Advisory Database Sync

This commit is contained in:
advisory-database[bot]
2024-01-02 15:31:44 +00:00
parent 393b21baab
commit fcae649637
29 changed files with 296 additions and 30 deletions
@@ -57,6 +57,10 @@
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2023:7533"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2024:0010"
},
{
"type": "WEB",
"url": "https://access.redhat.com/security/cve/CVE-2023-5367"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-2xj9-j5v2-96c8",
"modified": "2023-12-21T21:30:31Z",
"modified": "2024-01-02T15:30:24Z",
"published": "2023-12-21T21:30:31Z",
"aliases": [
"CVE-2023-48686"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-4827-2m3r-j4qh",
"modified": "2023-12-28T00:30:20Z",
"modified": "2024-01-02T15:30:24Z",
"published": "2023-12-21T18:30:23Z",
"aliases": [
"CVE-2023-45119"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-9pmm-p2wc-hfx4",
"modified": "2023-12-29T03:30:28Z",
"modified": "2024-01-02T15:30:24Z",
"published": "2023-12-21T18:30:23Z",
"aliases": [
"CVE-2023-45120"
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-cj6f-97f2-wp7j",
"modified": "2023-12-20T00:32:44Z",
"modified": "2024-01-02T15:30:23Z",
"published": "2023-12-20T00:32:44Z",
"aliases": [
"CVE-2023-49147"
],
"details": "An issue was discovered in PDF24 Creator 11.14.0. The configuration of the msi installer file was found to produce a visible cmd.exe window when using the repair function of msiexec.exe. This allows an unprivileged local attacker to use a chain of actions (e.g., an oplock on faxPrnInst.log) to open a SYSTEM cmd.exe.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -35,7 +38,7 @@
"cwe_ids": [
],
"severity": null,
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2023-12-19T23:15:07Z"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-f2p7-3jq8-v8ph",
"modified": "2023-12-21T21:30:31Z",
"modified": "2024-01-02T15:30:25Z",
"published": "2023-12-21T21:30:31Z",
"aliases": [
"CVE-2023-48690"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-f5wq-j5xc-xjc7",
"modified": "2023-12-29T15:30:30Z",
"modified": "2024-01-02T15:30:24Z",
"published": "2023-12-21T18:30:23Z",
"aliases": [
"CVE-2023-45123"
@@ -25,6 +25,42 @@
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2023:7886"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2024:0006"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2024:0009"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2024:0010"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2024:0014"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2024:0015"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2024:0016"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2024:0017"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2024:0018"
},
{
"type": "WEB",
"url": "https://access.redhat.com/errata/RHSA-2024:0020"
},
{
"type": "WEB",
"url": "https://access.redhat.com/security/cve/CVE-2023-6478"
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-hvrj-r9f4-xr39",
"modified": "2023-12-20T03:30:23Z",
"modified": "2024-01-02T15:30:23Z",
"published": "2023-12-20T03:30:23Z",
"aliases": [
"CVE-2023-27172"
],
"details": "Xpand IT Write-back Manager v2.3.1 uses weak secret keys to sign JWT tokens. This allows attackers to easily obtain the secret key used to sign JWT tokens via a bruteforce attack.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N"
}
],
"affected": [
@@ -25,9 +28,9 @@
],
"database_specific": {
"cwe_ids": [
"CWE-307"
],
"severity": null,
"severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2023-12-20T01:15:07Z"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-j4xm-8c7j-fjwj",
"modified": "2023-12-28T00:30:19Z",
"modified": "2024-01-02T15:30:24Z",
"published": "2023-12-21T18:30:22Z",
"aliases": [
"CVE-2023-45115"
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-787"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-jh6c-99xj-2gpm",
"modified": "2023-12-29T15:30:30Z",
"modified": "2024-01-02T15:30:24Z",
"published": "2023-12-21T18:30:23Z",
"aliases": [
"CVE-2023-45122"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-jxpp-2jgf-79rr",
"modified": "2023-12-28T00:30:20Z",
"modified": "2024-01-02T15:30:24Z",
"published": "2023-12-21T18:30:22Z",
"aliases": [
"CVE-2023-45118"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-mh5h-4v4h-vcvq",
"modified": "2023-12-28T21:30:38Z",
"modified": "2024-01-02T15:30:24Z",
"published": "2023-12-21T21:30:30Z",
"aliases": [
"CVE-2023-45124"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-pcm9-gv4v-rfw2",
"modified": "2023-12-28T21:30:38Z",
"modified": "2024-01-02T15:30:24Z",
"published": "2023-12-21T21:30:30Z",
"aliases": [
"CVE-2023-45125"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-pxgf-7mqc-v7vx",
"modified": "2023-12-28T21:30:38Z",
"modified": "2024-01-02T15:30:24Z",
"published": "2023-12-21T21:30:30Z",
"aliases": [
"CVE-2023-45127"
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-q8qj-jcw4-vf7x",
"modified": "2023-12-20T00:32:45Z",
"modified": "2024-01-02T15:30:23Z",
"published": "2023-12-20T00:32:45Z",
"aliases": [
"CVE-2023-45887"
],
"details": "DS Wireless Communication (DWC) with DWC_VERSION_3 and DWC_VERSION_11 allows remote attackers to execute arbitrary code on a game-playing client's machine via a modified GPCM message.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -31,7 +34,7 @@
"cwe_ids": [
],
"severity": null,
"severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2023-12-20T00:15:08Z"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-qfq7-6m5h-vcmw",
"modified": "2023-12-21T21:30:31Z",
"modified": "2024-01-02T15:30:25Z",
"published": "2023-12-21T21:30:31Z",
"aliases": [
"CVE-2023-48688"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-qjw8-8m2x-jvh6",
"modified": "2023-12-28T00:30:20Z",
"modified": "2024-01-02T15:30:24Z",
"published": "2023-12-21T18:30:22Z",
"aliases": [
"CVE-2023-45117"
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-125"
],
"severity": "HIGH",
"github_reviewed": false,

Some files were not shown because too many files have changed in this diff Show More