diff --git a/CVE-2024/CVE-2024-67xx/CVE-2024-6790.json b/CVE-2024/CVE-2024-67xx/CVE-2024-6790.json new file mode 100644 index 00000000000..dc3c79fcf7b --- /dev/null +++ b/CVE-2024/CVE-2024-67xx/CVE-2024-6790.json @@ -0,0 +1,33 @@ +{ + "id": "CVE-2024-6790", + "sourceIdentifier": "arm-security@arm.com", + "published": "2025-02-03T11:15:09.583", + "lastModified": "2025-02-03T11:15:09.583", + "vulnStatus": "Received", + "cveTags": [], + "descriptions": [ + { + "lang": "en", + "value": "Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a non-privileged user process to make valid GPU memory processing operations, including via WebGL or WebGPU, to cause the whole system to become unresponsive.This issue affects Bifrost GPU Kernel Driver: r44p1, from r46p0 through r49p0, from r50p0 through r51p0; Valhall GPU Kernel Driver: r44p1, from r46p0 through r49p0, from r50p0 through r51p0; Arm 5th Gen GPU Architecture Kernel Driver: r44p1, from r46p0 through r49p0, from r50p0 through r51p0." + } + ], + "metrics": {}, + "weaknesses": [ + { + "source": "arm-security@arm.com", + "type": "Secondary", + "description": [ + { + "lang": "en", + "value": "CWE-835" + } + ] + } + ], + "references": [ + { + "url": "https://developer.arm.com/Arm%20Security%20Center/Mali%20GPU%20Driver%20Vulnerabilities", + "source": "arm-security@arm.com" + } + ] +} \ No newline at end of file diff --git a/CVE-2025/CVE-2025-00xx/CVE-2025-0015.json b/CVE-2025/CVE-2025-00xx/CVE-2025-0015.json new file mode 100644 index 00000000000..80e1aa66a86 --- /dev/null +++ b/CVE-2025/CVE-2025-00xx/CVE-2025-0015.json @@ -0,0 +1,33 @@ +{ + "id": "CVE-2025-0015", + "sourceIdentifier": "arm-security@arm.com", + "published": "2025-02-03T11:15:09.807", + "lastModified": "2025-02-03T11:15:09.807", + "vulnStatus": "Received", + "cveTags": [], + "descriptions": [ + { + "lang": "en", + "value": "Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to make improper GPU processing operations to gain access to already freed memory.This issue affects Valhall GPU Kernel Driver: from r48p0 through r49p1, from r50p0 through r52p0; Arm 5th Gen GPU Architecture Kernel Driver: from r48p0 through r49p1, from r50p0 through r52p0." + } + ], + "metrics": {}, + "weaknesses": [ + { + "source": "arm-security@arm.com", + "type": "Secondary", + "description": [ + { + "lang": "en", + "value": "CWE-416" + } + ] + } + ], + "references": [ + { + "url": "https://developer.arm.com/Arm%20Security%20Center/Mali%20GPU%20Driver%20Vulnerabilities", + "source": "arm-security@arm.com" + } + ] +} \ No newline at end of file diff --git a/README.md b/README.md index 5702049e613..6eb201e5973 100644 --- a/README.md +++ b/README.md @@ -13,13 +13,13 @@ Repository synchronizes with the NVD every 2 hours. ### Last Repository Update ```plain -2025-02-03T11:00:25.249594+00:00 +2025-02-03T13:00:34.856374+00:00 ``` ### Most recent CVE Modification Timestamp synchronized with NVD ```plain -2025-02-03T10:15:09.250000+00:00 +2025-02-03T11:15:09.807000+00:00 ``` ### Last Data Feed Release @@ -33,20 +33,21 @@ Download and Changelog: [Click](https://github.com/fkie-cad/nvd-json-data-feeds/ ### Total Number of included CVEs ```plain -279788 +279790 ``` ### CVEs added in the last Commit -Recently added CVEs: `0` +Recently