHSA-p98c-qx6j-cgvx.json b/advisories/unreviewed/2024/03/GHSA-p98c-qx6j-cgvx/GHSA-p98c-qx6j-cgvx.json index 8723b26ddcb..1d6e1b74963 100644 --- a/advisories/unreviewed/2024/03/GHSA-p98c-qx6j-cgvx/GHSA-p98c-qx6j-cgvx.json +++ b/advisories/unreviewed/2024/03/GHSA-p98c-qx6j-cgvx/GHSA-p98c-qx6j-cgvx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-p98c-qx6j-cgvx", - "modified": "2024-03-06T03:30:29Z", + "modified": "2024-11-01T21:31:45Z", "published": "2024-03-06T03:30:29Z", "aliases": [ "CVE-2023-49976" ], "details": "A cross-site scripting (XSS) vulnerability in Customer Support System v1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the subject parameter at /customer_support/index.php?page=new_ticket.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-06T01:15:07Z" diff --git a/advisories/unreviewed/2024/03/GHSA-vc9f-mgxr-h32r/GHSA-vc9f-mgxr-h32r.json b/advisories/unreviewed/2024/03/GHSA-vc9f-mgxr-h32r/GHSA-vc9f-mgxr-h32r.json index 5827b982dac..2933e68787c 100644 --- a/advisories/unreviewed/2024/03/GHSA-vc9f-mgxr-h32r/GHSA-vc9f-mgxr-h32r.json +++ b/advisories/unreviewed/2024/03/GHSA-vc9f-mgxr-h32r/GHSA-vc9f-mgxr-h32r.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vc9f-mgxr-h32r", - "modified": "2024-03-09T00:31:14Z", + "modified": "2024-11-01T21:31:45Z", "published": "2024-03-09T00:31:14Z", "aliases": [ "CVE-2024-28754" ], "details": "RaspAP (aka raspap-webgui) through 3.0.9 allows remote attackers to cause a persistent denial of service (bricking) via a crafted request.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-09T00:15:59Z" diff --git a/advisories/unreviewed/2024/04/GHSA-3wrv-h289-483m/GHSA-3wrv-h289-483m.json b/advisories/unreviewed/2024/04/GHSA-3wrv-h289-483m/GHSA-3wrv-h289-483m.json index 7279ad653b4..644a4cb0f81 100644 --- a/advisories/unreviewed/2024/04/GHSA-3wrv-h289-483m/GHSA-3wrv-h289-483m.json +++ b/advisories/unreviewed/2024/04/GHSA-3wrv-h289-483m/GHSA-3wrv-h289-483m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-3wrv-h289-483m", - "modified": "2024-04-10T21:30:31Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-04-10T21:30:31Z", "aliases": [ "CVE-2021-47189" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: fix memory ordering between normal and ordered work functions\n\nOrdered work functions aren't guaranteed to be handled by the same thread\nwhich executed the normal work functions. The only way execution between\nnormal/ordered functions is synchronized is via the WORK_DONE_BIT,\nunfortunately the used bitops don't guarantee any ordering whatsoever.\n\nThis manifested as seemingly inexplicable crashes on ARM64, where\nasync_chunk::inode is seen as non-null in async_cow_submit which causes\nsubmit_compressed_extents to be called and crash occurs because\nasync_chunk::inode suddenly became NULL. The call trace was similar to:\n\n pc : submit_compressed_extents+0x38/0x3d0\n lr : async_cow_submit+0x50/0xd0\n sp : ffff800015d4bc20\n\n \n\n Call trace:\n submit_compressed_extents+0x38/0x3d0\n async_cow_submit+0x50/0xd0\n run_ordered_work+0xc8/0x280\n btrfs_work_helper+0x98/0x250\n process_one_work+0x1f0/0x4ac\n worker_thread+0x188/0x504\n kthread+0x110/0x114\n ret_from_fork+0x10/0x18\n\nFix this by adding respective barrier calls which ensure that all\naccesses preceding setting of WORK_DONE_BIT are strictly ordered before\nsetting the flag. At the same time add a read barrier after reading of\nWORK_DONE_BIT in run_ordered_work which ensures all subsequent loads\nwould be strictly ordered after reading the bit. This in turn ensures\nare all accesses before WORK_DONE_BIT are going to be strictly ordered\nbefore any access that can occur in ordered_func.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -55,7 +58,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-10T19:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-6x3j-xjx9-j84h/GHSA-6x3j-xjx9-j84h.json b/advisories/unreviewed/2024/04/GHSA-6x3j-xjx9-j84h/GHSA-6x3j-xjx9-j84h.json index 17f1bb602fd..f3e38948a1a 100644 --- a/advisories/unreviewed/2024/04/GHSA-6x3j-xjx9-j84h/GHSA-6x3j-xjx9-j84h.json +++ b/advisories/unreviewed/2024/04/GHSA-6x3j-xjx9-j84h/GHSA-6x3j-xjx9-j84h.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6x3j-xjx9-j84h", - "modified": "2024-04-04T09:30:32Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-04-04T09:30:32Z", "aliases": [ "CVE-2023-25199" ], "details": "A reflected cross-site scripting (XSS) vulnerability exists in the MT Safeline X-Ray X3310 webserver version NXG 19.05 that enables a remote attacker to execute JavaScript code and obtain sensitive information in a victim's browser.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-04T07:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-989p-25jr-248m/GHSA-989p-25jr-248m.json b/advisories/unreviewed/2024/04/GHSA-989p-25jr-248m/GHSA-989p-25jr-248m.json index 7f462791696..0c623581ce8 100644 --- a/advisories/unreviewed/2024/04/GHSA-989p-25jr-248m/GHSA-989p-25jr-248m.json +++ b/advisories/unreviewed/2024/04/GHSA-989p-25jr-248m/GHSA-989p-25jr-248m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-989p-25jr-248m", - "modified": "2024-04-02T09:30:41Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-04-02T09:30:41Z", "aliases": [ "CVE-2024-26662" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Fix 'panel_cntl' could be null in 'dcn21_set_backlight_level()'\n\n'panel_cntl' structure used to control the display panel could be null,\ndereferencing it could lead to a null pointer access.