Skip to content

Commit adfc865

Browse files
tatianabgopherbot
authored andcommitted
data/reports: unexclude 20 reports (8)
- data/reports/GO-2023-1912.yaml - data/reports/GO-2023-1915.yaml - data/reports/GO-2023-1919.yaml - data/reports/GO-2023-1922.yaml - data/reports/GO-2023-1924.yaml - data/reports/GO-2023-1925.yaml - data/reports/GO-2023-1927.yaml - data/reports/GO-2023-1928.yaml - data/reports/GO-2023-1931.yaml - data/reports/GO-2023-1932.yaml - data/reports/GO-2023-1936.yaml - data/reports/GO-2023-1938.yaml - data/reports/GO-2023-1939.yaml - data/reports/GO-2023-1940.yaml - data/reports/GO-2023-1942.yaml - data/reports/GO-2023-1945.yaml - data/reports/GO-2023-1946.yaml - data/reports/GO-2023-1948.yaml - data/reports/GO-2023-1950.yaml - data/reports/GO-2023-1952.yaml Updates #1912 Updates #1915 Updates #1919 Updates #1922 Updates #1924 Updates #1925 Updates #1927 Updates #1928 Updates #1931 Updates #1932 Updates #1936 Updates #1938 Updates #1939 Updates #1940 Updates #1942 Updates #1945 Updates #1946 Updates #1948 Updates #1950 Updates #1952 Change-Id: Id25f09c8f7270af68238752db96d6a399b91ef36 Reviewed-on: https://go-review.googlesource.com/c/vulndb/+/606788 Auto-Submit: Tatiana Bradley <tatianabradley@google.com> LUCI-TryBot-Result: Go LUCI <golang-scoped@luci-project-accounts.iam.gserviceaccount.com> Reviewed-by: Damien Neil <dneil@google.com>
1 parent a9db2a7 commit adfc865

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

60 files changed

+1860
-160
lines changed

data/excluded/GO-2023-1912.yaml

-8
This file was deleted.

data/excluded/GO-2023-1915.yaml

-8
This file was deleted.

data/excluded/GO-2023-1919.yaml

-8
This file was deleted.

data/excluded/GO-2023-1922.yaml

-8
This file was deleted.

data/excluded/GO-2023-1924.yaml

-8
This file was deleted.

data/excluded/GO-2023-1925.yaml

-8
This file was deleted.

data/excluded/GO-2023-1927.yaml

-8
This file was deleted.

data/excluded/GO-2023-1928.yaml

-8
This file was deleted.

data/excluded/GO-2023-1931.yaml

-8
This file was deleted.

data/excluded/GO-2023-1932.yaml

-8
This file was deleted.

data/excluded/GO-2023-1936.yaml

-8
This file was deleted.

data/excluded/GO-2023-1938.yaml

-8
This file was deleted.

data/excluded/GO-2023-1939.yaml

-8
This file was deleted.

data/excluded/GO-2023-1940.yaml

-8
This file was deleted.

data/excluded/GO-2023-1942.yaml

-8
This file was deleted.

data/excluded/GO-2023-1945.yaml

-8
This file was deleted.

data/excluded/GO-2023-1946.yaml

-8
This file was deleted.

data/excluded/GO-2023-1948.yaml

-8
This file was deleted.

data/excluded/GO-2023-1950.yaml

-8
This file was deleted.

data/excluded/GO-2023-1952.yaml

-8
This file was deleted.

data/osv/GO-2023-1912.json

+60
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,60 @@
1+
{
2+
"schema_version": "1.3.1",
3+
"id": "GO-2023-1912",
4+
"modified": "0001-01-01T00:00:00Z",
5+
"published": "0001-01-01T00:00:00Z",
6+
"aliases": [
7+
"CVE-2023-34458",
8+
"GHSA-j494-7x2v-vvvp"
9+
],
10+
"summary": "mx-chain-go's relayed transactions always increment nonce in github.com/multiversx/mx-chain-go",
11+
"details": "mx-chain-go's relayed transactions always increment nonce in github.com/multiversx/mx-chain-go",
12+
"affected": [
13+
{
14+
"package": {
15+
"name": "github.com/multiversx/mx-chain-go",
16+
"ecosystem": "Go"
17+
},
18+
"ranges": [
19+
{
20+
"type": "SEMVER",
21+
"events": [
22+
{
23+
"introduced": "0"
24+
},
25+
{
26+
"fixed": "1.4.17"
27+
}
28+
]
29+
}
30+
],
31+
"ecosystem_specific": {}
32+
}
33+
],
34+
"references": [
35+
{
36+
"type": "ADVISORY",
37+
"url": "https://github.com/multiversx/mx-chain-go/security/advisories/GHSA-j494-7x2v-vvvp"
38+
},
39+
{
40+
"type": "ADVISORY",
41+
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34458"
42+
},
43+
{
44+
"type": "FIX",
45+
"url": "https://github.com/multiversx/mx-chain-go/commit/babdb144f1316ab6176bf3dbd7d4621120414d43"
46+
},
47+
{
48+
"type": "WEB",
49+
"url": "https://github.com/multiversx/mx-chain-go/blob/babdb144f1316ab6176bf3dbd7d4621120414d43/integrationTests/vm/txsFee/relayedMoveBalance_test.go#LL165C14-L165C14"
50+
},
51+
{
52+
"type": "WEB",
53+
"url": "https://github.com/multiversx/mx-chain-go/releases/tag/v1.4.17"
54+
}
55+
],
56+
"database_specific": {
57+
"url": "https://pkg.go.dev/vuln/GO-2023-1912",
58+
"review_status": "UNREVIEWED"
59+
}
60+
}

