"-Synchronized-Data."

This commit is contained in:
CVE Team 2024-12-24 22:01:00 +00:00
parent a196a40a6e
commit ce149953ff
No known key found for this signature in database
GPG Key ID: BC5FD8F2443B23B7

View File

@ -1,81 +1,17 @@
{
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2024-36610",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2024-36610",
"ASSIGNER": "cve@mitre.org",
"STATE": "REJECT"
},
"description": {
"description_data": [
{
"lang": "eng",
"value": "** DISPUTED ** A deserialization vulnerability exists in the Stub class of the VarDumper module in Symfony v7.0.3. The vulnerability stems from deficiencies in the original implementation when handling properties with null or uninitialized values. An attacker could construct specific serialized data and use this vulnerability to execute unauthorized code. NOTE: the Supplier has concluded that this is a false report."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"url": "https://github.com/symfony/symfony/blob/v7.0.3/src/Symfony/Component/VarDumper/Cloner/Stub.php#L53",
"refsource": "MISC",
"name": "https://github.com/symfony/symfony/blob/v7.0.3/src/Symfony/Component/VarDumper/Cloner/Stub.php#L53"
},
{
"url": "https://github.com/symfony/symfony/commit/3ffd495bb3cc4d2e24e35b2d83c5b909cab7e259",
"refsource": "MISC",
"name": "https://github.com/symfony/symfony/commit/3ffd495bb3cc4d2e24e35b2d83c5b909cab7e259"
},
{
"refsource": "MISC",
"name": "https://gist.github.com/1047524396/24e93f2905850235e42ad7db6e878bd5",
"url": "https://gist.github.com/1047524396/24e93f2905850235e42ad7db6e878bd5"
},
{
"refsource": "MISC",
"name": "https://github.com/github/advisory-database/pull/5046",
"url": "https://github.com/github/advisory-database/pull/5046"
},
{
"refsource": "MISC",
"name": "https://github.com/symfony/symfony/issues/59077#issuecomment-2513935018",
"url": "https://github.com/symfony/symfony/issues/59077#issuecomment-2513935018"
"value": "** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage."
}
]
}