5.5

CVSS3.1

CVE-2024-46752 - btrfs: replace BUG_ON() with error handling at update_ref_for_cow()

In the Linux kernel, the following vulnerability has been resolved: btrfs: replace BUG_ON() with error handling at update_ref_for_cow() Instead of a BUG_ON() just return an error, log an error message and abort the transaction in case we find an extent buffer belonging to the relocation tree that…

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:53 a.m.

5.5

CVSS3.1

CVE-2024-46750 - PCI: Add missing bridge lock to pci_bus_lock()

In the Linux kernel, the following vulnerability has been resolved: PCI: Add missing bridge lock to pci_bus_lock() One of the true positives that the cfg_access_lock lockdep effort identified is this sequence: WARNING: CPU: 14 PID: 1 at drivers/pci/pci.c:4886 pci_bridge_secondary_bus_reset+0x5…

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:53 a.m.

5.5

CVSS3.1

CVE-2024-46719 - usb: typec: ucsi: Fix null pointer dereference in trace

In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: Fix null pointer dereference in trace ucsi_register_altmode checks IS_ERR for the alt pointer and treats NULL as valid. When CONFIG_TYPEC_DP_ALTMODE is not enabled, ucsi_register_displayport returns NULL which c…

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:52 a.m.

7.5

CVSS3.1

CVE-2024-46595 -

Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the saveitem parameter at lan2lan.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: March 13, 2025, 7:15 p.m.

9.8

CVSS3.1

CVE-2024-46374 -

Best House Rental Management System 1.0 contains a SQL injection vulnerability in the delete_category() function of the file rental/admin_class.php.

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: April 16, 2025, 7:11 p.m.

9.8

CVSS3.1

CVE-2024-35515 - sqlitedict: arbitrary code execution via insecure deserialization

Insecure deserialization in sqlitedict up to v2.1.0 allows attackers to execute arbitrary code.

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.6

CVSS3.1

CVE-2023-47105 -

exec.CommandContext in Chaosblade 0.3 through 1.7.3, when server mode is used, allows OS command execution via the cmd parameter without authentication.

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2024-46592 -

Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the ssidencrypt_5g%d parameter at v2x00.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: March 18, 2025, 8:15 p.m.

7.5

CVSS3.1

CVE-2024-46590 -

Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the ssidencrypt%d parameter at v2x00.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: March 18, 2025, 3:15 p.m.

7.5

CVSS3.1

CVE-2024-46586 -

Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the sCloudPass parameter at v2x00.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: March 13, 2025, 4:15 p.m.
Total resulsts: 349182
Page 8528 of 34,919
Β« previous page Β» next page
Filters