From caf4e23447f72eae9558b25acb180b68c303a897 Mon Sep 17 00:00:00 2001 From: github-actions[bot] <github-actions[bot]@users.noreply.github.com> Date: Mon, 10 Feb 2025 09:38:18 +0000 Subject: [PATCH] Update Advisories --- advisories/PHSA-2021-4.0-0065.json | 28 ++++++++++++++++++++++++++-- advisories/PHSA-2021-4.0-0083.json | 27 +++++++++++++++++++++++++-- advisories/PHSA-2024-5.0-0242.json | 7 +++++-- advisories/PHSA-2024-5.0-0364.json | 25 +++++++++++++++++++++++-- advisories/PHSA-2025-3.0-0815.json | 38 ++++++++++++++++++++++++++++++++++++++ advisories/PHSA-2025-3.0-0816.json | 36 ++++++++++++++++++++++++++++++++++++ advisories/PHSA-2025-4.0-0730.json | 25 +++++++++++++++++++++++-- advisories/PHSA-2025-4.0-0740.json | 36 ++++++++++++++++++++++++++++++++++++ advisories/PHSA-2025-4.0-0742.json | 49 +++++++++++++++++++++++++++++++++++++++++++++++++ advisories/PHSA-2025-4.0-0743.json | 60 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ advisories/PHSA-2025-4.0-0744.json | 64 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ advisories/PHSA-2025-4.0-0745.json | 57 +++++++++++++++++++++++++++++++++++++++++++++++++++++++++ advisories/PHSA-2025-4.0-0749.json | 36 ++++++++++++++++++++++++++++++++++++ advisories/PHSA-2025-4.0-0750.json | 77 +++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ advisories/PHSA-2025-5.0-0445.json | 27 +++++++++++++++++++++++++-- advisories/PHSA-2025-5.0-0458.json | 37 +++++++++++++++++++++++++++++++++++++ advisories/PHSA-2025-5.0-0460.json | 36 ++++++++++++++++++++++++++++++++++++ advisories/PHSA-2025-5.0-0461.json | 64 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ advisories/PHSA-2025-5.0-0462.json | 57 +++++++++++++++++++++++++++++++++++++++++++++++++++++++++ advisories/PHSA-2025-5.0-0463.json | 36 ++++++++++++++++++++++++++++++++++++ advisories/PHSA-2025-5.0-0464.json | 80 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ advisories/PHSA-2025-5.0-0468.json | 60 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ 22 files changed, 950 insertions(+), 12 deletions(-) diff --git a/advisories/PHSA-2021-4.0-0065.json b/advisories/PHSA-2021-4.0-0065.json index ecca104..737eb56 100644 --- a/advisories/PHSA-2021-4.0-0065.json +++ a/advisories/PHSA-2021-4.0-0065.json @@ -178,7 +178,7 @@ } ], "id": "PHSA-2021-4.0-0065", - "modified": "2025-01-24T05:27:06Z", + "modified": "2025-02-10T09:08:46Z", "published": "2021-07-21T00:00:00Z", "references": [ { @@ -856,6 +856,30 @@ "CVE-2023-46343", "CVE-2022-3534", "CVE-2022-23036", - "CVE-2024-0641" + "CVE-2024-0641", + "CVE-2023-3141", + "CVE-2023-31084", + "CVE-2023-3090", + "CVE-2022-42328", + "CVE-2021-3669", + "CVE-2023-34319", + "CVE-2023-3359", + "CVE-2022-45887", + "CVE-2022-42329", + "CVE-2022-4269", + "CVE-2022-20369", + "CVE-2022-40476", + "CVE-2023-2860", + "CVE-2022-45886", + "CVE-2022-2503", + "CVE-2023-28410", + "CVE-2022-23825", + "CVE-2022-20132", + "CVE-2021-33655", + "CVE-2022-20008", + "CVE-2023-21255", + "CVE-2022-45919", + "CVE-2023-35788", + "CVE-2023-3212" ] }diff --git a/advisories/PHSA-2021-4.0-0083.json b/advisories/PHSA-2021-4.0-0083.json index 350274e..88f004c 100644 --- a/advisories/PHSA-2021-4.0-0083.json +++ a/advisories/PHSA-2021-4.0-0083.json @@ -75,10 +75,30 @@ "type": "ECOSYSTEM" } ] + }, + { + "package": { + "ecosystem": "Photon OS:4.0", + "name": "dnsmasq", + "purl": "pkg:rpm/vmware/dnsmasq?distro=photon-4" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "2.84-3.ph4" + } + ], + "type": "ECOSYSTEM" + } + ] } ], "id": "PHSA-2021-4.0-0083", - "modified": "2025-01-24T05:27:06Z", + "modified": "2025-02-10T09:08:46Z", "published": "2021-08-19T00:00:00Z", "references": [ { @@ -88,6 +108,9 @@ ], "related": [ "CVE-2021-3580", - "CVE-2021-32761" + "CVE-2021-32761", + "CVE-2023-49441", + "CVE-2023-50387", + "CVE-2023-50868" ] }diff --git a/advisories/PHSA-2024-5.0-0242.json b/advisories/PHSA-2024-5.0-0242.json index ac99651..0e63cea 100644 --- a/advisories/PHSA-2024-5.0-0242.json +++ a/advisories/PHSA-2024-5.0-0242.json @@ -230,7 +230,7 @@ } ], "id": "PHSA-2024-5.0-0242", - "modified": "2025-01-24T05:27:06Z", + "modified": "2025-02-10T09:08:46Z", "published": "2024-04-10T00:00:00Z", "references": [ { @@ -242,6 +242,9 @@ "CVE-2024-28085", "CVE-2024-27316", "CVE-2023-52452", - "CVE-2024-28182" + "CVE-2024-28182", + "CVE-2021-3996", + "CVE-2021-37600", + "CVE-2021-3995" ] }diff --git a/advisories/PHSA-2024-5.0-0364.json b/advisories/PHSA-2024-5.0-0364.json index cd68458..064f8f3 100644 --- a/advisories/PHSA-2024-5.0-0364.json +++ a/advisories/PHSA-2024-5.0-0364.json @@ -75,10 +75,30 @@ "type": "ECOSYSTEM" } ] + }, + { + "package": { + "ecosystem": "Photon OS:5.0", + "name": "libtiff", + "purl": "pkg:rpm/vmware/libtiff?distro=photon-5" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "4.5.1-5.ph5" + } + ], + "type": "ECOSYSTEM" + } + ] } ], "id": "PHSA-2024-5.0-0364", - "modified": "2025-01-24T05:27:06Z", + "modified": "2025-02-10T09:08:46Z", "published": "2024-09-05T00:00:00Z", "references": [ { @@ -91,6 +111,7 @@ "CVE-2024-45492", "CVE-2024-45491", "CVE-2024-24476", - "CVE-2024-45490" + "CVE-2024-45490", + "CVE-2023-6277" ] }diff --git a/advisories/PHSA-2025-3.0-0815.json b/advisories/PHSA-2025-3.0-0815.json new file mode 100644 index 0000000..197ec54 100644 --- /dev/null +++ a/advisories/PHSA-2025-3.0-0815.json @@ -1,0 +1,38 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:3.0", + "name": "libsoup", + "purl": "pkg:rpm/vmware/libsoup?distro=photon-3" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "2.64.0-13.ph3" + } + ], + "type": "ECOSYSTEM" + } + ] + } + ], + "id": "PHSA-2025-3.0-0815", + "modified": "2025-02-10T09:08:46Z", + "published": "2025-01-21T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-3.0-815" + } + ], + "related": [ + "CVE-2024-52530", + "CVE-2024-52531", + "CVE-2024-52532" + ] +}diff --git a/advisories/PHSA-2025-3.0-0816.json b/advisories/PHSA-2025-3.0-0816.json new file mode 100644 index 0000000..46b0262 100644 --- /dev/null +++ a/advisories/PHSA-2025-3.0-0816.json @@ -1,0 +1,36 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:3.0", + "name": "ruby", + "purl": "pkg:rpm/vmware/ruby?distro=photon-3" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "2.5.8-9.ph3" + } + ], + "type": "ECOSYSTEM" + } + ] + } + ], + "id": "PHSA-2025-3.0-0816", + "modified": "2025-02-10T09:08:46Z", + "published": "2025-01-28T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-3.0-816" + } + ], + "related": [ + "CVE-2024-49761" + ] +}diff --git a/advisories/PHSA-2025-4.0-0730.json b/advisories/PHSA-2025-4.0-0730.json index dab2c41..e746e28 100644 --- a/advisories/PHSA-2025-4.0-0730.json +++ a/advisories/PHSA-2025-4.0-0730.json @@ -227,10 +227,30 @@ "type": "ECOSYSTEM" } ] + }, + { + "package": { + "ecosystem": "Photon OS:4.0", + "name": "python-webob", + "purl": "pkg:rpm/vmware/python-webob?distro=photon-4" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "1.8.6-3.ph4" + } + ], + "type": "ECOSYSTEM" + } + ] } ], "id": "PHSA-2025-4.0-0730", - "modified": "2025-01-24T05:27:06Z", + "modified": "2025-02-10T09:08:46Z", "published": "2025-01-07T00:00:00Z", "references": [ { @@ -244,6 +264,7 @@ "CVE-2024-34064", "CVE-2024-35195", "CVE-2024-52804", - "CVE-2023-41419" + "CVE-2023-41419", + "CVE-2024-42353" ] }diff --git a/advisories/PHSA-2025-4.0-0740.json b/advisories/PHSA-2025-4.0-0740.json new file mode 100644 index 0000000..b86892a 100644 --- /dev/null +++ a/advisories/PHSA-2025-4.0-0740.json @@ -1,0 +1,36 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:4.0", + "name": "linux", + "purl": "pkg:rpm/vmware/linux?distro=photon-4" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "5.10.232-3.ph4" + } + ], + "type": "ECOSYSTEM" + } + ] + } + ], + "id": "PHSA-2025-4.0-0740", + "modified": "2025-02-10T09:08:46Z", + "published": "2025-01-21T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-4.0-740" + } + ], + "related": [ + "CVE-2023-52760" + ] +}diff --git a/advisories/PHSA-2025-4.0-0742.json b/advisories/PHSA-2025-4.0-0742.json new file mode 100644 index 0000000..f012962 100644 --- /dev/null +++ a/advisories/PHSA-2025-4.0-0742.json @@ -1,0 +1,49 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:4.0", + "name": "linux", + "purl": "pkg:rpm/vmware/linux?distro=photon-4" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "5.10.233-1.ph4" + } + ], + "type": "ECOSYSTEM" + } + ] + } + ], + "id": "PHSA-2025-4.0-0742", + "modified": "2025-02-10T09:08:46Z", + "published": "2025-01-23T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-4.0-742" + } + ], + "related": [ + "CVE-2024-55916", + "CVE-2024-57901", + "CVE-2024-57884", + "CVE-2024-54031", + "CVE-2024-56763", + "CVE-2024-57896", + "CVE-2024-57902", + "CVE-2024-56759", + "CVE-2024-57807", + "CVE-2024-56694", + "CVE-2024-57890", + "CVE-2024-53099", + "CVE-2024-49571", + "CVE-2024-57946" + ] +}diff --git a/advisories/PHSA-2025-4.0-0743.json b/advisories/PHSA-2025-4.0-0743.json new file mode 100644 index 0000000..41249f7 100644 --- /dev/null +++ a/advisories/PHSA-2025-4.0-0743.json @@ -1,0 +1,60 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:4.0", + "name": "linux", + "purl": "pkg:rpm/vmware/linux?distro=photon-4" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "5.10.233-2.ph4" + } + ], + "type": "ECOSYSTEM" + } + ] + }, + { + "package": { + "ecosystem": "Photon OS:4.0", + "name": "openjdk17", + "purl": "pkg:rpm/vmware/openjdk17?distro=photon-4" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "17.0.14-1.ph4" + } + ], + "type": "ECOSYSTEM" + } + ] + } + ], + "id": "PHSA-2025-4.0-0743", + "modified": "2025-02-10T09:08:46Z", + "published": "2025-01-24T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-4.0-743" + } + ], + "related": [ + "CVE-2024-21235", + "CVE-2024-56631", + "CVE-2024-21210", + "CVE-2024-21217", + "CVE-2024-21208" + ] +}diff --git a/advisories/PHSA-2025-4.0-0744.json b/advisories/PHSA-2025-4.0-0744.json new file mode 100644 index 0000000..986546f 100644 --- /dev/null +++ a/advisories/PHSA-2025-4.0-0744.json @@ -1,0 +1,64 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:4.0", + "name": "gstreamer", + "purl": "pkg:rpm/vmware/gstreamer?distro=photon-4" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "1.25.1-1.ph4" + } + ], + "type": "ECOSYSTEM" + } + ] + } + ], + "id": "PHSA-2025-4.0-0744", + "modified": "2025-02-10T09:08:46Z", + "published": "2025-01-27T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-4.0-744" + } + ], + "related": [ + "CVE-2024-47597", + "CVE-2024-47546", + "CVE-2024-47607", + "CVE-2024-47601", + "CVE-2024-47537", + "CVE-2024-47775", + "CVE-2024-47776", + "CVE-2024-47603", + "CVE-2024-47545", + "CVE-2024-47538", + "CVE-2024-47602", + "CVE-2024-47778", + "CVE-2024-47777", + "CVE-2024-47596", + "CVE-2024-47615", + "CVE-2024-47541", + "CVE-2024-47600", + "CVE-2024-47598", + "CVE-2024-47539", + "CVE-2024-47835", + "CVE-2024-47774", + "CVE-2024-47606", + "CVE-2024-47540", + "CVE-2024-47834", + "CVE-2024-47542", + "CVE-2024-47543", + "CVE-2024-47613", + "CVE-2024-47599", + "CVE-2024-47544" + ] +}diff --git a/advisories/PHSA-2025-4.0-0745.json b/advisories/PHSA-2025-4.0-0745.json new file mode 100644 index 0000000..b37c865 100644 --- /dev/null +++ a/advisories/PHSA-2025-4.0-0745.json @@ -1,0 +1,57 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:4.0", + "name": "git-lfs", + "purl": "pkg:rpm/vmware/git-lfs?distro=photon-4" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "3.2.0-9.ph4" + } + ], + "type": "ECOSYSTEM" + } + ] + }, + { + "package": { + "ecosystem": "Photon OS:4.0", + "name": "python-idna", + "purl": "pkg:rpm/vmware/python-idna?distro=photon-4" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "2.10-3.ph4" + } + ], + "type": "ECOSYSTEM" + } + ] + } + ], + "id": "PHSA-2025-4.0-0745", + "modified": "2025-02-10T09:08:46Z", + "published": "2025-01-29T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-4.0-745" + } + ], + "related": [ + "CVE-2024-3651", + "CVE-2024-53263" + ] +}diff --git a/advisories/PHSA-2025-4.0-0749.json b/advisories/PHSA-2025-4.0-0749.json new file mode 100644 index 0000000..4805435 100644 --- /dev/null +++ a/advisories/PHSA-2025-4.0-0749.json @@ -1,0 +1,36 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:4.0", + "name": "linux", + "purl": "pkg:rpm/vmware/linux?distro=photon-4" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "5.10.233-3.ph4" + } + ], + "type": "ECOSYSTEM" + } + ] + } + ], + "id": "PHSA-2025-4.0-0749", + "modified": "2025-02-10T09:08:46Z", + "published": "2025-02-05T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-4.0-749" + } + ], + "related": [ + "CVE-2024-56604" + ] +}diff --git a/advisories/PHSA-2025-4.0-0750.json b/advisories/PHSA-2025-4.0-0750.json new file mode 100644 index 0000000..05873c5 100644 --- /dev/null +++ a/advisories/PHSA-2025-4.0-0750.json @@ -1,0 +1,77 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:4.0", + "name": "linux", + "purl": "pkg:rpm/vmware/linux?distro=photon-4" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "5.10.234-1.ph4" + } + ], + "type": "ECOSYSTEM" + } + ] + }, + { + "package": { + "ecosystem": "Photon OS:4.0", + "name": "mysql", + "purl": "pkg:rpm/vmware/mysql?distro=photon-4" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "8.0.41-1.ph4" + } + ], + "type": "ECOSYSTEM" + } + ] + } + ], + "id": "PHSA-2025-4.0-0750", + "modified": "2025-02-10T09:08:46Z", + "published": "2025-02-06T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-4.0-750" + } + ], + "related": [ + "CVE-2025-21520", + "CVE-2025-21505", + "CVE-2025-21555", + "CVE-2025-21499", + "CVE-2025-21519", + "CVE-2025-21546", + "CVE-2024-36899", + "CVE-2025-21559", + "CVE-2025-21531", + "CVE-2025-21497", + "CVE-2025-21491", + "CVE-2025-21501", + "CVE-2025-21518", + "CVE-2024-21204", + "CVE-2025-21522", + "CVE-2025-21540", + "CVE-2025-21490", + "CVE-2025-21503", + "CVE-2025-21543", + "CVE-2025-21523", + "CVE-2025-21529", + "CVE-2025-21500" + ] +}diff --git a/advisories/PHSA-2025-5.0-0445.json b/advisories/PHSA-2025-5.0-0445.json index 890e603..362916f 100644 --- a/advisories/PHSA-2025-5.0-0445.json +++ a/advisories/PHSA-2025-5.0-0445.json @@ -44,10 +44,30 @@ "type": "ECOSYSTEM" } ] + }, + { + "package": { + "ecosystem": "Photon OS:5.0", + "name": "apache-tomcat9", + "purl": "pkg:rpm/vmware/apache-tomcat9?distro=photon-5" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "9.0.98-1.ph5" + } + ], + "type": "ECOSYSTEM" + } + ] } ], "id": "PHSA-2025-5.0-0445", - "modified": "2025-01-24T05:27:06Z", + "modified": "2025-02-10T09:08:46Z", "published": "2025-01-13T00:00:00Z", "references": [ { @@ -57,6 +77,9 @@ ], "related": [ "CVE-2024-10488", - "CVE-2024-10487" + "CVE-2024-10487", + "CVE-2024-54677", + "CVE-2024-50379", + "CVE-2024-56337" ] }diff --git a/advisories/PHSA-2025-5.0-0458.json b/advisories/PHSA-2025-5.0-0458.json new file mode 100644 index 0000000..de09866 100644 --- /dev/null +++ a/advisories/PHSA-2025-5.0-0458.json @@ -1,0 +1,37 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:5.0", + "name": "linux", + "purl": "pkg:rpm/vmware/linux?distro=photon-5" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "6.1.126-1.ph5" + } + ], + "type": "ECOSYSTEM" + } + ] + } + ], + "id": "PHSA-2025-5.0-0458", + "modified": "2025-02-10T09:08:46Z", + "published": "2025-01-23T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-5.0-458" + } + ], + "related": [ + "CVE-2024-56664", + "CVE-2024-53685" + ] +}diff --git a/advisories/PHSA-2025-5.0-0460.json b/advisories/PHSA-2025-5.0-0460.json new file mode 100644 index 0000000..4d5d076 100644 --- /dev/null +++ a/advisories/PHSA-2025-5.0-0460.json @@ -1,0 +1,36 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:5.0", + "name": "linux", + "purl": "pkg:rpm/vmware/linux?distro=photon-5" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "6.1.126-4.ph5" + } + ], + "type": "ECOSYSTEM" + } + ] + } + ], + "id": "PHSA-2025-5.0-0460", + "modified": "2025-02-10T09:08:46Z", + "published": "2025-01-27T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-5.0-460" + } + ], + "related": [ + "CVE-2024-56631" + ] +}diff --git a/advisories/PHSA-2025-5.0-0461.json b/advisories/PHSA-2025-5.0-0461.json new file mode 100644 index 0000000..c5b107f 100644 --- /dev/null +++ a/advisories/PHSA-2025-5.0-0461.json @@ -1,0 +1,64 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:5.0", + "name": "gstreamer", + "purl": "pkg:rpm/vmware/gstreamer?distro=photon-5" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "1.25.1-1.ph5" + } + ], + "type": "ECOSYSTEM" + } + ] + } + ], + "id": "PHSA-2025-5.0-0461", + "modified": "2025-02-10T09:08:46Z", + "published": "2025-01-27T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-5.0-461" + } + ], + "related": [ + "CVE-2024-47597", + "CVE-2024-47546", + "CVE-2024-47607", + "CVE-2024-47601", + "CVE-2024-47537", + "CVE-2024-47775", + "CVE-2024-47776", + "CVE-2024-47603", + "CVE-2024-47545", + "CVE-2024-47538", + "CVE-2024-47602", + "CVE-2024-47778", + "CVE-2024-47777", + "CVE-2024-47596", + "CVE-2024-47615", + "CVE-2024-47541", + "CVE-2024-47600", + "CVE-2024-47598", + "CVE-2024-47539", + "CVE-2024-47835", + "CVE-2024-47774", + "CVE-2024-47606", + "CVE-2024-47540", + "CVE-2024-47834", + "CVE-2024-47542", + "CVE-2024-47543", + "CVE-2024-47613", + "CVE-2024-47599", + "CVE-2024-47544" + ] +}diff --git a/advisories/PHSA-2025-5.0-0462.json b/advisories/PHSA-2025-5.0-0462.json new file mode 100644 index 0000000..e1b80d7 100644 --- /dev/null +++ a/advisories/PHSA-2025-5.0-0462.json @@ -1,0 +1,57 