From f614c53ed885ad0c60938ee98ddedd46255de40c Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Wed, 28 Feb 2024 01:11:00 +0000 Subject: [PATCH] Publish Advisories GHSA-25q7-6x5v-rx9h GHSA-288f-gh2h-9j8q GHSA-g23w-mcm2-h6c5 GHSA-gqqq-9pqw-6v5r GHSA-q285-4wh7-3xwx --- .../04/GHSA-25q7-6x5v-rx9h/GHSA-25q7-6x5v-rx9h.json | 11 +++++++---- .../04/GHSA-288f-gh2h-9j8q/GHSA-288f-gh2h-9j8q.json | 11 +++++++---- .../04/GHSA-g23w-mcm2-h6c5/GHSA-g23w-mcm2-h6c5.json | 11 +++++++---- .../04/GHSA-gqqq-9pqw-6v5r/GHSA-gqqq-9pqw-6v5r.json | 11 +++++++---- .../04/GHSA-q285-4wh7-3xwx/GHSA-q285-4wh7-3xwx.json | 11 +++++++---- 5 files changed, 35 insertions(+), 20 deletions(-) diff --git a/advisories/unreviewed/2022/04/GHSA-25q7-6x5v-rx9h/GHSA-25q7-6x5v-rx9h.json b/advisories/unreviewed/2022/04/GHSA-25q7-6x5v-rx9h/GHSA-25q7-6x5v-rx9h.json index d741a2fff75..8f8a0c11698 100644 --- a/advisories/unreviewed/2022/04/GHSA-25q7-6x5v-rx9h/GHSA-25q7-6x5v-rx9h.json +++ b/advisories/unreviewed/2022/04/GHSA-25q7-6x5v-rx9h/GHSA-25q7-6x5v-rx9h.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-25q7-6x5v-rx9h", - "modified": "2022-04-21T01:57:45Z", + "modified": "2024-02-28T01:09:58Z", "published": "2022-04-21T01:57:45Z", "aliases": [ "CVE-2010-0737" ], "details": "A missing permission check was found in The CLI in JBoss Operations Network before 2.3.1 does not properly check permissions, which allows JBoss ON users to perform management tasks and configuration changes with the privileges of the administrator user.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-732" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2019-10-30T23:15:00Z" diff --git a/advisories/unreviewed/2022/04/GHSA-288f-gh2h-9j8q/GHSA-288f-gh2h-9j8q.json b/advisories/unreviewed/2022/04/GHSA-288f-gh2h-9j8q/GHSA-288f-gh2h-9j8q.json index 46ece34cdd4..70b51bd7c41 100644 --- a/advisories/unreviewed/2022/04/GHSA-288f-gh2h-9j8q/GHSA-288f-gh2h-9j8q.json +++ b/advisories/unreviewed/2022/04/GHSA-288f-gh2h-9j8q/GHSA-288f-gh2h-9j8q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-288f-gh2h-9j8q", - "modified": "2022-04-21T01:57:46Z", + "modified": "2024-02-28T01:10:29Z", "published": "2022-04-21T01:57:46Z", "aliases": [ "CVE-2010-2490" ], "details": "Mumble: murmur-server has DoS due to malformed client query", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-20" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2019-10-31T16:15:00Z" diff --git a/advisories/unreviewed/2022/04/GHSA-g23w-mcm2-h6c5/GHSA-g23w-mcm2-h6c5.json b/advisories/unreviewed/2022/04/GHSA-g23w-mcm2-h6c5/GHSA-g23w-mcm2-h6c5.json index f9587c198a7..65dc9dd743f 100644 --- a/advisories/unreviewed/2022/04/GHSA-g23w-mcm2-h6c5/GHSA-g23w-mcm2-h6c5.json +++ b/advisories/unreviewed/2022/04/GHSA-g23w-mcm2-h6c5/GHSA-g23w-mcm2-h6c5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-g23w-mcm2-h6c5", - "modified": "2022-04-21T01:57:45Z", + "modified": "2024-02-28T01:08:53Z", "published": "2022-04-21T01:57:45Z", "aliases": [ "CVE-2010-0206" ], "details": "xpdf allows remote attackers to cause a denial of service (NULL pointer dereference and crash) in the way it processes JBIG2 PDF stream objects.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2019-10-30T21:15:00Z" diff --git a/advisories/unreviewed/2022/04/GHSA-gqqq-9pqw-6v5r/GHSA-gqqq-9pqw-6v5r.json b/advisories/unreviewed/2022/04/GHSA-gqqq-9pqw-6v5r/GHSA-gqqq-9pqw-6v5r.json index 69b7475adb1..a3a071978dd 100644 --- a/advisories/unreviewed/2022/04/GHSA-gqqq-9pqw-6v5r/GHSA-gqqq-9pqw-6v5r.json +++ b/advisories/unreviewed/2022/04/GHSA-gqqq-9pqw-6v5r/GHSA-gqqq-9pqw-6v5r.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gqqq-9pqw-6v5r", - "modified": "2022-04-21T01:57:45Z", + "modified": "2024-02-28T01:09:58Z", "published": "2022-04-21T01:57:45Z", "aliases": [ "CVE-2010-0398" ], "details": "The init script in autokey before 0.61.3-2 allows local attackers to write to arbitrary files via a symlink attack.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-59" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2019-10-30T22:15:00Z" diff --git a/advisories/unreviewed/2022/04/GHSA-q285-4wh7-3xwx/GHSA-q285-4wh7-3xwx.json b/advisories/unreviewed/2022/04/GHSA-q285-4wh7-3xwx/GHSA-q285-4wh7-3xwx.json index b83fece4aea..61cdf62c214 100644 --- a/advisories/unreviewed/2022/04/GHSA-q285-4wh7-3xwx/GHSA-q285-4wh7-3xwx.json +++ b/advisories/unreviewed/2022/04/GHSA-q285-4wh7-3xwx/GHSA-q285-4wh7-3xwx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-q285-4wh7-3xwx", - "modified": "2022-04-21T01:57:44Z", + "modified": "2024-02-28T01:08:52Z", "published": "2022-04-21T01:57:44Z", "aliases": [ "CVE-2010-3375" ], "details": "qtparted has insecure library loading which may allow arbitrary code execution", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-20" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2019-10-29T19:15:00Z"