diff --git a/2009/4xxx/CVE-2009-4623.json b/2009/4xxx/CVE-2009-4623.json index 269a2dd30e5..28098dd19f5 100644 --- a/2009/4xxx/CVE-2009-4623.json +++ b/2009/4xxx/CVE-2009-4623.json @@ -34,7 +34,7 @@ "description_data": [ { "lang": "eng", - "value": "Multiple PHP remote file inclusion vulnerabilities in Advanced Comment System 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the ACS_path parameter to (1) index.php and (2) admin.php in advanced_comment_system/. NOTE: this might only be a vulnerability when the administrator has not followed installation instructions in install.php." + "value": "Multiple PHP remote file inclusion vulnerabilities in Advanced Comment System 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the ACS_path parameter to (1) index.php and (2) admin.php in advanced_comment_system/. NOTE: this might only be a vulnerability when the administrator has not followed installation instructions in install.php. NOTE: this might be the same as CVE-2020-35598." } ] }, diff --git a/2018/11xxx/CVE-2018-11212.json b/2018/11xxx/CVE-2018-11212.json index 7f9336e5242..f50d8a9a04b 100644 --- a/2018/11xxx/CVE-2018-11212.json +++ b/2018/11xxx/CVE-2018-11212.json @@ -34,7 +34,7 @@ "description_data": [ { "lang": "eng", - "value": "An issue was discovered in libjpeg 9a. The alloc_sarray function in jmemmgr.c allows remote attackers to cause a denial of service (divide-by-zero error) via a crafted file." + "value": "An issue was discovered in libjpeg 9a and 9d. The alloc_sarray function in jmemmgr.c allows remote attackers to cause a denial of service (divide-by-zero error) via a crafted file." } ] }, @@ -117,6 +117,11 @@ "name": "RHSA-2019:0640", "url": "https://access.redhat.com/errata/RHSA-2019:0640" }, + { + "refsource": "MISC", + "name": "http://www.ijg.org/", + "url": "http://www.ijg.org/" + }, { "refsource": "REDHAT", "name": "RHSA-2019:1238", @@ -141,6 +146,11 @@ "refsource": "CONFIRM", "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03958en_us", "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03958en_us" + }, + { + "refsource": "MISC", + "name": "https://github.com/zzyyrr/divide-by-zero-in-libjpeg-9d.git", + "url": "https://github.com/zzyyrr/divide-by-zero-in-libjpeg-9d.git" } ] } diff --git a/2020/35xxx/CVE-2020-35598.json b/2020/35xxx/CVE-2020-35598.json index cd5c23ce063..30dbc27ef0e 100644 --- a/2020/35xxx/CVE-2020-35598.json +++ b/2020/35xxx/CVE-2020-35598.json @@ -34,7 +34,7 @@ "description_data": [ { "lang": "eng", - "value": "ACS Advanced Comment System 1.0 is affected by Directory Traversal via an advanced_component_system/index.php?ACS_path=..%2f URI." + "value": "ACS Advanced Comment System 1.0 is affected by Directory Traversal via an advanced_component_system/index.php?ACS_path=..%2f URI. NOTE: this might be the same as CVE-2009-4623" } ] }, diff --git a/2021/23xxx/CVE-2021-23239.json b/2021/23xxx/CVE-2021-23239.json new file mode 100644 index 00000000000..3b4fed58c88 --- /dev/null +++ b/2021/23xxx/CVE-2021-23239.json @@ -0,0 +1,18 @@ +{ + "data_type": "CVE", + "data_format": "MITRE", + "data_version": "4.0", + "CVE_data_meta": { + "ID": "CVE-2021-23239", + "ASSIGNER": "cve@mitre.org", + "STATE": "RESERVED" + }, + "description": { + "description_data": [ + { + "lang": "eng", + "value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided." + } + ] + } +} \ No newline at end of file diff --git a/2021/23xxx/CVE-2021-23240.json b/2021/23xxx/CVE-2021-23240.json new file mode 100644 index 00000000000..c555cd8f6bc --- /dev/null +++ b/2021/23xxx/CVE-2021-23240.json @@ -0,0 +1,18 @@ +{ + "data_type": "CVE", + "data_format": "MITRE", + "data_version": "4.0", + "CVE_data_meta": { + "ID": "CVE-2021-23240", + "ASSIGNER": "cve@mitre.org", + "STATE": "RESERVED" + }, + "description": { + "description_data": [ + { + "lang": "eng", + "value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided." + } + ] + } +} \ No newline at end of file