diff --git a/advisories/github-reviewed/2024/08/GHSA-4crf-28c7-v4gr/GHSA-4crf-28c7-v4gr.json b/advisories/github-reviewed/2024/08/GHSA-4crf-28c7-v4gr/GHSA-4crf-28c7-v4gr.json index 01e51067377..660771b2964 100644 --- a/advisories/github-reviewed/2024/08/GHSA-4crf-28c7-v4gr/GHSA-4crf-28c7-v4gr.json +++ b/advisories/github-reviewed/2024/08/GHSA-4crf-28c7-v4gr/GHSA-4crf-28c7-v4gr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4crf-28c7-v4gr", - "modified": "2024-11-18T16:27:06Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-08-21T06:32:18Z", "aliases": [ "CVE-2024-6508" @@ -52,6 +52,14 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:8415" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:8991" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9620" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-6508" diff --git a/advisories/github-reviewed/2024/09/GHSA-jpxc-vmjf-9fcj/GHSA-jpxc-vmjf-9fcj.json b/advisories/github-reviewed/2024/09/GHSA-jpxc-vmjf-9fcj/GHSA-jpxc-vmjf-9fcj.json index 11931b6778d..5f2a0f5d435 100644 --- a/advisories/github-reviewed/2024/09/GHSA-jpxc-vmjf-9fcj/GHSA-jpxc-vmjf-9fcj.json +++ b/advisories/github-reviewed/2024/09/GHSA-jpxc-vmjf-9fcj/GHSA-jpxc-vmjf-9fcj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-jpxc-vmjf-9fcj", - "modified": "2024-11-06T21:30:54Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-09-16T14:37:26Z", "aliases": [ "CVE-2024-8775" @@ -48,6 +48,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:8969" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9894" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-8775" @@ -65,7 +69,7 @@ "cwe_ids": [ "CWE-532" ], - "severity": "MODERATE", + "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2024-09-16T22:49:05Z", "nvd_published_at": "2024-09-14T03:15:08Z" diff --git a/advisories/github-reviewed/2024/10/GHSA-3h3x-2hwv-hr52/GHSA-3h3x-2hwv-hr52.json b/advisories/github-reviewed/2024/10/GHSA-3h3x-2hwv-hr52/GHSA-3h3x-2hwv-hr52.json index 55bd76d9ed7..784449f125f 100644 --- a/advisories/github-reviewed/2024/10/GHSA-3h3x-2hwv-hr52/GHSA-3h3x-2hwv-hr52.json +++ b/advisories/github-reviewed/2024/10/GHSA-3h3x-2hwv-hr52/GHSA-3h3x-2hwv-hr52.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3h3x-2hwv-hr52", - "modified": "2024-11-15T21:30:45Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-10-01T21:31:34Z", "aliases": [ "CVE-2024-9355" @@ -52,6 +52,10 @@ "type": "WEB", "url": "https://github.com/golang-fips/openssl/pull/198" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:10133" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:7502" diff --git a/advisories/github-reviewed/2024/10/GHSA-586p-749j-fhwp/GHSA-586p-749j-fhwp.json b/advisories/github-reviewed/2024/10/GHSA-586p-749j-fhwp/GHSA-586p-749j-fhwp.json index a23e374cec9..e94bac7fe67 100644 --- a/advisories/github-reviewed/2024/10/GHSA-586p-749j-fhwp/GHSA-586p-749j-fhwp.json +++ b/advisories/github-reviewed/2024/10/GHSA-586p-749j-fhwp/GHSA-586p-749j-fhwp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-586p-749j-fhwp", - "modified": "2024-11-13T09:30:56Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-10-09T15:32:21Z", "aliases": [ "CVE-2024-9675" @@ -76,6 +76,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:9051" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:8994" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:8984" diff --git a/advisories/github-reviewed/2024/10/GHSA-fhqq-8f65-5xfc/GHSA-fhqq-8f65-5xfc.json b/advisories/github-reviewed/2024/10/GHSA-fhqq-8f65-5xfc/GHSA-fhqq-8f65-5xfc.json index b9e84e45cd1..5871ffce847 100644 --- a/advisories/github-reviewed/2024/10/GHSA-fhqq-8f65-5xfc/GHSA-fhqq-8f65-5xfc.json +++ b/advisories/github-reviewed/2024/10/GHSA-fhqq-8f65-5xfc/GHSA-fhqq-8f65-5xfc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-fhqq-8f65-5xfc", - "modified": "2024-11-12T18:30:51Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-10-01T21:31:35Z", "aliases": [ "CVE-2024-9407" @@ -177,6 +177,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:9459" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9926" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-9407" diff --git a/advisories/unreviewed/2024/02/GHSA-227f-45c5-prxw/GHSA-227f-45c5-prxw.json b/advisories/unreviewed/2024/02/GHSA-227f-45c5-prxw/GHSA-227f-45c5-prxw.json index 601c848c5c2..f6619bd0536 100644 --- a/advisories/unreviewed/2024/02/GHSA-227f-45c5-prxw/GHSA-227f-45c5-prxw.json +++ b/advisories/unreviewed/2024/02/GHSA-227f-45c5-prxw/GHSA-227f-45c5-prxw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-227f-45c5-prxw", - "modified": "2024-02-16T03:30:50Z", + "modified": "2024-11-21T21:33:29Z", "published": "2024-02-16T03:30:50Z", "aliases": [ "CVE-2023-40122" ], "details": "In applyCustomDescription of SaveUi.java, there is a possible way to view other user's images due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-16T02:15:50Z" diff --git a/advisories/unreviewed/2024/02/GHSA-gqvq-6r9g-ff5p/GHSA-gqvq-6r9g-ff5p.json b/advisories/unreviewed/2024/02/GHSA-gqvq-6r9g-ff5p/GHSA-gqvq-6r9g-ff5p.json index a296d79ff06..dd9ebc20b63 100644 --- a/advisories/unreviewed/2024/02/GHSA-gqvq-6r9g-ff5p/GHSA-gqvq-6r9g-ff5p.json +++ b/advisories/unreviewed/2024/02/GHSA-gqvq-6r9g-ff5p/GHSA-gqvq-6r9g-ff5p.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gqvq-6r9g-ff5p", - "modified": "2024-02-18T06:30:32Z", + "modified": "2024-11-21T21:33:29Z", "published": "2024-02-18T06:30:32Z", "aliases": [ "CVE-2023-52377" ], "details": "Vulnerability of input data not being verified in the cellular data module.Successful exploitation of this vulnerability may cause out-of-bounds access.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ "CWE-120" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-18T06:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-jmjh-9cw7-275h/GHSA-jmjh-9cw7-275h.json b/advisories/unreviewed/2024/02/GHSA-jmjh-9cw7-275h/GHSA-jmjh-9cw7-275h.json index 277bc490532..a0da2a6d2ac 100644 --- a/advisories/unreviewed/2024/02/GHSA-jmjh-9cw7-275h/GHSA-jmjh-9cw7-275h.json +++ b/advisories/unreviewed/2024/02/GHSA-jmjh-9cw7-275h/GHSA-jmjh-9cw7-275h.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-770" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/02/GHSA-v222-j2c4-g82m/GHSA-v222-j2c4-g82m.json b/advisories/unreviewed/2024/02/GHSA-v222-j2c4-g82m/GHSA-v222-j2c4-g82m.json index 091d8b9c48c..f3a9039f7fb 100644 --- a/advisories/unreviewed/2024/02/GHSA-v222-j2c4-g82m/GHSA-v222-j2c4-g82m.json +++ b/advisories/unreviewed/2024/02/GHSA-v222-j2c4-g82m/GHSA-v222-j2c4-g82m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-v222-j2c4-g82m", - "modified": "2024-02-21T18:31:02Z", + "modified": "2024-11-21T21:33:30Z", "published": "2024-02-21T18:31:02Z", "aliases": [ "CVE-2024-25896" ], "details": "ChurchCRM 5.5.0 EventEditor.php is vulnerable to Blind SQL Injection (Time-based) via the EID POST parameter.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-21T18:15:51Z" diff --git a/advisories/unreviewed/2024/03/GHSA-54qr-qrfv-pmc3/GHSA-54qr-qrfv-pmc3.json b/advisories/unreviewed/2024/03/GHSA-54qr-qrfv-pmc3/GHSA-54qr-qrfv-pmc3.json index f0a47095c9c..c48ce66ccf0 100644 --- a/advisories/unreviewed/2024/03/GHSA-54qr-qrfv-pmc3/GHSA-54qr-qrfv-pmc3.json +++ b/advisories/unreviewed/2024/03/GHSA-54qr-qrfv-pmc3/GHSA-54qr-qrfv-pmc3.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-54qr-qrfv-pmc3", - "modified": "2024-03-14T00:31:05Z", + "modified": "2024-11-21T21:33:30Z", "published": "2024-03-08T03:31:25Z", "aliases": [ "CVE-2024-23264" ], "details": "A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Monterey 12.7.4, macOS Ventura 13.6.5, macOS Sonoma 14.4, visionOS 1.1, iOS 17.4 and iPadOS 17.4, iOS 16.7.6 and iPadOS 16.7.6, tvOS 17.4. An application may be able to read restricted memory.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -69,9 +72,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-08T02:15:49Z" diff --git a/advisories/unreviewed/2024/03/GHSA-5vw7-hf8v-5qgw/GHSA-5vw7-hf8v-5qgw.json b/advisories/unreviewed/2024/03/GHSA-5vw7-hf8v-5qgw/GHSA-5vw7-hf8v-5qgw.json index 5e5535f877c..6e04c1c9fc4 100644 --- a/advisories/unreviewed/2024/03/GHSA-5vw7-hf8v-5qgw/GHSA-5vw7-hf8v-5qgw.json +++ b/advisories/unreviewed/2024/03/GHSA-5vw7-hf8v-5qgw/GHSA-5vw7-hf8v-5qgw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5vw7-hf8v-5qgw", - "modified": "2024-03-11T18:31:08Z", + "modified": "2024-11-21T21:33:30Z", "published": "2024-03-11T18:31:08Z", "aliases": [ "CVE-2024-0047" ], "details": "In writeUserLP of UserManagerService.java, device policies are serialized with an incorrect tag due to a logic error in the code. This could lead to local denial of service when policies are deserialized on reboot with no additional execution privileges needed. User interaction is not needed for exploitation.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-11T17:15:45Z" diff --git a/advisories/unreviewed/2024/03/GHSA-8f65-fxmq-vvpx/GHSA-8f65-fxmq-vvpx.json b/advisories/unreviewed/2024/03/GHSA-8f65-fxmq-vvpx/GHSA-8f65-fxmq-vvpx.json index 5eb1f9ce10d..ee078c86c5a 100644 --- a/advisories/unreviewed/2024/03/GHSA-8f65-fxmq-vvpx/GHSA-8f65-fxmq-vvpx.json +++ b/advisories/unreviewed/2024/03/GHSA-8f65-fxmq-vvpx/GHSA-8f65-fxmq-vvpx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8f65-fxmq-vvpx", - "modified": "2024-03-20T15:32:56Z", + "modified": "2024-11-21T21:33:30Z", "published": "2024-03-20T15:32:56Z", "aliases": [ "CVE-2023-46839" ], "details": "PCI devices can make use of a functionality called phantom functions,\nthat when enabled allows the device to generate requests using the IDs\nof functions that are otherwise unpopulated. This allows a device to\nextend the number of outstanding requests.