added CVEs: `2` +- [CVE-2024-6790](CVE-2024/CVE-2024-67xx/CVE-2024-6790.json) (`2025-02-03T11:15:09.583`) +- [CVE-2025-0015](CVE-2025/CVE-2025-00xx/CVE-2025-0015.json) (`2025-02-03T11:15:09.807`) ### CVEs modified in the last Commit -Recently modified CVEs: `1` +Recently modified CVEs: `0` -- [CVE-2025-23013](CVE-2025/CVE-2025-230xx/CVE-2025-23013.json) (`2025-02-03T10:15:09.250`) ## Download and Usage diff --git a/_state.csv b/_state.csv index 0a6d9df9741..98f6bf2a58f 100644 --- a/_state.csv +++ b/_state.csv @@ -275178,6 +275178,7 @@ CVE-2024-6786,0,0,24b60530c6034531c77c2d1b48861d1803ea99b2f9c33031d04caaeed70b36 CVE-2024-6787,0,0,90cf15e57425c43b775634b4354b40060025f05d6eaf18a16dd08f964b080f1e,2024-09-30T18:02:51.080000 CVE-2024-6788,0,0,d8b0a1fa7769433e763a36830a142df8174d088944fec86d083b39a4d3db018a,2025-01-23T18:57:17.443000 CVE-2024-6789,0,0,4b9a8b21a7b8d3b3122250d144669cc58eda4febe37ff5f20b051cf858077c6c,2024-09-16T07:15:03.877000 +CVE-2024-6790,1,1,c9ba82118eb198dcab7bef258c9b51e7baba4ab494c959cbdc0eda80f665bed4,2025-02-03T11:15:09.583000 CVE-2024-6791,0,0,e4d85f8fb40ccafaaf4e816bcb0b2f9bebe7794b5d079179e81702c8126cea44,2024-11-21T09:50:20.043000 CVE-2024-6792,0,0,2dec27d0d2b25a881ca7ccc36c231e588713f0bac92b84e46fea473abaf6d1e4,2024-09-06T13:35:02.020000 CVE-2024-6793,0,0,089acc836001f0515cb87092cae48bd40391064797e4f212fffbdb1dff2f2803,2024-11-21T09:50:20.327000 @@ -277885,6 +277886,7 @@ CVE-2024-9996,0,0,433ba4c226a5a6d2212e25ce0b55b45b5a0aaae59192553eedeafbaec42bc6 CVE-2024-9997,0,0,c951d1dfad7abcf434414a546a4fccad53052e3fa40c16bd73a8c37c97d5eba8,2024-11-01T16:27:34.960000 CVE-2024-9998,0,0,0419a3dad23ae850906f2650ca4d40b180999b4a5d360bcc1b838f8893ae2af5,2024-11-12T11:15:03.840000 CVE-2024-9999,0,0,cad7c92a380ae514b71a1dd06f3b79a139ea65cb773110d32be2b942d72ae5af,2024-11-13T17:01:58.603000 +CVE-2025-0015,1,1,6c32934e2662360f0aaf48ec9aead33ec5d7f507933dfb79b328ded43c444db8,2025-02-03T11:15:09.807000 CVE-2025-0053,0,0,b8373307f8e7839c7035660b5035e0ad8594f9f834cb4c64706371a8c3a2ce31,2025-01-14T01:15:15.403000 CVE-2025-0055,0,0,0e89795bc87c51adbc679d78b37bf974fd01b97679ad0635934ee83322d4b078,2025-01-14T01:15:15.570000 CVE-2025-0056,0,0,be034bcd972f419ff8782984466cba082295f005cb1c5e6f9c99f15962645479,2025-01-14T01:15:15.730000 @@ -279016,7 +279018,7 @@ CVE-2025-23006,0,0,b3740c3859b8a4699d7be6a4cb26c3615e83be583cc4689a6f760ded3dcd5 CVE-2025-23007,0,0,7a82ccd68ff0865dca2d931df3c91220e1f0e4aa623d29dba6dab4a9e33e015f,2025-01-30T14:15:38.300000 CVE-2025-23011,0,0,e1508533745c9f7f98be3acacde5d6ca10add477d1fd79aed1bf9e86cc6ef3d1,2025-01-23T21:15:15.010000 CVE-2025-23012,0,0,4144c7c04d6906517f8095afa2037f5c23ae5b66e1436bb46ba5acc8347710af,2025-01-23T21:15:15.173000 -CVE-2025-23013,0,1,41312d3c40b04a23352f5579b00dccd945ae6a58acc9182af7bda141c59bc5af,2025-02-03T10:15:09.250000 +CVE-2025-23013,0,0,41312d3c40b04a23352f5579b00dccd945ae6a58acc9182af7bda141c59bc5af,2025-02-03T10:15:09.250000 CVE-2025-23016,0,0,d6f57b5b395a069df7f809c3df8ada91e41979cd2f4b4f4edc46accb02e126b8,2025-01-10T12:15:25.480000 CVE-2025-23018,0,0,56e80d02e024f696b384ef49ed4d211481ba7fbade5b33c2ad0870cd52e237b6,2025-01-29T18:01:47.313000 CVE-2025-23019,0,0,d086114380d5b72aae48f2dd063fe423ce3274d7a5a6c9dc170a5da44914e82d,2025-01-29T18:02:06.240000