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:5.0", + "name": "python-idna", + "purl": "pkg:rpm/vmware/python-idna?distro=photon-5" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "3.3-4.ph5" + } + ], + "type": "ECOSYSTEM" + } + ] + }, + { + "package": { + "ecosystem": "Photon OS:5.0", + "name": "frr", + "purl": "pkg:rpm/vmware/frr?distro=photon-5" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "9.1-3.ph5" + } + ], + "type": "ECOSYSTEM" + } + ] + } + ], + "id": "PHSA-2025-5.0-0462", + "modified": "2025-02-10T09:08:46Z", + "published": "2025-01-28T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-5.0-462" + } + ], + "related": [ + "CVE-2024-3651", + "CVE-2024-55553" + ] +}diff --git a/advisories/PHSA-2025-5.0-0463.json b/advisories/PHSA-2025-5.0-0463.json new file mode 100644 index 0000000..5cb5f81 100644 --- /dev/null +++ a/advisories/PHSA-2025-5.0-0463.json @@ -1,0 +1,36 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:5.0", + "name": "git-lfs", + "purl": "pkg:rpm/vmware/git-lfs?distro=photon-5" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "3.2.0-15.ph5" + } + ], + "type": "ECOSYSTEM" + } + ] + } + ], + "id": "PHSA-2025-5.0-0463", + "modified": "2025-02-10T09:08:46Z", + "published": "2025-01-29T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-5.0-463" + } + ], + "related": [ + "CVE-2024-53263" + ] +}diff --git a/advisories/PHSA-2025-5.0-0464.json b/advisories/PHSA-2025-5.0-0464.json new file mode 100644 index 0000000..8c2ba1f 100644 --- /dev/null +++ a/advisories/PHSA-2025-5.0-0464.json @@ -1,0 +1,80 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:5.0", + "name": "linux-rt", + "purl": "pkg:rpm/vmware/linux-rt?distro=photon-5" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "6.1.126-5.ph5" + } + ], + "type": "ECOSYSTEM" + } + ] + }, + { + "package": { + "ecosystem": "Photon OS:5.0", + "name": "libtiff", + "purl": "pkg:rpm/vmware/libtiff?distro=photon-5" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "4.5.1-7.ph5" + } + ], + "type": "ECOSYSTEM" + } + ] + }, + { + "package": { + "ecosystem": "Photon OS:5.0", + "name": "linux", + "purl": "pkg:rpm/vmware/linux?distro=photon-5" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "6.1.126-5.ph5" + } + ], + "type": "ECOSYSTEM" + } + ] + } + ], + "id": "PHSA-2025-5.0-0464", + "modified": "2025-02-10T09:08:46Z", + "published": "2025-01-29T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-5.0-464" + } + ], + "related": [ + "CVE-2024-56703", + "CVE-2024-38557", + "CVE-2024-56647", + "CVE-2023-6228", + "CVE-2024-56729" + ] +}diff --git a/advisories/PHSA-2025-5.0-0468.json b/advisories/PHSA-2025-5.0-0468.json new file mode 100644 index 0000000..98f7c32 100644 --- /dev/null +++ a/advisories/PHSA-2025-5.0-0468.json @@ -1,0 +1,60 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:5.0", + "name": "ruby", + "purl": "pkg:rpm/vmware/ruby?distro=photon-5" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "3.1.4-8.ph5" + } + ], + "type": "ECOSYSTEM" + } + ] + }, + { + "package": { + "ecosystem": "Photon OS:5.0", + "name": "openjdk17", + "purl": "pkg:rpm/vmware/openjdk17?distro=photon-5" + }, + "ranges": [ + { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "17.0.14-1.ph5" + } + ], + "type": "ECOSYSTEM" + } + ] + } + ], + "id": "PHSA-2025-5.0-0468", + "modified": "2025-02-10T09:08:46Z", + "published": "2025-02-04T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-5.0-468" + } + ], + "related": [ + "CVE-2024-21235", + "CVE-2024-21217", + "CVE-2024-21210", + "CVE-2025-0306", + "CVE-2024-21208" + ] +}-- rgit 0.1.5