\n\nSuch phantom functions need an IOMMU context setup, but failure to\nsetup the context is not fatal when the device is assigned. Not\nfailing device assignment when such failure happens can lead to the\nprimary device being assigned to a guest, while some of the phantom\nfunctions are assigned to a different domain.\n", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-20T11:15:08Z" diff --git a/advisories/unreviewed/2024/03/GHSA-c3wj-m54r-wfgq/GHSA-c3wj-m54r-wfgq.json b/advisories/unreviewed/2024/03/GHSA-c3wj-m54r-wfgq/GHSA-c3wj-m54r-wfgq.json index a0cc0c07092..3d6688be1e2 100644 --- a/advisories/unreviewed/2024/03/GHSA-c3wj-m54r-wfgq/GHSA-c3wj-m54r-wfgq.json +++ b/advisories/unreviewed/2024/03/GHSA-c3wj-m54r-wfgq/GHSA-c3wj-m54r-wfgq.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-c3wj-m54r-wfgq", - "modified": "2024-03-24T03:30:44Z", + "modified": "2024-11-21T21:33:30Z", "published": "2024-03-24T03:30:44Z", "aliases": [ "CVE-2024-30156" ], "details": "Varnish Cache before 7.3.2 and 7.4.x before 7.4.3 (and before 6.0.13 LTS), and Varnish Enterprise 6 before 6.0.12r6, allows credits exhaustion for an HTTP/2 connection control flow window, aka a Broke Window Attack.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-770" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-24T01:15:45Z" diff --git a/advisories/unreviewed/2024/03/GHSA-frvc-6356-58xm/GHSA-frvc-6356-58xm.json b/advisories/unreviewed/2024/03/GHSA-frvc-6356-58xm/GHSA-frvc-6356-58xm.json index 7af171c53bd..c14bc8628a5 100644 --- a/advisories/unreviewed/2024/03/GHSA-frvc-6356-58xm/GHSA-frvc-6356-58xm.json +++ b/advisories/unreviewed/2024/03/GHSA-frvc-6356-58xm/GHSA-frvc-6356-58xm.json @@ -80,7 +80,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-200" + "CWE-200", + "CWE-327" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/03/GHSA-p8rh-8mxv-5w8q/GHSA-p8rh-8mxv-5w8q.json b/advisories/unreviewed/2024/03/GHSA-p8rh-8mxv-5w8q/GHSA-p8rh-8mxv-5w8q.json index fa7e12e334d..b4c49dfd59f 100644 --- a/advisories/unreviewed/2024/03/GHSA-p8rh-8mxv-5w8q/GHSA-p8rh-8mxv-5w8q.json +++ b/advisories/unreviewed/2024/03/GHSA-p8rh-8mxv-5w8q/GHSA-p8rh-8mxv-5w8q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-p8rh-8mxv-5w8q", - "modified": "2024-03-15T15:30:43Z", + "modified": "2024-11-21T21:33:30Z", "published": "2024-03-15T15:30:43Z", "aliases": [ "CVE-2023-51525" ], "details": "Cross-Site Request Forgery (CSRF) vulnerability in Veribo, Roland Murg WP Simple Booking Calendar.This issue affects WP Simple Booking Calendar: from n/a through 2.0.8.4.\n\n", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ "CWE-352" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-15T14:15:07Z" diff --git a/advisories/unreviewed/2024/03/GHSA-r9x9-fwpc-8mmv/GHSA-r9x9-fwpc-8mmv.json b/advisories/unreviewed/2024/03/GHSA-r9x9-fwpc-8mmv/GHSA-r9x9-fwpc-8mmv.json index ae0467dfadf..3af77830f88 100644 --- a/advisories/unreviewed/2024/03/GHSA-r9x9-fwpc-8mmv/GHSA-r9x9-fwpc-8mmv.json +++ b/advisories/unreviewed/2024/03/GHSA-r9x9-fwpc-8mmv/GHSA-r9x9-fwpc-8mmv.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r9x9-fwpc-8mmv", - "modified": "2024-03-11T18:31:08Z", + "modified": "2024-11-21T21:33:30Z", "published": "2024-03-11T18:31:08Z", "aliases": [ "CVE-2024-0052" ], "details": "In multiple functions of healthconnect, there is a possible leakage of exercise route data due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-862" ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-11T17:15:45Z" diff --git a/advisories/unreviewed/2024/03/GHSA-rpcv-9583-9pr7/GHSA-rpcv-9583-9pr7.json b/advisories/unreviewed/2024/03/GHSA-rpcv-9583-9pr7/GHSA-rpcv-9583-9pr7.json index ea70b88e16a..82d7360422f 100644 --- a/advisories/unreviewed/2024/03/GHSA-rpcv-9583-9pr7/GHSA-rpcv-9583-9pr7.json +++ b/advisories/unreviewed/2024/03/GHSA-rpcv-9583-9pr7/GHSA-rpcv-9583-9pr7.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-7qqv-8pwc-x4xc/GHSA-7qqv-8pwc-x4xc.json b/advisories/unreviewed/2024/04/GHSA-7qqv-8pwc-x4xc/GHSA-7qqv-8pwc-x4xc.json index 0cf855d25cd..30a24d3e666 100644 --- a/advisories/unreviewed/2024/04/GHSA-7qqv-8pwc-x4xc/GHSA-7qqv-8pwc-x4xc.json +++ b/advisories/unreviewed/2024/04/GHSA-7qqv-8pwc-x4xc/GHSA-7qqv-8pwc-x4xc.json @@ -36,7 +36,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-770" ], "severity": "LOW", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-9cx2-p53m-9qp4/GHSA-9cx2-p53m-9qp4.json b/advisories/unreviewed/2024/04/GHSA-9cx2-p53m-9qp4/GHSA-9cx2-p53m-9qp4.json index a6d06076966..668b30fce74 100644 --- a/advisories/unreviewed/2024/04/GHSA-9cx2-p53m-9qp4/GHSA-9cx2-p53m-9qp4.json +++ b/advisories/unreviewed/2024/04/GHSA-9cx2-p53m-9qp4/GHSA-9cx2-p53m-9qp4.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-77" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-frv5-mfr5-q7h5/GHSA-frv5-mfr5-q7h5.json b/advisories/unreviewed/2024/05/GHSA-frv5-mfr5-q7h5/GHSA-frv5-mfr5-q7h5.json index fe907e033d0..d438fac0a1b 100644 --- a/advisories/unreviewed/2024/05/GHSA-frv5-mfr5-q7h5/GHSA-frv5-mfr5-q7h5.json +++ b/advisories/unreviewed/2024/05/GHSA-frv5-mfr5-q7h5/GHSA-frv5-mfr5-q7h5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-frv5-mfr5-q7h5", - "modified": "2024-05-07T18:30:33Z", + "modified": "2024-11-21T21:33:30Z", "published": "2024-05-07T18:30:33Z", "aliases": [ "CVE-2024-33858" ], "details": "An issue was discovered in Logpoint before 7.4.0. A path injection vulnerability is seen while adding a CSV enrichment source. The source_name parameter could be changed to an absolute path; this will write the CSV file to that path inside the /tmp directory.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-91" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-07T16:15:08Z" diff --git a/advisories/unreviewed/2024/06/GHSA-26x4-2jjv-hq3q/GHSA-26x4-2jjv-hq3q.json b/advisories/unreviewed/2024/06/GHSA-26x4-2jjv-hq3q/GHSA-26x4-2jjv-hq3q.json index 9d2373a029e..5318b805654 100644 --- a/advisories/unreviewed/2024/06/GHSA-26x4-2jjv-hq3q/GHSA-26x4-2jjv-hq3q.json +++ b/advisories/unreviewed/2024/06/GHSA-26x4-2jjv-hq3q/GHSA-26x4-2jjv-hq3q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-26x4-2jjv-hq3q", - "modified": "2024-06-22T00:30:57Z", + "modified": "2024-11-21T21:33:30Z", "published": "2024-06-22T00:30:57Z", "aliases": [ "CVE-2024-37654" ], "details": "An issue in BAS-IP AV-01D, AV-01MD, AV-01MFD, AV-01ED, AV-01KD, AV-01BD, AV-01KBD, AV-02D, AV-02IDE, AV-02IDR, AV-02IPD, AV-02FDE, AV-02FDR, AV-03D, AV-03BD, AV-04AFD, AV-04ASD, AV-04FD, AV-04SD, AV-05FD, AV-05SD, AA-07BD, AA-07BDI, BA-04BD, BA-04MD, BA-08BD, BA-08MD, BA-12BD, BA-12MD, CR-02BD before 3.9.2 allows a remote attacker to obtain sensitive information via a crafted HTTP GET request.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-922" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-21T22:15:11Z" diff --git a/advisories/unreviewed/2024/06/GHSA-49gg-c8j8-3j2c/GHSA-49gg-c8j8-3j2c.json b/advisories/unreviewed/2024/06/GHSA-49gg-c8j8-3j2c/GHSA-49gg-c8j8-3j2c.json index 98d8b95774c..d75d0e61616 100644 --- a/advisories/unreviewed/2024/06/GHSA-49gg-c8j8-3j2c/GHSA-49gg-c8j8-3j2c.json +++ b/advisories/unreviewed/2024/06/GHSA-49gg-c8j8-3j2c/GHSA-49gg-c8j8-3j2c.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-49gg-c8j8-3j2c", - "modified": "2024-06-10T21:30:40Z", + "modified": "2024-11-21T21:33:30Z", "published": "2024-06-10T21:30:40Z", "aliases": [ "CVE-2024-33850" ], "details": "Pexip Infinity before 34.1 has Improper Access Control for persons in a waiting room. They can see the conference roster list, and perform certain actions that should not be allowed before they are admitted to the meeting.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-10T21:15:51Z" diff --git a/advisories/unreviewed/2024/06/GHSA-9g6g-xqv5-8g5w/GHSA-9g6g-xqv5-8g5w.json b/advisories/unreviewed/2024/06/GHSA-9g6g-xqv5-8g5w/GHSA-9g6g-xqv5-8g5w.json index df7769d8e62..265fb4b5e45 100644 --- a/advisories/unreviewed/2024/06/GHSA-9g6g-xqv5-8g5w/GHSA-9g6g-xqv5-8g5w.json +++ b/advisories/unreviewed/2024/06/GHSA-9g6g-xqv5-8g5w/GHSA-9g6g-xqv5-8g5w.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9g6g-xqv5-8g5w", - "modified": "2024-07-16T00:31:42Z", + "modified": "2024-11-21T21:33:30Z", "published": "2024-06-25T21:31:15Z", "aliases": [ "CVE-2024-37820" ], "details": "A nil pointer dereference in PingCAP TiDB v8.2.0-alpha-216-gfe5858b allows attackers to crash the application via expression.inferCollation.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-25T19:15:11Z" diff --git a/advisories/unreviewed/2024/06/GHSA-9gjv-rxm7-w3wq/GHSA-9gjv-rxm7-w3wq.json b/advisories/unreviewed/2024/06/GHSA-9gjv-rxm7-w3wq/GHSA-9gjv-rxm7-w3wq.json index e8b631784da..bd9626d39d7 100644 --- a/advisories/unreviewed/2024/06/GHSA-9gjv-rxm7-w3wq/GHSA-9gjv-rxm7-w3wq.json +++ b/advisories/unreviewed/2024/06/GHSA-9gjv-rxm7-w3wq/GHSA-9gjv-rxm7-w3wq.