5.5

CVSS3.1

CVE-2024-50133 - LoongArch: Don't crash in stack_top() for tasks without vDSO

In the Linux kernel, the following vulnerability has been resolved: LoongArch: Don't crash in stack_top() for tasks without vDSO Not all tasks have a vDSO mapped, for example kthreads never do. If such a task ever ends up calling stack_top(), it will derefence the NULL vdso pointer and crash. Th…

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

5.5

CVSS3.1

CVE-2024-50136 - net/mlx5: Unregister notifier on eswitch init failure

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Unregister notifier on eswitch init failure It otherwise remains registered and a subsequent attempt at eswitch enabling might trigger warnings of the sort: [ 682.589148] ------------[ cut here ]------------ [ 682.59…

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

8.4

CVSS3.1

CVE-2024-51382 -

Cross-Site Request Forgery (CSRF) vulnerability in JATOS v3.9.3 allows an attacker to reset the administrator's password. This critical security flaw can result in unauthorized access to the platform, enabling attackers to hijack admin accounts and compromise the integrity and security of the syste…

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: June 24, 2025, 1:13 p.m.

8

CVSS3.1

CVE-2024-51024 -

D-Link DIR_823G 1.0.2B05 was discovered to contain a command injection vulnerability via the HostName parameter in the SetWanSettings function. This vulnerability allows attackers to execute arbitrary OS commands via a crafted request.

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: May 7, 2025, 2:21 p.m.

8.8

CVSS3.1

CVE-2024-51023 -

D-Link DIR_823G 1.0.2B05 was discovered to contain a command injection vulnerability via the Address parameter in the SetNetworkTomographySettings function. This vulnerability allows attackers to execute arbitrary OS commands via a crafted request.

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: May 7, 2025, 2:23 p.m.

8

CVSS3.1

CVE-2024-51010 -

Netgear R8500 v1.0.2.160, XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 were discovered to contain a command injection vulnerability in the component ap_mode.cgi via the apmode_gateway parameter. This vulnerability allows attackers to execute arbitrary OS commands via a crafted request.

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: May 21, 2025, 7:59 p.m.

5.5

CVSS3.1

CVE-2024-50120 - smb: client: Handle kstrdup failures for passwords

In the Linux kernel, the following vulnerability has been resolved: smb: client: Handle kstrdup failures for passwords In smb3_reconfigure(), after duplicating ctx->password and ctx->password2 with kstrdup(), we need to check for allocation failures. If ses->password allocation fails, return -EN…

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: April 6, 2026, 2:01 p.m.

5.7

CVSS3.1

CVE-2024-51019 -

Netgear R7000P v1.3.3.154 was discovered to contain a stack overflow via the pppoe_localnetmask parameter at pppoe.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: May 2, 2025, 3:37 p.m.

5.5

CVSS3.1

CVE-2024-50104 - ASoC: qcom: sdm845: add missing soundwire runtime stream alloc

In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: sdm845: add missing soundwire runtime stream alloc During the migration of Soundwire runtime stream allocation from the Qualcomm Soundwire controller to SoC's soundcard drivers the sdm845 soundcard was forgotten. At …

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: Oct. 1, 2025, 9:15 p.m.

7.8

CVSS3.1

CVE-2024-50131 - tracing: Consider the NULL character when validating the event length

In the Linux kernel, the following vulnerability has been resolved: tracing: Consider the NULL character when validating the event length strlen() returns a string length excluding the null byte. If the string length equals to the maximum buffer length, the buffer will have no space for the NULL …

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.
Total resulsts: 349182
Page 8029 of 34,919
Β« previous page Β» next page
Filters