diff --git a/data/anchore/2024/CVE-2024-2004.json b/data/anchore/2024/CVE-2024-2004.json new file mode 100644 index 00000000..53c4f9ed --- /dev/null +++ b/data/anchore/2024/CVE-2024-2004.json @@ -0,0 +1,38 @@ +{ + "additionalMetadata": { + "cna": "curl", + "cveId": "CVE-2024-2004", + "reason": "Added CPE configurations because not yet analyzed by NVD.", + "references": [ + "https://hackerone.com/reports/2384833", + "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GMD6UYKCCRCYETWQZUJ65ZRFULT6SHLI/", + "https://curl.se/docs/CVE-2024-2004.json", + "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2D44YLAUFJU6BZ4XFG2FYV7SBKXB5IZ6/", + "http://www.openwall.com/lists/oss-security/2024/03/27/1", + "https://curl.se/docs/CVE-2024-2004.html" + ] + }, + "adp": { + "affected": [ + { + "cpes": [ + "cpe:2.3:a:haxx:curl:*:*:*:*:*:*:*:*" + ], + "product": "curl", + "vendor": "curl", + "versions": [ + { + "lessThan": "8.7.0", + "status": "affected", + "version": "7.85.0", + "versionType": "semver" + } + ] + } + ], + "providerMetadata": { + "orgId": "00000000-0000-4000-8000-000000000000", + "shortName": "anchoreadp" + } + } +} \ No newline at end of file diff --git a/data/anchore/2024/CVE-2024-2379.json b/data/anchore/2024/CVE-2024-2379.json new file mode 100644 index 00000000..184d1c8b --- /dev/null +++ b/data/anchore/2024/CVE-2024-2379.json @@ -0,0 +1,36 @@ +{ + "additionalMetadata": { + "cna": "curl", + "cveId": "CVE-2024-2379", + "reason": "Added CPE configurations because not yet analyzed by NVD.", + "references": [ + "https://curl.se/docs/CVE-2024-2379.html", + "https://hackerone.com/reports/2410774", + "http://www.openwall.com/lists/oss-security/2024/03/27/2", + "https://curl.se/docs/CVE-2024-2379.json" + ] + }, + "adp": { + "affected": [ + { + "cpes": [ + "cpe:2.3:a:haxx:curl:*:*:*:*:*:*:*:*" + ], + "product": "curl", + "vendor": "curl", + "versions": [ + { + "lessThan": "8.7.0", + "status": "affected", + "version": "8.6.0", + "versionType": "semver" + } + ] + } + ], + "providerMetadata": { + "orgId": "00000000-0000-4000-8000-000000000000", + "shortName": "anchoreadp" + } + } +} \ No newline at end of file diff --git a/data/anchore/2024/CVE-2024-2398.json b/data/anchore/2024/CVE-2024-2398.json new file mode 100644 index 00000000..6c7991e0 --- /dev/null +++ b/data/anchore/2024/CVE-2024-2398.json @@ -0,0 +1,39 @@ +{ + "additionalMetadata": { + "cna": "curl", + "cveId": "CVE-2024-2398", + "reason": "Added CPE configurations because not yet analyzed by NVD.", + "references": [ + "https://security.netapp.com/advisory/ntap-20240503-0009/", + "https://hackerone.com/reports/2402845", + "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GMD6UYKCCRCYETWQZUJ65ZRFULT6SHLI/", + "https://curl.se/docs/CVE-2024-2398.html", + "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2D44YLAUFJU6BZ4XFG2FYV7SBKXB5IZ6/", + "https://curl.se/docs/CVE-2024-2398.json", + "http://www.openwall.com/lists/oss-security/2024/03/27/3" + ] + }, + "adp": { + "affected": [ + { + "cpes": [ + "cpe:2.3:a:haxx:curl:*:*:*:*:*:*:*:*" + ], + "product": "curl", + "vendor": "curl", + "versions": [ + { + "lessThan": "8.7.0", + "status": "affected", + "version": "7.4.4", + "versionType": "semver" + } + ] + } + ], + "providerMetadata": { + "orgId": "00000000-0000-4000-8000-000000000000", + "shortName": "anchoreadp" + } + } +} \ No newline at end of file diff --git a/data/anchore/2024/CVE-2024-2466.json b/data/anchore/2024/CVE-2024-2466.json new file mode 100644 index 00000000..04b39847 --- /dev/null +++ b/data/anchore/2024/CVE-2024-2466.json @@ -0,0 +1,38 @@ +{ + "additionalMetadata": { + "cna": "curl", + "cveId": "CVE-2024-2466", + "needsReview": true, + "reason": "Added CPE configurations because not yet analyzed by NVD.", + "references": [ + "https://hackerone.com/reports/2416725", + "https://security.netapp.com/advisory/ntap-20240503-0010/", + "http://www.openwall.com/lists/oss-security/2024/03/27/4", + "https://curl.se/docs/CVE-2024-2466.html", + "https://curl.se/docs/CVE-2024-2466.json" + ] + }, + "adp": { + "affected": [ + { + "cpes": [ + "cpe:2.3:a:haxx:curl:*:*:*:*:*:*:*:*" + ], + "product": "curl", + "vendor": "curl", + "versions": [ + { + "lessThan": "8.7.0", + "status": "affected", + "version": "8.5.0", + "versionType": "semver" + } + ] + } + ], + "providerMetadata": { + "orgId": "00000000-0000-4000-8000-000000000000", + "shortName": "anchoreadp" + } + } +} \ No newline at end of file