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9gjv-rxm7-w3wq", - "modified": "2024-06-11T06:31:47Z", + "modified": "2024-11-21T21:33:30Z", "published": "2024-06-11T06:31:46Z", "aliases": [ "CVE-2024-31404" ], "details": "Insertion of sensitive information into sent data issue exists in Cybozu Garoon 5.5.0 to 6.0.0, which may allow a user who can log in to the product to view the data of Scheduler.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-922" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-11T05:15:53Z" diff --git a/advisories/unreviewed/2024/06/GHSA-g3x6-hjcc-gxpf/GHSA-g3x6-hjcc-gxpf.json b/advisories/unreviewed/2024/06/GHSA-g3x6-hjcc-gxpf/GHSA-g3x6-hjcc-gxpf.json index d35f0309188..8b80b33c4ae 100644 --- a/advisories/unreviewed/2024/06/GHSA-g3x6-hjcc-gxpf/GHSA-g3x6-hjcc-gxpf.json +++ b/advisories/unreviewed/2024/06/GHSA-g3x6-hjcc-gxpf/GHSA-g3x6-hjcc-gxpf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-g3x6-hjcc-gxpf", - "modified": "2024-06-13T21:30:52Z", + "modified": "2024-11-21T21:33:30Z", "published": "2024-06-13T21:30:52Z", "aliases": [ "CVE-2024-36588" ], "details": "An issue in Annonshop.app DecentralizeJustice/ anonymousLocker commit 2b2b4 allows attackers to send messages erroneously attributed to arbitrary users via a crafted HTTP request.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-290" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-13T19:15:52Z" diff --git a/advisories/unreviewed/2024/06/GHSA-pr8c-f372-64ch/GHSA-pr8c-f372-64ch.json b/advisories/unreviewed/2024/06/GHSA-pr8c-f372-64ch/GHSA-pr8c-f372-64ch.json index 37f9ecadfa4..5cda3dbecfc 100644 --- a/advisories/unreviewed/2024/06/GHSA-pr8c-f372-64ch/GHSA-pr8c-f372-64ch.json +++ b/advisories/unreviewed/2024/06/GHSA-pr8c-f372-64ch/GHSA-pr8c-f372-64ch.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-pr8c-f372-64ch", - "modified": "2024-06-24T00:34:02Z", + "modified": "2024-11-21T21:33:30Z", "published": "2024-06-24T00:34:02Z", "aliases": [ "CVE-2024-39337" ], "details": "Click Studios Passwordstate Core before 9.8 build 9858 allows Authentication Bypass.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-290" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-24T00:15:09Z" diff --git a/advisories/unreviewed/2024/07/GHSA-8mrq-m68x-jfcm/GHSA-8mrq-m68x-jfcm.json b/advisories/unreviewed/2024/07/GHSA-8mrq-m68x-jfcm/GHSA-8mrq-m68x-jfcm.json index aeda61d73fc..bdcc4153b9c 100644 --- a/advisories/unreviewed/2024/07/GHSA-8mrq-m68x-jfcm/GHSA-8mrq-m68x-jfcm.json +++ b/advisories/unreviewed/2024/07/GHSA-8mrq-m68x-jfcm/GHSA-8mrq-m68x-jfcm.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-918" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/07/GHSA-c2wj-q48m-x7c3/GHSA-c2wj-q48m-x7c3.json b/advisories/unreviewed/2024/07/GHSA-c2wj-q48m-x7c3/GHSA-c2wj-q48m-x7c3.json index 66bce7dbccb..6b3d1ec5f11 100644 --- a/advisories/unreviewed/2024/07/GHSA-c2wj-q48m-x7c3/GHSA-c2wj-q48m-x7c3.json +++ b/advisories/unreviewed/2024/07/GHSA-c2wj-q48m-x7c3/GHSA-c2wj-q48m-x7c3.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-276" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-42jh-6qqc-g99m/GHSA-42jh-6qqc-g99m.json b/advisories/unreviewed/2024/08/GHSA-42jh-6qqc-g99m/GHSA-42jh-6qqc-g99m.json index cbf9b7238b0..ce17c42bf87 100644 --- a/advisories/unreviewed/2024/08/GHSA-42jh-6qqc-g99m/GHSA-42jh-6qqc-g99m.json +++ b/advisories/unreviewed/2024/08/GHSA-42jh-6qqc-g99m/GHSA-42jh-6qqc-g99m.json @@ -32,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-924" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-7c7g-wccp-rrhj/GHSA-7c7g-wccp-rrhj.json b/advisories/unreviewed/2024/08/GHSA-7c7g-wccp-rrhj/GHSA-7c7g-wccp-rrhj.json index 377c360a2f9..ad70c5450cb 100644 --- a/advisories/unreviewed/2024/08/GHSA-7c7g-wccp-rrhj/GHSA-7c7g-wccp-rrhj.json +++ b/advisories/unreviewed/2024/08/GHSA-7c7g-wccp-rrhj/GHSA-7c7g-wccp-rrhj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7c7g-wccp-rrhj", - "modified": "2024-11-12T18:30:50Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-08-05T15:30:53Z", "aliases": [ "CVE-2024-7409" @@ -37,10 +37,22 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:7408" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:8991" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:9136" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9620" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9912" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-7409" diff --git a/advisories/unreviewed/2024/10/GHSA-74x7-28x6-q6gc/GHSA-74x7-28x6-q6gc.json b/advisories/unreviewed/2024/10/GHSA-74x7-28x6-q6gc/GHSA-74x7-28x6-q6gc.json index 3934eea05de..66f9194749d 100644 --- a/advisories/unreviewed/2024/10/GHSA-74x7-28x6-q6gc/GHSA-74x7-28x6-q6gc.json +++ b/advisories/unreviewed/2024/10/GHSA-74x7-28x6-q6gc/GHSA-74x7-28x6-q6gc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-74x7-28x6-q6gc", - "modified": "2024-10-29T18:30:35Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-10-24T18:30:43Z", "aliases": [ "CVE-2024-44206" @@ -44,6 +44,10 @@ { "type": "WEB", "url": "https://support.apple.com/en-us/120916" + }, + { + "type": "WEB", + "url": "http://seclists.org/fulldisclosure/2024/Nov/6" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/10/GHSA-cjcf-6ch6-g3rx/GHSA-cjcf-6ch6-g3rx.json b/advisories/unreviewed/2024/10/GHSA-cjcf-6ch6-g3rx/GHSA-cjcf-6ch6-g3rx.json index b1c7c3cbe17..24e15524388 100644 --- a/advisories/unreviewed/2024/10/GHSA-cjcf-6ch6-g3rx/GHSA-cjcf-6ch6-g3rx.json +++ b/advisories/unreviewed/2024/10/GHSA-cjcf-6ch6-g3rx/GHSA-cjcf-6ch6-g3rx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cjcf-6ch6-g3rx", - "modified": "2024-11-13T21:30:31Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-10-30T09:30:48Z", "aliases": [ "CVE-2024-9632" @@ -21,10 +21,18 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9632" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:10090" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:8798" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9540" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:9579" @@ -33,6 +41,30 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:9601" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9690" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9816" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9818" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9819" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9820" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:9901" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-9632" @@ -40,6 +72,18 @@ { "type": "WEB", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2317233" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2024/10/msg00031.html" + }, + { + "type": "WEB", + "url": "http://seclists.org/fulldisclosure/2024/Oct/20" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2024/10/29/2" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/11/GHSA-46qx-h248-6h75/GHSA-46qx-h248-6h75.json b/advisories/unreviewed/2024/11/GHSA-46qx-h248-6h75/GHSA-46qx-h248-6h75.json new file mode 100644 index 00000000000..9be4c14f513 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-46qx-h248-6h75/GHSA-46qx-h248-6h75.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-46qx-h248-6h75", + "modified": "2024-11-21T21:33:32Z", + "published": "2024-11-21T21:33:32Z", + "aliases": [ + "CVE-2024-51337" + ], + "details": "Cross Site Scripting vulnerability in Gibbon before v.27.0.01 and fixed in v.28.0.00 allows a remote attacker to obtain sensitive information via the email parameter found in /Gibbon/modules/User Admin/user_manage_editProcess.php.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51337" + }, + { + "type": "WEB", + "url": "https://github.com/GibbonEdu/core" + }, + { + "type": "WEB", + "url": "https://github.com/aziz0x48/CVEs-and-Vulnerabilities/blob/main/CVE-2024-51337.md" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T19:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-4p29-qp7w-5p8p/GHSA-4p29-qp7w-5p8p.json b/advisories/unreviewed/2024/11/GHSA-4p29-qp7w-5p8p/GHSA-4p29-qp7w-5p8p.json new file mode 100644 index 00000000000..cbccf6e583c --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-4p29-qp7w-5p8p/GHSA-4p29-qp7w-5p8p.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4p29-qp7w-5p8p", + "modified": "2024-11-21T21:33:32Z", + "published": "2024-11-21T21:33:32Z", + "aliases": [ + "CVE-2024-53095" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nsmb: client: Fix use-after-free of network namespace.\n\nRecently, we got a customer report that CIFS triggers oops while\nreconnecting to a server. [0]\n\nThe workload runs on Kubernetes, and some pods mount CIFS servers\nin non-root network namespaces. The problem rarely happened, but\nit was always while the pod was dying.\n\nThe root cause is wrong reference counting for network namespace.\n\nCIFS uses kernel sockets, which do not hold refcnt of the netns that\nthe socket belongs to. That means CIFS must ensure the socket is\nalways freed before its netns; otherwise, use-after-free happens.\n\nThe repro steps are roughly:\n\n 1. mount CIFS in a non-root netns\n 2. drop packets from the netns\n 3. destroy the netns\n 4. unmount CIFS\n\nWe can reproduce the issue quickly with the script [1] below and see\nthe splat [2] if CONFIG_NET_NS_REFCNT_TRACKER is enabled.\n\nWhen the socket is TCP, it is hard to guarantee the netns lifetime\nwithout holding refcnt due to async timers.\n\nLet's hold netns refcnt for each socket as done for SMC in commit\n9744d2bf1976 (\"smc: Fix use-after-free in tcp_write_timer_handler().