mirror of
https://github.com/netbirdio/advisory-database.git
synced 2026-05-22 18:04:22 -07:00
Advisory Database Sync
This commit is contained in:
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-mc76-5925-c5p6",
|
||||
"modified": "2024-10-14T22:24:12Z",
|
||||
"modified": "2024-10-15T21:30:36Z",
|
||||
"published": "2024-10-01T21:31:34Z",
|
||||
"aliases": [
|
||||
"CVE-2024-9341"
|
||||
@@ -52,6 +52,10 @@
|
||||
"type": "WEB",
|
||||
"url": "https://access.redhat.com/errata/RHSA-2024:8039"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://access.redhat.com/errata/RHSA-2024:8112"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://access.redhat.com/security/cve/CVE-2024-9341"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-3r4p-wv9v-57xw",
|
||||
"modified": "2023-12-08T21:30:27Z",
|
||||
"modified": "2024-10-15T21:30:31Z",
|
||||
"published": "2022-05-24T17:00:47Z",
|
||||
"aliases": [
|
||||
"CVE-2019-18279"
|
||||
|
||||
@@ -1,14 +1,17 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-92f7-f2c6-vjr8",
|
||||
"modified": "2022-05-02T06:09:48Z",
|
||||
"modified": "2024-10-15T21:30:31Z",
|
||||
"published": "2022-05-02T06:09:48Z",
|
||||
"aliases": [
|
||||
"CVE-2010-0036"
|
||||
],
|
||||
"details": "Buffer overflow in CoreAudio in Apple Mac OS X 10.5.8 and 10.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted MP4 audio file.",
|
||||
"severity": [
|
||||
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
|
||||
@@ -44,7 +44,8 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-119"
|
||||
"CWE-119",
|
||||
"CWE-120"
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-pp6p-gh63-62xr",
|
||||
"modified": "2022-11-07T19:00:18Z",
|
||||
"modified": "2024-10-15T21:30:32Z",
|
||||
"published": "2022-05-24T19:07:07Z",
|
||||
"aliases": [
|
||||
"CVE-2021-34620"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-q868-g69p-72cw",
|
||||
"modified": "2024-02-03T09:30:16Z",
|
||||
"modified": "2024-10-15T21:30:31Z",
|
||||
"published": "2022-05-24T17:33:09Z",
|
||||
"aliases": [
|
||||
"CVE-2020-28049"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-cch8-vp96-g53m",
|
||||
"modified": "2022-07-26T00:00:27Z",
|
||||
"modified": "2024-10-15T21:30:32Z",
|
||||
"published": "2022-07-18T00:00:32Z",
|
||||
"aliases": [
|
||||
"CVE-2022-30550"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-h5gp-9w8f-f2p2",
|
||||
"modified": "2023-12-15T18:30:27Z",
|
||||
"modified": "2024-10-15T21:30:32Z",
|
||||
"published": "2023-07-18T00:31:08Z",
|
||||
"aliases": [
|
||||
"CVE-2023-38428"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-r39w-v7w4-p94f",
|
||||
"modified": "2024-01-07T12:30:29Z",
|
||||
"modified": "2024-10-15T21:30:32Z",
|
||||
"published": "2023-07-05T12:30:15Z",
|
||||
"aliases": [
|
||||
"CVE-2023-37203"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-m4mp-v249-x3mh",
|
||||
"modified": "2024-10-14T09:30:52Z",
|
||||
"modified": "2024-10-15T21:30:33Z",
|
||||
"published": "2023-10-23T09:30:18Z",
|
||||
"aliases": [
|
||||
"CVE-2023-45802"
|
||||
|
||||
@@ -40,7 +40,7 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-116"
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-gq45-c76q-q33j",
|
||||
"modified": "2023-11-22T18:30:54Z",
|
||||
"modified": "2024-10-15T21:30:33Z",
|
||||
"published": "2023-11-17T06:31:21Z",
|
||||
"aliases": [
|
||||
"CVE-2023-48655"
|
||||
@@ -36,7 +36,7 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-116"
|
||||
],
|
||||
"severity": "CRITICAL",
|
||||
"github_reviewed": false,
|
||||
|
||||
@@ -1,14 +1,17 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-54jg-mrhp-6457",
|
||||
"modified": "2024-06-07T00:30:36Z",
|
||||
"modified": "2024-10-15T21:30:35Z",
|
||||
"published": "2024-06-07T00:30:36Z",
|
||||
"aliases": [
|
||||
"CVE-2024-22525"
|
||||
],
|
||||
"details": "dnspod-sr 0dfbd37 contains a SEGV.",
|
||||
