Publish Advisories

GHSA-3pfj-g4wr-qj3j
GHSA-3vm6-qcr3-wwv3
GHSA-4vf6-2rmx-fgqx
GHSA-4x52-4p76-xv6v
GHSA-56gq-fgx7-r88g
GHSA-5mfr-vx4f-m7q7
GHSA-7hrg-3c44-45cg
GHSA-8g65-3569-fx34
GHSA-92hj-6r7m-gqhh
GHSA-9gfv-m6hh-94gq
GHSA-9m9h-jcjj-xjvx
GHSA-f6jr-7pgg-f497
GHSA-fh95-g988-p9j3
GHSA-pf33-q9qc-h48r
GHSA-q795-pwf5-9r9x
GHSA-rm58-g3gh-gqf5
GHSA-rpjw-97p8-p2xp
GHSA-w3p5-6w9w-p383
GHSA-wqmr-cp8m-946m
This commit is contained in:
advisory-database[bot]
2024-01-03 00:31:39 +00:00
parent 4b2e4ebc5d
commit f32e65203a
19 changed files with 729 additions and 0 deletions
@@ -0,0 +1,47 @@
{
"schema_version": "1.4.0",
"id": "GHSA-3pfj-g4wr-qj3j",
"modified": "2024-01-03T00:30:23Z",
"published": "2024-01-03T00:30:23Z",
"aliases": [
"CVE-2020-26625"
],
"details": "A SQL injection vulnerability was discovered in Gila CMS 1.15.4 and earlier which allows a remote attacker to execute arbitrary web scripts via the 'user_id' parameter after the login portal.",
"severity": [
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-26625"
},
{
"type": "WEB",
"url": "https://github.com/GilaCMS/gila"
},
{
"type": "WEB",
"url": "https://github.com/GilaCMS/gila/security/policy"
},
{
"type": "WEB",
"url": "https://packetstormsecurity.com/files/176301/GilaCMS-1.15.4-SQL-Injection.html"
},
{
"type": "WEB",
"url": "http://gilacms.com"
}
],
"database_specific": {
"cwe_ids": [
],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-02T22:15:07Z"
}
}
@@ -0,0 +1,35 @@
{
"schema_version": "1.4.0",
"id": "GHSA-3vm6-qcr3-wwv3",
"modified": "2024-01-03T00:30:24Z",
"published": "2024-01-03T00:30:24Z",
"aliases": [
"CVE-2023-49555"
],
"details": "An issue in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the expand_smacro function in the modules/preprocs/nasm/nasm-pp.c component.",
"severity": [
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-49555"
},
{
"type": "WEB",
"url": "https://github.com/yasm/yasm/issues/248"
}
],
"database_specific": {
"cwe_ids": [
],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-03T00:15:09Z"
}
}
@@ -0,0 +1,47 @@
{
"schema_version": "1.4.0",
"id": "GHSA-4vf6-2rmx-fgqx",
"modified": "2024-01-03T00:30:22Z",
"published": "2024-01-03T00:30:22Z",
"aliases": [
"CVE-2020-26624"
],
"details": "A SQL injection vulnerability was discovered in Gila CMS 1.15.4 and earlier which allows a remote attacker to execute arbitrary web scripts via the ID parameter after the login portal.",
"severity": [
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-26624"
},
{
"type": "WEB",
"url": "https://github.com/GilaCMS/gila"
},
{
"type": "WEB",
"url": "https://github.com/GilaCMS/gila/security/policy"
},
{
"type": "WEB",
"url": "https://packetstormsecurity.com/files/176301/GilaCMS-1.15.4-SQL-Injection.html"
},
{
"type": "WEB",
"url": "http://gilacms.com"
}
],
"database_specific": {
"cwe_ids": [
],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-02T22:15:07Z"
}
}
@@ -0,0 +1,35 @@
{
"schema_version": "1.4.0",
"id": "GHSA-4x52-4p76-xv6v",
"modified": "2024-01-03T00:30:24Z",
"published": "2024-01-03T00:30:24Z",
"aliases": [
"CVE-2023-49554"
],
"details": "Use After Free vulnerability in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the do_directive function in the modules/preprocs/nasm/nasm-pp.c component.",
"severity": [
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-49554"
},
{
"type": "WEB",
"url": "https://github.com/yasm/yasm/issues/249"
}
],
"database_specific": {
"cwe_ids": [
],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-03T00:15:08Z"
}
}
@@ -0,0 +1,39 @@
{
"schema_version": "1.4.0",
"id": "GHSA-56gq-fgx7-r88g",
"modified": "2024-01-03T00:30:23Z",
"published": "2024-01-03T00:30:23Z",
"aliases": [
"CVE-2023-50020"
],
"details": "An issue was discovered in open5gs v2.6.6. SIGPIPE can be used to crash AMF.",
"severity": [
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50020"
},
{
"type": "WEB",
"url": "https://github.com/open5gs/open5gs/issues/2734"
},
{
"type": "WEB",
"url": "https://github.com/open5gs/open5gs/commit/1aba814938e3a1b2eec7014bf6ce132d34622e08"
}
],
"database_specific": {
"cwe_ids": [
],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-02T22:15:09Z"
}
}
@@ -0,0 +1,35 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5mfr-vx4f-m7q7",
"modified": "2024-01-03T00:30:23Z",
"published": "2024-01-03T00:30:23Z",
"aliases": [
"CVE-2023-49550"
],
"details": "An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs+0x4ec508 component.",
"severity": [
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-49550"
