9.8

CVSS3.1

CVE-2024-40568 -

Buffer Overflow vulnerability in btstack mesh commit before v.864e2f2b6b7878c8fab3cf5ee84ae566e3380c58 allows a remote attacker to execute arbitrary code via the pb_adv_handle_tranaction_cont function in the src/mesh/pb_adv.c component

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2024-46779 - drm/imagination: Free pvr_vm_gpuva after unlink

In the Linux kernel, the following vulnerability has been resolved: drm/imagination: Free pvr_vm_gpuva after unlink This caused a measurable memory leak. Although the individual allocations are small, the leaks occurs in a high-usage codepath (remapping or unmapping device memory) so they add up …

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:34 a.m.

5.5

CVSS3.1

CVE-2024-46754 - bpf: Remove tst_run from lwt_seg6local_prog_ops.

In the Linux kernel, the following vulnerability has been resolved: bpf: Remove tst_run from lwt_seg6local_prog_ops. The syzbot reported that the lwt_seg6 related BPF ops can be invoked via bpf_test_run() without without entering input_action_end_bpf() first. Martin KaFai Lau said that self test…

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: Oct. 8, 2025, 5:07 p.m.

7.1

CVSS3.1

CVE-2024-46743 - of/irq: Prevent device address out-of-bounds read in interrupt map walk

In the Linux kernel, the following vulnerability has been resolved: of/irq: Prevent device address out-of-bounds read in interrupt map walk When of_irq_parse_raw() is invoked with a device address smaller than the interrupt parent node (from #address-cells property), KASAN detects the following o…

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:52 a.m.

5.5

CVSS3.1

CVE-2024-46748 - cachefiles: Set the max subreq size for cache writes to MAX_RW_COUNT

In the Linux kernel, the following vulnerability has been resolved: cachefiles: Set the max subreq size for cache writes to MAX_RW_COUNT Set the maximum size of a subrequest that writes to cachefiles to be MAX_RW_COUNT so that we don't overrun the maximum write we can make to the backing filesyst…

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: Oct. 8, 2025, 5:08 p.m.

7.8

CVSS3.1

CVE-2024-46738 - VMCI: Fix use-after-free when removing resource in vmci_resource_remove()

In the Linux kernel, the following vulnerability has been resolved: VMCI: Fix use-after-free when removing resource in vmci_resource_remove() When removing a resource from vmci_resource_table in vmci_resource_remove(), the search is performed using the resource handle by comparing context and res…

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:15 p.m.

8.8

CVSS3.1

CVE-2024-46086 -

FrogCMS V0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/plugin/file_manager/delete/123

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: Sept. 25, 2024, 5:08 p.m.

8.8

CVSS3.1

CVE-2024-46373 -

Dedecms V5.7.115 contains an arbitrary code execution via file upload vulnerability in the backend.

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: March 31, 2025, 6:53 p.m.

7.5

CVSS3.1

CVE-2024-46556 -

Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the sInRCSecret0 parameter at v2x00.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: March 18, 2025, 3:15 p.m.

7.5

CVSS3.1

CVE-2024-46568 -

Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the sPeerId parameter at vpn.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: March 17, 2025, 2:15 p.m.
Total resulsts: 349182
Page 8523 of 34,919
Β« previous page Β» next page
Filters