diff --git a/advisories/github-reviewed/2024/09/GHSA-j8gh-87rx-c7w9/GHSA-j8gh-87rx-c7w9.json b/advisories/github-reviewed/2024/09/GHSA-j8gh-87rx-c7w9/GHSA-j8gh-87rx-c7w9.json index 38420e2b81b..c3e38facf4b 100644 --- a/advisories/github-reviewed/2024/09/GHSA-j8gh-87rx-c7w9/GHSA-j8gh-87rx-c7w9.json +++ b/advisories/github-reviewed/2024/09/GHSA-j8gh-87rx-c7w9/GHSA-j8gh-87rx-c7w9.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-j8gh-87rx-c7w9", - "modified": "2024-09-19T09:36:03Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-17T00:31:06Z", "aliases": [ "CVE-2024-45496" @@ -48,6 +48,10 @@ "type": "WEB", "url": "https://github.com/openshift/openshift-controller-manager/commit/3af3628103f9ddc3b825e6e5243ec58e85311046" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6685" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:6687" diff --git a/advisories/github-reviewed/2024/09/GHSA-qqv8-ph7f-h3f7/GHSA-qqv8-ph7f-h3f7.json b/advisories/github-reviewed/2024/09/GHSA-qqv8-ph7f-h3f7/GHSA-qqv8-ph7f-h3f7.json index f5a09f26108..e95d8111622 100644 --- a/advisories/github-reviewed/2024/09/GHSA-qqv8-ph7f-h3f7/GHSA-qqv8-ph7f-h3f7.json +++ b/advisories/github-reviewed/2024/09/GHSA-qqv8-ph7f-h3f7/GHSA-qqv8-ph7f-h3f7.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qqv8-ph7f-h3f7", - "modified": "2024-09-19T09:36:03Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-17T00:31:06Z", "aliases": [ "CVE-2024-7387" @@ -48,6 +48,10 @@ "type": "WEB", "url": "https://github.com/openshift/builder/commit/0b62633adfa2836465202bc851885e078ec888d1" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6685" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:6687" diff --git a/advisories/unreviewed/2023/06/GHSA-qwvc-xxgc-r8jq/GHSA-qwvc-xxgc-r8jq.json b/advisories/unreviewed/2023/06/GHSA-qwvc-xxgc-r8jq/GHSA-qwvc-xxgc-r8jq.json index d3a46893ef9..66286bb223f 100644 --- a/advisories/unreviewed/2023/06/GHSA-qwvc-xxgc-r8jq/GHSA-qwvc-xxgc-r8jq.json +++ b/advisories/unreviewed/2023/06/GHSA-qwvc-xxgc-r8jq/GHSA-qwvc-xxgc-r8jq.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-79" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2023/06/GHSA-r4jh-xqh3-r437/GHSA-r4jh-xqh3-r437.json b/advisories/unreviewed/2023/06/GHSA-r4jh-xqh3-r437/GHSA-r4jh-xqh3-r437.json index d3a42a442bc..a80ca19dd9c 100644 --- a/advisories/unreviewed/2023/06/GHSA-r4jh-xqh3-r437/GHSA-r4jh-xqh3-r437.json +++ b/advisories/unreviewed/2023/06/GHSA-r4jh-xqh3-r437/GHSA-r4jh-xqh3-r437.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-79" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2023/07/GHSA-rhfh-gm98-5fx4/GHSA-rhfh-gm98-5fx4.json b/advisories/unreviewed/2023/07/GHSA-rhfh-gm98-5fx4/GHSA-rhfh-gm98-5fx4.json index a13a7a16d96..e8f2676c922 100644 --- a/advisories/unreviewed/2023/07/GHSA-rhfh-gm98-5fx4/GHSA-rhfh-gm98-5fx4.json +++ b/advisories/unreviewed/2023/07/GHSA-rhfh-gm98-5fx4/GHSA-rhfh-gm98-5fx4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-rhfh-gm98-5fx4", - "modified": "2024-04-04T05:48:50Z", + "modified": "2024-09-19T15:30:47Z", "published": "2023-07-06T21:15:07Z", "aliases": [ "CVE-2023-0635" @@ -28,6 +28,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-1391", "CWE-269" ], "severity": "CRITICAL", diff --git a/advisories/unreviewed/2023/07/GHSA-xcpx-g9wm-frg6/GHSA-xcpx-g9wm-frg6.json b/advisories/unreviewed/2023/07/GHSA-xcpx-g9wm-frg6/GHSA-xcpx-g9wm-frg6.json index 89629760e0e..06de9c55121 100644 --- a/advisories/unreviewed/2023/07/GHSA-xcpx-g9wm-frg6/GHSA-xcpx-g9wm-frg6.json +++ b/advisories/unreviewed/2023/07/GHSA-xcpx-g9wm-frg6/GHSA-xcpx-g9wm-frg6.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-22" + "CWE-22", + "CWE-23" ], "severity": "LOW", "github_reviewed": false, diff --git a/advisories/unreviewed/2023/10/GHSA-fjgx-2cvw-6h2f/GHSA-fjgx-2cvw-6h2f.json b/advisories/unreviewed/2023/10/GHSA-fjgx-2cvw-6h2f/GHSA-fjgx-2cvw-6h2f.json index 7c318117761..847f36508ef 100644 --- a/advisories/unreviewed/2023/10/GHSA-fjgx-2cvw-6h2f/GHSA-fjgx-2cvw-6h2f.json +++ b/advisories/unreviewed/2023/10/GHSA-fjgx-2cvw-6h2f/GHSA-fjgx-2cvw-6h2f.json @@ -32,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-284" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2023/11/GHSA-4w34-678c-q5hp/GHSA-4w34-678c-q5hp.json b/advisories/unreviewed/2023/11/GHSA-4w34-678c-q5hp/GHSA-4w34-678c-q5hp.json index 91c5eaee94d..1e623fee765 100644 --- a/advisories/unreviewed/2023/11/GHSA-4w34-678c-q5hp/GHSA-4w34-678c-q5hp.json +++ b/advisories/unreviewed/2023/11/GHSA-4w34-678c-q5hp/GHSA-4w34-678c-q5hp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4w34-678c-q5hp", - "modified": "2023-11-15T00:31:08Z", + "modified": "2024-09-19T15:30:47Z", "published": "2023-11-15T00:31:08Z", "aliases": [ "CVE-2023-43582" @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-287" + "CWE-287", + "CWE-939" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2023/11/GHSA-cw6w-5w44-ccrq/GHSA-cw6w-5w44-ccrq.json b/advisories/unreviewed/2023/11/GHSA-cw6w-5w44-ccrq/GHSA-cw6w-5w44-ccrq.json index c2b9ee5aca2..00a04bdcac9 100644 --- a/advisories/unreviewed/2023/11/GHSA-cw6w-5w44-ccrq/GHSA-cw6w-5w44-ccrq.json +++ b/advisories/unreviewed/2023/11/GHSA-cw6w-5w44-ccrq/GHSA-cw6w-5w44-ccrq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cw6w-5w44-ccrq", - "modified": "2023-11-15T00:31:07Z", + "modified": "2024-09-19T15:30:47Z", "published": "2023-11-15T00:31:07Z", "aliases": [ "CVE-2023-39199" @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-325" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2023/12/GHSA-46q9-5vx3-f5qh/GHSA-46q9-5vx3-f5qh.json b/advisories/unreviewed/2023/12/GHSA-46q9-5vx3-f5qh/GHSA-46q9-5vx3-f5qh.json index 173cb748afe..b35ea557c7d 100644 --- a/advisories/unreviewed/2023/12/GHSA-46q9-5vx3-f5qh/GHSA-46q9-5vx3-f5qh.json +++ b/advisories/unreviewed/2023/12/GHSA-46q9-5vx3-f5qh/GHSA-46q9-5vx3-f5qh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-46q9-5vx3-f5qh", - "modified": "2023-12-14T00:30:26Z", + "modified": "2024-09-19T15:30:47Z", "published": "2023-12-14T00:30:26Z", "aliases": [ "CVE-2023-43583" @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-798" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/03/GHSA-6676-v756-p52p/GHSA-6676-v756-p52p.json b/advisories/unreviewed/2024/03/GHSA-6676-v756-p52p/GHSA-6676-v756-p52p.json index 952b2c95bbe..1a31ad821c2 100644 --- a/advisories/unreviewed/2024/03/GHSA-6676-v756-p52p/GHSA-6676-v756-p52p.json +++ b/advisories/unreviewed/2024/03/GHSA-6676-v756-p52p/GHSA-6676-v756-p52p.json @@ -32,7 +32,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-311" + "CWE-311", + "CWE-319" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/06/GHSA-2hmf-4j5w-6vm3/GHSA-2hmf-4j5w-6vm3.json b/advisories/unreviewed/2024/06/GHSA-2hmf-4j5w-6vm3/GHSA-2hmf-4j5w-6vm3.json index e32a50f445f..fd2f82bf28d 100644 --- a/advisories/unreviewed/2024/06/GHSA-2hmf-4j5w-6vm3/GHSA-2hmf-4j5w-6vm3.json +++ b/advisories/unreviewed/2024/06/GHSA-2hmf-4j5w-6vm3/GHSA-2hmf-4j5w-6vm3.