data/osv/GO-2023-1915.json

+72
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,72 @@
1+
{
2+
"schema_version": "1.3.1",
3+
"id": "GO-2023-1915",
4+
"modified": "0001-01-01T00:00:00Z",
5+
"published": "0001-01-01T00:00:00Z",
6+
"aliases": [
7+
"CVE-2020-10749",
8+
"GHSA-fx6x-h9g4-56f8"
9+
],
10+
"summary": "containernetworking/plugins vulnerable to MitM attacks in github.com/containernetworking/plugins",
11+
"details": "containernetworking/plugins vulnerable to MitM attacks in github.com/containernetworking/plugins",
12+
"affected": [
13+
{
14+
"package": {
15+
"name": "github.com/containernetworking/plugins",
16+
"ecosystem": "Go"
17+
},
18+
"ranges": [
19+
{
20+
"type": "SEMVER",
21+
"events": [
22+
{
23+
"introduced": "0"
24+
},
25+
{
26+
"fixed": "0.8.6"
27+
}
28+
]
29+
}
30+
],
31+
"ecosystem_specific": {}
32+
}
33+
],
34+
"references": [
35+
{
36+
"type": "ADVISORY",
37+
"url": "https://github.com/advisories/GHSA-fx6x-h9g4-56f8"
38+
},
39+
{
40+
"type": "ADVISORY",
41+
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-10749"
42+
},
43+
{
44+
"type": "WEB",
45+
"url": "http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00063.html"
46+
},
47+
{
48+
"type": "WEB",
49+
"url": "http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00065.html"
50+
},
51+
{
52+
"type": "WEB",
53+
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10749"
54+
},
55+
{
56+
"type": "WEB",
57+
"url": "https://github.com/containernetworking/plugins/releases/tag/v0.8.6"
58+
},
59+
{
60+
"type": "WEB",
61+
"url": "https://groups.google.com/forum/#!topic/kubernetes-security-announce/BMb_6ICCfp8"
62+
},
63+
{
64+
"type": "WEB",
65+
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DV3HCDZYUTPPVDUMTZXDKK6IUO3JMGJC"
66+
}
67+
],
68+
"database_specific": {
69+
"url": "https://pkg.go.dev/vuln/GO-2023-1915",
70+
"review_status": "UNREVIEWED"
71+
}
72+
}

data/osv/GO-2023-1919.json

+60
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,60 @@
1+
{
2+
"schema_version": "1.3.1",
3+
"id": "GO-2023-1919",
4+
"modified": "0001-01-01T00:00:00Z",
5+
"published": "0001-01-01T00:00:00Z",
6+
"aliases": [
7+
"CVE-2019-12452",
8+
"GHSA-r3fq-cmmw-cpmm"
9+
],
10+
"summary": "Containous Traefik Exposes Password Hashes in github.com/traefik/traefik",
11+
"details": "Containous Traefik Exposes Password Hashes in github.com/traefik/traefik",
12+
"affected": [
13+
{
14+
"package": {
15+
"name": "github.com/traefik/traefik",
16+
"ecosystem": "Go"
17+
},
18+
"ranges": [
19+
{
20+
"type": "SEMVER",
21+
"events": [
22+
{
23+
"introduced": "1.7.0"
24+
},
25+
{
26+
"fixed": "1.7.12"
27+
}
28+
]
29+
}
30+
],
31+
"ecosystem_specific": {}
32+
}
33+
],
34+
"references": [
35+
{
36+
"type": "ADVISORY",
37+
"url": "https://github.com/advisories/GHSA-r3fq-cmmw-cpmm"
38+
},
39+
{
40+
"type": "ADVISORY",
41+
"url": "https://nvd.nist.gov/vuln/detail/CVE-2019-12452"
42+
},
43+
{
44+
"type": "FIX",
45+
"url": "https://github.com/traefik/traefik/commit/a169fec2e08e391d24b509c00fcf011656c1395c"
46+
},
47+
{
48+
"type": "WEB",
49+
"url": "https://github.com/containous/traefik/issues/4917"
50+
},
51+
{
52+
"type": "WEB",
53+
"url": "https://github.com/containous/traefik/pull/4918"
54+
}
55+
],
56+
"database_specific": {
57+
"url": "https://pkg.go.dev/vuln/GO-2023-1919",
58+
"review_status": "UNREVIEWED"
59+
}
60+
}

0 commit comments

Comments
 (0)