mirror of https://github.com/bitnami/vulndb.git
Update 20240502071541 (#428)
This commit is contained in:
parent
32c89dba12
commit
2544f27df8
|
@ -47,8 +47,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.apache.org/thread/yw4vzm0c5lqkwm0bxv6qy03yfd1od4nw"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/04/17/10"
|
||||
}
|
||||
],
|
||||
"published": "2024-03-06T10:52:00.977Z",
|
||||
"modified": "2024-03-06T11:25:28.861Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -41,8 +41,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.apache.org/thread/knskxxxml95091rsnpxkpo1jjp8rj0fh"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/03/01/1"
|
||||
}
|
||||
],
|
||||
"published": "2024-03-31T18:16:59.178Z",
|
||||
"modified": "2024-04-01T14:37:26.940Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -41,8 +41,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.apache.org/thread/b4pffc7w7do6qgk4jjbyxvdz5odrvny7"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/03/13/5"
|
||||
}
|
||||
],
|
||||
"published": "2024-03-31T18:16:36.634Z",
|
||||
"modified": "2024-04-01T14:37:26.940Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -41,8 +41,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.apache.org/thread/8khb1rtbznh100o325fb8xw5wjvtv536"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/03/26/2"
|
||||
}
|
||||
],
|
||||
"published": "2024-03-28T07:16:52.369Z",
|
||||
"modified": "2024-03-28T07:48:37.181Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -41,8 +41,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.apache.org/thread/pz6vg7wcjk901rmsgt86h76g6kfcgtk3"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/04/17/10"
|
||||
}
|
||||
],
|
||||
"published": "2024-04-20T07:16:43.969Z",
|
||||
"modified": "2024-04-20T07:49:38.167Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -94,8 +94,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.oracle.com/security-alerts/cpuoct2021.html"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/03/13/2"
|
||||
}
|
||||
],
|
||||
"published": "2024-03-06T10:55:51.283Z",
|
||||
"modified": "2024-03-06T11:25:28.861Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -45,8 +45,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://security.netapp.com/advisory/ntap-20240415-0013/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/04/04/3"
|
||||
}
|
||||
],
|
||||
"published": "2024-04-06T18:17:43.564Z",
|
||||
"modified": "2024-04-20T07:49:38.167Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -45,8 +45,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://security.netapp.com/advisory/ntap-20240415-0013/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/04/04/5"
|
||||
}
|
||||
],
|
||||
"published": "2024-04-06T18:17:14.870Z",
|
||||
"modified": "2024-04-20T07:49:38.167Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -53,8 +53,16 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://security.netapp.com/advisory/ntap-20240415-0013/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/04/03/16"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/04/04/4"
|
||||
}
|
||||
],
|
||||
"published": "2024-04-06T18:17:01.271Z",
|
||||
"modified": "2024-04-22T07:50:24.929Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -75,8 +75,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZQJOMNRMVPCN5WMIZ7YSX5LQ7IR2NY4D/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/03/04/1"
|
||||
}
|
||||
],
|
||||
"published": "2024-03-06T10:51:25.579Z",
|
||||
"modified": "2024-04-21T07:49:47.315Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -47,8 +47,16 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://github.com/envoyproxy/envoy/security/advisories/GHSA-gghf-vfxp-799r"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/04/03/16"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/04/05/3"
|
||||
}
|
||||
],
|
||||
"published": "2024-04-06T18:18:06.284Z",
|
||||
"modified": "2024-04-06T18:51:13.710Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -61,8 +61,16 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://github.com/envoyproxy/envoy/security/advisories/GHSA-j654-3ccm-vfmm"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/04/03/16"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/04/05/3"
|
||||
}
|
||||
],
|
||||
"published": "2024-04-06T18:17:53.965Z",
|
||||
"modified": "2024-04-06T18:51:13.710Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -63,8 +63,16 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QRYFHIQ6XRKRYBI2F5UESH67BJBQXUPT/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/04/03/16"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/04/05/4"
|
||||
}
|
||||
],
|
||||
"published": "2024-04-06T18:19:39.789Z",
|
||||
"modified": "2024-04-26T19:52:02.850Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -59,8 +59,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://security.netapp.com/advisory/ntap-20240329-0006/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/03/08/4"
|
||||
}
|
||||
],
|
||||
"published": "2024-03-12T08:24:51.862Z",
|
||||
"modified": "2024-04-01T14:37:26.940Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -59,8 +59,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://security.netapp.com/advisory/ntap-20240329-0004/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/03/08/4"
|