\n\nFixes the below:\ndrivers/gpu/drm/amd/amdgpu/../display/dc/hwss/dcn21/dcn21_hwseq.c:269 dcn21_set_backlight_level() error: we previously assumed 'panel_cntl' could be null (see line 250)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-02T07:15:43Z" diff --git a/advisories/unreviewed/2024/04/GHSA-99g4-9pcm-g9gx/GHSA-99g4-9pcm-g9gx.json b/advisories/unreviewed/2024/04/GHSA-99g4-9pcm-g9gx/GHSA-99g4-9pcm-g9gx.json index bdd4f9069b1..ce14ac65638 100644 --- a/advisories/unreviewed/2024/04/GHSA-99g4-9pcm-g9gx/GHSA-99g4-9pcm-g9gx.json +++ b/advisories/unreviewed/2024/04/GHSA-99g4-9pcm-g9gx/GHSA-99g4-9pcm-g9gx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-99g4-9pcm-g9gx", - "modified": "2024-04-03T21:31:41Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-04-03T21:31:41Z", "aliases": [ "CVE-2024-27706" ], "details": "Cross Site Scripting vulnerability in Huly Platform v.0.6.202 allows attackers to execute arbitrary code via upload of crafted SVG file to issues.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-03T21:15:31Z" diff --git a/advisories/unreviewed/2024/04/GHSA-j68j-2qh2-c4cq/GHSA-j68j-2qh2-c4cq.json b/advisories/unreviewed/2024/04/GHSA-j68j-2qh2-c4cq/GHSA-j68j-2qh2-c4cq.json index 9cd70ac1d00..818d2f50963 100644 --- a/advisories/unreviewed/2024/04/GHSA-j68j-2qh2-c4cq/GHSA-j68j-2qh2-c4cq.json +++ b/advisories/unreviewed/2024/04/GHSA-j68j-2qh2-c4cq/GHSA-j68j-2qh2-c4cq.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-j68j-2qh2-c4cq", - "modified": "2024-06-27T12:30:45Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-04-17T12:32:05Z", "aliases": [ "CVE-2024-26880" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndm: call the resume method on internal suspend\n\nThere is this reported crash when experimenting with the lvm2 testsuite.\nThe list corruption is caused by the fact that the postsuspend and resume\nmethods were not paired correctly; there were two consecutive calls to the\norigin_postsuspend function. The second call attempts to remove the\n\"hash_list\" entry from a list, while it was already removed by the first\ncall.\n\nFix __dm_internal_resume so that it calls the preresume and resume\nmethods of the table's targets.\n\nIf a preresume method of some target fails, we are in a tricky situation.\nWe can't return an error because dm_internal_resume isn't supposed to\nreturn errors. We can't return success, because then the \"resume\" and\n\"postsuspend\" methods would not be paired correctly. So, we set the\nDMF_SUSPENDED flag and we fake normal suspend - it may confuse userspace\ntools, but it won't cause a kernel crash.\n\n------------[ cut here ]------------\nkernel BUG at lib/list_debug.c:56!\ninvalid opcode: 0000 [#1] PREEMPT SMP\nCPU: 1 PID: 8343 Comm: dmsetup Not tainted 6.8.0-rc6 #4\nHardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.14.0-2 04/01/2014\nRIP: 0010:__list_del_entry_valid_or_report+0x77/0xc0\n\nRSP: 0018:ffff8881b831bcc0 EFLAGS: 00010282\nRAX: 000000000000004e RBX: ffff888143b6eb80 RCX: 0000000000000000\nRDX: 0000000000000001 RSI: ffffffff819053d0 RDI: 00000000ffffffff\nRBP: ffff8881b83a3400 R08: 00000000fffeffff R09: 0000000000000058\nR10: 0000000000000000 R11: ffffffff81a24080 R12: 0000000000000001\nR13: ffff88814538e000 R14: ffff888143bc6dc0 R15: ffffffffa02e4bb0\nFS: 00000000f7c0f780(0000) GS:ffff8893f0a40000(0000) knlGS:0000000000000000\nCS: 0010 DS: 002b ES: 002b CR0: 0000000080050033\nCR2: 0000000057fb5000 CR3: 0000000143474000 CR4: 00000000000006b0\nCall Trace:\n \n ? die+0x2d/0x80\n ? do_trap+0xeb/0xf0\n ? __list_del_entry_valid_or_report+0x77/0xc0\n ? do_error_trap+0x60/0x80\n ? __list_del_entry_valid_or_report+0x77/0xc0\n ? exc_invalid_op+0x49/0x60\n ? __list_del_entry_valid_or_report+0x77/0xc0\n ? asm_exc_invalid_op+0x16/0x20\n ? table_deps+0x1b0/0x1b0 [dm_mod]\n ? __list_del_entry_valid_or_report+0x77/0xc0\n origin_postsuspend+0x1a/0x50 [dm_snapshot]\n dm_table_postsuspend_targets+0x34/0x50 [dm_mod]\n dm_suspend+0xd8/0xf0 [dm_mod]\n dev_suspend+0x1f2/0x2f0 [dm_mod]\n ? table_deps+0x1b0/0x1b0 [dm_mod]\n ctl_ioctl+0x300/0x5f0 [dm_mod]\n dm_compat_ctl_ioctl+0x7/0x10 [dm_mod]\n __x64_compat_sys_ioctl+0x104/0x170\n do_syscall_64+0x184/0x1b0\n entry_SYSCALL_64_after_hwframe+0x46/0x4e\nRIP: 0033:0xf7e6aead\n\n---[ end trace 0000000000000000 ]---", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -67,7 +70,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-17T11:15:09Z" diff --git a/advisories/unreviewed/2024/04/GHSA-mgwp-p2g9-cmqr/GHSA-mgwp-p2g9-cmqr.json b/advisories/unreviewed/2024/04/GHSA-mgwp-p2g9-cmqr/GHSA-mgwp-p2g9-cmqr.json index 4b0f82833ea..b077b197902 100644 --- a/advisories/unreviewed/2024/04/GHSA-mgwp-p2g9-cmqr/GHSA-mgwp-p2g9-cmqr.json +++ b/advisories/unreviewed/2024/04/GHSA-mgwp-p2g9-cmqr/GHSA-mgwp-p2g9-cmqr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mgwp-p2g9-cmqr", - "modified": "2024-04-08T09:31:13Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-04-08T09:31:13Z", "aliases": [ "CVE-2023-52551" ], "details": "Vulnerability of data verification errors in the kernel module.\nImpact: Successful exploitation of this vulnerability may affect service confidentiality.