\").\n\nNote that we need to move put_net() from cifs_put_tcp_session() to\nclean_demultiplex_info(); otherwise, __sock_create() still could touch a\nfreed netns while cifsd tries to reconnect from cifs_demultiplex_thread().\n\nAlso, maybe_get_net() cannot be put just before __sock_create() because\nthe code is not under RCU and there is a small chance that the same\naddress happened to be reallocated to another netns.\n\n[0]:\nCIFS: VFS: \\\\XXXXXXXXXXX has not responded in 15 seconds. Reconnecting...\nCIFS: Serverclose failed 4 times, giving up\nUnable to handle kernel paging request at virtual address 14de99e461f84a07\nMem abort info:\n ESR = 0x0000000096000004\n EC = 0x25: DABT (current EL), IL = 32 bits\n SET = 0, FnV = 0\n EA = 0, S1PTW = 0\n FSC = 0x04: level 0 translation fault\nData abort info:\n ISV = 0, ISS = 0x00000004\n CM = 0, WnR = 0\n[14de99e461f84a07] address between user and kernel address ranges\nInternal error: Oops: 0000000096000004 [#1] SMP\nModules linked in: cls_bpf sch_ingress nls_utf8 cifs cifs_arc4 cifs_md4 dns_resolver tcp_diag inet_diag veth xt_state xt_connmark nf_conntrack_netlink xt_nat xt_statistic xt_MASQUERADE xt_mark xt_addrtype ipt_REJECT nf_reject_ipv4 nft_chain_nat nf_nat xt_conntrack nf_conntrack nf_defrag_ipv6 nf_defrag_ipv4 xt_comment nft_compat nf_tables nfnetlink overlay nls_ascii nls_cp437 sunrpc vfat fat aes_ce_blk aes_ce_cipher ghash_ce sm4_ce_cipher sm4 sm3_ce sm3 sha3_ce sha512_ce sha512_arm64 sha1_ce ena button sch_fq_codel loop fuse configfs dmi_sysfs sha2_ce sha256_arm64 dm_mirror dm_region_hash dm_log dm_mod dax efivarfs\nCPU: 5 PID: 2690970 Comm: cifsd Not tainted 6.1.103-109.184.amzn2023.aarch64 #1\nHardware name: Amazon EC2 r7g.4xlarge/, BIOS 1.0 11/1/2018\npstate: 00400005 (nzcv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)\npc : fib_rules_lookup+0x44/0x238\nlr : __fib_lookup+0x64/0xbc\nsp : ffff8000265db790\nx29: ffff8000265db790 x28: 0000000000000000 x27: 000000000000bd01\nx26: 0000000000000000 x25: ffff000b4baf8000 x24: ffff00047b5e4580\nx23: ffff8000265db7e0 x22: 0000000000000000 x21: ffff00047b5e4500\nx20: ffff0010e3f694f8 x19: 14de99e461f849f7 x18: 0000000000000000\nx17: 0000000000000000 x16: 0000000000000000 x15: 0000000000000000\nx14: 0000000000000000 x13: 0000000000000000 x12: 3f92800abd010002\nx11: 0000000000000001 x10: ffff0010e3f69420 x9 : ffff800008a6f294\nx8 : 0000000000000000 x7 : 0000000000000006 x6 : 0000000000000000\nx5 : 0000000000000001 x4 : ffff001924354280 x3 : ffff8000265db7e0\nx2 : 0000000000000000 x1 : ffff0010e3f694f8 x0 : ffff00047b5e4500\nCall trace:\n fib_rules_lookup+0x44/0x238\n __fib_lookup+0x64/0xbc\n ip_route_output_key_hash_rcu+0x2c4/0x398\n ip_route_output_key_hash+0x60/0x8c\n tcp_v4_connect+0x290/0x488\n __inet_stream_connect+0x108/0x3d0\n inet_stream_connect+0x50/0x78\n kernel_connect+0x6c/0xac\n generic_ip_conne\n---truncated---", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-53095" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/c7f9282fc27fc36dbaffc8527c723de264a132f8" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e8c71494181153a134c96da28766a57bd1eac8cb" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ef7134c7fc48e1441b398e55a862232868a6f0a7" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T19:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-5v3w-3pq2-qhxx/GHSA-5v3w-3pq2-qhxx.json b/advisories/unreviewed/2024/11/GHSA-5v3w-3pq2-qhxx/GHSA-5v3w-3pq2-qhxx.json index d9d3955371e..55f287ae0ac 100644 --- a/advisories/unreviewed/2024/11/GHSA-5v3w-3pq2-qhxx/GHSA-5v3w-3pq2-qhxx.json +++ b/advisories/unreviewed/2024/11/GHSA-5v3w-3pq2-qhxx/GHSA-5v3w-3pq2-qhxx.json @@ -48,7 +48,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-787" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-7h56-8w9m-w78x/GHSA-7h56-8w9m-w78x.json b/advisories/unreviewed/2024/11/GHSA-7h56-8w9m-w78x/GHSA-7h56-8w9m-w78x.json index 4d4d755c146..e6c2b96189c 100644 --- a/advisories/unreviewed/2024/11/GHSA-7h56-8w9m-w78x/GHSA-7h56-8w9m-w78x.json +++ b/advisories/unreviewed/2024/11/GHSA-7h56-8w9m-w78x/GHSA-7h56-8w9m-w78x.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7h56-8w9m-w78x", - "modified": "2024-11-19T03:31:09Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-11-19T03:31:09Z", "aliases": [ "CVE-2024-50301" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nsecurity/keys: fix slab-out-of-bounds in key_task_permission\n\nKASAN reports an out of bounds read:\nBUG: KASAN: slab-out-of-bounds in __kuid_val include/linux/uidgid.h:36\nBUG: KASAN: slab-out-of-bounds in uid_eq include/linux/uidgid.h:63 [inline]\nBUG: KASAN: slab-out-of-bounds in key_task_permission+0x394/0x410\nsecurity/keys/permission.c:54\nRead of size 4 at addr ffff88813c3ab618 by task stress-ng/4362\n\nCPU: 2 PID: 4362 Comm: stress-ng Not tainted 5.10.0-14930-gafbffd6c3ede #15\nCall Trace:\n __dump_stack lib/dump_stack.c:82 [inline]\n dump_stack+0x107/0x167 lib/dump_stack.c:123\n print_address_description.constprop.0+0x19/0x170 mm/kasan/report.c:400\n __kasan_report.cold+0x6c/0x84 mm/kasan/report.c:560\n kasan_report+0x3a/0x50 mm/kasan/report.c:585\n __kuid_val include/linux/uidgid.h:36 [inline]\n uid_eq include/linux/uidgid.h:63 [inline]\n key_task_permission+0x394/0x410 security/keys/permission.c:54\n search_nested_keyrings+0x90e/0xe90 security/keys/keyring.c:793\n\nThis issue was also reported by syzbot.\n\nIt can be reproduced by following these steps(more details [1]):\n1. Obtain more than 32 inputs that have similar hashes, which ends with the\n pattern '0xxxxxxxe6'.\n2. Reboot and add the keys obtained in step 1.\n\nThe reproducer demonstrates how this issue happened:\n1. In the search_nested_keyrings function, when it iterates through the\n slots in a node(below tag ascend_to_node), if the slot pointer is meta\n and node->back_pointer != NULL(it means a root), it will proceed to\n descend_to_node. However, there is an exception. If node is the root,\n and one of the slots points to a shortcut, it will be treated as a\n keyring.\n2. Whether the ptr is keyring decided by keyring_ptr_is_keyring function.\n However, KEYRING_PTR_SUBTYPE is 0x2UL, the same as\n ASSOC_ARRAY_PTR_SUBTYPE_MASK.\n3. When 32 keys with the similar hashes are added to the tree, the ROOT\n has keys with hashes that are not similar (e.g. slot 0) and it splits\n NODE A without using a shortcut. When NODE A is filled with keys that\n all hashes are xxe6, the keys are similar, NODE A will split with a\n shortcut. Finally, it forms the tree as shown below, where slot 6 points\n to a shortcut.\n\n NODE A\n +------>+---+\n ROOT | | 0 | xxe6\n +---+ | +---+\n xxxx | 0 | shortcut : : xxe6\n +---+ | +---+\n xxe6 : : | | | xxe6\n +---+ | +---+\n | 6 |---+ : : xxe6\n +---+ +---+\n xxe6 : : | f | xxe6\n +---+ +---+\n xxe6 | f |\n +---+\n\n4. As mentioned above, If a slot(slot 6) of the root points to a shortcut,\n it may be mistakenly transferred to a key*, leading to a read\n out-of-bounds read.\n\nTo fix this issue, one should jump to descend_to_node if the ptr is a\nshortcut, regardless of whether the node is root or not.\n\n[1] https://lore.kernel.org/linux-kernel/1cfa878e-8c7b-4570-8606-21daf5e13ce7@huaweicloud.com/\n\n[jarkko: tweaked the commit message a bit to have an appropriate closes\n tag.]", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-19T02:16:32Z" diff --git a/advisories/unreviewed/2024/11/GHSA-8jxm-phrp-w2j4/GHSA-8jxm-phrp-w2j4.json b/advisories/unreviewed/2024/11/GHSA-8jxm-phrp-w2j4/GHSA-8jxm-phrp-w2j4.json index 53b134e96ff..bbfedb72e25 100644 --- a/advisories/unreviewed/2024/11/GHSA-8jxm-phrp-w2j4/GHSA-8jxm-phrp-w2j4.json +++ b/advisories/unreviewed/2024/11/GHSA-8jxm-phrp-w2j4/GHSA-8jxm-phrp-w2j4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8jxm-phrp-w2j4", - "modified": "2024-11-19T03:31:08Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-11-19T03:31:08Z", "aliases": [ "CVE-2024-50283" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nksmbd: fix slab-use-after-free in smb3_preauth_hash_rsp\n\nksmbd_user_session_put should be called under smb3_preauth_hash_rsp().\nIt will avoid freeing session before calling smb3_preauth_hash_rsp().", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-19T02:16:30Z" diff --git a/advisories/unreviewed/2024/11/GHSA-8qh2-vgp4-89x7/GHSA-8qh2-vgp4-89x7.json b/advisories/unreviewed/2024/11/GHSA-8qh2-vgp4-89x7/GHSA-8qh2-vgp4-89x7.json index 46a9180c93c..4030a8d4e85 100644 --- a/advisories/unreviewed/2024/11/GHSA-8qh2-vgp4-89x7/GHSA-8qh2-vgp4-89x7.json +++ b/advisories/unreviewed/2024/11/GHSA-8qh2-vgp4-89x7/GHSA-8qh2-vgp4-89x7.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8qh2-vgp4-89x7", - "modified": "2024-11-19T03:31:07Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-11-19T03:31:07Z", "aliases": [ "CVE-2023-52921" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amdgpu: fix possible UAF in amdgpu_cs_pass1()\n\nSince the gang_size check is outside of chunk parsing\nloop, we need to reset i before we free the chunk data.\n\nSuggested by Ye Zhang (@VAR10CK) of Baidu Security.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-19T02:15:09Z" diff --git a/advisories/unreviewed/2024/11/GHSA-8r7h-24gf-rhr8/GHSA-8r7h-24gf-rhr8.json b/advisories/unreviewed/2024/11/GHSA-8r7h-24gf-rhr8/GHSA-8r7h-24gf-rhr8.json new file mode 100644 index 00000000000..e9fd2bd2455 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-8r7h-24gf-rhr8/GHSA-8r7h-24gf-rhr8.