diff --git a/CVE-2024/CVE-2024-80xx/CVE-2024-8011.json b/CVE-2024/CVE-2024-80xx/CVE-2024-8011.json new file mode 100644 index 00000000000..d893dcc1aee --- /dev/null +++ b/CVE-2024/CVE-2024-80xx/CVE-2024-8011.json @@ -0,0 +1,78 @@ +{ + "id": "CVE-2024-8011", + "sourceIdentifier": "cve-coordination@logitech.com", + "published": "2024-08-25T12:15:03.940", + "lastModified": "2024-08-25T12:15:03.940", + "vulnStatus": "Received", + "cveTags": [], + "descriptions": [ + { + "lang": "en", + "value": "Logitech Options+ on MacOS prior 1.72 allows a local attacker to inject dynamic library within Options+ runtime and abuse permissions granted by the user to Options+ such as Camera." + } + ], + "metrics": { + "cvssMetricV40": [ + { + "source": "cve-coordination@logitech.com", + "type": "Secondary", + "cvssData": { + "version": "4.0", + "vectorString": "CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:L/VI:L/VA:L/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X", + "attackVector": "LOCAL", + "attackComplexity": "LOW", + "attackRequirements": "PRESENT", + "privilegesRequired": "LOW", + "userInteraction": "NONE", + "vulnerableSystemConfidentiality": "LOW", + "vulnerableSystemIntegrity": "LOW", + "vulnerableSystemAvailability": "LOW", + "subsequentSystemConfidentiality": "LOW", + "subsequentSystemIntegrity": "LOW", + "subsequentSystemAvailability": "LOW", + "exploitMaturity": "NOT_DEFINED", + "confidentialityRequirements": "NOT_DEFINED", + "integrityRequirements": "NOT_DEFINED", + "availabilityRequirements": "NOT_DEFINED", + "modifiedAttackVector": "NOT_DEFINED", + "modifiedAttackComplexity": "NOT_DEFINED", + "modifiedAttackRequirements": "NOT_DEFINED", + "modifiedPrivilegesRequired": "NOT_DEFINED", + "modifiedUserInteraction": "NOT_DEFINED", + "modifiedVulnerableSystemConfidentiality": "NOT_DEFINED", + "modifiedVulnerableSystemIntegrity": "NOT_DEFINED", + "modifiedVulnerableSystemAvailability": "NOT_DEFINED", + "modifiedSubsequentSystemConfidentiality": "NOT_DEFINED", + "modifiedSubsequentSystemIntegrity": "NOT_DEFINED", + "modifiedSubsequentSystemAvailability": "NOT_DEFINED", + "safety": "NOT_DEFINED", + "automatable": "NOT_DEFINED", + "recovery": "NOT_DEFINED", + "valueDensity": "NOT_DEFINED", + "vulnerabilityResponseEffort": "NOT_DEFINED", + "providerUrgency": "NOT_DEFINED", + "baseScore": 2.0, + "baseSeverity": "LOW" + } + } + ] + }, + "weaknesses": [ + { + "source": "cve-coordination@logitech.com", + "type": "Secondary", + "description": [ + { + "lang": "en", + "value": "CWE-863" + } + ] + } + ], + "references": [ + { + "url": "https://www.hackerone.com", + "source": "cve-coordination@logitech.com" + } + ] +} \ No newline at end of file diff --git a/README.md b/README.md index 25513697416..a49f7f3e80e 100644 --- a/README.md +++ b/README.md @@ -13,13 +13,13 @@ Repository synchronizes with the NVD every 2 hours. ### Last Repository Update ```plain -2024-08-25T10:00:16.889136+00:00 +2024-08-25T14:00:17.562339+00:00 ``` ### Most recent CVE Modification Timestamp synchronized with NVD ```plain -2024-08-25T09:15:04.243000+00:00 +2024-08-25T12:15:03.940000+00:00 ``` ### Last Data Feed Release @@ -33,16 +33,14 @@ Download and Changelog: [Click](https://github.com/fkie-cad/nvd-json-data-feeds/ ### Total Number of included CVEs ```plain -261113 +261114 ``` ### CVEs added in the