6.2

CVSS3.1

CVE-2024-36064 -

The NLL com.nll.cb (aka ACR Phone) application through 0.330-playStore-NoAccessibility-arm8 for Android allows any installed application (with no permissions) to place phone calls without user interaction by sending a crafted intent via the com.nll.cb.dialer.dialer.DialerActivity component.

πŸ“… Published: Nov. 7, 2024, midnight πŸ”„ Last Modified: Nov. 8, 2024, 7:01 p.m.

5.5

CVSS3.1

CVE-2024-50170 - net: bcmasp: fix potential memory leak in bcmasp_xmit()

In the Linux kernel, the following vulnerability has been resolved: net: bcmasp: fix potential memory leak in bcmasp_xmit() The bcmasp_xmit() returns NETDEV_TX_OK without freeing skb in case of mapping fails, add dev_kfree_skb() to fix it.

πŸ“… Published: Nov. 7, 2024, midnight πŸ”„ Last Modified: Oct. 1, 2025, 9:15 p.m.

5.5

CVSS3.1

CVE-2024-50156 - drm/msm: Avoid NULL dereference in msm_disp_state_print_regs()

In the Linux kernel, the following vulnerability has been resolved: drm/msm: Avoid NULL dereference in msm_disp_state_print_regs() If the allocation in msm_disp_state_dump_regs() failed then `block->state` can be NULL. The msm_disp_state_print_regs() function _does_ have code to try to handle it …

πŸ“… Published: Nov. 7, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

8.4

CVSS3.1

CVE-2019-20459 -

An issue was discovered on Epson Expression Home XP255 20.08.FM10I8 devices. With the SNMPv1 public community, all values can be read, and with the epson community, all the changeable values can be written/updated, as demonstrated by permanently disabling the network card or changing the DNS server…

πŸ“… Published: Nov. 7, 2024, midnight πŸ”„ Last Modified: Nov. 4, 2025, 6:15 p.m.

4

CVSS3.1

CVE-2024-36062 -

The com.callassistant.android (aka AI Call Assistant & Screener) application 1.174 for Android enables any installed application (with no permissions) to place phone calls without user interaction by sending a crafted intent via the com.callassistant.android.ui.call.incall.InCallActivity component.

πŸ“… Published: Nov. 7, 2024, midnight πŸ”„ Last Modified: Feb. 10, 2025, 11:15 p.m.

7.8

CVSS3.1

CVE-2024-50158 - RDMA/bnxt_re: Fix out of bound check

In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Fix out of bound check Driver exports pacing stats only on GenP5 and P7 adapters. But while parsing the pacing stats, driver has a check for "rdev->dbr_pacing". This caused a trace when KASAN is enabled. BUG: KASA…

πŸ“… Published: Nov. 7, 2024, midnight πŸ”„ Last Modified: Oct. 1, 2025, 9:15 p.m.

6.1

CVSS3.1

CVE-2024-51434 -

Inconsistent <plaintext> tag parsing allows for XSS in Froala WYSIWYG editor 4.3.0 and earlier.

πŸ“… Published: Nov. 7, 2024, midnight πŸ”„ Last Modified: Nov. 8, 2024, 7:01 p.m.

7.5

CVSS3.1

CVE-2024-48953 -

An issue was discovered in Logpoint before 7.5.0. Endpoints for creating, editing, or deleting third-party authentication modules lacked proper authorization checks. This allowed unauthenticated users to register their own authentication plugins in Logpoint, resulting in unauthorized access.

πŸ“… Published: Nov. 7, 2024, midnight πŸ”„ Last Modified: April 30, 2025, 4:35 p.m.

7.5

CVSS3.1

CVE-2024-48950 -

An issue was discovered in Logpoint before 7.5.0. An endpoint used by Distributed Logpoint Setup was exposed, allowing unauthenticated attackers to bypass CSRF protections and authentication.

πŸ“… Published: Nov. 7, 2024, midnight πŸ”„ Last Modified: April 18, 2025, 1:12 p.m.

5.5

CVSS3.1

CVE-2024-50167 - be2net: fix potential memory leak in be_xmit()

In the Linux kernel, the following vulnerability has been resolved: be2net: fix potential memory leak in be_xmit() The be_xmit() returns NETDEV_TX_OK without freeing skb in case of be_xmit_enqueue() fails, add dev_kfree_skb_any() to fix it.

πŸ“… Published: Nov. 7, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.
Total resulsts: 343054
Page 7385 of 34,306
Β« previous page Β» next page
Filters