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2hmf-4j5w-6vm3", - "modified": "2024-06-19T15:30:54Z", + "modified": "2024-09-19T15:30:48Z", "published": "2024-06-19T15:30:54Z", "aliases": [ "CVE-2024-38590" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/hns: Modify the print level of CQE error\n\nToo much print may lead to a panic in kernel. Change ibdev_err() to\nibdev_err_ratelimited(), and change the printing level of cqe dump\nto debug level.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -51,7 +54,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-19T14:15:19Z" diff --git a/advisories/unreviewed/2024/06/GHSA-2xq5-458f-5cj8/GHSA-2xq5-458f-5cj8.json b/advisories/unreviewed/2024/06/GHSA-2xq5-458f-5cj8/GHSA-2xq5-458f-5cj8.json index 4baa19a054e..fe02570b5db 100644 --- a/advisories/unreviewed/2024/06/GHSA-2xq5-458f-5cj8/GHSA-2xq5-458f-5cj8.json +++ b/advisories/unreviewed/2024/06/GHSA-2xq5-458f-5cj8/GHSA-2xq5-458f-5cj8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2xq5-458f-5cj8", - "modified": "2024-06-19T15:30:53Z", + "modified": "2024-09-19T15:30:48Z", "published": "2024-06-19T15:30:53Z", "aliases": [ "CVE-2024-38568" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrivers/perf: hisi: hns3: Fix out-of-bound access when valid event group\n\nThe perf tool allows users to create event groups through following\ncmd [1], but the driver does not check whether the array index is out\nof bounds when writing data to the event_group array. If the number of\nevents in an event_group is greater than HNS3_PMU_MAX_HW_EVENTS, the\nmemory write overflow of event_group array occurs.\n\nAdd array index check to fix the possible array out of bounds violation,\nand return directly when write new events are written to array bounds.\n\nThere are 9 different events in an event_group.\n[1] perf stat -e '{pmu/event1/, ... ,pmu/event9/}", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -41,9 +44,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-129" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-19T14:15:16Z" diff --git a/advisories/unreviewed/2024/06/GHSA-9fpr-g62f-647w/GHSA-9fpr-g62f-647w.json b/advisories/unreviewed/2024/06/GHSA-9fpr-g62f-647w/GHSA-9fpr-g62f-647w.json index 6470c3b7716..4ffdfd4a0d6 100644 --- a/advisories/unreviewed/2024/06/GHSA-9fpr-g62f-647w/GHSA-9fpr-g62f-647w.json +++ b/advisories/unreviewed/2024/06/GHSA-9fpr-g62f-647w/GHSA-9fpr-g62f-647w.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9fpr-g62f-647w", - "modified": "2024-07-05T09:33:44Z", + "modified": "2024-09-19T15:30:48Z", "published": "2024-06-19T15:30:54Z", "aliases": [ "CVE-2024-38588" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nftrace: Fix possible use-after-free issue in ftrace_location()\n\nKASAN reports a bug:\n\n BUG: KASAN: use-after-free in ftrace_location+0x90/0x120\n Read of size 8 at addr ffff888141d40010 by task insmod/424\n CPU: 8 PID: 424 Comm: insmod Tainted: G W 6.9.0-rc2+\n [...]\n Call Trace:\n \n dump_stack_lvl+0x68/0xa0\n print_report+0xcf/0x610\n kasan_report+0xb5/0xe0\n ftrace_location+0x90/0x120\n register_kprobe+0x14b/0xa40\n kprobe_init+0x2d/0xff0 [kprobe_example]\n do_one_initcall+0x8f/0x2d0\n do_init_module+0x13a/0x3c0\n load_module+0x3082/0x33d0\n init_module_from_file+0xd2/0x130\n __x64_sys_finit_module+0x306/0x440\n do_syscall_64+0x68/0x140\n entry_SYSCALL_64_after_hwframe+0x71/0x79\n\nThe root cause is that, in lookup_rec(), ftrace record of some address\nis being searched in ftrace pages of some module, but those ftrace pages\nat the same time is being freed in ftrace_release_mod() as the\ncorresponding module is being deleted:\n\n CPU1 | CPU2\n register_kprobes() { | delete_module() {\n check_kprobe_address_safe() { |\n arch_check_ftrace_location() { |\n ftrace_location() { |\n lookup_rec() // USE! | ftrace_release_mod() // Free!\n\nTo fix this issue:\n 1. Hold rcu lock as accessing ftrace pages in ftrace_location_range();\n 2. Use ftrace_location_range() instead of lookup_rec() in\n ftrace_location();\n 3. Call synchronize_rcu() before freeing any ftrace pages both in\n ftrace_process_locs()/ftrace_release_mod()/ftrace_free_mem().", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-19T14:15:18Z" diff --git a/advisories/unreviewed/2024/06/GHSA-fr6h-wc99-8m37/GHSA-fr6h-wc99-8m37.json b/advisories/unreviewed/2024/06/GHSA-fr6h-wc99-8m37/GHSA-fr6h-wc99-8m37.json index 0aab9a448db..d628adbc360 100644 --- a/advisories/unreviewed/2024/06/GHSA-fr6h-wc99-8m37/GHSA-fr6h-wc99-8m37.json +++ b/advisories/unreviewed/2024/06/GHSA-fr6h-wc99-8m37/GHSA-fr6h-wc99-8m37.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-fr6h-wc99-8m37", - "modified": "2024-06-19T15:30:53Z", + "modified": "2024-09-19T15:30:48Z", "published": "2024-06-19T15:30:53Z", "aliases": [ "CVE-2024-38569" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrivers/perf: hisi_pcie: Fix out-of-bound access when valid event group\n\nThe perf tool allows users to create event groups through following\ncmd [1], but the driver does not check whether the array index is out of\nbounds when writing data to the event_group array. If the number of events\nin an event_group is greater than HISI_PCIE_MAX_COUNTERS, the memory write\noverflow of event_group array occurs.\n\nAdd array index check to fix the possible array out of bounds violation,\nand return directly when write new events are written to array bounds.\n\nThere are 9 different events in an event_group.\n[1] perf stat -e '{pmu/event1/, ... ,pmu/event9/}'", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -41,9 +44,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-129" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-19T14:15:17Z" diff --git a/advisories/unreviewed/2024/06/GHSA-j3jr-f652-x9f7/GHSA-j3jr-f652-x9f7.json b/advisories/unreviewed/2024/06/GHSA-j3jr-f652-x9f7/GHSA-j3jr-f652-x9f7.json index f2c90a2b110..ed98b64b0e7 100644 --- a/advisories/unreviewed/2024/06/GHSA-j3jr-f652-x9f7/GHSA-j3jr-f652-x9f7.json +++ b/advisories/unreviewed/2024/06/GHSA-j3jr-f652-x9f7/GHSA-j3jr-f652-x9f7.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-j3jr-f652-x9f7", - "modified": "2024-06-19T15:30:53Z", + "modified": "2024-09-19T15:30:48Z", "published": "2024-06-19T15:30:53Z", "aliases": [ "CVE-2024-38584" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: ti: icssg_prueth: Fix NULL pointer dereference in prueth_probe()\n\nIn the prueth_probe() function, if one of the calls to emac_phy_connect()\nfails due to of_phy_connect() returning NULL, then the subsequent call to\nphy_attached_info() will dereference a NULL pointer.\n\nCheck the return code of emac_phy_connect and fail cleanly if there is an\nerror.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-19T14:15:18Z" diff --git a/advisories/unreviewed/2024/07/GHSA-27mm-4rvr-4q6h/GHSA-27mm-4rvr-4q6h.json b/advisories/unreviewed/2024/07/GHSA-27mm-4rvr-4q6h/GHSA-27mm-4rvr-4q6h.json index 83346fd5d34..c55bca4104c 100644 --- a/advisories/unreviewed/2024/07/GHSA-27mm-4rvr-4q6h/GHSA-27mm-4rvr-4q6h.json +++ b/advisories/unreviewed/2024/07/GHSA-27mm-4rvr-4q6h/GHSA-27mm-4rvr-4q6h.