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ "CWE-120" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-08T09:15:09Z" diff --git a/advisories/unreviewed/2024/04/GHSA-pw3m-pc2q-29fr/GHSA-pw3m-pc2q-29fr.json b/advisories/unreviewed/2024/04/GHSA-pw3m-pc2q-29fr/GHSA-pw3m-pc2q-29fr.json index 7eefa9fd182..c4fb462efab 100644 --- a/advisories/unreviewed/2024/04/GHSA-pw3m-pc2q-29fr/GHSA-pw3m-pc2q-29fr.json +++ b/advisories/unreviewed/2024/04/GHSA-pw3m-pc2q-29fr/GHSA-pw3m-pc2q-29fr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-pw3m-pc2q-29fr", - "modified": "2024-04-01T09:30:31Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-04-01T09:30:31Z", "aliases": [ "CVE-2024-25080" ], "details": "WebMail in Axigen 10.x before 10.3.3.62 allows XSS via the image attachment viewer.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-01T09:15:50Z" diff --git a/advisories/unreviewed/2024/04/GHSA-rgc8-28v5-r3w9/GHSA-rgc8-28v5-r3w9.json b/advisories/unreviewed/2024/04/GHSA-rgc8-28v5-r3w9/GHSA-rgc8-28v5-r3w9.json index 7b215e277b1..5ff4f1f9096 100644 --- a/advisories/unreviewed/2024/04/GHSA-rgc8-28v5-r3w9/GHSA-rgc8-28v5-r3w9.json +++ b/advisories/unreviewed/2024/04/GHSA-rgc8-28v5-r3w9/GHSA-rgc8-28v5-r3w9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-rgc8-28v5-r3w9", - "modified": "2024-04-30T00:30:34Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-04-30T00:30:34Z", "aliases": [ "CVE-2023-50433" ], "details": "marshall in dhcp_packet.c in simple-dhcp-server through ec976d2 allows remote attackers to cause a denial of service by sending a malicious DHCP packet. The crash is caused by a type confusion bug that results in a large memory allocation; when this memory allocation fails the DHCP server will crash.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-843" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T22:15:06Z" diff --git a/advisories/unreviewed/2024/04/GHSA-vf3g-q2rg-c398/GHSA-vf3g-q2rg-c398.json b/advisories/unreviewed/2024/04/GHSA-vf3g-q2rg-c398/GHSA-vf3g-q2rg-c398.json index a31b2bd8f7c..858b90c9530 100644 --- a/advisories/unreviewed/2024/04/GHSA-vf3g-q2rg-c398/GHSA-vf3g-q2rg-c398.json +++ b/advisories/unreviewed/2024/04/GHSA-vf3g-q2rg-c398/GHSA-vf3g-q2rg-c398.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vf3g-q2rg-c398", - "modified": "2024-04-08T12:30:32Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-04-08T12:30:32Z", "aliases": [ "CVE-2023-52364" ], "details": "Vulnerability of input parameters being not strictly verified in the RSMC module.\nImpact: Successful exploitation of this vulnerability may cause out-of-bounds write.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ "CWE-120" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-08T10:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-vhc8-mq4m-7gwx/GHSA-vhc8-mq4m-7gwx.json b/advisories/unreviewed/2024/04/GHSA-vhc8-mq4m-7gwx/GHSA-vhc8-mq4m-7gwx.json index 68c998e0a1a..ab91a583edc 100644 --- a/advisories/unreviewed/2024/04/GHSA-vhc8-mq4m-7gwx/GHSA-vhc8-mq4m-7gwx.json +++ b/advisories/unreviewed/2024/04/GHSA-vhc8-mq4m-7gwx/GHSA-vhc8-mq4m-7gwx.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-290" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-wmr5-hhc3-fqcx/GHSA-wmr5-hhc3-fqcx.json b/advisories/unreviewed/2024/04/GHSA-wmr5-hhc3-fqcx/GHSA-wmr5-hhc3-fqcx.json index 742ecc71d38..0d6a2b92a1e 100644 --- a/advisories/unreviewed/2024/04/GHSA-wmr5-hhc3-fqcx/GHSA-wmr5-hhc3-fqcx.json +++ b/advisories/unreviewed/2024/04/GHSA-wmr5-hhc3-fqcx/GHSA-wmr5-hhc3-fqcx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-wmr5-hhc3-fqcx", - "modified": "2024-04-03T18:30:40Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-04-03T18:30:40Z", "aliases": [ "CVE-2023-44038" ], "details": "In VeridiumID before 3.5.0, the identity provider page allows an unauthenticated attacker to discover information about registered users via an LDAP injection attack.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-03T17:15:47Z" diff --git a/advisories/unreviewed/2024/05/GHSA-59jf-m5fh-82rq/GHSA-59jf-m5fh-82rq.json b/advisories/unreviewed/2024/05/GHSA-59jf-m5fh-82rq/GHSA-59jf-m5fh-82rq.json index 9a8e37021a0..cb9e3125d46 100644 --- a/advisories/unreviewed/2024/05/GHSA-59jf-m5fh-82rq/GHSA-59jf-m5fh-82rq.json +++ b/advisories/unreviewed/2024/05/GHSA-59jf-m5fh-82rq/GHSA-59jf-m5fh-82rq.json @@ -32,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-63cq-cj6g-qfr2/GHSA-63cq-cj6g-qfr2.json b/advisories/unreviewed/2024/05/GHSA-63cq-cj6g-qfr2/GHSA-63cq-cj6g-qfr2.json index 312180dfbcf..70c8be9b127 100644 --- a/advisories/unreviewed/2024/05/GHSA-63cq-cj6g-qfr2/GHSA-63cq-cj6g-qfr2.json +++ b/advisories/unreviewed/2024/05/GHSA-63cq-cj6g-qfr2/GHSA-63cq-cj6g-qfr2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-63cq-cj6g-qfr2", - "modified": "2024-05-14T15:32:52Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-05-14T15:32:52Z", "aliases": [ "CVE-2024-27282" ], "details": "An issue was discovered in Ruby 3.x through 3.3.0. If attacker-supplied data is provided to the Ruby regex compiler, it is possible to extract arbitrary heap data relative to the start of the text, including pointers and sensitive strings. The fixed versions are 3.0.7, 3.1.5, 3.2.4, and 3.3.1.