},
{
"type": "WEB",
"url": "https://github.com/cesanta/mjs/issues/252"
}
],
"database_specific": {
"cwe_ids": [
],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-02T23:15:12Z"
}
}
@@ -0,0 +1,35 @@
{
"schema_version": "1.4.0",
"id": "GHSA-7hrg-3c44-45cg",
"modified": "2024-01-03T00:30:23Z",
"published": "2024-01-03T00:30:23Z",
"aliases": [
"CVE-2023-49551"
],
"details": "An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_op_json_parse function in the msj.c file.",
"severity": [
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-49551"
},
{
"type": "WEB",
"url": "https://github.com/cesanta/mjs/issues/257"
}
],
"database_specific": {
"cwe_ids": [
],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-02T23:15:12Z"
}
}
@@ -0,0 +1,38 @@
{
"schema_version": "1.4.0",
"id": "GHSA-8g65-3569-fx34",
"modified": "2024-01-03T00:30:23Z",
"published": "2024-01-03T00:30:23Z",
"aliases": [
"CVE-2023-4164"
],
"details": "There is a possible information disclosure due to a missing permission check. This could lead to local information disclosure of health data with no additional execution privileges needed.\n",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-4164"
},
{
"type": "WEB",
"url": "https://source.android.com/docs/security/bulletin/pixel-watch/2023/2023-12-01"
}
],
"database_specific": {
"cwe_ids": [
"CWE-200"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-02T22:15:08Z"
}
}
@@ -0,0 +1,35 @@
{
"schema_version": "1.4.0",
"id": "GHSA-92hj-6r7m-gqhh",
"modified": "2024-01-03T00:30:24Z",
"published": "2024-01-03T00:30:24Z",
"aliases": [
"CVE-2023-49557"
],
"details": "An issue in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the yasm_section_bcs_first function in the libyasm/section.c component.",
"severity": [
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-49557"
},
{
"type": "WEB",
"url": "https://github.com/yasm/yasm/issues/253"
}
],
"database_specific": {
"cwe_ids": [
],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-03T00:15:09Z"
}
}
@@ -0,0 +1,35 @@
{
"schema_version": "1.4.0",
"id": "GHSA-9gfv-m6hh-94gq",
"modified": "2024-01-03T00:30:23Z",
"published": "2024-01-03T00:30:23Z",
"aliases": [
"CVE-2023-49553"
],
"details": "An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_destroy function in the msj.c file.",
"severity": [
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-49553"
},
{
"type": "WEB",
"url": "https://github.com/cesanta/mjs/issues/253"
}
],
"database_specific": {
"cwe_ids": [
],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-02T23:15:12Z"
}
}
@@ -0,0 +1,39 @@
{
"schema_version": "1.4.0",
"id": "GHSA-9m9h-jcjj-xjvx",
"modified": "2024-01-03T00:30:23Z",
"published": "2024-01-03T00:30:23Z",
"aliases": [
"CVE-2023-50019"
],
"details": "An issue was discovered in open5gs v2.6.6. InitialUEMessage, Registration request sent at a specific time can crash AMF due to incorrect error handling of Nudm_UECM_Registration response.",
"severity": [
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50019"
},
{
"type": "WEB",
"url": "https://github.com/open5gs/open5gs/issues/2733"
},
{
"type": "WEB",
"url": "https://github.com/open5gs/open5gs/commit/7278714133422cee46c32c7523f81ec2cecad9e2"
}
],
"database_specific": {
"cwe_ids": [
],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-02T22:15:09Z"
}
}
@@ -0,0 +1,35 @@
{
"schema_version": "1.4.0",
"id": "GHSA-f6jr-7pgg-f497",
"modified": "2024-01-03T00:30:23Z",
"published": "2024-01-03T00:30:23Z",
"aliases": [
"CVE-2023-49552"
],
"details": "An Out of Bounds Write in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_op_json_stringify function in the msj.c file.",
"severity": [
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-49552"
},
{
"type": "WEB",
"url": "https://github.com/cesanta/mjs/issues/256"
}
],
"database_specific": {
"cwe_ids": [
],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-02T23:15:12Z"
}
}
@@ -0,0 +1,35 @@
{
"schema_version": "1.4.0",
"id": "GHSA-fh95-g988-p9j3",
"modified": "2024-01-03T00:30:23Z",
"published": "2024-01-03T00:30:23Z",
"aliases": [
"CVE-2023-49549"
],
"details": "An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_getretvalpos function in the msj.c file.",
"severity": [
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-49549"
},
{
"type": "WEB",
"url": "https://github.com/cesanta/mjs/issues/251"
}
],
"database_specific": {
"cwe_ids": [
],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-02T23:15:12Z"
}
}
@@ -0,0 +1,46 @@
{