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8r7h-24gf-rhr8", + "modified": "2024-11-21T21:33:32Z", + "published": "2024-11-21T21:33:32Z", + "aliases": [ + "CVE-2024-51364" + ], + "details": "An arbitrary file upload vulnerability in ModbusMechanic v3.0 allows attackers to execute arbitrary code via uploading a crafted .xml file.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51364" + }, + { + "type": "WEB", + "url": "https://github.com/Gelcon/PoC-ModbusMechanic-3.0-Insecure-Deserialization-and-RCE" + }, + { + "type": "WEB", + "url": "http://modbusmechanic.com" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T20:15:44Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-8vxc-ww8x-mxp8/GHSA-8vxc-ww8x-mxp8.json b/advisories/unreviewed/2024/11/GHSA-8vxc-ww8x-mxp8/GHSA-8vxc-ww8x-mxp8.json index ff756ec2758..4615cb4db66 100644 --- a/advisories/unreviewed/2024/11/GHSA-8vxc-ww8x-mxp8/GHSA-8vxc-ww8x-mxp8.json +++ b/advisories/unreviewed/2024/11/GHSA-8vxc-ww8x-mxp8/GHSA-8vxc-ww8x-mxp8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8vxc-ww8x-mxp8", - "modified": "2024-11-19T03:31:07Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-11-19T03:31:07Z", "aliases": [ "CVE-2024-50264" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nvsock/virtio: Initialization of the dangling pointer occurring in vsk->trans\n\nDuring loopback communication, a dangling pointer can be created in\nvsk->trans, potentially leading to a Use-After-Free condition. This\nissue is resolved by initializing vsk->trans to NULL.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-19T02:16:28Z" diff --git a/advisories/unreviewed/2024/11/GHSA-927w-gc63-2rh7/GHSA-927w-gc63-2rh7.json b/advisories/unreviewed/2024/11/GHSA-927w-gc63-2rh7/GHSA-927w-gc63-2rh7.json new file mode 100644 index 00000000000..61154d52bfd --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-927w-gc63-2rh7/GHSA-927w-gc63-2rh7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-927w-gc63-2rh7", + "modified": "2024-11-21T21:33:32Z", + "published": "2024-11-21T21:33:32Z", + "aliases": [ + "CVE-2024-53334" + ], + "details": "TOTOLINK A810R V4.1.2cu.5182_B20201026 is vulnerable to Buffer Overflow in infostat.cgi.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-53334" + }, + { + "type": "WEB", + "url": "https://github.com/luckysmallbird/Totolink-A810R-Vulnerability-1/blob/main/1.md" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-120" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T18:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-97cw-cf8m-4xxc/GHSA-97cw-cf8m-4xxc.json b/advisories/unreviewed/2024/11/GHSA-97cw-cf8m-4xxc/GHSA-97cw-cf8m-4xxc.json new file mode 100644 index 00000000000..736211e28e5 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-97cw-cf8m-4xxc/GHSA-97cw-cf8m-4xxc.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-97cw-cf8m-4xxc", + "modified": "2024-11-21T21:33:32Z", + "published": "2024-11-21T21:33:31Z", + "aliases": [ + "CVE-2024-9828" + ], + "details": "The Taskbuilder WordPress plugin before 3.0.5 does not sanitize user input into the 'load_orders' parameter and uses it in a SQL statement, allowing high privilege users such as admin to perform SQL Injection attacks", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9828" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/eb2d0932-fd47-4aef-9d08-4377c742bb6e" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T11:15:38Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-9wf4-422v-6w3j/GHSA-9wf4-422v-6w3j.json b/advisories/unreviewed/2024/11/GHSA-9wf4-422v-6w3j/GHSA-9wf4-422v-6w3j.json new file mode 100644 index 00000000000..0ec52a91cb8 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-9wf4-422v-6w3j/GHSA-9wf4-422v-6w3j.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9wf4-422v-6w3j", + "modified": "2024-11-21T21:33:32Z", + "published": "2024-11-21T21:33:32Z", + "aliases": [ + "CVE-2024-51365" + ], + "details": "An arbitrary file upload vulnerability in the importSettings method of VisiCut v2.1 allows attackers to execute arbitrary code via uploading a crafted Zip file.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51365" + }, + { + "type": "WEB", + "url": "https://download.visicut.org" + }, + { + "type": "WEB", + "url": "https://github.com/Gelcon/PoC-of-VisiCut2_1-Stack-Overflow-Vul" + }, + { + "type": "WEB", + "url": "http://visicut.com" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T20:15:44Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-cqg5-xfgj-qvgx/GHSA-cqg5-xfgj-qvgx.json b/advisories/unreviewed/2024/11/GHSA-cqg5-xfgj-qvgx/GHSA-cqg5-xfgj-qvgx.json new file mode 100644 index 00000000000..83b7bcbeeb3 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-cqg5-xfgj-qvgx/GHSA-cqg5-xfgj-qvgx.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cqg5-xfgj-qvgx", + "modified": "2024-11-21T21:33:32Z", + "published": "2024-11-21T21:33:32Z", + "aliases": [ + "CVE-2024-53089" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nLoongArch: KVM: Mark hrtimer to expire in hard interrupt context\n\nLike commit 2c0d278f3293f (\"KVM: LAPIC: Mark hrtimer to expire in hard\ninterrupt context\") and commit 9090825fa9974 (\"KVM: arm/arm64: Let the\ntimer expire in hardirq context on RT\"), On PREEMPT_RT enabled kernels\nunmarked hrtimers are moved into soft interrupt expiry mode by default.\nThen the timers are canceled from an preempt-notifier which is invoked\nwith disabled preemption which is not allowed on PREEMPT_RT.\n\nThe timer callback is short so in could be invoked in hard-IRQ context.\nSo let the timer expire on hard-IRQ context even on -RT.\n\nThis fix a \"scheduling while atomic\" bug for PREEMPT_RT enabled kernels:\n\n BUG: scheduling while atomic: qemu-system-loo/1011/0x00000002\n Modules linked in: amdgpu rfkill nft_fib_inet nft_fib_ipv4 nft_fib_ipv6 nft_fib nft_reject_inet nf_reject_ipv4 nf_reject_ipv6 nft_reject nft_ct nft_chain_nat ns\n CPU: 1 UID: 0 PID: 1011 Comm: qemu-system-loo Tainted: G W 6.12.0-rc2+ #1774\n Tainted: [W]=WARN\n Hardware name: Loongson Loongson-3A5000-7A1000-1w-CRB/Loongson-LS3A5000-7A1000-1w-CRB, BIOS vUDK2018-LoongArch-V2.0.0-prebeta9 10/21/2022\n Stack : ffffffffffffffff 0000000000000000 9000000004e3ea38 9000000116744000\n 90000001167475a0 0000000000000000 90000001167475a8 9000000005644830\n 90000000058dc000 90000000058dbff8 9000000116747420 0000000000000001\n 0000000000000001 6a613fc938313980 000000000790c000 90000001001c1140\n 00000000000003fe 0000000000000001 000000000000000d 0000000000000003\n 0000000000000030 00000000000003f3 000000000790c000 9000000116747830\n 90000000057ef000 0000000000000000 9000000005644830 0000000000000004\n 0000000000000000 90000000057f4b58 0000000000000001 9000000116747868\n 900000000451b600 9000000005644830 9000000003a13998 0000000010000020\n 00000000000000b0 0000000000000004 0000000000000000 0000000000071c1d\n ...\n Call Trace:\n [<9000000003a13998>] show_stack+0x38/0x180\n [<9000000004e3ea34>] dump_stack_lvl+0x84/0xc0\n [<9000000003a71708>] __schedule_bug+0x48/0x60\n [<9000000004e45734>] __schedule+0x1114/0x1660\n [<9000000004e46040>] schedule_rtlock+0x20/0x60\n [<9000000004e4e330>] rtlock_slowlock_locked+0x3f0/0x10a0\n [<9000000004e4f038>] rt_spin_lock+0x58/0x80\n [<9000000003b02d68>] hrtimer_cancel_wait_running+0x68/0xc0\n [<9000000003b02e30>] hrtimer_cancel+0x70/0x80\n [] kvm_restore_timer+0x50/0x1a0 [kvm]\n [] kvm_arch_vcpu_load+0x68/0x2a0 [kvm]\n [] kvm_sched_in+0x34/0x60 [kvm]\n [<9000000003a749a0>] finish_task_switch.isra.0+0x140/0x2e0\n [<9000000004e44a70>] __schedule+0x450/0x1660\n [<9000000004e45cb0>] schedule+0x30/0x180\n [] kvm_vcpu_block+0x70/0x120 [kvm]\n [] kvm_vcpu_halt+0x60/0x3e0 [kvm]\n [] kvm_handle_gspr+0x3f4/0x4e0 [kvm]\n [] kvm_handle_exit+0x1c8/0x260 [kvm]", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-53089" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1e4c384a4be9ed1e069e24f388ab2ee9951b77b5" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/73adbd92f3223dc0c3506822b71c6b259d5d537b" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T19:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-f3pg-hppr-jf6f/GHSA-f3pg-hppr-jf6f.json b/advisories/unreviewed/2024/11/GHSA-f3pg-hppr-jf6f/GHSA-f3pg-hppr-jf6f.json new file mode 100644 index 00000000000..f4e9d538d91 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-f3pg-hppr-jf6f/GHSA-f3pg-hppr-jf6f.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f3pg-hppr-jf6f", + "modified": "2024-11-21T21:33:32Z", + "published": "2024-11-21T21:33:32Z", + "aliases": [ + "CVE-2024-53090" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nafs: Fix lock recursion\n\nafs_wake_up_async_call() can incur lock recursion. The problem is that it\nis called from AF_RXRPC whilst holding the ->notify_lock, but it tries to\ntake a ref on the afs_call struct in order to pass it to a work queue - but\nif the afs_call is already queued, we then have an extraneous ref that must\nbe put... calling afs_put_call() may call back down into AF_RXRPC through\nrxrpc_kernel_shutdown_call(), however, which might try taking the\n->notify_lock again.