-
Notifications
You must be signed in to change notification settings - Fork 58
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
- Loading branch information
GSD-automation
committed
Apr 29, 2024
1 parent
a059861
commit e6c0c2d
Showing
119 changed files
with
10,347 additions
and
2,747 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -89,6 +89,16 @@ | |
"name": "[debian-lts-announce] 20230929 [SECURITY] [DLA 3590-1] python-reportlab security update", | ||
"refsource": "MLIST", | ||
"url": "https://lists.debian.org/debian-lts-announce/2023/09/msg00037.html" | ||
}, | ||
{ | ||
"name": "FEDORA-2024-dc844d0669", | ||
"refsource": "FEDORA", | ||
"url": "https://lists.fedoraproject.org/archives/list/[email protected]/message/CHMCB2GJQKFMGVO5RWHN222NQL5XYPHZ/" | ||
}, | ||
{ | ||
"name": "FEDORA-2024-6ec4e78241", | ||
"refsource": "FEDORA", | ||
"url": "https://lists.fedoraproject.org/archives/list/[email protected]/message/HADPTB3SBU7IVRMDK7OL6WSQRU5AFWDZ/" | ||
} | ||
] | ||
} | ||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -84,114 +84,137 @@ | |
"name": "https://github.com/FRRouting/frr/issues/10507", | ||
"refsource": "MISC", | ||
"url": "https://github.com/FRRouting/frr/issues/10507" | ||
}, | ||
{ | ||
"name": "[debian-lts-announce] 20240428 [SECURITY] [DLA 3797-1] frr security update", | ||
"refsource": "MLIST", | ||
"url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00019.html" | ||
} | ||
] | ||
} | ||
}, | ||
"nvd.nist.gov": { | ||
"configurations": { | ||
"CVE_data_version": "4.0", | ||
"nodes": [ | ||
"cve": { | ||
"configurations": [ | ||
{ | ||
"children": [], | ||
"cpe_match": [ | ||
"nodes": [ | ||
{ | ||
"cpe23Uri": "cpe:2.3:a:frrouting:frrouting:*:*:*:*:*:*:*:*", | ||
"cpe_name": [], | ||
"versionEndIncluding": "8.1", | ||
"vulnerable": true | ||
"cpeMatch": [ | ||
{ | ||
"criteria": "cpe:2.3:a:frrouting:frrouting:*:*:*:*:*:*:*:*", | ||
"matchCriteriaId": "08E82B0A-1839-49BF-887B-DDE6010562D6", | ||
"versionEndIncluding": "8.1", | ||
"vulnerable": true | ||
} | ||
], | ||
"negate": false, | ||
"operator": "OR" | ||
} | ||
], | ||
"operator": "OR" | ||
] | ||
} | ||
] | ||
}, | ||
"cve": { | ||
"CVE_data_meta": { | ||
"ASSIGNER": "[email protected]", | ||
"ID": "CVE-2022-26125" | ||
}, | ||
"data_format": "MITRE", | ||
"data_type": "CVE", | ||
"data_version": "4.0", | ||
"description": { | ||
"description_data": [ | ||
], | ||
"descriptions": [ | ||
{ | ||
"lang": "en", | ||
"value": "Buffer overflow vulnerabilities exist in FRRouting through 8.1.0 due to wrong checks on the input packet length in isisd/isis_tlvs.c." | ||
}, | ||
{ | ||
"lang": "es", | ||
"value": "Se presentan vulnerabilidades de desbordamiento del b\u00fafer en FRRouting versiones hasta 8.1.0, debido a comprobaciones err\u00f3neas de la longitud del paquete de entrada en el archivo isisd/isis_tlvs.c" | ||
} | ||
], | ||
"id": "CVE-2022-26125", | ||
"lastModified": "2024-04-28T07:15:06.517", | ||
"metrics": { | ||
"cvssMetricV2": [ | ||
{ | ||
"lang": "en", | ||
"value": "Buffer overflow vulnerabilities exist in FRRouting through 8.1.0 due to wrong checks on the input packet length in isisd/isis_tlvs.c." | ||
"acInsufInfo": false, | ||
"baseSeverity": "MEDIUM", | ||
"cvssData": { | ||
"accessComplexity": "MEDIUM", | ||
"accessVector": "NETWORK", | ||
"authentication": "NONE", | ||
"availabilityImpact": "PARTIAL", | ||
"baseScore": 6.8, | ||
"confidentialityImpact": "PARTIAL", | ||
"integrityImpact": "PARTIAL", | ||
"vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:P", | ||