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-27mm-4rvr-4q6h", - "modified": "2024-07-27T03:30:50Z", + "modified": "2024-09-19T15:30:48Z", "published": "2024-07-27T03:30:50Z", "aliases": [ "CVE-2024-1804" diff --git a/advisories/unreviewed/2024/07/GHSA-7xgh-c82h-rvjj/GHSA-7xgh-c82h-rvjj.json b/advisories/unreviewed/2024/07/GHSA-7xgh-c82h-rvjj/GHSA-7xgh-c82h-rvjj.json index 3871d35daea..f9312bd5dd4 100644 --- a/advisories/unreviewed/2024/07/GHSA-7xgh-c82h-rvjj/GHSA-7xgh-c82h-rvjj.json +++ b/advisories/unreviewed/2024/07/GHSA-7xgh-c82h-rvjj/GHSA-7xgh-c82h-rvjj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7xgh-c82h-rvjj", - "modified": "2024-07-27T03:30:50Z", + "modified": "2024-09-19T15:30:48Z", "published": "2024-07-27T03:30:50Z", "aliases": [ "CVE-2024-1798" diff --git a/advisories/unreviewed/2024/07/GHSA-jjjh-v5hm-j72m/GHSA-jjjh-v5hm-j72m.json b/advisories/unreviewed/2024/07/GHSA-jjjh-v5hm-j72m/GHSA-jjjh-v5hm-j72m.json index f5284e1acbc..a7129fedacd 100644 --- a/advisories/unreviewed/2024/07/GHSA-jjjh-v5hm-j72m/GHSA-jjjh-v5hm-j72m.json +++ b/advisories/unreviewed/2024/07/GHSA-jjjh-v5hm-j72m/GHSA-jjjh-v5hm-j72m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jjjh-v5hm-j72m", - "modified": "2024-07-12T15:31:27Z", + "modified": "2024-09-19T15:30:48Z", "published": "2024-07-12T15:31:27Z", "aliases": [ "CVE-2024-40904" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nUSB: class: cdc-wdm: Fix CPU lockup caused by excessive log messages\n\nThe syzbot fuzzer found that the interrupt-URB completion callback in\nthe cdc-wdm driver was taking too long, and the driver's immediate\nresubmission of interrupt URBs with -EPROTO status combined with the\ndummy-hcd emulation to cause a CPU lockup:\n\ncdc_wdm 1-1:1.0: nonzero urb status received: -71\ncdc_wdm 1-1:1.0: wdm_int_callback - 0 bytes\nwatchdog: BUG: soft lockup - CPU#0 stuck for 26s! [syz-executor782:6625]\nCPU#0 Utilization every 4s during lockup:\n\t#1: 98% system,\t 0% softirq,\t 3% hardirq,\t 0% idle\n\t#2: 98% system,\t 0% softirq,\t 3% hardirq,\t 0% idle\n\t#3: 98% system,\t 0% softirq,\t 3% hardirq,\t 0% idle\n\t#4: 98% system,\t 0% softirq,\t 3% hardirq,\t 0% idle\n\t#5: 98% system,\t 1% softirq,\t 3% hardirq,\t 0% idle\nModules linked in:\nirq event stamp: 73096\nhardirqs last enabled at (73095): [] console_emit_next_record kernel/printk/printk.c:2935 [inline]\nhardirqs last enabled at (73095): [] console_flush_all+0x650/0xb74 kernel/printk/printk.c:2994\nhardirqs last disabled at (73096): [] __el1_irq arch/arm64/kernel/entry-common.c:533 [inline]\nhardirqs last disabled at (73096): [] el1_interrupt+0x24/0x68 arch/arm64/kernel/entry-common.c:551\nsoftirqs last enabled at (73048): [] softirq_handle_end kernel/softirq.c:400 [inline]\nsoftirqs last enabled at (73048): [] handle_softirqs+0xa60/0xc34 kernel/softirq.c:582\nsoftirqs last disabled at (73043): [] __do_softirq+0x14/0x20 kernel/softirq.c:588\nCPU: 0 PID: 6625 Comm: syz-executor782 Tainted: G W 6.10.0-rc2-syzkaller-g8867bbd4a056 #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 04/02/2024\n\nTesting showed that the problem did not occur if the two error\nmessages -- the first two lines above -- were removed; apparently adding\nmaterial to the kernel log takes a surprisingly large amount of time.\n\nIn any case, the best approach for preventing these lockups and to\navoid spamming the log with thousands of error messages per second is\nto ratelimit the two dev_err() calls. Therefore we replace them with\ndev_err_ratelimited().", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -55,7 +58,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-12T13:15:13Z" diff --git a/advisories/unreviewed/2024/07/GHSA-mpp7-xq5h-6fjh/GHSA-mpp7-xq5h-6fjh.json b/advisories/unreviewed/2024/07/GHSA-mpp7-xq5h-6fjh/GHSA-mpp7-xq5h-6fjh.json index 4edfe230e78..c425ef49b25 100644 --- a/advisories/unreviewed/2024/07/GHSA-mpp7-xq5h-6fjh/GHSA-mpp7-xq5h-6fjh.json +++ b/advisories/unreviewed/2024/07/GHSA-mpp7-xq5h-6fjh/GHSA-mpp7-xq5h-6fjh.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mpp7-xq5h-6fjh", - "modified": "2024-07-27T00:32:44Z", + "modified": "2024-09-19T15:30:48Z", "published": "2024-07-27T00:32:44Z", "aliases": [ "CVE-2024-37034" ], "details": "An issue was discovered in Couchbase Server before 7.2.5 and 7.6.0 before 7.6.1. It does not ensure that credentials are negotiated with the Key-Value (KV) service using SCRAM-SHA when remote link encryption is configured for Half-Secure.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-326" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-26T22:15:03Z" diff --git a/advisories/unreviewed/2024/07/GHSA-p46c-p6jp-xfpq/GHSA-p46c-p6jp-xfpq.json b/advisories/unreviewed/2024/07/GHSA-p46c-p6jp-xfpq/GHSA-p46c-p6jp-xfpq.json index 6ba91d3b71d..66c62999c46 100644 --- a/advisories/unreviewed/2024/07/GHSA-p46c-p6jp-xfpq/GHSA-p46c-p6jp-xfpq.json +++ b/advisories/unreviewed/2024/07/GHSA-p46c-p6jp-xfpq/GHSA-p46c-p6jp-xfpq.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-p46c-p6jp-xfpq", - "modified": "2024-07-12T15:31:27Z", + "modified": "2024-09-19T15:30:48Z", "published": "2024-07-12T15:31:27Z", "aliases": [ "CVE-2024-40905" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nipv6: fix possible race in __fib6_drop_pcpu_from()\n\nsyzbot found a race in __fib6_drop_pcpu_from() [1]\n\nIf compiler reads more than once (*ppcpu_rt),\nsecond read could read NULL, if another cpu clears\nthe value in rt6_get_pcpu_route().\n\nAdd a READ_ONCE() to prevent this race.\n\nAlso add rcu_read_lock()/rcu_read_unlock() because\nwe rely on RCU protection while dereferencing pcpu_rt.\n\n[1]\n\nOops: general protection fault, probably for non-canonical address 0xdffffc0000000012: 0000 [#1] PREEMPT SMP KASAN PTI\nKASAN: null-ptr-deref in range [0x0000000000000090-0x0000000000000097]\nCPU: 0 PID: 7543 Comm: kworker/u8:17 Not tainted 6.10.0-rc1-syzkaller-00013-g2bfcfd584ff5 #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 04/02/2024\nWorkqueue: netns cleanup_net\n RIP: 0010:__fib6_drop_pcpu_from.part.0+0x10a/0x370 net/ipv6/ip6_fib.c:984\nCode: f8 48 c1 e8 03 80 3c 28 00 0f 85 16 02 00 00 4d 8b 3f 4d 85 ff 74 31 e8 74 a7 fa f7 49 8d bf 90 00 00 00 48 89 f8 48 c1 e8 03 <80> 3c 28 00 0f 85 1e 02 00 00 49 8b 87 90 00 00 00 48 8b 0c 24 48\nRSP: 0018:ffffc900040df070 EFLAGS: 00010206\nRAX: 0000000000000012 RBX: 0000000000000001 RCX: ffffffff89932e16\nRDX: ffff888049dd1e00 RSI: ffffffff89932d7c RDI: 0000000000000091\nRBP: dffffc0000000000 R08: 0000000000000005 R09: 0000000000000007\nR10: 0000000000000001 R11: 0000000000000006 R12: ffff88807fa080b8\nR13: fffffbfff1a9a07d R14: ffffed100ff41022 R15: 0000000000000001\nFS: 0000000000000000(0000) GS:ffff8880b9200000(0000) knlGS:0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: 0000001b32c26000 CR3: 000000005d56e000 CR4: 00000000003526f0\nDR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\nDR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\nCall Trace:\n \n __fib6_drop_pcpu_from net/ipv6/ip6_fib.c:966 [inline]\n fib6_drop_pcpu_from