\n\nThis case isn't very common, however, so defer it to a workqueue. The oops\nlooks something like:\n\n BUG: spinlock recursion on CPU#0, krxrpcio/7001/1646\n lock: 0xffff888141399b30, .magic: dead4ead, .owner: krxrpcio/7001/1646, .owner_cpu: 0\n CPU: 0 UID: 0 PID: 1646 Comm: krxrpcio/7001 Not tainted 6.12.0-rc2-build3+ #4351\n Hardware name: ASUS All Series/H97-PLUS, BIOS 2306 10/09/2014\n Call Trace:\n \n dump_stack_lvl+0x47/0x70\n do_raw_spin_lock+0x3c/0x90\n rxrpc_kernel_shutdown_call+0x83/0xb0\n afs_put_call+0xd7/0x180\n rxrpc_notify_socket+0xa0/0x190\n rxrpc_input_split_jumbo+0x198/0x1d0\n rxrpc_input_data+0x14b/0x1e0\n ? rxrpc_input_call_packet+0xc2/0x1f0\n rxrpc_input_call_event+0xad/0x6b0\n rxrpc_input_packet_on_conn+0x1e1/0x210\n rxrpc_input_packet+0x3f2/0x4d0\n rxrpc_io_thread+0x243/0x410\n ? __pfx_rxrpc_io_thread+0x10/0x10\n kthread+0xcf/0xe0\n ? __pfx_kthread+0x10/0x10\n ret_from_fork+0x24/0x40\n ? __pfx_kthread+0x10/0x10\n ret_from_fork_asm+0x1a/0x30\n ", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-53090" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/610a79ffea02102899a1373fe226d949944a7ed6" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d7cbf81df996b1eae2dee8deb6df08e2eba78661" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T19:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-f655-5h7w-g749/GHSA-f655-5h7w-g749.json b/advisories/unreviewed/2024/11/GHSA-f655-5h7w-g749/GHSA-f655-5h7w-g749.json index 4440bd99517..b0e3edbbd91 100644 --- a/advisories/unreviewed/2024/11/GHSA-f655-5h7w-g749/GHSA-f655-5h7w-g749.json +++ b/advisories/unreviewed/2024/11/GHSA-f655-5h7w-g749/GHSA-f655-5h7w-g749.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f655-5h7w-g749", - "modified": "2024-11-19T03:31:08Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-11-19T03:31:08Z", "aliases": [ "CVE-2024-50300" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nregulator: rtq2208: Fix uninitialized use of regulator_config\n\nFix rtq2208 driver uninitialized use to cause kernel error.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-908" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-19T02:16:32Z" diff --git a/advisories/unreviewed/2024/11/GHSA-f8fj-469m-8mrj/GHSA-f8fj-469m-8mrj.json b/advisories/unreviewed/2024/11/GHSA-f8fj-469m-8mrj/GHSA-f8fj-469m-8mrj.json index 6de682beb63..cf3596f8679 100644 --- a/advisories/unreviewed/2024/11/GHSA-f8fj-469m-8mrj/GHSA-f8fj-469m-8mrj.json +++ b/advisories/unreviewed/2024/11/GHSA-f8fj-469m-8mrj/GHSA-f8fj-469m-8mrj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f8fj-469m-8mrj", - "modified": "2024-11-19T03:31:08Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-11-19T03:31:08Z", "aliases": [ "CVE-2024-50287" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: v4l2-tpg: prevent the risk of a division by zero\n\nAs reported by Coverity, the logic at tpg_precalculate_line()\nblindly rescales the buffer even when scaled_witdh is equal to\nzero. If this ever happens, this will cause a division by zero.\n\nInstead, add a WARN_ON_ONCE() to trigger such cases and return\nwithout doing any precalculation.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-369" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-19T02:16:30Z" diff --git a/advisories/unreviewed/2024/11/GHSA-grq5-97jg-xjfp/GHSA-grq5-97jg-xjfp.json b/advisories/unreviewed/2024/11/GHSA-grq5-97jg-xjfp/GHSA-grq5-97jg-xjfp.json index 35f3dad0abf..767974b7ff6 100644 --- a/advisories/unreviewed/2024/11/GHSA-grq5-97jg-xjfp/GHSA-grq5-97jg-xjfp.json +++ b/advisories/unreviewed/2024/11/GHSA-grq5-97jg-xjfp/GHSA-grq5-97jg-xjfp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-grq5-97jg-xjfp", - "modified": "2024-11-19T03:31:07Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-11-19T03:31:07Z", "aliases": [ "CVE-2024-50265" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nocfs2: remove entry once instead of null-ptr-dereference in ocfs2_xa_remove()\n\nSyzkaller is able to provoke null-ptr-dereference in ocfs2_xa_remove():\n\n[ 57.319872] (a.out,1161,7):ocfs2_xa_remove:2028 ERROR: status = -12\n[ 57.320420] (a.out,1161,7):ocfs2_xa_cleanup_value_truncate:1999 ERROR: Partial truncate while removing xattr overlay.upper. Leaking 1 clusters and removing the entry\n[ 57.321727] BUG: kernel NULL pointer dereference, address: 0000000000000004\n[...]\n[ 57.325727] RIP: 0010:ocfs2_xa_block_wipe_namevalue+0x2a/0xc0\n[...]\n[ 57.331328] Call Trace:\n[ 57.331477] \n[...]\n[ 57.333511] ? do_user_addr_fault+0x3e5/0x740\n[ 57.333778] ? exc_page_fault+0x70/0x170\n[ 57.334016] ? asm_exc_page_fault+0x2b/0x30\n[ 57.334263] ? __pfx_ocfs2_xa_block_wipe_namevalue+0x10/0x10\n[ 57.334596] ? ocfs2_xa_block_wipe_namevalue+0x2a/0xc0\n[ 57.334913] ocfs2_xa_remove_entry+0x23/0xc0\n[ 57.335164] ocfs2_xa_set+0x704/0xcf0\n[ 57.335381] ? _raw_spin_unlock+0x1a/0x40\n[ 57.335620] ? ocfs2_inode_cache_unlock+0x16/0x20\n[ 57.335915] ? trace_preempt_on+0x1e/0x70\n[ 57.336153] ? start_this_handle+0x16c/0x500\n[ 57.336410] ? preempt_count_sub+0x50/0x80\n[ 57.336656] ? _raw_read_unlock+0x20/0x40\n[ 57.336906] ? start_this_handle+0x16c/0x500\n[ 57.337162] ocfs2_xattr_block_set+0xa6/0x1e0\n[ 57.337424] __ocfs2_xattr_set_handle+0x1fd/0x5d0\n[ 57.337706] ? ocfs2_start_trans+0x13d/0x290\n[ 57.337971] ocfs2_xattr_set+0xb13/0xfb0\n[ 57.338207] ? dput+0x46/0x1c0\n[ 57.338393] ocfs2_xattr_trusted_set+0x28/0x30\n[ 57.338665] ? ocfs2_xattr_trusted_set+0x28/0x30\n[ 57.338948] __vfs_removexattr+0x92/0xc0\n[ 57.339182] __vfs_removexattr_locked+0xd5/0x190\n[ 57.339456] ? preempt_count_sub+0x50/0x80\n[ 57.339705] vfs_removexattr+0x5f/0x100\n[...]\n\nReproducer uses faultinject facility to fail ocfs2_xa_remove() ->\nocfs2_xa_value_truncate() with -ENOMEM.\n\nIn this case the comment mentions that we can return 0 if\nocfs2_xa_cleanup_value_truncate() is going to wipe the entry\nanyway. But the following 'rc' check is wrong and execution flow do\n'ocfs2_xa_remove_entry(loc);' twice:\n* 1st: in ocfs2_xa_cleanup_value_truncate();\n* 2nd: returning back to ocfs2_xa_remove() instead of going to 'out'.\n\nFix this by skipping the 2nd removal of the same entry and making\nsyzkaller repro happy.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-19T02:16:28Z" diff --git a/advisories/unreviewed/2024/11/GHSA-h534-5p7w-q7vf/GHSA-h534-5p7w-q7vf.json b/advisories/unreviewed/2024/11/GHSA-h534-5p7w-q7vf/GHSA-h534-5p7w-q7vf.json new file mode 100644 index 00000000000..36700956fd4 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-h534-5p7w-q7vf/GHSA-h534-5p7w-q7vf.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h534-5p7w-q7vf", + "modified": "2024-11-21T21:33:32Z", + "published": "2024-11-21T21:33:31Z", + "aliases": [ + "CVE-2024-48286" + ], + "details": "Linksys E3000 1.0.06.002_US is vulnerable to command injection via the diag_ping_start function.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48286" + }, + { + "type": "WEB", + "url": "https://github.com/GroundCTL2MajorTom/pocs/blob/main/Cisco_Linksys_E3000_rce.md" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T18:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-h8rg-j4g6-9v99/GHSA-h8rg-j4g6-9v99.json b/advisories/unreviewed/2024/11/GHSA-h8rg-j4g6-9v99/GHSA-h8rg-j4g6-9v99.json index a7c920ad7ad..ec5af4451e8 100644 --- a/advisories/unreviewed/2024/11/GHSA-h8rg-j4g6-9v99/GHSA-h8rg-j4g6-9v99.json +++ b/advisories/unreviewed/2024/11/GHSA-h8rg-j4g6-9v99/GHSA-h8rg-j4g6-9v99.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-h8rg-j4g6-9v99", - "modified": "2024-11-15T15:30:58Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-11-15T15:30:58Z", "aliases": [ "CVE-2024-48068" ], "details": "A cross-site scripting (XSS) vulnerability in Shenzhen Landray Software Co.,LTD Landray EKP v16 and earlier allows attackers to execute arbitrary web scripts or HTML via a crafted payload.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-15T15:15:07Z" diff --git a/advisories/unreviewed/2024/11/GHSA-h9rp-4669-xxx3/GHSA-h9rp-4669-xxx3.json b/advisories/unreviewed/2024/11/GHSA-h9rp-4669-xxx3/GHSA-h9rp-4669-xxx3.json index 61c50d5bbc6..12ea360f1aa 100644 --- a/advisories/unreviewed/2024/11/GHSA-h9rp-4669-xxx3/GHSA-h9rp-4669-xxx3.json +++ b/advisories/unreviewed/2024/11/GHSA-h9rp-4669-xxx3/GHSA-h9rp-4669-xxx3.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-h9rp-4669-xxx3", - "modified": "2024-11-19T03:31:08Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-11-19T03:31:08Z", "aliases": [ "CVE-2024-50282" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amdgpu: add missing size check in amdgpu_debugfs_gprwave_read()\n\nAvoid a possible buffer overflow if size is larger than 4K.\n\n(cherry picked from commit f5d873f5825b40d886d03bd2aede91d4cf002434)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-120" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-19T02:16:30Z" diff --git a/advisories/unreviewed/2024/11/GHSA-jh47-c26g-fr5q/GHSA-jh47-c26g-fr5q.json b/advisories/unreviewed/2024/11/GHSA-jh47-c26g-fr5q/GHSA-jh47-c26g-fr5q.json index 6e29d9e4feb..4c561a35a87 100644 --- a/advisories/unreviewed/2024/11/GHSA-jh47-c26g-fr5q/GHSA-jh47-c26g-fr5q.json +++ b/advisories/unreviewed/2024/11/GHSA-jh47-c26g-fr5q/GHSA-jh47-c26g-fr5q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jh47-c26g-fr5q", - "modified": "2024-11-19T03:31:08Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-11-19T03:31:08Z", "aliases": [ "CVE-2024-50286" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nksmbd: fix slab-use-after-free in ksmbd_smb2_session_create\n\nThere is a race condition between ksmbd_smb2_session_create and\nksmbd_expire_session. This patch add missing sessions_table_lock\nwhile adding/deleting session from global session table.