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:L" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-14T15:11:57Z" diff --git a/advisories/unreviewed/2024/05/GHSA-928w-mwq7-xvqr/GHSA-928w-mwq7-xvqr.json b/advisories/unreviewed/2024/05/GHSA-928w-mwq7-xvqr/GHSA-928w-mwq7-xvqr.json index 6ecf5d4acd7..b7c2a530cac 100644 --- a/advisories/unreviewed/2024/05/GHSA-928w-mwq7-xvqr/GHSA-928w-mwq7-xvqr.json +++ b/advisories/unreviewed/2024/05/GHSA-928w-mwq7-xvqr/GHSA-928w-mwq7-xvqr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-928w-mwq7-xvqr", - "modified": "2024-05-14T18:30:52Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-05-14T18:30:52Z", "aliases": [ "CVE-2024-3239" ], "details": "The Post Grid Gutenberg Blocks and WordPress Blog Plugin WordPress plugin before 4.0.2 does not validate and escape some of its block options before outputting them back in a page/post where the block is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-14T15:40:31Z" diff --git a/advisories/unreviewed/2024/05/GHSA-95jj-pjw6-q9fr/GHSA-95jj-pjw6-q9fr.json b/advisories/unreviewed/2024/05/GHSA-95jj-pjw6-q9fr/GHSA-95jj-pjw6-q9fr.json index 3d31835ba56..95ccb501984 100644 --- a/advisories/unreviewed/2024/05/GHSA-95jj-pjw6-q9fr/GHSA-95jj-pjw6-q9fr.json +++ b/advisories/unreviewed/2024/05/GHSA-95jj-pjw6-q9fr/GHSA-95jj-pjw6-q9fr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-95jj-pjw6-q9fr", - "modified": "2024-05-21T15:31:45Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-05-21T15:31:44Z", "aliases": [ "CVE-2021-47406" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\next4: add error checking to ext4_ext_replay_set_iblocks()\n\nIf the call to ext4_map_blocks() fails due to an corrupted file\nsystem, ext4_ext_replay_set_iblocks() can get stuck in an infinite\nloop. This could be reproduced by running generic/526 with a file\nsystem that has inline_data and fast_commit enabled. The system will\nrepeatedly log to the console:\n\nEXT4-fs warning (device dm-3): ext4_block_to_path:105: block 1074800922 > max in inode 131076\n\nand the stack that it gets stuck in is:\n\n ext4_block_to_path+0xe3/0x130\n ext4_ind_map_blocks+0x93/0x690\n ext4_map_blocks+0x100/0x660\n skip_hole+0x47/0x70\n ext4_ext_replay_set_iblocks+0x223/0x440\n ext4_fc_replay_inode+0x29e/0x3b0\n ext4_fc_replay+0x278/0x550\n do_one_pass+0x646/0xc10\n jbd2_journal_recover+0x14a/0x270\n jbd2_journal_load+0xc4/0x150\n ext4_load_journal+0x1f3/0x490\n ext4_fill_super+0x22d4/0x2c00\n\nWith this patch, generic/526 still fails, but system is no longer\nlocking up in a tight loop. It's likely the root casue is that\nfast_commit replay is corrupting file systems with inline_data, and we\nprobably need to add better error handling in the fast commit replay\ncode path beyond what is done here, which essentially just breaks the\ninfinite loop without reporting the to the higher levels of the code.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:26Z" diff --git a/advisories/unreviewed/2024/05/GHSA-993r-p55m-g6w5/GHSA-993r-p55m-g6w5.json b/advisories/unreviewed/2024/05/GHSA-993r-p55m-g6w5/GHSA-993r-p55m-g6w5.json index 53a8813908a..7c12ba6dd74 100644 --- a/advisories/unreviewed/2024/05/GHSA-993r-p55m-g6w5/GHSA-993r-p55m-g6w5.json +++ b/advisories/unreviewed/2024/05/GHSA-993r-p55m-g6w5/GHSA-993r-p55m-g6w5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-993r-p55m-g6w5", - "modified": "2024-05-01T15:30:34Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-05-01T15:30:34Z", "aliases": [ "CVE-2024-24978" ], "details": "Denial-of-service (DoS) vulnerability exists in TvRock 0.9t8a. Receiving a specially crafted request by a remote attacker or having a user of TvRock click a specially crafted request may lead to ABEND (abnormal end). Note that the developer was unreachable, therefore, users should consider stop using TvRock 0.9t8a.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T13:15:48Z" diff --git a/advisories/unreviewed/2024/05/GHSA-j9h6-5r2h-wq4m/GHSA-j9h6-5r2h-wq4m.json b/advisories/unreviewed/2024/05/GHSA-j9h6-5r2h-wq4m/GHSA-j9h6-5r2h-wq4m.json index 220fb9dd513..bc2fae993b7 100644 --- a/advisories/unreviewed/2024/05/GHSA-j9h6-5r2h-wq4m/GHSA-j9h6-5r2h-wq4m.json +++ b/advisories/unreviewed/2024/05/GHSA-j9h6-5r2h-wq4m/GHSA-j9h6-5r2h-wq4m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-j9h6-5r2h-wq4m", - "modified": "2024-05-22T15:31:00Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-05-22T15:31:00Z", "aliases": [ "CVE-2024-35552" ], "details": "idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/infoMove_deal.php?mudi=del&dataType=logo&dataTypeCN.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-352" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-22T14:15:09Z" diff --git a/advisories/unreviewed/2024/05/GHSA-p8xf-2w27-6wqx/GHSA-p8xf-2w27-6wqx.json b/advisories/unreviewed/2024/05/GHSA-p8xf-2w27-6wqx/GHSA-p8xf-2w27-6wqx.json index efcf7bc5104..e3d22810e2d 100644 --- a/advisories/unreviewed/2024/05/GHSA-p8xf-2w27-6wqx/GHSA-p8xf-2w27-6wqx.json +++ b/advisories/unreviewed/2024/05/GHSA-p8xf-2w27-6wqx/GHSA-p8xf-2w27-6wqx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-p8xf-2w27-6wqx", - "modified": "2024-05-20T12:30:28Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-05-20T12:30:28Z", "aliases": [ "CVE-2024-35970" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\naf_unix: Clear stale u->oob_skb.