From 7fc0d2355a80b8381225ec5860887aa38cd36b59 Mon Sep 17 00:00:00 2001 From: "github-actions[bot]" Date: Wed, 17 Jul 2024 05:37:36 +0000 Subject: [PATCH] Update Advisories --- advisories/PHSA-2024-4.0-0653.json | 35 +++++++++++++++++++++++++++ advisories/PHSA-2024-5.0-0318.json | 38 ++++++++++++++++++++++++++++++ photon-wiki | 2 +- 3 files changed, 74 insertions(+), 1 deletion(-) create mode 100644 advisories/PHSA-2024-4.0-0653.json create mode 100644 advisories/PHSA-2024-5.0-0318.json diff --git a/advisories/PHSA-2024-4.0-0653.json b/advisories/PHSA-2024-4.0-0653.json new file mode 100644 index 0000000..636a9b1 --- /dev/null +++ b/advisories/PHSA-2024-4.0-0653.json @@ -0,0 +1,35 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:4.0", + "name": "nodejs", + "purl": "pkg:rpm/vmware/nodejs?distro=photon-4" + }, + "ranges": { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "18.20.4-1.ph4" + } + ], + "type": "ECOSYSTEM" + } + } + ], + "id": "PHSA-2024-4.0-0653", + "modified": "2024-07-17T05:24:17Z", + "published": "2024-07-16T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-4.0-653" + } + ], + "related": [ + "CVE-2024-22020", + "CVE-2024-36138" + ] +} \ No newline at end of file diff --git a/advisories/PHSA-2024-5.0-0318.json b/advisories/PHSA-2024-5.0-0318.json new file mode 100644 index 0000000..0d0f06d --- /dev/null +++ b/advisories/PHSA-2024-5.0-0318.json @@ -0,0 +1,38 @@ +{ + "affected": [ + { + "package": { + "ecosystem": "Photon OS:5.0", + "name": "nodejs", + "purl": "pkg:rpm/vmware/nodejs?distro=photon-5" + }, + "ranges": { + "events": [ + { + "introduced": "0" + }, + { + "fixed": "20.15.1-1.ph5" + } + ], + "type": "ECOSYSTEM" + } + } + ], + "id": "PHSA-2024-5.0-0318", + "modified": "2024-07-17T05:24:17Z", + "published": "2024-07-16T00:00:00Z", + "references": [ + { + "type": "ADVISORY", + "url": "https://github.com/vmware/photon/wiki/Security-Update-5.0-318" + } + ], + "related": [ + "CVE-2024-22020", + "CVE-2024-37372", + "CVE-2024-36137", + "CVE-2024-36138", + "CVE-2024-22018" + ] +} \ No newline at end of file diff --git a/photon-wiki b/photon-wiki index 7a143f7..17034a1 160000 --- a/photon-wiki +++ b/photon-wiki @@ -1 +1 @@ -Subproject commit 7a143f737be13536f5b94dbff49cbfd45dcb62e6 +Subproject commit 17034a108ead7c036456b6b51d1fdfc21f72a03f