"severity": [
|
||||
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
@@ -25,9 +28,9 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-476"
|
||||
],
|
||||
"severity": null,
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-06-06T22:15:10Z"
|
||||
|
||||
@@ -32,6 +32,7 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-22",
|
||||
"CWE-29"
|
||||
],
|
||||
"severity": "CRITICAL",
|
||||
|
||||
@@ -1,14 +1,17 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-8v8c-vvrq-xph7",
|
||||
"modified": "2024-06-07T00:30:36Z",
|
||||
"modified": "2024-10-15T21:30:35Z",
|
||||
"published": "2024-06-07T00:30:36Z",
|
||||
"aliases": [
|
||||
"CVE-2024-22524"
|
||||
],
|
||||
"details": "dnspod-sr 0dfbd37 is vulnerable to buffer overflow.",
|
||||
"severity": [
|
||||
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
@@ -25,9 +28,9 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-476"
|
||||
],
|
||||
"severity": null,
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-06-06T22:15:10Z"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-rq57-8pjv-c6r7",
|
||||
"modified": "2024-06-06T21:30:36Z",
|
||||
"modified": "2024-10-15T21:30:34Z",
|
||||
"published": "2024-06-06T21:30:36Z",
|
||||
"aliases": [
|
||||
"CVE-2024-22326"
|
||||
|
||||
@@ -1,14 +1,17 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-v4wq-4595-gr53",
|
||||
"modified": "2024-06-06T21:30:36Z",
|
||||
"modified": "2024-10-15T21:30:34Z",
|
||||
"published": "2024-06-06T21:30:36Z",
|
||||
"aliases": [
|
||||
"CVE-2024-36735"
|
||||
],
|
||||
"details": "OneFlow-Inc. Oneflow v0.9.1 does not display an error or warning when the oneflow.eye parameter is floating.",
|
||||
"severity": [
|
||||
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
@@ -27,7 +30,7 @@
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": null,
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-06-06T19:15:58Z"
|
||||
|
||||
@@ -1,14 +1,17 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-xv8j-86xh-qr5w",
|
||||
"modified": "2024-06-06T21:30:36Z",
|
||||
"modified": "2024-10-15T21:30:34Z",
|
||||
"published": "2024-06-06T21:30:36Z",
|
||||
"aliases": [
|
||||
"CVE-2024-36730"
|
||||
],
|
||||
"details": "Improper input validation in OneFlow-Inc. Oneflow v0.9.1 allows attackers to cause a Denial of Service (DoS) via inputting negative values into the oneflow.zeros/ones parameter.",
|
||||
"severity": [
|
||||
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
@@ -25,9 +28,9 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-755"
|
||||
],
|
||||
"severity": null,
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-06-06T19:15:57Z"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-q9mv-48mg-vv6w",
|
||||
"modified": "2024-07-08T15:31:55Z",
|
||||
"modified": "2024-10-15T21:30:36Z",
|
||||
"published": "2024-07-01T18:32:40Z",
|
||||
"aliases": [
|
||||
"CVE-2024-36985"
|
||||
|
||||
@@ -0,0 +1,39 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-24jq-7r79-4823",
|
||||
"modified": "2024-10-15T21:30:39Z",
|
||||
"published": "2024-10-15T21:30:39Z",
|
||||
"aliases": [
|
||||
"CVE-2024-49195"
|
||||
],
|
||||
"details": "Mbed TLS 3.5.x through 3.6.x before 3.6.2 has a buffer underrun in pkwrite when writing an opaque key pair",
|
||||
"severity": [
|
||||
|
||||
],
|
||||
"affected": [
|
||||
|
||||
],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-49195"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://mbed-tls.readthedocs.io/en/latest/security-advisories/mbedtls-security-advisory-2024-10-1"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://mbed-tls.readthedocs.io/en/latest/tech-updates/security-advisories"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": null,
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-10-15T20:15:21Z"
|
||||
}
|
||||
}
|
||||
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user