\n\nsyzkaller started to report deadlock of unix_gc_lock after commit\n4090fa373f0e (\"af_unix: Replace garbage collection algorithm.\"), but\nit just uncovers the bug that has been there since commit 314001f0bf92\n(\"af_unix: Add OOB support\").\n\nThe repro basically does the following.\n\n from socket import *\n from array import array\n\n c1, c2 = socketpair(AF_UNIX, SOCK_STREAM)\n c1.sendmsg([b'a'], [(SOL_SOCKET, SCM_RIGHTS, array(\"i\", [c2.fileno()]))], MSG_OOB)\n c2.recv(1) # blocked as no normal data in recv queue\n\n c2.close() # done async and unblock recv()\n c1.close() # done async and trigger GC\n\nA socket sends its file descriptor to itself as OOB data and tries to\nreceive normal data, but finally recv() fails due to async close().\n\nThe problem here is wrong handling of OOB skb in manage_oob(). When\nrecvmsg() is called without MSG_OOB, manage_oob() is called to check\nif the peeked skb is OOB skb. In such a case, manage_oob() pops it\nout of the receive queue but does not clear unix_sock(sk)->oob_skb.\nThis is wrong in terms of uAPI.\n\nLet's say we send \"hello\" with MSG_OOB, and \"world\" without MSG_OOB.\nThe 'o' is handled as OOB data. When recv() is called twice without\nMSG_OOB, the OOB data should be lost.\n\n >>> from socket import *\n >>> c1, c2 = socketpair(AF_UNIX, SOCK_STREAM, 0)\n >>> c1.send(b'hello', MSG_OOB) # 'o' is OOB data\n 5\n >>> c1.send(b'world')\n 5\n >>> c2.recv(5) # OOB data is not received\n b'hell'\n >>> c2.recv(5) # OOB date is skipped\n b'world'\n >>> c2.recv(5, MSG_OOB) # This should return an error\n b'o'\n\nIn the same situation, TCP actually returns -EINVAL for the last\nrecv().\n\nAlso, if we do not clear unix_sk(sk)->oob_skb, unix_poll() always set\nEPOLLPRI even though the data has passed through by previous recv().\n\nTo avoid these issues, we must clear unix_sk(sk)->oob_skb when dequeuing\nit from recv queue.\n\nThe reason why the old GC did not trigger the deadlock is because the\nold GC relied on the receive queue to detect the loop.\n\nWhen it is triggered, the socket with OOB data is marked as GC candidate\nbecause file refcount == inflight count (1). However, after traversing\nall inflight sockets, the socket still has a positive inflight count (1),\nthus the socket is excluded from candidates. Then, the old GC lose the\nchance to garbage-collect the socket.\n\nWith the old GC, the repro continues to create true garbage that will\nnever be freed nor detected by kmemleak as it's linked to the global\ninflight list. That's why we couldn't even notice the issue.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -43,7 +46,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-20T10:15:11Z" diff --git a/advisories/unreviewed/2024/05/GHSA-q88x-259m-g943/GHSA-q88x-259m-g943.json b/advisories/unreviewed/2024/05/GHSA-q88x-259m-g943/GHSA-q88x-259m-g943.json index 630428a319d..7c0df658b77 100644 --- a/advisories/unreviewed/2024/05/GHSA-q88x-259m-g943/GHSA-q88x-259m-g943.json +++ b/advisories/unreviewed/2024/05/GHSA-q88x-259m-g943/GHSA-q88x-259m-g943.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-q88x-259m-g943", - "modified": "2024-05-14T18:31:01Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-05-14T18:31:01Z", "aliases": [ "CVE-2024-33866" ], "details": "An issue was discovered in linqi before 1.4.0.1 on Windows. There is /api/DocumentTemplate/{GUID] XSS.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-14T16:17:22Z" diff --git a/advisories/unreviewed/2024/05/GHSA-qm46-frrw-r2cw/GHSA-qm46-frrw-r2cw.json b/advisories/unreviewed/2024/05/GHSA-qm46-frrw-r2cw/GHSA-qm46-frrw-r2cw.json index 95457f247b9..4827ecda08e 100644 --- a/advisories/unreviewed/2024/05/GHSA-qm46-frrw-r2cw/GHSA-qm46-frrw-r2cw.json +++ b/advisories/unreviewed/2024/05/GHSA-qm46-frrw-r2cw/GHSA-qm46-frrw-r2cw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qm46-frrw-r2cw", - "modified": "2024-06-10T18:31:00Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-05-14T15:32:53Z", "aliases": [ "CVE-2024-27852" ], "details": "A privacy issue was addressed with improved client ID handling for alternative app marketplaces. This issue is fixed in iOS 17.5 and iPadOS 17.5. A maliciously crafted webpage may be able to distribute a script that tracks users on other webpages.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-14T15:13:08Z" diff --git a/advisories/unreviewed/2024/05/GHSA-wr76-p7r7-8vjv/GHSA-wr76-p7r7-8vjv.json b/advisories/unreviewed/2024/05/GHSA-wr76-p7r7-8vjv/GHSA-wr76-p7r7-8vjv.json index 8a25a85d9aa..b2dcdc7daa6 100644 --- a/advisories/unreviewed/2024/05/GHSA-wr76-p7r7-8vjv/GHSA-wr76-p7r7-8vjv.json +++ b/advisories/unreviewed/2024/05/GHSA-wr76-p7r7-8vjv/GHSA-wr76-p7r7-8vjv.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-wr76-p7r7-8vjv", - "modified": "2024-05-21T15:31:44Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-05-21T15:31:44Z", "aliases": [ "CVE-2021-47400" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: hns3: do not allow call hns3_nic_net_open repeatedly\n\nhns3_nic_net_open() is not allowed to called repeatly, but there\nis no checking for this. When doing device reset and setup tc\nconcurrently, there is a small oppotunity to call hns3_nic_net_open\nrepeatedly, and cause kernel bug by calling napi_enable twice.