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-19T02:16:30Z" diff --git a/advisories/unreviewed/2024/11/GHSA-p4fj-vmm6-h453/GHSA-p4fj-vmm6-h453.json b/advisories/unreviewed/2024/11/GHSA-p4fj-vmm6-h453/GHSA-p4fj-vmm6-h453.json new file mode 100644 index 00000000000..32953971944 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-p4fj-vmm6-h453/GHSA-p4fj-vmm6-h453.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p4fj-vmm6-h453", + "modified": "2024-11-21T21:33:32Z", + "published": "2024-11-21T21:33:32Z", + "aliases": [ + "CVE-2024-51366" + ], + "details": "An arbitrary file upload vulnerability in the component \\Roaming\\Omega of OmegaT v6.0.1 allows attackers to execute arbitrary code via uploading a crafted .conf file.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51366" + }, + { + "type": "WEB", + "url": "https://github.com/Gelcon/PoCofOmegaTV6_0_1" + }, + { + "type": "WEB", + "url": "https://omegat.org" + }, + { + "type": "WEB", + "url": "http://omegat.com" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T20:15:44Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-p6w4-xmxx-7gmj/GHSA-p6w4-xmxx-7gmj.json b/advisories/unreviewed/2024/11/GHSA-p6w4-xmxx-7gmj/GHSA-p6w4-xmxx-7gmj.json index 7e3c502d427..97c754aedef 100644 --- a/advisories/unreviewed/2024/11/GHSA-p6w4-xmxx-7gmj/GHSA-p6w4-xmxx-7gmj.json +++ b/advisories/unreviewed/2024/11/GHSA-p6w4-xmxx-7gmj/GHSA-p6w4-xmxx-7gmj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-p6w4-xmxx-7gmj", - "modified": "2024-11-19T03:31:08Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-11-19T03:31:08Z", "aliases": [ "CVE-2024-50281" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nKEYS: trusted: dcp: fix NULL dereference in AEAD crypto operation\n\nWhen sealing or unsealing a key blob we currently do not wait for\nthe AEAD cipher operation to finish and simply return after submitting\nthe request. If there is some load on the system we can exit before\nthe cipher operation is done and the buffer we read from/write to\nis already removed from the stack. This will e.g. result in NULL\npointer dereference errors in the DCP driver during blob creation.\n\nFix this by waiting for the AEAD cipher operation to finish before\nresuming the seal and unseal calls.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-19T02:16:30Z" diff --git a/advisories/unreviewed/2024/11/GHSA-p7x7-vrh2-wvvc/GHSA-p7x7-vrh2-wvvc.json b/advisories/unreviewed/2024/11/GHSA-p7x7-vrh2-wvvc/GHSA-p7x7-vrh2-wvvc.json new file mode 100644 index 00000000000..2118bcd64d1 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-p7x7-vrh2-wvvc/GHSA-p7x7-vrh2-wvvc.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p7x7-vrh2-wvvc", + "modified": "2024-11-21T21:33:32Z", + "published": "2024-11-21T21:33:32Z", + "aliases": [ + "CVE-2024-53092" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nvirtio_pci: Fix admin vq cleanup by using correct info pointer\n\nvp_modern_avq_cleanup() and vp_del_vqs() clean up admin vq\nresources by virtio_pci_vq_info pointer. The info pointer of admin\nvq is stored in vp_dev->admin_vq.info instead of vp_dev->vqs[].\nUsing the info pointer from vp_dev->vqs[] for admin vq causes a\nkernel NULL pointer dereference bug.\nIn vp_modern_avq_cleanup() and vp_del_vqs(), get the info pointer\nfrom vp_dev->admin_vq.info for admin vq to clean up the resources.\nAlso make info ptr as argument of vp_del_vq() to be symmetric with\nvp_setup_vq().\n\nvp_reset calls vp_modern_avq_cleanup, and causes the Call Trace:\n==================================================================\nBUG: kernel NULL pointer dereference, address:0000000000000000\n...\nCPU: 49 UID: 0 PID: 4439 Comm: modprobe Not tainted 6.11.0-rc5 #1\nRIP: 0010:vp_reset+0x57/0x90 [virtio_pci]\nCall Trace:\n \n...\n ? vp_reset+0x57/0x90 [virtio_pci]\n ? vp_reset+0x38/0x90 [virtio_pci]\n virtio_reset_device+0x1d/0x30\n remove_vq_common+0x1c/0x1a0 [virtio_net]\n virtnet_remove+0xa1/0xc0 [virtio_net]\n virtio_dev_remove+0x46/0xa0\n...\n virtio_pci_driver_exit+0x14/0x810 [virtio_pci]\n==================================================================", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-53092" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/018d3d4ad4be7fbc95d8a2367642a32d21df55c7" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/97ee04feb682c906a1fa973ebe586fe91567d165" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T19:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-p9fm-3qq2-rmm2/GHSA-p9fm-3qq2-rmm2.json b/advisories/unreviewed/2024/11/GHSA-p9fm-3qq2-rmm2/GHSA-p9fm-3qq2-rmm2.json index b2e6dadaf0b..bf309bb123b 100644 --- a/advisories/unreviewed/2024/11/GHSA-p9fm-3qq2-rmm2/GHSA-p9fm-3qq2-rmm2.json +++ b/advisories/unreviewed/2024/11/GHSA-p9fm-3qq2-rmm2/GHSA-p9fm-3qq2-rmm2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-p9fm-3qq2-rmm2", - "modified": "2024-11-19T03:31:07Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-11-19T03:31:07Z", "aliases": [ "CVE-2024-50276" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: vertexcom: mse102x: Fix possible double free of TX skb\n\nThe scope of the TX skb is wider than just mse102x_tx_frame_spi(),\nso in case the TX skb room needs to be expanded, we should free the\nthe temporary skb instead of the original skb. Otherwise the original\nTX skb pointer would be freed again in mse102x_tx_work(), which leads\nto crashes:\n\n Internal error: Oops: 0000000096000004 [#2] PREEMPT SMP\n CPU: 0 PID: 712 Comm: kworker/0:1 Tainted: G D 6.6.23\n Hardware name: chargebyte Charge SOM DC-ONE (DT)\n Workqueue: events mse102x_tx_work [mse102x]\n pstate: 20400009 (nzCv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)\n pc : skb_release_data+0xb8/0x1d8\n lr : skb_release_data+0x1ac/0x1d8\n sp : ffff8000819a3cc0\n x29: ffff8000819a3cc0 x28: ffff0000046daa60 x27: ffff0000057f2dc0\n x26: ffff000005386c00 x25: 0000000000000002 x24: 00000000ffffffff\n x23: 0000000000000000 x22: 0000000000000001 x21: ffff0000057f2e50\n x20: 0000000000000006 x19: 0000000000000000 x18: ffff00003fdacfcc\n x17: e69ad452d0c49def x16: 84a005feff870102 x15: 0000000000000000\n x14: 000000000000024a x13: 0000000000000002 x12: 0000000000000000\n x11: 0000000000000400 x10: 0000000000000930 x9 : ffff00003fd913e8\n x8 : fffffc00001bc008\n x7 : 0000000000000000 x6 : 0000000000000008\n x5 : ffff00003fd91340 x4 : 0000000000000000 x3 : 0000000000000009\n x2 : 00000000fffffffe x1 : 0000000000000000 x0 : 0000000000000000\n Call trace:\n skb_release_data+0xb8/0x1d8\n kfree_skb_reason+0x48/0xb0\n mse102x_tx_work+0x164/0x35c [mse102x]\n process_one_work+0x138/0x260\n worker_thread+0x32c/0x438\n kthread+0x118/0x11c\n ret_from_fork+0x10/0x20\n Code: aa1303e0 97fffab6 72001c1f 54000141 (f9400660)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-415" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-19T02:16:29Z" diff --git a/advisories/unreviewed/2024/11/GHSA-q7cg-9vqh-8mc2/GHSA-q7cg-9vqh-8mc2.json b/advisories/unreviewed/2024/11/GHSA-q7cg-9vqh-8mc2/GHSA-q7cg-9vqh-8mc2.json index 74b3b719946..d2c0aa4c2ec 100644 --- a/advisories/unreviewed/2024/11/GHSA-q7cg-9vqh-8mc2/GHSA-q7cg-9vqh-8mc2.json +++ b/advisories/unreviewed/2024/11/GHSA-q7cg-9vqh-8mc2/GHSA-q7cg-9vqh-8mc2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-q7cg-9vqh-8mc2", - "modified": "2024-11-19T03:31:08Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-11-19T03:31:08Z", "aliases": [ "CVE-2024-50299" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nsctp: properly validate chunk size in sctp_sf_ootb()\n\nA size validation fix similar to that in Commit 50619dbf8db7 (\"sctp: add\nsize validation when walking chunks\") is also required in sctp_sf_ootb()\nto address a crash reported by syzbot:\n\n BUG: KMSAN: uninit-value in sctp_sf_ootb+0x7f5/0xce0 net/sctp/sm_statefuns.c:3712\n sctp_sf_ootb+0x7f5/0xce0 net/sctp/sm_statefuns.c:3712\n sctp_do_sm+0x181/0x93d0 net/sctp/sm_sideeffect.c:1166\n sctp_endpoint_bh_rcv+0xc38/0xf90 net/sctp/endpointola.c:407\n sctp_inq_push+0x2ef/0x380 net/sctp/inqueue.c:88\n sctp_rcv+0x3831/0x3b20 net/sctp/input.c:243\n sctp4_rcv+0x42/0x50 net/sctp/protocol.c:1159\n ip_protocol_deliver_rcu+0xb51/0x13d0 net/ipv4/ip_input.c:205\n ip_local_deliver_finish+0x336/0x500 net/ipv4/ip_input.c:233", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-908" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-19T02:16:32Z" diff --git a/advisories/unreviewed/2024/11/GHSA-qccg-86w9-x648/GHSA-qccg-86w9-x648.json b/advisories/unreviewed/2024/11/GHSA-qccg-86w9-x648/GHSA-qccg-86w9-x648.json new file mode 100644 index 00000000000..0d69a993d67 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-qccg-86w9-x648/GHSA-qccg-86w9-x648.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qccg-86w9-x648", + "modified": "2024-11-21T21:33:32Z", + "published": "2024-11-21T21:33:32Z", + "aliases": [ + "CVE-2024-53091" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Add sk_is_inet and IS_ICSK check in tls_sw_has_ctx_tx/rx\n\nAs the introduction of the support for vsock and unix sockets in sockmap,\ntls_sw_has_ctx_tx/rx cannot presume the socket passed in must be IS_ICSK.\nvsock and af_unix sockets have vsock_sock and unix_sock instead of\ninet_connection_sock. For these sockets, tls_get_ctx may return an invalid\npointer and cause page fault in function tls_sw_ctx_rx.