net/ipv6/ip6_fib.c:1027 [inline]\n fib6_purge_rt+0x7f2/0x9f0 net/ipv6/ip6_fib.c:1038\n fib6_del_route net/ipv6/ip6_fib.c:1998 [inline]\n fib6_del+0xa70/0x17b0 net/ipv6/ip6_fib.c:2043\n fib6_clean_node+0x426/0x5b0 net/ipv6/ip6_fib.c:2205\n fib6_walk_continue+0x44f/0x8d0 net/ipv6/ip6_fib.c:2127\n fib6_walk+0x182/0x370 net/ipv6/ip6_fib.c:2175\n fib6_clean_tree+0xd7/0x120 net/ipv6/ip6_fib.c:2255\n __fib6_clean_all+0x100/0x2d0 net/ipv6/ip6_fib.c:2271\n rt6_sync_down_dev net/ipv6/route.c:4906 [inline]\n rt6_disable_ip+0x7ed/0xa00 net/ipv6/route.c:4911\n addrconf_ifdown.isra.0+0x117/0x1b40 net/ipv6/addrconf.c:3855\n addrconf_notify+0x223/0x19e0 net/ipv6/addrconf.c:3778\n notifier_call_chain+0xb9/0x410 kernel/notifier.c:93\n call_netdevice_notifiers_info+0xbe/0x140 net/core/dev.c:1992\n call_netdevice_notifiers_extack net/core/dev.c:2030 [inline]\n call_netdevice_notifiers net/core/dev.c:2044 [inline]\n dev_close_many+0x333/0x6a0 net/core/dev.c:1585\n unregister_netdevice_many_notify+0x46d/0x19f0 net/core/dev.c:11193\n unregister_netdevice_many net/core/dev.c:11276 [inline]\n default_device_exit_batch+0x85b/0xae0 net/core/dev.c:11759\n ops_exit_list+0x128/0x180 net/core/net_namespace.c:178\n cleanup_net+0x5b7/0xbf0 net/core/net_namespace.c:640\n process_one_work+0x9fb/0x1b60 kernel/workqueue.c:3231\n process_scheduled_works kernel/workqueue.c:3312 [inline]\n worker_thread+0x6c8/0xf70 kernel/workqueue.c:3393\n kthread+0x2c1/0x3a0 kernel/kthread.c:389\n ret_from_fork+0x45/0x80 arch/x86/kernel/process.c:147\n ret_from_fork_asm+0x1a/0x30 arch/x86/entry/entry_64.S:244", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -49,9 +52,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-12T13:15:13Z" diff --git a/advisories/unreviewed/2024/08/GHSA-9hmf-r3fq-947x/GHSA-9hmf-r3fq-947x.json b/advisories/unreviewed/2024/08/GHSA-9hmf-r3fq-947x/GHSA-9hmf-r3fq-947x.json index 19f440784b9..f5724ba0fed 100644 --- a/advisories/unreviewed/2024/08/GHSA-9hmf-r3fq-947x/GHSA-9hmf-r3fq-947x.json +++ b/advisories/unreviewed/2024/08/GHSA-9hmf-r3fq-947x/GHSA-9hmf-r3fq-947x.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-9hmf-r3fq-947x", - "modified": "2024-08-28T09:30:34Z", + "modified": "2024-09-19T15:30:48Z", "published": "2024-08-28T09:30:34Z", "aliases": [ "CVE-2024-5546" diff --git a/advisories/unreviewed/2024/08/GHSA-9p7x-652m-pw9q/GHSA-9p7x-652m-pw9q.json b/advisories/unreviewed/2024/08/GHSA-9p7x-652m-pw9q/GHSA-9p7x-652m-pw9q.json index 30e6b4f7517..252c5b1cc00 100644 --- a/advisories/unreviewed/2024/08/GHSA-9p7x-652m-pw9q/GHSA-9p7x-652m-pw9q.json +++ b/advisories/unreviewed/2024/08/GHSA-9p7x-652m-pw9q/GHSA-9p7x-652m-pw9q.json @@ -32,6 +32,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-345", "CWE-348" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2024/08/GHSA-gxh9-2g8g-p2jm/GHSA-gxh9-2g8g-p2jm.json b/advisories/unreviewed/2024/08/GHSA-gxh9-2g8g-p2jm/GHSA-gxh9-2g8g-p2jm.json index 3a2c5ce3e4d..7a4fbf07ac5 100644 --- a/advisories/unreviewed/2024/08/GHSA-gxh9-2g8g-p2jm/GHSA-gxh9-2g8g-p2jm.json +++ b/advisories/unreviewed/2024/08/GHSA-gxh9-2g8g-p2jm/GHSA-gxh9-2g8g-p2jm.json @@ -32,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-129" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-x928-8f88-6fjf/GHSA-x928-8f88-6fjf.json b/advisories/unreviewed/2024/08/GHSA-x928-8f88-6fjf/GHSA-x928-8f88-6fjf.json index 3d3c8446da8..3468d735fdc 100644 --- a/advisories/unreviewed/2024/08/GHSA-x928-8f88-6fjf/GHSA-x928-8f88-6fjf.json +++ b/advisories/unreviewed/2024/08/GHSA-x928-8f88-6fjf/GHSA-x928-8f88-6fjf.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-x928-8f88-6fjf", - "modified": "2024-08-28T12:30:33Z", + "modified": "2024-09-19T15:30:48Z", "published": "2024-08-28T12:30:33Z", "aliases": [ "CVE-2024-7269" ], "details": "Improper Neutralization of Input During Web Page Generation vulnerability in \"Update of Personal Details\" form in ConnX ESP HR Management allows Stored XSS attack. An attacker might inject a script to be run in user's browser. After multiple attempts to contact the vendor we did not receive any answer. The finder provided the information that this issue affects ESP HR Management versions before 6.6.", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" diff --git a/advisories/unreviewed/2024/09/GHSA-375w-qxcp-h82p/GHSA-375w-qxcp-h82p.json b/advisories/unreviewed/2024/09/GHSA-375w-qxcp-h82p/GHSA-375w-qxcp-h82p.json index f29ce5791e1..6adc19d0ae1 100644 --- a/advisories/unreviewed/2024/09/GHSA-375w-qxcp-h82p/GHSA-375w-qxcp-h82p.json +++ b/advisories/unreviewed/2024/09/GHSA-375w-qxcp-h82p/GHSA-375w-qxcp-h82p.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-375w-qxcp-h82p", - "modified": "2024-09-12T15:33:00Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-12T15:33:00Z", "aliases": [ "CVE-2024-3305" ], "details": "Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Utarit Information SoliClub allows Retrieve Embedded Sensitive Data.This issue affects SoliClub: before 4.4.0 for iOS, before 5.2.1 for Android.", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:N/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" diff --git a/advisories/unreviewed/2024/09/GHSA-5jrh-c32g-j2q9/GHSA-5jrh-c32g-j2q9.json b/advisories/unreviewed/2024/09/GHSA-5jrh-c32g-j2q9/GHSA-5jrh-c32g-j2q9.json index 00ae38f3af0..4aefa896c84 100644 --- a/advisories/unreviewed/2024/09/GHSA-5jrh-c32g-j2q9/GHSA-5jrh-c32g-j2q9.json +++ b/advisories/unreviewed/2024/09/GHSA-5jrh-c32g-j2q9/GHSA-5jrh-c32g-j2q9.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5jrh-c32g-j2q9", - "modified": "2024-09-12T15:33:00Z", + "modified": "2024-09-19T15:30:48Z", "published": "2024-09-12T15:33:00Z", "aliases": [ "CVE-2021-22503" diff --git a/advisories/unreviewed/2024/09/GHSA-829m-frh2-j6v9/GHSA-829m-frh2-j6v9.json b/advisories/unreviewed/2024/09/GHSA-829m-frh2-j6v9/GHSA-829m-frh2-j6v9.json index 175db8d4a7f..4068ba976b4 100644 --- a/advisories/unreviewed/2024/09/GHSA-829m-frh2-j6v9/GHSA-829m-frh2-j6v9.json +++ b/advisories/unreviewed/2024/09/GHSA-829m-frh2-j6v9/GHSA-829m-frh2-j6v9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-829m-frh2-j6v9", - "modified": "2024-09-13T09:30:32Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-13T09:30:32Z", "aliases": [ "CVE-2024-46708" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\npinctrl: qcom: x1e80100: Fix special pin offsets\n\nRemove the erroneus 0x100000 offset to prevent the boards from crashing\non pin state setting, as well as for the intended state changes to take\neffect.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-13T07:15:05Z" diff --git a/advisories/unreviewed/2024/09/GHSA-8cjr-gpjq-jmf3/GHSA-8cjr-gpjq-jmf3.json b/advisories/unreviewed/2024/09/GHSA-8cjr-gpjq-jmf3/GHSA-8cjr-gpjq-jmf3.json new file mode 100644 index 00000000000..459a75a86d6 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-8cjr-gpjq-jmf3/GHSA-8cjr-gpjq-jmf3.