\n\nThe calltrace information is like below:\n[ 3078.222780] ------------[ cut here ]------------\n[ 3078.230255] kernel BUG at net/core/dev.c:6991!\n[ 3078.236224] Internal error: Oops - BUG: 0 [#1] PREEMPT SMP\n[ 3078.243431] Modules linked in: hns3 hclgevf hclge hnae3 vfio_iommu_type1 vfio_pci vfio_virqfd vfio pv680_mii(O)\n[ 3078.258880] CPU: 0 PID: 295 Comm: kworker/u8:5 Tainted: G O 5.14.0-rc4+ #1\n[ 3078.269102] Hardware name: , BIOS KpxxxFPGA 1P B600 V181 08/12/2021\n[ 3078.276801] Workqueue: hclge hclge_service_task [hclge]\n[ 3078.288774] pstate: 60400009 (nZCv daif +PAN -UAO -TCO BTYPE=--)\n[ 3078.296168] pc : napi_enable+0x80/0x84\ntc qdisc sho[w 3d0e7v8 .e3t0h218 79] lr : hns3_nic_net_open+0x138/0x510 [hns3]\n\n[ 3078.314771] sp : ffff8000108abb20\n[ 3078.319099] x29: ffff8000108abb20 x28: 0000000000000000 x27: ffff0820a8490300\n[ 3078.329121] x26: 0000000000000001 x25: ffff08209cfc6200 x24: 0000000000000000\n[ 3078.339044] x23: ffff0820a8490300 x22: ffff08209cd76000 x21: ffff0820abfe3880\n[ 3078.349018] x20: 0000000000000000 x19: ffff08209cd76900 x18: 0000000000000000\n[ 3078.358620] x17: 0000000000000000 x16: ffffc816e1727a50 x15: 0000ffff8f4ff930\n[ 3078.368895] x14: 0000000000000000 x13: 0000000000000000 x12: 0000259e9dbeb6b4\n[ 3078.377987] x11: 0096a8f7e764eb40 x10: 634615ad28d3eab5 x9 : ffffc816ad8885b8\n[ 3078.387091] x8 : ffff08209cfc6fb8 x7 : ffff0820ac0da058 x6 : ffff0820a8490344\n[ 3078.396356] x5 : 0000000000000140 x4 : 0000000000000003 x3 : ffff08209cd76938\n[ 3078.405365] x2 : 0000000000000000 x1 : 0000000000000010 x0 : ffff0820abfe38a0\n[ 3078.414657] Call trace:\n[ 3078.418517] napi_enable+0x80/0x84\n[ 3078.424626] hns3_reset_notify_up_enet+0x78/0xd0 [hns3]\n[ 3078.433469] hns3_reset_notify+0x64/0x80 [hns3]\n[ 3078.441430] hclge_notify_client+0x68/0xb0 [hclge]\n[ 3078.450511] hclge_reset_rebuild+0x524/0x884 [hclge]\n[ 3078.458879] hclge_reset_service_task+0x3c4/0x680 [hclge]\n[ 3078.467470] hclge_service_task+0xb0/0xb54 [hclge]\n[ 3078.475675] process_one_work+0x1dc/0x48c\n[ 3078.481888] worker_thread+0x15c/0x464\n[ 3078.487104] kthread+0x160/0x170\n[ 3078.492479] ret_from_fork+0x10/0x18\n[ 3078.498785] Code: c8027c81 35ffffa2 d50323bf d65f03c0 (d4210000)\n[ 3078.506889] ---[ end trace 8ebe0340a1b0fb44 ]---\n\nOnce hns3_nic_net_open() is excute success, the flag\nHNS3_NIC_STATE_DOWN will be cleared. So add checking for this\nflag, directly return when HNS3_NIC_STATE_DOWN is no set.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:25Z" diff --git a/advisories/unreviewed/2024/05/GHSA-xq5f-88w9-ffw2/GHSA-xq5f-88w9-ffw2.json b/advisories/unreviewed/2024/05/GHSA-xq5f-88w9-ffw2/GHSA-xq5f-88w9-ffw2.json index 49186fedc87..7c31d7095d5 100644 --- a/advisories/unreviewed/2024/05/GHSA-xq5f-88w9-ffw2/GHSA-xq5f-88w9-ffw2.json +++ b/advisories/unreviewed/2024/05/GHSA-xq5f-88w9-ffw2/GHSA-xq5f-88w9-ffw2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-xq5f-88w9-ffw2", - "modified": "2024-05-17T06:31:17Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-05-17T06:31:17Z", "aliases": [ "CVE-2024-3231" ], "details": "The Popup4Phone WordPress plugin through 1.3.2 does not sanitise and escape some parameters, which could allow unauthenticated users to perform Cross-Site Scripting attacks against admins.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-17T06:15:53Z" diff --git a/advisories/unreviewed/2024/06/GHSA-26ch-39wc-5m9p/GHSA-26ch-39wc-5m9p.json b/advisories/unreviewed/2024/06/GHSA-26ch-39wc-5m9p/GHSA-26ch-39wc-5m9p.json index b4a3cdada31..7a31d8f7f90 100644 --- a/advisories/unreviewed/2024/06/GHSA-26ch-39wc-5m9p/GHSA-26ch-39wc-5m9p.json +++ b/advisories/unreviewed/2024/06/GHSA-26ch-39wc-5m9p/GHSA-26ch-39wc-5m9p.json @@ -28,6 +28,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-120", "CWE-125" ], "severity": "CRITICAL", diff --git a/advisories/unreviewed/2024/06/GHSA-4v9w-chqg-3pgp/GHSA-4v9w-chqg-3pgp.json b/advisories/unreviewed/2024/06/GHSA-4v9w-chqg-3pgp/GHSA-4v9w-chqg-3pgp.json index f8c20167ec5..e0a3443c08a 100644 --- a/advisories/unreviewed/2024/06/GHSA-4v9w-chqg-3pgp/GHSA-4v9w-chqg-3pgp.json +++ b/advisories/unreviewed/2024/06/GHSA-4v9w-chqg-3pgp/GHSA-4v9w-chqg-3pgp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4v9w-chqg-3pgp", - "modified": "2024-06-14T21:30:52Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-06-11T18:30:46Z", "aliases": [ "CVE-2024-26330" ], "details": "An issue was discovered in Kape CyberGhostVPN 8.4.3.12823 on Windows. After a successful logout, user credentials remain in memory while the process is still open, and can be obtained by dumping the process memory and parsing it.