From 63321da3184dfc03a25e8a5e6f91b07a095371eb Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Thu, 19 Dec 2024 15:45:34 +0000 Subject: [PATCH] Adding Advisory GHSA-w32m-9786-jp63 for q (#10411) Co-authored-by: octo-sts[bot] <157150467+octo-sts@users.noreply.github.com> --- q.advisories.yaml | 18 ++++++++++++++++++ 1 file changed, 18 insertions(+) diff --git a/q.advisories.yaml b/q.advisories.yaml index 64e29d9ea9..d75e4f471c 100644 --- a/q.advisories.yaml +++ b/q.advisories.yaml @@ -76,6 +76,24 @@ advisories: data: fixed-version: 0.19.2-r1 + - id: CGA-5h96-jjw8-pwf2 + aliases: + - CVE-2024-45338 + - GHSA-w32m-9786-jp63 + events: + - timestamp: 2024-12-19T15:07:32Z + type: detection + data: + type: scan/v1 + data: + subpackageName: q + componentID: df3cde3c20ba89ef + componentName: golang.org/x/net + componentVersion: v0.25.0 + componentType: go-module + componentLocation: /usr/bin/q + scanner: grype + - id: CGA-63vj-gf7r-62gh aliases: - CVE-2023-45283