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8cjr-gpjq-jmf3", + "modified": "2024-09-19T15:30:50Z", + "published": "2024-09-19T15:30:50Z", + "aliases": [ + "CVE-2024-7785" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Ece Software Electronic Ticket System allows Reflected XSS, Cross-Site Scripting (XSS).This issue affects Electronic Ticket System: before 2024.08.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:L/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-7785" + }, + { + "type": "WEB", + "url": "https://www.usom.gov.tr/bildirim/tr-24-1506" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-19T14:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-8hmj-pcqr-g8mp/GHSA-8hmj-pcqr-g8mp.json b/advisories/unreviewed/2024/09/GHSA-8hmj-pcqr-g8mp/GHSA-8hmj-pcqr-g8mp.json new file mode 100644 index 00000000000..9c7beaf1deb --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-8hmj-pcqr-g8mp/GHSA-8hmj-pcqr-g8mp.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8hmj-pcqr-g8mp", + "modified": "2024-09-19T15:30:50Z", + "published": "2024-09-19T15:30:50Z", + "aliases": [ + "CVE-2024-46394" + ], + "details": "FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) via /admin/?/user/add", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46394" + }, + { + "type": "WEB", + "url": "https://github.com/fffccx1/cms/tree/main/14/readme.md" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-19T14:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-94rm-fghw-676x/GHSA-94rm-fghw-676x.json b/advisories/unreviewed/2024/09/GHSA-94rm-fghw-676x/GHSA-94rm-fghw-676x.json index 5b0f8132ee9..0f447dd8d80 100644 --- a/advisories/unreviewed/2024/09/GHSA-94rm-fghw-676x/GHSA-94rm-fghw-676x.json +++ b/advisories/unreviewed/2024/09/GHSA-94rm-fghw-676x/GHSA-94rm-fghw-676x.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-94rm-fghw-676x", - "modified": "2024-09-13T09:30:32Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-13T09:30:32Z", "aliases": [ "CVE-2024-46702" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nthunderbolt: Mark XDomain as unplugged when router is removed\n\nI noticed that when we do discrete host router NVM upgrade and it gets\nhot-removed from the PCIe side as a result of NVM firmware authentication,\nif there is another host connected with enabled paths we hang in tearing\nthem down. This is due to fact that the Thunderbolt networking driver\nalso tries to cleanup the paths and ends up blocking in\ntb_disconnect_xdomain_paths() waiting for the domain lock.\n\nHowever, at this point we already cleaned the paths in tb_stop() so\nthere is really no need for tb_disconnect_xdomain_paths() to do that\nanymore. Furthermore it already checks if the XDomain is unplugged and\nbails out early so take advantage of that and mark the XDomain as\nunplugged when we remove the parent router.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -47,7 +50,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-13T07:15:05Z" diff --git a/advisories/unreviewed/2024/09/GHSA-c5j5-cf8h-96p6/GHSA-c5j5-cf8h-96p6.json b/advisories/unreviewed/2024/09/GHSA-c5j5-cf8h-96p6/GHSA-c5j5-cf8h-96p6.json index 3d186d09657..77e6801599e 100644 --- a/advisories/unreviewed/2024/09/GHSA-c5j5-cf8h-96p6/GHSA-c5j5-cf8h-96p6.json +++ b/advisories/unreviewed/2024/09/GHSA-c5j5-cf8h-96p6/GHSA-c5j5-cf8h-96p6.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-c5j5-cf8h-96p6", - "modified": "2024-09-04T03:30:44Z", + "modified": "2024-09-19T15:30:48Z", "published": "2024-09-04T03:30:44Z", "aliases": [ "CVE-2024-39921" ], "details": "Observable timing discrepancy issue exists in IPCOM EX2 Series V01L02NF0001 to V01L06NF0401, V01L20NF0001 to V01L20NF0401, V02L20NF0001 to V02L21NF0301, and IPCOM VE2 Series V01L04NF0001 to V01L06NF0112. If this vulnerability is exploited, some of the encrypted communication may be decrypted by an attacker who can obtain the contents of the communication.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-203" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T03:15:03Z" diff --git a/advisories/unreviewed/2024/09/GHSA-cjc3-7r36-pp49/GHSA-cjc3-7r36-pp49.json b/advisories/unreviewed/2024/09/GHSA-cjc3-7r36-pp49/GHSA-cjc3-7r36-pp49.json index e16dfaf958d..8d867dba224 100644 --- a/advisories/unreviewed/2024/09/GHSA-cjc3-7r36-pp49/GHSA-cjc3-7r36-pp49.json +++ b/advisories/unreviewed/2024/09/GHSA-cjc3-7r36-pp49/GHSA-cjc3-7r36-pp49.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cjc3-7r36-pp49", - "modified": "2024-09-19T09:36:03Z", + "modified": "2024-09-19T15:30:50Z", "published": "2024-09-19T09:36:03Z", "aliases": [ "CVE-2024-45770" @@ -21,6 +21,38 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45770" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6837" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6840" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6842" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6843" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6844" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6846" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6847" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6848" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-45770" diff --git a/advisories/unreviewed/2024/09/GHSA-cp7f-67pj-cxg3/GHSA-cp7f-67pj-cxg3.json b/advisories/unreviewed/2024/09/GHSA-cp7f-67pj-cxg3/GHSA-cp7f-67pj-cxg3.json index 5b90f1f45bb..e5710c93623 100644 --- a/advisories/unreviewed/2024/09/GHSA-cp7f-67pj-cxg3/GHSA-cp7f-67pj-cxg3.json +++ b/advisories/unreviewed/2024/09/GHSA-cp7f-67pj-cxg3/GHSA-cp7f-67pj-cxg3.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-cp7f-67pj-cxg3", - "modified": "2024-09-13T09:30:32Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-13T09:30:32Z", "aliases": [ "CVE-2024-46712" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/vmwgfx: Disable coherent dumb buffers without 3d\n\nCoherent surfaces make only sense if the host renders to them using\naccelerated apis. Without 3d the entire content of dumb buffers stays\nin the guest making all of the extra work they're doing to synchronize\nbetween guest and host useless.\n\nConfigurations without 3d also tend to run with very low graphics\nmemory limits. The pinned console fb, mob cursors and graphical login\nmanager tend to run out of 16MB graphics memory that those guests use.\n\nFix it by making sure the coherent dumb buffers are only used on\nconfigs with 3d enabled.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-13T07:15:06Z" diff --git a/advisories/unreviewed/2024/09/GHSA-gjv7-5cpp-hqgw/GHSA-gjv7-5cpp-hqgw.json b/advisories/unreviewed/2024/09/GHSA-gjv7-5cpp-hqgw/GHSA-gjv7-5cpp-hqgw.json index 1f7f534dd92..7308df98f9c 100644 --- a/advisories/unreviewed/2024/09/GHSA-gjv7-5cpp-hqgw/GHSA-gjv7-5cpp-hqgw.json +++ b/advisories/unreviewed/2024/09/GHSA-gjv7-5cpp-hqgw/GHSA-gjv7-5cpp-hqgw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gjv7-5cpp-hqgw", - "modified": "2024-09-13T09:30:32Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-13T09:30:32Z", "aliases": [ "CVE-2024-46710" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/vmwgfx: Prevent unmapping active read buffers\n\nThe kms paths keep a persistent map active to read and compare the cursor\nbuffer. These maps can race with each other in simple scenario where:\na) buffer \"a\" mapped for update\nb) buffer \"a\" mapped for compare\nc) do the compare\nd) unmap \"a\" for compare\ne) update the cursor\nf) unmap \"a\" for update\nAt step \"e\" the buffer has been unmapped and the read contents is bogus.