"schema_version": "1.4.0",
"id": "GHSA-pf33-q9qc-h48r",
"modified": "2024-01-03T00:30:23Z",
"published": "2024-01-03T00:30:23Z",
"aliases": [
"CVE-2024-0196"
],
"details": "A vulnerability has been found in Magic-Api up to 2.0.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /resource/file/api/save?auto=1. The manipulation leads to code injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-249511.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L"
}
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-0196"
},
{
"type": "WEB",
"url": "https://github.com/laoquanshi/puppy/blob/main/Magic-Api%20Code%20Execution%20Vulnerability.md"
},
{
"type": "WEB",
"url": "https://vuldb.com/?ctiid.249511"
},
{
"type": "WEB",
"url": "https://vuldb.com/?id.249511"
}
],
"database_specific": {
"cwe_ids": [
"CWE-94"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-02T22:15:09Z"
}
}
@@ -0,0 +1,35 @@
{
"schema_version": "1.4.0",
"id": "GHSA-q795-pwf5-9r9x",
"modified": "2024-01-03T00:30:24Z",
"published": "2024-01-03T00:30:24Z",
"aliases": [
"CVE-2023-49556"
],
"details": "Buffer Overflow vulnerability in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the expr_delete_term function in the libyasm/expr.c component.",
"severity": [
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-49556"
},
{
"type": "WEB",
"url": "https://github.com/yasm/yasm/issues/250"
}
],
"database_specific": {
"cwe_ids": [
],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-03T00:15:09Z"
}
}
@@ -0,0 +1,38 @@
{
"schema_version": "1.4.0",
"id": "GHSA-rm58-g3gh-gqf5",
"modified": "2024-01-03T00:30:23Z",
"published": "2024-01-03T00:30:23Z",
"aliases": [
"CVE-2023-6339"
],
"details": "Google Nest WiFi Pro root code-execution & user-data compromise",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H"
}
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6339"
},
{
"type": "WEB",
"url": "https://support.google.com/product-documentation/answer/14273332?hl=en&ref_topic=12974021&sjid=4533873659772963473-NA"
}
],
"database_specific": {
"cwe_ids": [
"CWE-311"
],
"severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-02T22:15:09Z"
}
}
@@ -0,0 +1,47 @@
{
"schema_version": "1.4.0",
"id": "GHSA-rpjw-97p8-p2xp",
"modified": "2024-01-03T00:30:22Z",
"published": "2024-01-03T00:30:22Z",
"aliases": [
"CVE-2020-26623"
],
"details": "SQL Injection vulnerability discovered in Gila CMS 1.15.4 and earlier allows a remote attacker to execute arbitrary web scripts via the Area parameter under the Administration>Widget tab after the login portal.",
"severity": [
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-26623"
},
{
"type": "WEB",
"url": "https://github.com/GilaCMS/gila"
},
{
"type": "WEB",
"url": "https://github.com/GilaCMS/gila/security/policy"
},
{
"type": "WEB",
"url": "https://packetstormsecurity.com/files/176301/GilaCMS-1.15.4-SQL-Injection.html"
},
{
"type": "WEB",
"url": "http://gilacms.com"
}
],
"database_specific": {
"cwe_ids": [
],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-02T22:15:07Z"
}
}
@@ -0,0 +1,35 @@
{
"schema_version": "1.4.0",
"id": "GHSA-w3p5-6w9w-p383",
"modified": "2024-01-03T00:30:24Z",
"published": "2024-01-03T00:30:24Z",
"aliases": [
"CVE-2023-49558"
],
"details": "An issue in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the expand_mmac_params function in the modules/preprocs/nasm/nasm-pp.c component.",
"severity": [
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-49558"
},
{
"type": "WEB",
"url": "https://github.com/yasm/yasm/issues/252"
}
],
"database_specific": {
"cwe_ids": [
],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-03T00:15:09Z"
}
}
@@ -0,0 +1,38 @@
{
"schema_version": "1.4.0",
"id": "GHSA-wqmr-cp8m-946m",
"modified": "2024-01-03T00:30:23Z",
"published": "2024-01-03T00:30:23Z",
"aliases": [
"CVE-2023-48418"
],
"details": " In checkDebuggingDisallowed of DeviceVersionFragment.java, there is a\n    possible way to access adb before SUW completion due to an insecure default\n    value. This could lead to local escalation of privilege with no additional\n    execution privileges needed. User interaction is not needed for\n    exploitation\n",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H"
}
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-48418"
},
{
"type": "WEB",
"url": "https://source.android.com/docs/security/bulletin/pixel-watch/2023/2023-12-01"
}
],
"database_specific": {
"cwe_ids": [
"CWE-269"
],
"severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-01-02T23:15:11Z"
}
}