diff --git a/advisories/github-reviewed/2019/03/GHSA-h436-432x-8fvx/GHSA-h436-432x-8fvx.json b/advisories/github-reviewed/2019/03/GHSA-h436-432x-8fvx/GHSA-h436-432x-8fvx.json index 4f704ab0cc537..5e8e453ee18b1 100644 --- a/advisories/github-reviewed/2019/03/GHSA-h436-432x-8fvx/GHSA-h436-432x-8fvx.json +++ b/advisories/github-reviewed/2019/03/GHSA-h436-432x-8fvx/GHSA-h436-432x-8fvx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-h436-432x-8fvx", - "modified": "2022-05-26T19:37:39Z", + "modified": "2023-10-15T22:29:51Z", "published": "2019-03-14T15:41:12Z", "aliases": [ "CVE-2018-1324" @@ -36,6 +36,47 @@ "database_specific": { "last_known_affected_version_range": "<= 1.15" } + }, + { + "package": { + "ecosystem": "Maven", + "name": "com.liferay:com.liferay.portal.tools.bundle.support" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "3.2.7" + }, + { + "fixed": "3.7.4" + } + ] + } + ], + "versions": [ + "3.2.7" + ] + }, + { + "package": { + "ecosystem": "Maven", + "name": "io.takari:commons-compress" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "1.12" + } + ] + } + ], + "versions": [ + "1.12" + ] } ], "references": [ @@ -74,6 +115,18 @@ { "type": "WEB", "url": "http://www.securitytracker.com/id/1040549" + }, + { + "type": "EVIDENCE", + "url": "https://github.com/jensdietrich/xshady-release/tree/main/CVE-2018-1324" + }, + { + "type": "WEB", + "url": "https://arxiv.org/pdf/2306.05534.pdf" + }, + { + "type": "PACKAGE", + "url": "https://github.com/liferay/liferay-portal" } ], "database_specific": {