\n\nBUG: unable to handle page fault for address: 0000000000040030\nWorkqueue: vsock-loopback vsock_loopback_work\nRIP: 0010:sk_psock_strp_data_ready+0x23/0x60\nCall Trace:\n ? __die+0x81/0xc3\n ? no_context+0x194/0x350\n ? do_page_fault+0x30/0x110\n ? async_page_fault+0x3e/0x50\n ? sk_psock_strp_data_ready+0x23/0x60\n virtio_transport_recv_pkt+0x750/0x800\n ? update_load_avg+0x7e/0x620\n vsock_loopback_work+0xd0/0x100\n process_one_work+0x1a7/0x360\n worker_thread+0x30/0x390\n ? create_worker+0x1a0/0x1a0\n kthread+0x112/0x130\n ? __kthread_cancel_work+0x40/0x40\n ret_from_fork+0x1f/0x40\n\nv2:\n - Add IS_ICSK check\nv3:\n - Update the commits in Fixes", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-53091" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/44d0469f79bd3d0b3433732877358df7dc6b17b1" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6781cfa93a6a1b7f5be6819a5a2dd8f30f47ca26" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a078a480ff3f43d74d8a024ae10c3c7daf6db149" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T19:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-qgrx-3ff6-vw5g/GHSA-qgrx-3ff6-vw5g.json b/advisories/unreviewed/2024/11/GHSA-qgrx-3ff6-vw5g/GHSA-qgrx-3ff6-vw5g.json index d7f197f2496..496d45c0bc5 100644 --- a/advisories/unreviewed/2024/11/GHSA-qgrx-3ff6-vw5g/GHSA-qgrx-3ff6-vw5g.json +++ b/advisories/unreviewed/2024/11/GHSA-qgrx-3ff6-vw5g/GHSA-qgrx-3ff6-vw5g.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qgrx-3ff6-vw5g", - "modified": "2024-11-15T18:30:50Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-11-15T18:30:50Z", "aliases": [ "CVE-2024-50652" ], "details": "A file upload vulnerability in java_shop 1.0 allows attackers to upload arbitrary files by modifying the avatar function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-434" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-15T16:15:36Z" diff --git a/advisories/unreviewed/2024/11/GHSA-r2pf-gw8f-9x87/GHSA-r2pf-gw8f-9x87.json b/advisories/unreviewed/2024/11/GHSA-r2pf-gw8f-9x87/GHSA-r2pf-gw8f-9x87.json new file mode 100644 index 00000000000..b600ea565e4 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-r2pf-gw8f-9x87/GHSA-r2pf-gw8f-9x87.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r2pf-gw8f-9x87", + "modified": "2024-11-21T21:33:32Z", + "published": "2024-11-21T21:33:32Z", + "aliases": [ + "CVE-2024-51367" + ], + "details": "An arbitrary file upload vulnerability in the component \\Users\\username.BlackBoard of BlackBoard v2.0.0.2 allows attackers to execute arbitrary code via uploading a crafted .xml file.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51367" + }, + { + "type": "WEB", + "url": "https://github.com/Gelcon/PoCofBlackBoard2.0.0.2" + }, + { + "type": "WEB", + "url": "http://blackboard.com" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T20:15:44Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-r2q9-5f64-27vx/GHSA-r2q9-5f64-27vx.json b/advisories/unreviewed/2024/11/GHSA-r2q9-5f64-27vx/GHSA-r2q9-5f64-27vx.json index 2adc7d3147b..60589c267b6 100644 --- a/advisories/unreviewed/2024/11/GHSA-r2q9-5f64-27vx/GHSA-r2q9-5f64-27vx.json +++ b/advisories/unreviewed/2024/11/GHSA-r2q9-5f64-27vx/GHSA-r2q9-5f64-27vx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r2q9-5f64-27vx", - "modified": "2024-11-19T03:31:07Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-11-19T03:31:07Z", "aliases": [ "CVE-2024-50267" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nUSB: serial: io_edgeport: fix use after free in debug printk\n\nThe \"dev_dbg(&urb->dev->dev, ...\" which happens after usb_free_urb(urb)\nis a use after free of the \"urb\" pointer. Store the \"dev\" pointer at the\nstart of the function to avoid this issue.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-19T02:16:28Z" diff --git a/advisories/unreviewed/2024/11/GHSA-rw6f-qwrg-vhvv/GHSA-rw6f-qwrg-vhvv.json b/advisories/unreviewed/2024/11/GHSA-rw6f-qwrg-vhvv/GHSA-rw6f-qwrg-vhvv.json new file mode 100644 index 00000000000..80ace6e405c --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-rw6f-qwrg-vhvv/GHSA-rw6f-qwrg-vhvv.json @@ -0,0 +1,47 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rw6f-qwrg-vhvv", + "modified": "2024-11-21T21:33:32Z", + "published": "2024-11-21T21:33:32Z", + "aliases": [ + "CVE-2024-53093" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnvme-multipath: defer partition scanning\n\nWe need to suppress the partition scan from occuring within the\ncontroller's scan_work context. If a path error occurs here, the IO will\nwait until a path becomes available or all paths are torn down, but that\naction also occurs within scan_work, so it would deadlock. Defer the\npartion scan to a different context that does not block scan_work.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-53093" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/1f021341eef41e77a633186e9be5223de2ce5d48" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/4a57f42e5ed42cb8f1beb262c4f6d3e698939e4e" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/60de2e03f984cfbcdc12fa552f95087c35a05a98" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a91b7eddf45afeeb9c5ece11dddff5de0921b00f" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T19:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-w7c6-4vwf-466q/GHSA-w7c6-4vwf-466q.json b/advisories/unreviewed/2024/11/GHSA-w7c6-4vwf-466q/GHSA-w7c6-4vwf-466q.json new file mode 100644 index 00000000000..a4f0631af68 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-w7c6-4vwf-466q/GHSA-w7c6-4vwf-466q.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w7c6-4vwf-466q", + "modified": "2024-11-21T21:33:32Z", + "published": "2024-11-21T21:33:32Z", + "aliases": [ + "CVE-2024-53094" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/siw: Add sendpage_ok() check to disable MSG_SPLICE_PAGES\n\nWhile running ISER over SIW, the initiator machine encounters a warning\nfrom skb_splice_from_iter() indicating that a slab page is being used in\nsend_page. To address this, it is better to add a sendpage_ok() check\nwithin the driver itself, and if it returns 0, then MSG_SPLICE_PAGES flag\nshould be disabled before entering the network stack.\n\nA similar issue has been discussed for NVMe in this thread:\nhttps://lore.kernel.org/all/20240530142417.146696-1-ofir.gal@volumez.com/\n\n WARNING: CPU: 0 PID: 5342 at net/core/skbuff.c:7140 skb_splice_from_iter+0x173/0x320\n Call Trace:\n tcp_sendmsg_locked+0x368/0xe40\n siw_tx_hdt+0x695/0xa40 [siw]\n siw_qp_sq_process+0x102/0xb00 [siw]\n siw_sq_resume+0x39/0x110 [siw]\n siw_run_sq+0x74/0x160 [siw]\n kthread+0xd2/0x100\n ret_from_fork+0x34/0x40\n ret_from_fork_asm+0x1a/0x30", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-53094" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/3406bfc813a9bbd9c3055795e985f527b7852e8c" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/4e1e3dd88a4cedd5ccc1a3fc3d71e03b70a7a791" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/bb5738957d92c8603a90c9664d34236641c221b2" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T19:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-wpvf-5mc3-hv6m/GHSA-wpvf-5mc3-hv6m.json b/advisories/unreviewed/2024/11/GHSA-wpvf-5mc3-hv6m/GHSA-wpvf-5mc3-hv6m.json index f68ef175e51..391570b2b3d 100644 --- a/advisories/unreviewed/2024/11/GHSA-wpvf-5mc3-hv6m/GHSA-wpvf-5mc3-hv6m.json +++ b/advisories/unreviewed/2024/11/GHSA-wpvf-5mc3-hv6m/GHSA-wpvf-5mc3-hv6m.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wpvf-5mc3-hv6m", - "modified": "2024-11-20T21:30:50Z", + "modified": "2024-11-21T21:33:31Z", "published": "2024-11-20T21:30:50Z", "aliases": [ "CVE-2024-49203" @@ -22,6 +22,10 @@ "type": "WEB", "url": "https://github.com/querydsl/querydsl/issues/3757" }, + { + "type": "WEB", + "url": "https://github.com/OpenFeign/querydsl" + }, { "type": "WEB", "url": "https://github.com/querydsl/querydsl/releases/tag/QUERYDSL_5_1_0" diff --git a/advisories/unreviewed/2024/11/GHSA-wrr5-xwcp-mrf2/GHSA-wrr5-xwcp-mrf2.json b/advisories/unreviewed/2024/11/GHSA-wrr5-xwcp-mrf2/GHSA-wrr5-xwcp-mrf2.json index 596ae36d49b..4a63d61457a 100644 --- a/advisories/unreviewed/2024/11/GHSA-wrr5-xwcp-mrf2/GHSA-wrr5-xwcp-mrf2.json +++ b/advisories/unreviewed/2024/11/GHSA-wrr5-xwcp-mrf2/GHSA-wrr5-xwcp-mrf2.json @@ -32,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-346" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-wwc5-p8v7-jw92/GHSA-wwc5-p8v7-jw92.json b/advisories/unreviewed/2024/11/GHSA-wwc5-p8v7-jw92/GHSA-wwc5-p8v7-jw92.json new file mode 100644 index 00000000000..168372f6acc --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-wwc5-p8v7-jw92/GHSA-wwc5-p8v7-jw92.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wwc5-p8v7-jw92", + "modified": "2024-11-21T21:33:32Z", + "published": "2024-11-21T21:33:32Z", + "aliases": [ + "CVE-2024-49588" + ], + "details": "Multiple endpoints in `oracle-sidecar` in versions 0.347.0 to 0.543.0 were found to be vulnerable to SQL injections.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-49588" + }, + { + "type": "WEB", + "url": "https://cwe.mitre.org/data/definitions/89.html" + }, + { + "type": "WEB", + "url": "https://palantir.safebase.us/?tcuUid=b5724367-8b86-436a-8ef2-4480ec41cc2c" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T20:15:42Z" + } +} \ No newline at end of file