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-522" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-11T17:15:51Z" diff --git a/advisories/unreviewed/2024/09/GHSA-x8j4-c7pg-jjg9/GHSA-x8j4-c7pg-jjg9.json b/advisories/unreviewed/2024/09/GHSA-x8j4-c7pg-jjg9/GHSA-x8j4-c7pg-jjg9.json index 4115c8c34d5..5a9a73accda 100644 --- a/advisories/unreviewed/2024/09/GHSA-x8j4-c7pg-jjg9/GHSA-x8j4-c7pg-jjg9.json +++ b/advisories/unreviewed/2024/09/GHSA-x8j4-c7pg-jjg9/GHSA-x8j4-c7pg-jjg9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-x8j4-c7pg-jjg9", - "modified": "2024-09-11T18:31:08Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-09-11T18:31:08Z", "aliases": [ "CVE-2024-44573" ], "details": "A stored cross-site scripting (XSS) vulnerability in the VLAN configuration of RELY-PCIe v22.2.1 to v23.1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-11T17:15:13Z" diff --git a/advisories/unreviewed/2024/10/GHSA-8336-h83v-jppm/GHSA-8336-h83v-jppm.json b/advisories/unreviewed/2024/10/GHSA-8336-h83v-jppm/GHSA-8336-h83v-jppm.json index 247cb989dfd..f913037a75d 100644 --- a/advisories/unreviewed/2024/10/GHSA-8336-h83v-jppm/GHSA-8336-h83v-jppm.json +++ b/advisories/unreviewed/2024/10/GHSA-8336-h83v-jppm/GHSA-8336-h83v-jppm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8336-h83v-jppm", - "modified": "2024-10-29T12:30:57Z", + "modified": "2024-11-01T21:31:47Z", "published": "2024-10-29T12:30:57Z", "aliases": [ "CVE-2024-49663" diff --git a/advisories/unreviewed/2024/10/GHSA-cg2g-6w24-28fp/GHSA-cg2g-6w24-28fp.json b/advisories/unreviewed/2024/10/GHSA-cg2g-6w24-28fp/GHSA-cg2g-6w24-28fp.json index 75e6f1c6961..2bc94221fcf 100644 --- a/advisories/unreviewed/2024/10/GHSA-cg2g-6w24-28fp/GHSA-cg2g-6w24-28fp.json +++ b/advisories/unreviewed/2024/10/GHSA-cg2g-6w24-28fp/GHSA-cg2g-6w24-28fp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cg2g-6w24-28fp", - "modified": "2024-10-18T06:30:32Z", + "modified": "2024-11-01T21:31:47Z", "published": "2024-10-18T06:30:32Z", "aliases": [ "CVE-2024-9361" diff --git a/advisories/unreviewed/2024/10/GHSA-f7v4-xw4v-h9wq/GHSA-f7v4-xw4v-h9wq.json b/advisories/unreviewed/2024/10/GHSA-f7v4-xw4v-h9wq/GHSA-f7v4-xw4v-h9wq.json index ef81da065a2..605c0ed5841 100644 --- a/advisories/unreviewed/2024/10/GHSA-f7v4-xw4v-h9wq/GHSA-f7v4-xw4v-h9wq.json +++ b/advisories/unreviewed/2024/10/GHSA-f7v4-xw4v-h9wq/GHSA-f7v4-xw4v-h9wq.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f7v4-xw4v-h9wq", - "modified": "2024-10-21T18:30:59Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-10-21T18:30:59Z", "aliases": [ "CVE-2024-49971" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Increase array size of dummy_boolean\n\n[WHY]\ndml2_core_shared_mode_support and dml_core_mode_support access the third\nelement of dummy_boolean, i.e. hw_debug5 = &s->dummy_boolean[2], when\ndummy_boolean has size of 2. Any assignment to hw_debug5 causes an\nOVERRUN.\n\n[HOW]\nIncrease dummy_boolean's array size to 3.\n\nThis fixes 2 OVERRUN issues reported by Coverity.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-10-21T18:15:18Z" diff --git a/advisories/unreviewed/2024/10/GHSA-g9f9-gp4p-jc4g/GHSA-g9f9-gp4p-jc4g.json b/advisories/unreviewed/2024/10/GHSA-g9f9-gp4p-jc4g/GHSA-g9f9-gp4p-jc4g.json index f9dd63b16c5..304c5991e4c 100644 --- a/advisories/unreviewed/2024/10/GHSA-g9f9-gp4p-jc4g/GHSA-g9f9-gp4p-jc4g.json +++ b/advisories/unreviewed/2024/10/GHSA-g9f9-gp4p-jc4g/GHSA-g9f9-gp4p-jc4g.json @@ -32,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/10/GHSA-j42f-wc6v-5xpq/GHSA-j42f-wc6v-5xpq.json b/advisories/unreviewed/2024/10/GHSA-j42f-wc6v-5xpq/GHSA-j42f-wc6v-5xpq.json index 07e61d3fb3a..6d5cf60ed8c 100644 --- a/advisories/unreviewed/2024/10/GHSA-j42f-wc6v-5xpq/GHSA-j42f-wc6v-5xpq.json +++ b/advisories/unreviewed/2024/10/GHSA-j42f-wc6v-5xpq/GHSA-j42f-wc6v-5xpq.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-j42f-wc6v-5xpq", - "modified": "2024-10-17T18:31:37Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-10-17T18:31:37Z", "aliases": [ "CVE-2024-49400" ], "details": "Tacquito prior to commit 07b49d1358e6ec0b5aa482fcd284f509191119e2 was not properly performing regex matches on authorized commands and arguments. Configured allowed commands/arguments were intended to require a match on the entire string, but instead only enforced a match on a sub-string. That would have potentially allowed unauthorized commands to be executed.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-10-17T18:15:15Z" diff --git a/advisories/unreviewed/2024/10/GHSA-mc6w-w4fp-fg4v/GHSA-mc6w-w4fp-fg4v.json b/advisories/unreviewed/2024/10/GHSA-mc6w-w4fp-fg4v/GHSA-mc6w-w4fp-fg4v.json index 98dc8c0bb3e..173b748c6ba 100644 --- a/advisories/unreviewed/2024/10/GHSA-mc6w-w4fp-fg4v/GHSA-mc6w-w4fp-fg4v.json +++ b/advisories/unreviewed/2024/10/GHSA-mc6w-w4fp-fg4v/GHSA-mc6w-w4fp-fg4v.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mc6w-w4fp-fg4v", - "modified": "2024-10-21T18:30:59Z", + "modified": "2024-11-01T21:31:46Z", "published": "2024-10-21T18:30:59Z", "aliases": [ "CVE-2024-49972" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Deallocate DML memory if allocation fails\n\n[Why]\nWhen DC state create DML memory allocation fails, memory is not\ndeallocated subsequently, resulting in uninitialized structure\nthat is not NULL.\n\n[How]\nDeallocate memory if DML memory allocation fails.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-10-21T18:15:18Z" diff --git a/advisories/unreviewed/2024/10/GHSA-mq5w-h63c-48mj/GHSA-mq5w-h63c-48mj.json b/advisories/unreviewed/2024/10/GHSA-mq5w-h63c-48mj/GHSA-mq5w-h63c-48mj.json index 20922e501ba..c15d7a5a16b 100644 --- a/advisories/unreviewed/2024/10/GHSA-mq5w-h63c-48mj/GHSA-mq5w-h63c-48mj.json +++ b/advisories/unreviewed/2024/10/GHSA-mq5w-h63c-48mj/GHSA-mq5w-h63c-48mj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mq5w-h63c-48mj", - "modified": "2024-10-31T21:31:45Z", + "modified": "2024-11-01T21:31:47Z", "published": "2024-10-31T21:31:45Z", "aliases": [ "CVE-2023-52045" ], "details": "Studio-42 eLfinder 2.1.62 contains a filename restriction bypass leading to a persistent Cross-site Scripting (XSS) vulnerability.