From 6254a560feca872345b6bb5ae70aed5df2b95ccc Mon Sep 17 00:00:00 2001 From: CVE Team Date: Thu, 2 Nov 2023 18:00:32 +0000 Subject: [PATCH] "-Synchronized-Data." --- 2023/1xxx/CVE-2023-1177.json | 8 ++++---- 2023/43xxx/CVE-2023-43800.json | 10 ++++++++++ 2023/43xxx/CVE-2023-43801.json | 10 ++++++++++ 2023/43xxx/CVE-2023-43802.json | 10 ++++++++++ 2023/43xxx/CVE-2023-43803.json | 10 ++++++++++ 2023/5xxx/CVE-2023-5939.json | 18 ++++++++++++++++++ 2023/5xxx/CVE-2023-5940.json | 18 ++++++++++++++++++ 7 files changed, 80 insertions(+), 4 deletions(-) create mode 100644 2023/5xxx/CVE-2023-5939.json create mode 100644 2023/5xxx/CVE-2023-5940.json diff --git a/2023/1xxx/CVE-2023-1177.json b/2023/1xxx/CVE-2023-1177.json index 11e569dd970..4b644eecab0 100644 --- a/2023/1xxx/CVE-2023-1177.json +++ b/2023/1xxx/CVE-2023-1177.json @@ -79,15 +79,15 @@ { "attackComplexity": "LOW", "attackVector": "NETWORK", - "availabilityImpact": "LOW", - "baseScore": 10, + "availabilityImpact": "NONE", + "baseScore": 9.3, "baseSeverity": "CRITICAL", "confidentialityImpact": "HIGH", - "integrityImpact": "HIGH", + "integrityImpact": "LOW", "privilegesRequired": "NONE", "scope": "CHANGED", "userInteraction": "NONE", - "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:L", + "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N", "version": "3.1" } ] diff --git a/2023/43xxx/CVE-2023-43800.json b/2023/43xxx/CVE-2023-43800.json index c465966590d..b32b5fa5da3 100644 --- a/2023/43xxx/CVE-2023-43800.json +++ b/2023/43xxx/CVE-2023-43800.json @@ -58,6 +58,16 @@ "url": "https://github.com/arduino/arduino-create-agent/security/advisories/GHSA-4x5q-q7wc-q22p", "refsource": "MISC", "name": "https://github.com/arduino/arduino-create-agent/security/advisories/GHSA-4x5q-q7wc-q22p" + }, + { + "url": "https://github.com/arduino/arduino-create-agent/releases/tag/1.3.3", + "refsource": "MISC", + "name": "https://github.com/arduino/arduino-create-agent/releases/tag/1.3.3" + }, + { + "url": "https://www.nozominetworks.com/blog/security-flaws-affect-a-component-of-the-arduino-create-cloud-ide", + "refsource": "MISC", + "name": "https://www.nozominetworks.com/blog/security-flaws-affect-a-component-of-the-arduino-create-cloud-ide" } ] }, diff --git a/2023/43xxx/CVE-2023-43801.json b/2023/43xxx/CVE-2023-43801.json index caf21b47db1..daa2a3d85e5 100644 --- a/2023/43xxx/CVE-2023-43801.json +++ b/2023/43xxx/CVE-2023-43801.json @@ -58,6 +58,16 @@ "url": "https://github.com/arduino/arduino-create-agent/security/advisories/GHSA-mjq6-pv9c-qppq", "refsource": "MISC", "name": "https://github.com/arduino/arduino-create-agent/security/advisories/GHSA-mjq6-pv9c-qppq" + }, + { + "url": "https://github.com/arduino/arduino-create-agent/releases/tag/1.3.3", + "refsource": "MISC", + "name": "https://github.com/arduino/arduino-create-agent/releases/tag/1.3.3" + }, + { + "url": "https://www.nozominetworks.com/blog/security-flaws-affect-a-component-of-the-arduino-create-cloud-ide", + "refsource": "MISC", + "name": "https://www.nozominetworks.com/blog/security-flaws-affect-a-component-of-the-arduino-create-cloud-ide" } ] }, diff --git a/2023/43xxx/CVE-2023-43802.json b/2023/43xxx/CVE-2023-43802.json index 203f35f96b3..7d736f66607 100644 --- a/2023/43xxx/CVE-2023-43802.json +++ b/2023/43xxx/CVE-2023-43802.json @@ -58,6 +58,16 @@ "url": "https://github.com/arduino/arduino-create-agent/security/advisories/GHSA-75j7-w798-cwwx", "refsource": "MISC", "name": "https://github.com/arduino/arduino-create-agent/security/advisories/GHSA-75j7-w798-cwwx" + }, + { + "url": "https://github.com/arduino/arduino-create-agent/releases/tag/1.3.3", + "refsource": "MISC", + "name": "https://github.com/arduino/arduino-create-agent/releases/tag/1.3.3" + }, + { + "url": "https://www.nozominetworks.com/blog/security-flaws-affect-a-component-of-the-arduino-create-cloud-ide", + "refsource": "MISC", + "name": "https://www.nozominetworks.com/blog/security-flaws-affect-a-component-of-the-arduino-create-cloud-ide" } ] }, diff --git a/2023/43xxx/CVE-2023-43803.json b/2023/43xxx/CVE-2023-43803.json index f189753462a..ca7f30d6ed2 100644 --- a/2023/43xxx/CVE-2023-43803.json +++ b/2023/43xxx/CVE-2023-43803.json @@ -58,6 +58,16 @@ "url": "https://github.com/arduino/arduino-create-agent/security/advisories/GHSA-m5jc-r4gf-c6p8", "refsource": "MISC", "name": "https://github.com/arduino/arduino-create-agent/security/advisories/GHSA-m5jc-r4gf-c6p8" + }, + { + "url": "https://github.com/arduino/arduino-create-agent/releases/tag/1.3.3", + "refsource": "MISC", + "name": "https://github.com/arduino/arduino-create-agent/releases/tag/1.3.3" + }, + { + "url": "https://www.nozominetworks.com/blog/security-flaws-affect-a-component-of-the-arduino-create-cloud-ide", + "refsource": "MISC", + "name": "https://www.nozominetworks.com/blog/security-flaws-affect-a-component-of-the-arduino-create-cloud-ide" } ] }, diff --git a/2023/5xxx/CVE-2023-5939.json b/2023/5xxx/CVE-2023-5939.json new file mode 100644 index 00000000000..df2919df03b --- /dev/null +++ b/2023/5xxx/CVE-2023-5939.json @@ -0,0 +1,18 @@ +{ + "data_type": "CVE", + "data_format": "MITRE", + "data_version": "4.0", + "CVE_data_meta": { + "ID": "CVE-2023-5939", + "ASSIGNER": "cve@mitre.org", + "STATE": "RESERVED" + }, + "description": { + "description_data": [ + { + "lang": "eng", + "value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided." + } + ] + } +} \ No newline at end of file diff --git a/2023/5xxx/CVE-2023-5940.json b/2023/5xxx/CVE-2023-5940.json new file mode 100644 index 00000000000..2fc624180ea --- /dev/null +++ b/2023/5xxx/CVE-2023-5940.json @@ -0,0 +1,18 @@ +{ + "data_type": "CVE", + "data_format": "MITRE", + "data_version": "4.0", + "CVE_data_meta": { + "ID": "CVE-2023-5940", + "ASSIGNER": "cve@mitre.org", + "STATE": "RESERVED" + }, + "description": { + "description_data": [ + { + "lang": "eng", + "value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided." + } + ] + } +} \ No newline at end of file