\n\nPrevent unmapping of active read buffers by simply keeping a count of\nhow many paths have currently active maps and unmap only when the count\nreaches 0.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-13T07:15:05Z" diff --git a/advisories/unreviewed/2024/09/GHSA-gmjh-p826-vp24/GHSA-gmjh-p826-vp24.json b/advisories/unreviewed/2024/09/GHSA-gmjh-p826-vp24/GHSA-gmjh-p826-vp24.json index 37cce0fc009..443be35ca63 100644 --- a/advisories/unreviewed/2024/09/GHSA-gmjh-p826-vp24/GHSA-gmjh-p826-vp24.json +++ b/advisories/unreviewed/2024/09/GHSA-gmjh-p826-vp24/GHSA-gmjh-p826-vp24.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-gmjh-p826-vp24", - "modified": "2024-09-12T15:33:00Z", + "modified": "2024-09-19T15:30:48Z", "published": "2024-09-12T15:33:00Z", "aliases": [ "CVE-2021-22532" diff --git a/advisories/unreviewed/2024/09/GHSA-hf4q-fmf3-3xvp/GHSA-hf4q-fmf3-3xvp.json b/advisories/unreviewed/2024/09/GHSA-hf4q-fmf3-3xvp/GHSA-hf4q-fmf3-3xvp.json index 0304df4279a..4d8d9eddad5 100644 --- a/advisories/unreviewed/2024/09/GHSA-hf4q-fmf3-3xvp/GHSA-hf4q-fmf3-3xvp.json +++ b/advisories/unreviewed/2024/09/GHSA-hf4q-fmf3-3xvp/GHSA-hf4q-fmf3-3xvp.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hf4q-fmf3-3xvp", - "modified": "2024-09-13T09:30:33Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-13T09:30:33Z", "aliases": [ "CVE-2024-6656" ], "details": "Use of Hard-coded Credentials vulnerability in TNB Mobile Solutions Cockpit Software allows Read Sensitive Strings Within an Executable.This issue affects Cockpit Software: before v2.13.", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:N/SC:L/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" diff --git a/advisories/unreviewed/2024/09/GHSA-hrf5-p85w-hh83/GHSA-hrf5-p85w-hh83.json b/advisories/unreviewed/2024/09/GHSA-hrf5-p85w-hh83/GHSA-hrf5-p85w-hh83.json new file mode 100644 index 00000000000..1ff8db8df7f --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-hrf5-p85w-hh83/GHSA-hrf5-p85w-hh83.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hrf5-p85w-hh83", + "modified": "2024-09-19T15:30:50Z", + "published": "2024-09-19T15:30:50Z", + "aliases": [ + "CVE-2024-46382" + ], + "details": "A SQL injection vulnerability in linlinjava litemall 1.8.0 allows a remote attacker to obtain sensitive information via the goodsId, goodsSn, and name parameters in AdminGoodscontroller.java.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46382" + }, + { + "type": "WEB", + "url": "https://github.com/linlinjava/litemall/issues/552" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-19T13:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-j9c3-7w24-v75h/GHSA-j9c3-7w24-v75h.json b/advisories/unreviewed/2024/09/GHSA-j9c3-7w24-v75h/GHSA-j9c3-7w24-v75h.json index 7b36beebd30..176abcf3de5 100644 --- a/advisories/unreviewed/2024/09/GHSA-j9c3-7w24-v75h/GHSA-j9c3-7w24-v75h.json +++ b/advisories/unreviewed/2024/09/GHSA-j9c3-7w24-v75h/GHSA-j9c3-7w24-v75h.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-j9c3-7w24-v75h", - "modified": "2024-09-13T09:30:32Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-13T09:30:32Z", "aliases": [ "CVE-2024-46703" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nRevert \"serial: 8250_omap: Set the console genpd always on if no console suspend\"\n\nThis reverts commit 68e6939ea9ec3d6579eadeab16060339cdeaf940.\n\nKevin reported that this causes a crash during suspend on platforms that\ndont use PM domains.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-13T07:15:05Z" diff --git a/advisories/unreviewed/2024/09/GHSA-jc54-wrqp-vxf4/GHSA-jc54-wrqp-vxf4.json b/advisories/unreviewed/2024/09/GHSA-jc54-wrqp-vxf4/GHSA-jc54-wrqp-vxf4.json index 4676c409549..19993d13b33 100644 --- a/advisories/unreviewed/2024/09/GHSA-jc54-wrqp-vxf4/GHSA-jc54-wrqp-vxf4.json +++ b/advisories/unreviewed/2024/09/GHSA-jc54-wrqp-vxf4/GHSA-jc54-wrqp-vxf4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jc54-wrqp-vxf4", - "modified": "2024-09-13T09:30:32Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-13T09:30:32Z", "aliases": [ "CVE-2024-46709" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/vmwgfx: Fix prime with external buffers\n\nMake sure that for external buffers mapping goes through the dma_buf\ninterface instead of trying to access pages directly.\n\nExternal buffers might not provide direct access to readable/writable\npages so to make sure the bo's created from external dma_bufs can be\nread dma_buf interface has to be used.\n\nFixes crashes in IGT's kms_prime with vgem. Regular desktop usage won't\ntrigger this due to the fact that virtual machines will not have\nmultiple GPUs but it enables better test coverage in IGT.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-13T07:15:05Z" diff --git a/advisories/unreviewed/2024/09/GHSA-jm64-jw7h-ffg2/GHSA-jm64-jw7h-ffg2.json b/advisories/unreviewed/2024/09/GHSA-jm64-jw7h-ffg2/GHSA-jm64-jw7h-ffg2.json index 17637c6775b..519e04a8852 100644 --- a/advisories/unreviewed/2024/09/GHSA-jm64-jw7h-ffg2/GHSA-jm64-jw7h-ffg2.json +++ b/advisories/unreviewed/2024/09/GHSA-jm64-jw7h-ffg2/GHSA-jm64-jw7h-ffg2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jm64-jw7h-ffg2", - "modified": "2024-09-13T09:30:32Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-13T09:30:32Z", "aliases": [ "CVE-2024-46711" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmptcp: pm: fix ID 0 endp usage after multiple re-creations\n\n'local_addr_used' and 'add_addr_accepted' are decremented for addresses\nnot related to the initial subflow (ID0), because the source and\ndestination addresses of the initial subflows are known from the\nbeginning: they don't count as \"additional local address being used\" or\n\"ADD_ADDR being accepted\".\n\nIt is then required not to increment them when the entrypoint used by\nthe initial subflow is removed and re-added during a connection. Without\nthis modification, this entrypoint cannot be removed and re-added more\nthan once.