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-10-31T19:15:12Z" diff --git a/advisories/unreviewed/2024/11/GHSA-2hx5-4rrf-crcp/GHSA-2hx5-4rrf-crcp.json b/advisories/unreviewed/2024/11/GHSA-2hx5-4rrf-crcp/GHSA-2hx5-4rrf-crcp.json new file mode 100644 index 00000000000..ee585e3659f --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-2hx5-4rrf-crcp/GHSA-2hx5-4rrf-crcp.json @@ -0,0 +1,59 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2hx5-4rrf-crcp", + "modified": "2024-11-01T21:31:51Z", + "published": "2024-11-01T21:31:51Z", + "aliases": [ + "CVE-2024-44234" + ], + "details": "The issue was addressed with improved bounds checks. This issue is fixed in macOS Sonoma 14.7.1, macOS Ventura 13.7.1, visionOS 2.1, watchOS 11.1, tvOS 18.1, iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1. Parsing a maliciously crafted video file may lead to unexpected system termination.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44234" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121563" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121565" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121566" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121567" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121568" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121569" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121570" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-01T21:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-f974-j7q8-xmcc/GHSA-f974-j7q8-xmcc.json b/advisories/unreviewed/2024/11/GHSA-f974-j7q8-xmcc/GHSA-f974-j7q8-xmcc.json index 646369f0086..6252b9d4a87 100644 --- a/advisories/unreviewed/2024/11/GHSA-f974-j7q8-xmcc/GHSA-f974-j7q8-xmcc.json +++ b/advisories/unreviewed/2024/11/GHSA-f974-j7q8-xmcc/GHSA-f974-j7q8-xmcc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-f974-j7q8-xmcc", - "modified": "2024-11-01T15:31:59Z", + "modified": "2024-11-01T21:31:50Z", "published": "2024-11-01T15:31:59Z", "aliases": [ "CVE-2024-43219" diff --git a/advisories/unreviewed/2024/11/GHSA-hmx8-gff7-qvpr/GHSA-hmx8-gff7-qvpr.json b/advisories/unreviewed/2024/11/GHSA-hmx8-gff7-qvpr/GHSA-hmx8-gff7-qvpr.json new file mode 100644 index 00000000000..ac037a3a07e --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-hmx8-gff7-qvpr/GHSA-hmx8-gff7-qvpr.json @@ -0,0 +1,59 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hmx8-gff7-qvpr", + "modified": "2024-11-01T21:31:51Z", + "published": "2024-11-01T21:31:51Z", + "aliases": [ + "CVE-2024-44232" + ], + "details": "The issue was addressed with improved bounds checks. This issue is fixed in macOS Sonoma 14.7.1, macOS Ventura 13.7.1, visionOS 2.1, watchOS 11.1, tvOS 18.1, iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1. Parsing a maliciously crafted video file may lead to unexpected system termination.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44232" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121563" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121565" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121566" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121567" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121568" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121569" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121570" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-01T21:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-mfj7-v48v-2hh9/GHSA-mfj7-v48v-2hh9.json b/advisories/unreviewed/2024/11/GHSA-mfj7-v48v-2hh9/GHSA-mfj7-v48v-2hh9.json new file mode 100644 index 00000000000..dfaede37e6f --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-mfj7-v48v-2hh9/GHSA-mfj7-v48v-2hh9.json @@ -0,0 +1,59 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mfj7-v48v-2hh9", + "modified": "2024-11-01T21:31:51Z", + "published": "2024-11-01T21:31:51Z", + "aliases": [ + "CVE-2024-44233" + ], + "details": "The issue was addressed with improved bounds checks. This issue is fixed in macOS Sonoma 14.7.1, macOS Ventura 13.7.1, visionOS 2.1, watchOS 11.1, tvOS 18.1, iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1. Parsing a maliciously crafted video file may lead to unexpected system termination.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44233" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121563" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121565" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121566" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121567" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121568" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121569" + }, + { + "type": "WEB", + "url": "https://support.apple.com/en-us/121570" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-01T21:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-rfpm-vfqf-wj57/GHSA-rfpm-vfqf-wj57.json b/advisories/unreviewed/2024/11/GHSA-rfpm-vfqf-wj57/GHSA-rfpm-vfqf-wj57.json index 6f62f63b2cd..596b8227917 100644 --- a/advisories/unreviewed/2024/11/GHSA-rfpm-vfqf-wj57/GHSA-rfpm-vfqf-wj57.json +++ b/advisories/unreviewed/2024/11/GHSA-rfpm-vfqf-wj57/GHSA-rfpm-vfqf-wj57.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-352" ], "severity": "MODERATE", "github_reviewed": false,