From d620240d9924859d0cbb7d7dfc36c77ba87be805 Mon Sep 17 00:00:00 2001 From: cvelistV5 Github Action Date: Tue, 31 Dec 2024 08:46:30 +0000 Subject: [PATCH] 1 changes (1 new | 0 updated): - 1 new CVEs: CVE-2024-49422 - 0 updated CVEs: --- cves/2024/49xxx/CVE-2024-49422.json | 75 +++++++++++++++++++++++++++++ cves/delta.json | 14 +++--- cves/deltaLog.json | 14 ++++++ 3 files changed, 96 insertions(+), 7 deletions(-) create mode 100644 cves/2024/49xxx/CVE-2024-49422.json diff --git a/cves/2024/49xxx/CVE-2024-49422.json b/cves/2024/49xxx/CVE-2024-49422.json new file mode 100644 index 000000000000..34a38679a39b --- /dev/null +++ b/cves/2024/49xxx/CVE-2024-49422.json @@ -0,0 +1,75 @@ +{ + "dataType": "CVE_RECORD", + "dataVersion": "5.1", + "cveMetadata": { + "cveId": "CVE-2024-49422", + "assignerOrgId": "3af57064-a867-422c-b2ad-40307b65c458", + "state": "PUBLISHED", + "assignerShortName": "SamsungMobile", + "dateReserved": "2024-10-15T05:26:08.661Z", + "datePublished": "2024-12-31T08:39:54.090Z", + "dateUpdated": "2024-12-31T08:43:13.628Z" + }, + "containers": { + "cna": { + "problemTypes": [ + { + "descriptions": [ + { + "lang": "en", + "description": "CWE-693: Protection Mechanism Failure" + } + ] + } + ], + "affected": [ + { + "vendor": "Samsung Mobile", + "product": "Samsung Mobile Devices", + "versions": [ + { + "status": "unaffected", + "version": "SMR Oct-2024 Release in Select Android 13 devices using Unisoc chipset" + } + ], + "defaultStatus": "affected" + } + ], + "descriptions": [ + { + "lang": "en", + "value": "Protection Mechanism Failure in bootloader prior to SMR Oct-2024 Release 1 allows physical attackers to reset lockscreen failure count by hardware fault injection. User interaction is required for triggering this vulnerability." + } + ], + "references": [ + { + "url": "https://security.samsungmobile.com/securityUpdate.smsb?year=2024&month=10" + } + ], + "metrics": [ + { + "format": "CVSS", + "cvssV3_1": { + "version": "3.1", + "attackVector": "PHYSICAL", + "attackComplexity": "LOW", + "privilegesRequired": "LOW", + "userInteraction": "REQUIRED", + "scope": "UNCHANGED", + "confidentialityImpact": "LOW", + "integrityImpact": "HIGH", + "availabilityImpact": "LOW", + "baseSeverity": "MEDIUM", + "baseScore": 5.2, + "vectorString": "CVSS:3.1/AV:P/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:L" + } + } + ], + "providerMetadata": { + "orgId": "3af57064-a867-422c-b2ad-40307b65c458", + "shortName": "SamsungMobile", + "dateUpdated": "2024-12-31T08:43:13.628Z" + } + } + } +} \ No newline at end of file diff --git a/cves/delta.json b/cves/delta.json index 2bda5fff6b83..70a2e9712b1d 100644 --- a/cves/delta.json +++ b/cves/delta.json @@ -1,14 +1,14 @@ { - "fetchTime": "2024-12-31T07:09:49.697Z", + "fetchTime": "2024-12-31T08:46:18.876Z", "numberOfChanges": 1, - "new": [], - "updated": [ + "new": [ { - "cveId": "CVE-2024-51464", - "cveOrgLink": "https://www.cve.org/CVERecord?id=CVE-2024-51464", - "githubLink": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2024/51xxx/CVE-2024-51464.json", - "dateUpdated": "2024-12-31T07:02:42.570Z" + "cveId": "CVE-2024-49422", + "cveOrgLink": "https://www.cve.org/CVERecord?id=CVE-2024-49422", + "githubLink": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2024/49xxx/CVE-2024-49422.json", + "dateUpdated": "2024-12-31T08:43:13.628Z" } ], + "updated": [], "error": [] } \ No newline at end of file diff --git a/cves/deltaLog.json b/cves/deltaLog.json index 7f57b3ff77d7..08940eac37e2 100644 --- a/cves/deltaLog.json +++ b/cves/deltaLog.json @@ -1,4 +1,18 @@ [ + { + "fetchTime": "2024-12-31T08:46:18.876Z", + "numberOfChanges": 1, + "new": [ + { + "cveId": "CVE-2024-49422", + "cveOrgLink": "https://www.cve.org/CVERecord?id=CVE-2024-49422", + "githubLink": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2024/49xxx/CVE-2024-49422.json", + "dateUpdated": "2024-12-31T08:43:13.628Z" + } + ], + "updated": [], + "error": [] + }, { "fetchTime": "2024-12-31T07:09:49.697Z", "numberOfChanges": 1,