7.8

CVSS3.1

CVE-2024-50085 - mptcp: pm: fix UaF read in mptcp_pm_nl_rm_addr_or_subflow

In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: fix UaF read in mptcp_pm_nl_rm_addr_or_subflow Syzkaller reported this splat: ================================================================== BUG: KASAN: slab-use-after-free in mptcp_pm_nl_rm_addr_or_subflow+0xโ€ฆ

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

7.8

CVSS3.1

CVE-2024-50086 - ksmbd: fix user-after-free from session log off

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix user-after-free from session log off There is racy issue between smb2 session log off and smb2 session setup. It will cause user-after-free from session log off. This add session_lock when setting SMB2_SESSION_EXPIRED โ€ฆ

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

7.8

CVSS3.1

CVE-2024-50088 - btrfs: fix uninitialized pointer free in add_inode_ref()

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix uninitialized pointer free in add_inode_ref() The add_inode_ref() function does not initialize the "name" struct when it is declared. If any of the following calls to "read_one_inode() returns NULL, dir = read_one_iโ€ฆ

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

8.8

CVSS3.1

CVE-2024-51181 -

A Reflected Cross Site Scripting (XSS) vulnerability was found in /ifscfinder/admin/profile.php in PHPGurukul IFSC Code Finder Project v1.0, which allows remote attackers to execute arbitrary code via " searchifsccode" parameter.

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2024, 1:39 p.m.

9.8

CVSS3.1

CVE-2024-48063 -

In PyTorch <=2.4.1, the RemoteModule has Deserialization RCE. NOTE: this is disputed by multiple parties because this is intended behavior in PyTorch distributed computing.

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: July 16, 2025, 12:25 a.m.

5.5

CVSS3.1

CVE-2024-50070 - pinctrl: stm32: check devm_kasprintf() returned value

In the Linux kernel, the following vulnerability has been resolved: pinctrl: stm32: check devm_kasprintf() returned value devm_kasprintf() can return a NULL pointer on failure but this returned value is not checked. Fix this lack and check the returned value. Found by code review.

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: May 4, 2025, 9:45 a.m.

8.8

CVSS3.1

CVE-2024-51180 -

A Reflected Cross Site Scripting (XSS) vulnerability was found in /ifscfinder/index.php in PHPGurukul IFSC Code Finder Project v1.0, which allows remote attackers to execute arbitrary code via the "searchifsccode" parameter.

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2024, 1:37 p.m.

3.5

CVSS3.1

CVE-2024-30106 - HCL Connections is vulnerable to an information disclosure vulnerability

HCL Connections is vulnerable to an information disclosure vulnerability, due to an IBM WebSphere Application Server error, which could allow a user to obtain sensitive information they are not entitled to due to the improper handling of request data.

๐Ÿ“… Published: Oct. 28, 2024, 9:35 p.m. ๐Ÿ”„ Last Modified: Nov. 8, 2024, 3:43 p.m.

6.7

CVSS3.1

CVE-2024-44260 -

This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.1, macOS Sonoma 14.7.1, macOS Ventura 13.7.1. A malicious app with root privileges may be able to modify the contents of system files.

๐Ÿ“… Published: Oct. 28, 2024, 9:08 p.m. ๐Ÿ”„ Last Modified: April 2, 2026, 7:18 p.m.

6.5

CVSS3.1

CVE-2024-44237 -

An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.1, macOS Sonoma 14.7.1, macOS Ventura 13.7.1. Processing a maliciously crafted file may lead to unexpected app termination.

๐Ÿ“… Published: Oct. 28, 2024, 9:08 p.m. ๐Ÿ”„ Last Modified: April 2, 2026, 7:18 p.m.
Total resulsts: 349182
Page 8110 of 34,919
ยซ previous page ยป next page
Filters