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-13T07:15:05Z" diff --git a/advisories/unreviewed/2024/09/GHSA-mfqr-wp5f-9gj8/GHSA-mfqr-wp5f-9gj8.json b/advisories/unreviewed/2024/09/GHSA-mfqr-wp5f-9gj8/GHSA-mfqr-wp5f-9gj8.json index 2729eeebcce..4302f024945 100644 --- a/advisories/unreviewed/2024/09/GHSA-mfqr-wp5f-9gj8/GHSA-mfqr-wp5f-9gj8.json +++ b/advisories/unreviewed/2024/09/GHSA-mfqr-wp5f-9gj8/GHSA-mfqr-wp5f-9gj8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mfqr-wp5f-9gj8", - "modified": "2024-09-12T15:33:00Z", + "modified": "2024-09-19T15:30:48Z", "published": "2024-09-12T15:33:00Z", "aliases": [ "CVE-2021-22533" diff --git a/advisories/unreviewed/2024/09/GHSA-mgxj-66hj-35x8/GHSA-mgxj-66hj-35x8.json b/advisories/unreviewed/2024/09/GHSA-mgxj-66hj-35x8/GHSA-mgxj-66hj-35x8.json index 03c014f1f1f..2292594d0fe 100644 --- a/advisories/unreviewed/2024/09/GHSA-mgxj-66hj-35x8/GHSA-mgxj-66hj-35x8.json +++ b/advisories/unreviewed/2024/09/GHSA-mgxj-66hj-35x8/GHSA-mgxj-66hj-35x8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mgxj-66hj-35x8", - "modified": "2024-09-13T09:30:32Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-13T09:30:32Z", "aliases": [ "CVE-2024-46704" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nworkqueue: Fix spruious data race in __flush_work()\n\nWhen flushing a work item for cancellation, __flush_work() knows that it\nexclusively owns the work item through its PENDING bit. 134874e2eee9\n(\"workqueue: Allow cancel_work_sync() and disable_work() from atomic\ncontexts on BH work items\") added a read of @work->data to determine whether\nto use busy wait for BH work items that are being canceled. While the read\nis safe when @from_cancel, @work->data was read before testing @from_cancel\nto simplify code structure:\n\n\tdata = *work_data_bits(work);\n\tif (from_cancel &&\n\t !WARN_ON_ONCE(data & WORK_STRUCT_PWQ) && (data & WORK_OFFQ_BH)) {\n\nWhile the read data was never used if !@from_cancel, this could trigger\nKCSAN data race detection spuriously:\n\n ==================================================================\n BUG: KCSAN: data-race in __flush_work / __flush_work\n\n write to 0xffff8881223aa3e8 of 8 bytes by task 3998 on cpu 0:\n instrument_write include/linux/instrumented.h:41 [inline]\n ___set_bit include/asm-generic/bitops/instrumented-non-atomic.h:28 [inline]\n insert_wq_barrier kernel/workqueue.c:3790 [inline]\n start_flush_work kernel/workqueue.c:4142 [inline]\n __flush_work+0x30b/0x570 kernel/workqueue.c:4178\n flush_work kernel/workqueue.c:4229 [inline]\n ...\n\n read to 0xffff8881223aa3e8 of 8 bytes by task 50 on cpu 1:\n __flush_work+0x42a/0x570 kernel/workqueue.c:4188\n flush_work kernel/workqueue.c:4229 [inline]\n flush_delayed_work+0x66/0x70 kernel/workqueue.c:4251\n ...\n\n value changed: 0x0000000000400000 -> 0xffff88810006c00d\n\nReorganize the code so that @from_cancel is tested before @work->data is\naccessed. The only problem is triggering KCSAN detection spuriously. This\nshouldn't need READ_ONCE() or other access qualifiers.\n\nNo functional changes.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-13T07:15:05Z" diff --git a/advisories/unreviewed/2024/09/GHSA-p2qj-r53j-h3xj/GHSA-p2qj-r53j-h3xj.json b/advisories/unreviewed/2024/09/GHSA-p2qj-r53j-h3xj/GHSA-p2qj-r53j-h3xj.json index 71e4de333a3..e90cd4e2d89 100644 --- a/advisories/unreviewed/2024/09/GHSA-p2qj-r53j-h3xj/GHSA-p2qj-r53j-h3xj.json +++ b/advisories/unreviewed/2024/09/GHSA-p2qj-r53j-h3xj/GHSA-p2qj-r53j-h3xj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-p2qj-r53j-h3xj", - "modified": "2024-09-19T06:31:37Z", + "modified": "2024-09-19T15:30:50Z", "published": "2024-09-19T06:31:36Z", "aliases": [ "CVE-2024-46946" ], "details": "langchain_experimental (aka LangChain Experimental) 0.1.17 through 0.3.0 for LangChain allows attackers to execute arbitrary code through sympy.sympify (which uses eval) in LLMSymbolicMathChain. LLMSymbolicMathChain was introduced in fcccde406dd9e9b05fc9babcbeb9ff527b0ec0c6 (2023-10-05).", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-20" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-19T05:15:11Z" diff --git a/advisories/unreviewed/2024/09/GHSA-p47r-4xrv-2qwg/GHSA-p47r-4xrv-2qwg.json b/advisories/unreviewed/2024/09/GHSA-p47r-4xrv-2qwg/GHSA-p47r-4xrv-2qwg.json index 19151da0643..6823bb623fd 100644 --- a/advisories/unreviewed/2024/09/GHSA-p47r-4xrv-2qwg/GHSA-p47r-4xrv-2qwg.json +++ b/advisories/unreviewed/2024/09/GHSA-p47r-4xrv-2qwg/GHSA-p47r-4xrv-2qwg.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-p47r-4xrv-2qwg", - "modified": "2024-09-19T00:31:32Z", + "modified": "2024-09-19T15:30:50Z", "published": "2024-09-19T00:31:32Z", "aliases": [ "CVE-2024-37406" ], "details": "In Brave Android prior to v1.67.116, domains in the Brave Shields popup are elided from the right instead of the left, which may lead to domain confusion.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-20" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-18T22:15:04Z" diff --git a/advisories/unreviewed/2024/09/GHSA-prr3-v2fg-ggg7/GHSA-prr3-v2fg-ggg7.json b/advisories/unreviewed/2024/09/GHSA-prr3-v2fg-ggg7/GHSA-prr3-v2fg-ggg7.json index 8bf9805465e..d8bb0122138 100644 --- a/advisories/unreviewed/2024/09/GHSA-prr3-v2fg-ggg7/GHSA-prr3-v2fg-ggg7.json +++ b/advisories/unreviewed/2024/09/GHSA-prr3-v2fg-ggg7/GHSA-prr3-v2fg-ggg7.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-prr3-v2fg-ggg7", - "modified": "2024-09-19T09:36:03Z", + "modified": "2024-09-19T15:30:50Z", "published": "2024-09-19T09:36:03Z", "aliases": [ "CVE-2024-45769" @@ -21,6 +21,38 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45769" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6837" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6840" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6842" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6843" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6844" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6846" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6847" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:6848" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-45769" diff --git a/advisories/unreviewed/2024/09/GHSA-q4gj-2fgv-hpxf/GHSA-q4gj-2fgv-hpxf.json b/advisories/unreviewed/2024/09/GHSA-q4gj-2fgv-hpxf/GHSA-q4gj-2fgv-hpxf.json index 3f26d1cc069..ccf787b4766 100644 --- a/advisories/unreviewed/2024/09/GHSA-q4gj-2fgv-hpxf/GHSA-q4gj-2fgv-hpxf.json +++ b/advisories/unreviewed/2024/09/GHSA-q4gj-2fgv-hpxf/GHSA-q4gj-2fgv-hpxf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-q4gj-2fgv-hpxf", - "modified": "2024-09-04T03:30:44Z", + "modified": "2024-09-19T15:30:48Z", "published": "2024-09-04T03:30:44Z", "aliases": [ "CVE-2024-41927" ], "details": "Cleartext transmission of sensitive information vulnerability exists in multiple IDEC PLCs. If an attacker sends a specific command to PLC's serial communication port, user credentials may be obtained. As a result, the program of the PLC may be obtained, and the PLC may be manipulated.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-319" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-04T01:15:11Z" diff --git a/advisories/unreviewed/2024/09/GHSA-q844-wpfg-w2h9/GHSA-q844-wpfg-w2h9.json b/advisories/unreviewed/2024/09/GHSA-q844-wpfg-w2h9/GHSA-q844-wpfg-w2h9.json index 5f21c2ffaf3..d0de0887316 100644 --- a/advisories/unreviewed/2024/09/GHSA-q844-wpfg-w2h9/GHSA-q844-wpfg-w2h9.json +++ b/advisories/unreviewed/2024/09/GHSA-q844-wpfg-w2h9/GHSA-q844-wpfg-w2h9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-q844-wpfg-w2h9", - "modified": "2024-09-13T09:30:32Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-13T09:30:32Z", "aliases": [ "CVE-2024-46701" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nlibfs: fix infinite directory reads for offset dir\n\nAfter we switch tmpfs dir operations from simple_dir_operations to\nsimple_offset_dir_operations, every rename happened will fill new dentry\nto dest dir's maple tree(&SHMEM_I(inode)->dir_offsets->mt) with a free\nkey starting with octx->newx_offset, and then set newx_offset equals to\nfree key + 1. This will lead to infinite readdir combine with rename\nhappened at the same time, which fail generic/736 in xfstests(detail show\nas below).