From 5ed333c069974c22fce7b684fd7f61241a7f4c1b Mon Sep 17 00:00:00 2001 From: CVE Team Date: Tue, 13 Nov 2018 16:14:47 -0500 Subject: [PATCH] - Synchronized data. --- 2018/17xxx/CVE-2018-17614.json | 4 ++++ 2018/1xxx/CVE-2018-1884.json | 2 +- 2018/8xxx/CVE-2018-8009.json | 4 +++- 3 files changed, 8 insertions(+), 2 deletions(-) diff --git a/2018/17xxx/CVE-2018-17614.json b/2018/17xxx/CVE-2018-17614.json index 336f29dbef4..63ba1e2f76e 100644 --- a/2018/17xxx/CVE-2018-17614.json +++ b/2018/17xxx/CVE-2018-17614.json @@ -53,9 +53,13 @@ "references" : { "reference_data" : [ { + "name" : "https://github.com/knolleary/pubsubclient/releases/tag/v2.7", + "refsource" : "MISC", "url" : "https://github.com/knolleary/pubsubclient/releases/tag/v2.7" }, { + "name" : "https://zerodayinitiative.com/advisories/ZDI-18-1337", + "refsource" : "MISC", "url" : "https://zerodayinitiative.com/advisories/ZDI-18-1337" } ] diff --git a/2018/1xxx/CVE-2018-1884.json b/2018/1xxx/CVE-2018-1884.json index 020d5411031..3c2d4f48f57 100644 --- a/2018/1xxx/CVE-2018-1884.json +++ b/2018/1xxx/CVE-2018-1884.json @@ -50,7 +50,7 @@ "description_data" : [ { "lang" : "eng", - "value" : "IBM Case Manager 5.2.0.0, 5.2.0.4, 5.2.1.0, 5.2.1.7, 5.3.0.0, and 5.3.3.0 is vulnerabile to a \"zip slip\" vulnerability which could allow a remote attacker to execute code using directory traversal techniques. IBM X-Force ID: 151970." + "value" : "IBM Case Manager 5.2.0.0, 5.2.0.4, 5.2.1.0, 5.2.1.7, 5.3.0.0, and 5.3.3.0 is vulnerable to a \"zip slip\" vulnerability which could allow a remote attacker to execute code using directory traversal techniques. IBM X-Force ID: 151970." } ] }, diff --git a/2018/8xxx/CVE-2018-8009.json b/2018/8xxx/CVE-2018-8009.json index ae0ff145d43..9b916856d79 100644 --- a/2018/8xxx/CVE-2018-8009.json +++ b/2018/8xxx/CVE-2018-8009.json @@ -34,7 +34,7 @@ "description_data" : [ { "lang" : "eng", - "value" : "Hadoop is exploitable via the zip slip vulnerability in places that accept a zip file." + "value" : "Apache Hadoop 3.1.0, 3.0.0-alpha to 3.0.2, 2.9.0 to 2.9.1, 2.8.0 to 2.8.4, 2.0.0-alpha to 2.7.6, 0.23.0 to 0.23.11 is exploitable via the zip slip vulnerability in places that accept a zip file." } ] }, @@ -53,6 +53,8 @@ "references" : { "reference_data" : [ { + "name" : "https://hadoop.apache.org/cve_list.html#cve-2018-8009-http-cve-mitre-org-cgi-bin-cvename-cgi-name-cve-2018-8009-zip-slip-impact-on-apache-hadoop", + "refsource" : "MISC", "url" : "https://hadoop.apache.org/cve_list.html#cve-2018-8009-http-cve-mitre-org-cgi-bin-cvename-cgi-name-cve-2018-8009-zip-slip-impact-on-apache-hadoop" } ]