From e0129c8f5fb794de068a31d97731519ca872206b Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <101908552+octo-sts@users.noreply.github.com> Date: Thu, 21 Mar 2024 09:31:31 +0000 Subject: [PATCH] Adding Advisory GHSA-mq39-4gv4-mvpx for wolfictl --- wolfictl.advisories.yaml | 47 ++++++++++++++++++++++++++++------------ 1 file changed, 33 insertions(+), 14 deletions(-) diff --git a/wolfictl.advisories.yaml b/wolfictl.advisories.yaml index 5302be18f..2f21e5b76 100644 --- a/wolfictl.advisories.yaml +++ b/wolfictl.advisories.yaml @@ -42,40 +42,59 @@ advisories: data: fixed-version: 0.14.13-r0 - - id: GHSA-9763-4f94-gfch + - id: CVE-2024-28180 + aliases: + - GHSA-c5q2-7r4c-mv6g events: - - timestamp: 2024-01-11T07:20:11Z + - timestamp: 2024-03-08T07:35:09Z type: detection data: type: scan/v1 data: subpackageName: wolfictl - componentID: 1e68f4c9d36f367e - componentName: github.com/cloudflare/circl - componentVersion: v1.3.6 + componentID: 4f29ea779dca2fc0 + componentName: gopkg.in/go-jose/go-jose.v2 + componentVersion: v2.6.2 componentType: go-module componentLocation: /usr/bin/wolfictl scanner: grype - - timestamp: 2024-01-23T15:32:12Z + - timestamp: 2024-03-08T10:56:39Z type: fixed data: - fixed-version: 0.14.1-r0 + fixed-version: 0.15.3-r3 - - id: GHSA-c5q2-7r4c-mv6g + - id: CVE-2024-29018 + aliases: + - GHSA-mq39-4gv4-mvpx events: - - timestamp: 2024-03-08T07:35:09Z + - timestamp: 2024-03-21T09:31:30Z type: detection data: type: scan/v1 data: subpackageName: wolfictl - componentID: 4f29ea779dca2fc0 - componentName: gopkg.in/go-jose/go-jose.v2 - componentVersion: v2.6.2 + componentID: bc897b5baae4b79e + componentName: github.com/docker/docker + componentVersion: v25.0.4+incompatible componentType: go-module componentLocation: /usr/bin/wolfictl scanner: grype - - timestamp: 2024-03-08T10:56:39Z + + - id: GHSA-9763-4f94-gfch + events: + - timestamp: 2024-01-11T07:20:11Z + type: detection + data: + type: scan/v1 + data: + subpackageName: wolfictl + componentID: 1e68f4c9d36f367e + componentName: github.com/cloudflare/circl + componentVersion: v1.3.6 + componentType: go-module + componentLocation: /usr/bin/wolfictl + scanner: grype + - timestamp: 2024-01-23T15:32:12Z type: fixed data: - fixed-version: 0.15.3-r3 + fixed-version: 0.14.1-r0