"version": "2.0" | ||
}, | ||
"exploitabilityScore": 8.6, | ||
"impactScore": 6.4, | ||
"obtainAllPrivilege": false, | ||
"obtainOtherPrivilege": false, | ||
"obtainUserPrivilege": false, | ||
"source": "[email protected]", | ||
"type": "Primary", | ||
"userInteractionRequired": true | ||
} | ||
] | ||
}, | ||
"problemtype": { | ||
"problemtype_data": [ | ||
], | ||
"cvssMetricV31": [ | ||
{ | ||
"description": [ | ||
{ | ||
"lang": "en", | ||
"value": "CWE-1284" | ||
} | ||
] | ||
"cvssData": { | ||
"attackComplexity": "LOW", | ||
"attackVector": "LOCAL", | ||
"availabilityImpact": "HIGH", | ||
"baseScore": 7.8, | ||
"baseSeverity": "HIGH", | ||
"confidentialityImpact": "HIGH", | ||
"integrityImpact": "HIGH", | ||
"privilegesRequired": "NONE", | ||
"scope": "UNCHANGED", | ||
"userInteraction": "REQUIRED", | ||
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", | ||
"version": "3.1" | ||
}, | ||
"exploitabilityScore": 1.8, | ||
"impactScore": 5.9, | ||
"source": "[email protected]", | ||
"type": "Primary" | ||
} | ||
] | ||
}, | ||
"references": { | ||
"reference_data": [ | ||
{ | ||
"name": "https://github.com/FRRouting/frr/issues/10507", | ||
"refsource": "MISC", | ||
"tags": [ | ||
"Exploit", | ||
"Issue Tracking", | ||
"Third Party Advisory" | ||
], | ||
"url": "https://github.com/FRRouting/frr/issues/10507" | ||
} | ||
] | ||
} | ||
}, | ||
"impact": { | ||
"baseMetricV2": { | ||
"acInsufInfo": false, | ||
"cvssV2": { | ||
"accessComplexity": "MEDIUM", | ||
"accessVector": "NETWORK", | ||
"authentication": "NONE", | ||
"availabilityImpact": "PARTIAL", | ||
"baseScore": 6.8, | ||
"confidentialityImpact": "PARTIAL", | ||
"integrityImpact": "PARTIAL", | ||
"vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:P", | ||
"version": "2.0" | ||
"published": "2022-03-03T18:15:08.090", | ||
"references": [ | ||
{ | ||
"source": "[email protected]", | ||
"tags": [ | ||
"Exploit", | ||
"Issue Tracking", | ||
"Third Party Advisory" | ||
], | ||
"url": "https://github.com/FRRouting/frr/issues/10507" | ||
}, | ||
"exploitabilityScore": 8.6, | ||
"impactScore": 6.4, | ||
"obtainAllPrivilege": false, | ||
"obtainOtherPrivilege": false, | ||
"obtainUserPrivilege": false, | ||
"severity": "MEDIUM", | ||
"userInteractionRequired": true | ||
}, | ||
"baseMetricV3": { | ||
"cvssV3": { | ||
"attackComplexity": "LOW", | ||
"attackVector": "LOCAL", | ||
"availabilityImpact": "HIGH", | ||
"baseScore": 7.8, | ||
"baseSeverity": "HIGH", | ||
"confidentialityImpact": "HIGH", | ||
"integrityImpact": "HIGH", | ||
"privilegesRequired": "NONE", | ||
"scope": "UNCHANGED", | ||
"userInteraction": "REQUIRED", | ||
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", | ||
"version": "3.1" | ||
{ | ||
"source": "[email protected]", | ||
"url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00019.html" | ||
} | ||
], | ||
"sourceIdentifier": "[email protected]", | ||
"vulnStatus": "Modified", | ||
"weaknesses": [ | ||
{ | ||
"description": [ | ||
{ | ||
"lang": "en", | ||
"value": "CWE-1284" | ||
} | ||
], | ||
"source": "[email protected]", | ||
"type": "Primary" | ||
}, | ||
"exploitabilityScore": 1.8, | ||
"impactScore": 5.9 | ||
} | ||
}, | ||
"lastModifiedDate": "2023-06-27T20:23Z", | ||
"publishedDate": "2022-03-03T18:15Z" | ||
{ | ||
"description": [ | ||
{ | ||
"lang": "en", | ||
"value": "CWE-119" | ||
} | ||
], | ||
"source": "[email protected]", | ||
"type": "Secondary" | ||
} | ||
] | ||
} | ||
} | ||
} | ||
} |
Oops, something went wrong.