||||
}
|
||||
],
|
||||
"published": "2024-03-12T08:24:42.484Z",
|
||||
"modified": "2024-04-01T14:37:26.940Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -59,8 +59,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://security.netapp.com/advisory/ntap-20240329-0005/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/03/08/4"
|
||||
}
|
||||
],
|
||||
"published": "2024-03-12T08:24:32.786Z",
|
||||
"modified": "2024-04-01T14:37:26.940Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -59,8 +59,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://security.netapp.com/advisory/ntap-20240329-0007/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/03/08/4"
|
||||
}
|
||||
],
|
||||
"published": "2024-03-12T08:24:22.172Z",
|
||||
"modified": "2024-04-01T14:37:26.940Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -59,8 +59,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://security.netapp.com/advisory/ntap-20240329-0008/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/03/08/4"
|
||||
}
|
||||
],
|
||||
"published": "2024-03-12T08:24:09.179Z",
|
||||
"modified": "2024-04-01T14:37:26.940Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -43,8 +43,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.apache.org/thread/6536rmzyg076lzzdw2xdktvnz163mjpy"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/04/12/3"
|
||||
}
|
||||
],
|
||||
"published": "2024-04-16T07:20:25.284Z",
|
||||
"modified": "2024-04-16T07:51:01.692Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -95,8 +95,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZGWIK3HMBACERGB4TSBB2JUOMPYY2VKY/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/04/12/11"
|
||||
}
|
||||
],
|
||||
"published": "2024-03-06T11:03:40.403Z",
|
||||
"modified": "2024-04-20T07:49:38.167Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -89,8 +89,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://security.netapp.com/advisory/ntap-20240419-0008/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/04/02/6"
|
||||
}
|
||||
],
|
||||
"published": "2024-03-12T08:33:54.711Z",
|
||||
"modified": "2024-04-20T07:49:38.167Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -99,8 +99,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://mail.python.org/archives/list/security-announce@python.org/thread/Q5C6ATFC67K53XFV4KE45325S7NS62LD/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/03/20/5"
|
||||
}
|
||||
],
|
||||
"published": "2024-03-25T07:27:48.606Z",
|
||||
"modified": "2024-04-04T09:21:10.298Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -107,8 +107,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.bamsoftware.com/hacks/zipbomb/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/03/20/5"
|
||||
}
|
||||
],
|
||||
"published": "2024-03-25T07:27:39.766Z",
|
||||
"modified": "2024-04-04T09:21:10.298Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -63,8 +63,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00001.html"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/03/13/4"
|
||||
}
|
||||
],
|
||||
"published": "2024-04-01T14:18:43.369Z",
|
||||
"modified": "2024-04-08T20:22:09.293Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -63,8 +63,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00001.html"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/03/13/3"
|
||||
}
|
||||
],
|
||||
"published": "2024-04-01T14:18:33.983Z",
|
||||
"modified": "2024-04-08T20:22:09.293Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -0,0 +1,50 @@
|
|||
{
|
||||
"schema_version": "1.5.0",
|
||||
"id": "BIT-vault-2024-2877",
|
||||
"details": "Vault Enterprise, when configured with performance standby nodes and a configured audit device, will inadvertently log request headers on the standby node. These logs may have included sensitive HTTP request information in cleartext.This vulnerability, CVE-2024-2877, was fixed in Vault Enterprise 1.15.8.",
|
||||
"aliases": [
|
||||
"CVE-2024-2877"
|
||||
],
|
||||
"affected": [
|
||||
{
|
||||
"package": {
|
||||
"ecosystem": "Bitnami",
|
||||
"name": "vault",
|
||||
"purl": "pkg:bitnami/vault"
|
||||
},
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:C/C:H/I:N/A:N"
|
||||
}
|
||||
],
|
||||
"ranges": [
|
||||
{
|
||||
"type": "SEMVER",
|
||||
"events": [
|
||||
{
|
||||
"introduced": "1.15.0"
|
||||
},
|
||||
{
|
||||
"fixed": "1.15.8"
|
||||
}
|
||||
]
|
||||
}
|
||||
]
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"severity": "Medium",
|
||||
"cpes": [
|
||||
"cpe:2.3:a:hashicorp:vault:*:*:*:*:enterprise:*:*:*"
|
||||
]
|
||||
},
|
||||
"references": [
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://discuss.hashicorp.com/t/hsec-2024-10-vault-enterprise-leaks-sensitive-http-request-headers-in-audit-log-when-deployed-with-a-performance-standby-node"
|
||||
}
|
||||
],
|
||||
"published": "2024-05-02T07:37:52.117Z",
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
|
@ -49,8 +49,12 @@
|
|||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.apache.org/thread/96s5nqssj03rznz9hv58txdb2k1lr79k"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://www.openwall.com/lists/oss-security/2024/03/14/2"
|
||||
}
|
||||
],
|
||||
"published": "2024-03-31T18:32:55.925Z",
|
||||
"modified": "2024-04-01T14:37:26.940Z"
|
||||
"modified": "2024-05-02T07:52:56.618Z"
|
||||
}
|
Loading…
Reference in New Issue