last Commit -Recently added CVEs: `3` +Recently added CVEs: `1` -- [CVE-2024-42340](CVE-2024/CVE-2024-423xx/CVE-2024-42340.json) (`2024-08-25T08:15:03.290`) -- [CVE-2024-8146](CVE-2024/CVE-2024-81xx/CVE-2024-8146.json) (`2024-08-25T08:15:03.597`) -- [CVE-2024-8147](CVE-2024/CVE-2024-81xx/CVE-2024-8147.json) (`2024-08-25T09:15:04.243`) +- [CVE-2024-8011](CVE-2024/CVE-2024-80xx/CVE-2024-8011.json) (`2024-08-25T12:15:03.940`) ### CVEs modified in the last Commit diff --git a/_state.csv b/_state.csv index b7e8fc84694..2691079a3e5 100644 --- a/_state.csv +++ b/_state.csv @@ -257700,7 +257700,7 @@ CVE-2024-42337,0,0,47e1940a0e7d8f836173649e1092c05c4a599d6952732f048ef06f63fe0c6 CVE-2024-42338,0,0,00b1ab80b5a0024a676edd49282a142c1d301f4b5e828f08f344e9a0e94c0116,2024-08-25T07:15:10.350000 CVE-2024-42339,0,0,f4ee840292c50c15be4fdc2b991811af45baa71c81082da6eef96531aabf104d,2024-08-25T07:15:11.067000 CVE-2024-4234,0,0,18c98986f4d0c323ca7a76881b57d07f11d740fced15b647da44016411c790ed,2024-04-26T15:32:22.523000 -CVE-2024-42340,1,1,9ca332630bfc51f7c0e6be2bc1bb935ca544861351b51e7eb13a40e4f63659ec,2024-08-25T08:15:03.290000 +CVE-2024-42340,0,0,9ca332630bfc51f7c0e6be2bc1bb935ca544861351b51e7eb13a40e4f63659ec,2024-08-25T08:15:03.290000 CVE-2024-42347,0,0,9d56c3d6f460e2251d08d50a3e874b7efeb364cadb050367418d1be0b31e15cb,2024-08-12T18:52:08.163000 CVE-2024-42348,0,0,9049ba06c12fadbe924de4e1d7650091813be7f3a3306b9434f7ebd8620eed32,2024-08-05T12:41:45.957000 CVE-2024-42349,0,0,7c83a1a3a31095b7c061367c56e1e2185d3951ede9de2f7c2b93de97074131bc,2024-08-05T12:41:45.957000 @@ -261068,6 +261068,7 @@ CVE-2024-7998,0,0,8aa3505a1b6ed462573d7b65c55c5633ff88a81168885ae03bec6b1db69a21 CVE-2024-8003,0,0,1eb6cc8bd16248d54ed281136e233da0a723cb74879af6e3337c9532a3caf8e1,2024-08-21T15:51:28.397000 CVE-2024-8005,0,0,c059370cb975aea915e5671e32cb80d879151797480dbd5423b1593aeba96675,2024-08-21T15:49:59.470000 CVE-2024-8007,0,0,52ca9c0e82e8a1b579386af92379a7290d3dc66a84196be21e42591213ed68f8,2024-08-23T17:06:04.643000 +CVE-2024-8011,1,1,f7b172cd61d836dc695f98f26e0e99095a8eb820b02c4a46480834b5f4e9a24d,2024-08-25T12:15:03.940000 CVE-2024-8022,0,0,469d074c70ed4d6e1b7ca7023005d3bb3e3f23419b5a39b3540fd69e34fadcaa,2024-08-21T12:30:33.697000 CVE-2024-8023,0,0,7f1c10536d9d4e1a728f09b10c1ff35f77d0bba503a7c61c411fbfd5f6584d46,2024-08-21T12:30:33.697000 CVE-2024-8033,0,0,a55cf019f91370d30ea7734ed696c6e008634912634c88c606ef5f6209b81cb2,2024-08-22T17:36:07.673000 @@ -261110,5 +261111,5 @@ CVE-2024-8141,0,0,5b89c55608dc7c94dcc3a41a381072a0d3a68ce11de5be1e80b6665e2959a8 CVE-2024-8142,0,0,fcb738cd7c7aaf1f9f023d59895853a768ef11a919deeb1ffc545380a5d50560,2024-08-25T03:15:03.673000 CVE-2024-8144,0,0,88fed21edfd93fa7bca725ad2225251a9d109041c2e48809ee1ed796915b95a8,2024-08-25T04:15:03.867000 CVE-2024-8145,0,0,78b78143837f5c0df569416f880d975eb45acf9e0ac0d1c0640b30f4b266e1ba,2024-08-25T06:15:03.910000 -CVE-2024-8146,1,1,1a014ee97b984953eab99f79670e8f6f85a815565363ce01758e7ec2838e752e,2024-08-25T08:15:03.597000 -CVE-2024-8147,1,1,1943d5219ce6820bb91164b12575bc9bc6449d1368374a8bac82f600f631e34c,2024-08-25T09:15:04.243000 +CVE-2024-8146,0,0,1a014ee97b984953eab99f79670e8f6f85a815565363ce01758e7ec2838e752e,2024-08-25T08:15:03.597000 +CVE-2024-8147,0,0,1943d5219ce6820bb91164b12575bc9bc6449d1368374a8bac82f600f631e34c,2024-08-25T09:15:04.243000