\n\n1. create 5000 files(1 2 3...) under one dir\n2. call readdir(man 3 readdir) once, and get one entry\n3. rename(entry, \"TEMPFILE\"), then rename(\"TEMPFILE\", entry)\n4. loop 2~3, until readdir return nothing or we loop too many\n times(tmpfs break test with the second condition)\n\nWe choose the same logic what commit 9b378f6ad48cf (\"btrfs: fix infinite\ndirectory reads\") to fix it, record the last_index when we open dir, and\ndo not emit the entry which index >= last_index. The file->private_data\nnow used in offset dir can use directly to do this, and we also update\nthe last_index when we llseek the dir file.\n\n[brauner: only update last_index after seek when offset is zero like Jan suggested]", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-835" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-13T07:15:05Z" diff --git a/advisories/unreviewed/2024/09/GHSA-qfxc-fjvg-2qgm/GHSA-qfxc-fjvg-2qgm.json b/advisories/unreviewed/2024/09/GHSA-qfxc-fjvg-2qgm/GHSA-qfxc-fjvg-2qgm.json index 4b4173378b5..9261f3e9a04 100644 --- a/advisories/unreviewed/2024/09/GHSA-qfxc-fjvg-2qgm/GHSA-qfxc-fjvg-2qgm.json +++ b/advisories/unreviewed/2024/09/GHSA-qfxc-fjvg-2qgm/GHSA-qfxc-fjvg-2qgm.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qfxc-fjvg-2qgm", - "modified": "2024-09-13T09:30:32Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-13T09:30:32Z", "aliases": [ "CVE-2024-46705" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/xe: reset mmio mappings with devm\n\nSet our various mmio mappings to NULL. This should make it easier to\ncatch something rogue trying to mess with mmio after device removal. For\nexample, we might unmap everything and then start hitting some mmio\naddress which has already been unmamped by us and then remapped by\nsomething else, causing all kinds of carnage.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-13T07:15:05Z" diff --git a/advisories/unreviewed/2024/09/GHSA-rfvq-f6wq-mfhj/GHSA-rfvq-f6wq-mfhj.json b/advisories/unreviewed/2024/09/GHSA-rfvq-f6wq-mfhj/GHSA-rfvq-f6wq-mfhj.json index 5ffd26611d2..c312395ac4b 100644 --- a/advisories/unreviewed/2024/09/GHSA-rfvq-f6wq-mfhj/GHSA-rfvq-f6wq-mfhj.json +++ b/advisories/unreviewed/2024/09/GHSA-rfvq-f6wq-mfhj/GHSA-rfvq-f6wq-mfhj.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-rfvq-f6wq-mfhj", - "modified": "2024-09-12T15:33:00Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-12T15:33:00Z", "aliases": [ "CVE-2024-3306" ], "details": "Authorization Bypass Through User-Controlled Key vulnerability in Utarit Information SoliClub allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SoliClub: before 4.4.0 for iOS, before 5.2.1 for Android.", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" diff --git a/advisories/unreviewed/2024/09/GHSA-v223-qxqp-w79x/GHSA-v223-qxqp-w79x.json b/advisories/unreviewed/2024/09/GHSA-v223-qxqp-w79x/GHSA-v223-qxqp-w79x.json index 68ef26895c3..5c1cf4bc7ed 100644 --- a/advisories/unreviewed/2024/09/GHSA-v223-qxqp-w79x/GHSA-v223-qxqp-w79x.json +++ b/advisories/unreviewed/2024/09/GHSA-v223-qxqp-w79x/GHSA-v223-qxqp-w79x.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-v223-qxqp-w79x", - "modified": "2024-09-18T21:30:48Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-18T21:30:48Z", "aliases": [ "CVE-2024-46375" ], "details": "Best House Rental Management System 1.0 contains an arbitrary file upload vulnerability in the signup() function of the file rental/admin_class.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-22" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-18T21:15:13Z" diff --git a/advisories/unreviewed/2024/09/GHSA-v4vv-7v49-m3wg/GHSA-v4vv-7v49-m3wg.json b/advisories/unreviewed/2024/09/GHSA-v4vv-7v49-m3wg/GHSA-v4vv-7v49-m3wg.json index 8720bdf58c2..ba6170a4302 100644 --- a/advisories/unreviewed/2024/09/GHSA-v4vv-7v49-m3wg/GHSA-v4vv-7v49-m3wg.json +++ b/advisories/unreviewed/2024/09/GHSA-v4vv-7v49-m3wg/GHSA-v4vv-7v49-m3wg.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-v4vv-7v49-m3wg", - "modified": "2024-09-13T09:30:32Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-13T09:30:32Z", "aliases": [ "CVE-2024-46707" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: arm64: Make ICC_*SGI*_EL1 undef in the absence of a vGICv3\n\nOn a system with a GICv3, if a guest hasn't been configured with\nGICv3 and that the host is not capable of GICv2 emulation,\na write to any of the ICC_*SGI*_EL1 registers is trapped to EL2.\n\nWe therefore try to emulate the SGI access, only to hit a NULL\npointer as no private interrupt is allocated (no GIC, remember?).\n\nThe obvious fix is to give the guest what it deserves, in the\nshape of a UNDEF exception.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-13T07:15:05Z" diff --git a/advisories/unreviewed/2024/09/GHSA-v53g-5fv8-fwj6/GHSA-v53g-5fv8-fwj6.json b/advisories/unreviewed/2024/09/GHSA-v53g-5fv8-fwj6/GHSA-v53g-5fv8-fwj6.json index d7a00e046a4..167dee4e26b 100644 --- a/advisories/unreviewed/2024/09/GHSA-v53g-5fv8-fwj6/GHSA-v53g-5fv8-fwj6.json +++ b/advisories/unreviewed/2024/09/GHSA-v53g-5fv8-fwj6/GHSA-v53g-5fv8-fwj6.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-v53g-5fv8-fwj6", - "modified": "2024-09-18T21:30:48Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-18T21:30:48Z", "aliases": [ "CVE-2024-46376" ], "details": "Best House Rental Management System 1.0 contains an arbitrary file upload vulnerability in the update_account() function of the file rental/admin_class.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-22" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-18T21:15:13Z" diff --git a/advisories/unreviewed/2024/09/GHSA-vpx9-6rc9-v679/GHSA-vpx9-6rc9-v679.json b/advisories/unreviewed/2024/09/GHSA-vpx9-6rc9-v679/GHSA-vpx9-6rc9-v679.json index a39c6f2c7ff..bfb94fd6d32 100644 --- a/advisories/unreviewed/2024/09/GHSA-vpx9-6rc9-v679/GHSA-vpx9-6rc9-v679.json +++ b/advisories/unreviewed/2024/09/GHSA-vpx9-6rc9-v679/GHSA-vpx9-6rc9-v679.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vpx9-6rc9-v679", - "modified": "2024-09-12T21:32:02Z", + "modified": "2024-09-19T15:30:49Z", "published": "2024-09-12T21:32:02Z", "aliases": [ "CVE-2024-6077" ], "details": "A denial-of-service vulnerability exists in the Rockwell Automation affected products when specially crafted packets are sent to the CIP Security Object. If exploited the device will become unavailable and require a factory reset to recover.", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"