5.5

CVSS3.1

CVE-2024-42250 - cachefiles: add missing lock protection when polling

In the Linux kernel, the following vulnerability has been resolved: cachefiles: add missing lock protection when polling Add missing lock protection in poll routine when iterating xarray, otherwise: Even with RCU read lock held, only the slot of the radix tree is ensured to be pinned there, whil…

πŸ“… Published: Aug. 7, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 10:17 p.m.

7.5

CVSS3.1

CVE-2024-41248 -

An Incorrect Access Control vulnerability was found in /smsa/add_subject.php and /smsa/add_subject_submit.php in Kashipara Responsive School Management System v3.2.0, which allows remote unauthenticated attackers to add a new subject entry.

πŸ“… Published: Aug. 7, 2024, midnight πŸ”„ Last Modified: Aug. 8, 2024, 3:07 p.m.

6.3

CVSS3.1

CVE-2024-41240 -

A Reflected Cross Site Scripting (XSS) vulnerability was found in " /smsa/teacher_login.php" in Kashipara Responsive School Management System v3.2.0, which allows remote attackers to execute arbitrary code via the "error" parameter.

πŸ“… Published: Aug. 7, 2024, midnight πŸ”„ Last Modified: Aug. 13, 2024, 3:35 p.m.

9.8

CVSS3.1

CVE-2024-34480 -

SourceCodester Computer Laboratory Management System 1.0 allows admin/category/view_category.php id SQL Injection.

πŸ“… Published: Aug. 7, 2024, midnight πŸ”„ Last Modified: Aug. 8, 2024, 3:35 p.m.

5.5

CVSS3.1

CVE-2024-42247 - wireguard: allowedips: avoid unaligned 64-bit memory accesses

In the Linux kernel, the following vulnerability has been resolved: wireguard: allowedips: avoid unaligned 64-bit memory accesses On the parisc platform, the kernel issues kernel warnings because swap_endian() tries to load a 128-bit IPv6 address from an unaligned memory location: Kernel: unali…

πŸ“… Published: Aug. 7, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 10:17 p.m.

3.3

CVSS3.1

CVE-2024-42233 - filemap: replace pte_offset_map() with pte_offset_map_nolock()

In the Linux kernel, the following vulnerability has been resolved: filemap: replace pte_offset_map() with pte_offset_map_nolock() The vmf->ptl in filemap_fault_recheck_pte_none() is still set from handle_pte_fault(). But at the same time, we did a pte_unmap(vmf->pte). After a pte_unmap(vmf->pt…

πŸ“… Published: Aug. 7, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:24 a.m.

5.5

CVSS3.1

CVE-2024-42236 - usb: gadget: configfs: Prevent OOB read/write in usb_string_copy()

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: configfs: Prevent OOB read/write in usb_string_copy() Userspace provided string 's' could trivially have the length zero. Left unchecked this will firstly result in an OOB read in the form `if (str[0 - 1] == '\n') fo…

πŸ“… Published: Aug. 7, 2024, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:52 a.m.

5.5

CVSS3.1

CVE-2024-42234 - mm: fix crashes from deferred split racing folio migration

In the Linux kernel, the following vulnerability has been resolved: mm: fix crashes from deferred split racing folio migration Even on 6.10-rc6, I've been seeing elusive "Bad page state"s (often on flags when freeing, yet the flags shown are not bad: PG_locked had been set and cleared??), and VM_…

πŸ“… Published: Aug. 7, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:24 a.m.

8.4

CVSS3.1

CVE-2024-41309 -

An issue in the Hardware info module of IT Solutions Enjay CRM OS v1.0 allows attackers to escape the restricted terminal environment and gain root-level privileges on the underlying system.

πŸ“… Published: Aug. 7, 2024, midnight πŸ”„ Last Modified: Aug. 8, 2024, 3:35 p.m.

8.4

CVSS3.1

CVE-2024-41308 -

An issue in the Ping feature of IT Solutions Enjay CRM OS v1.0 allows attackers to escape the restricted terminal environment and gain root-level privileges on the underlying system.

πŸ“… Published: Aug. 7, 2024, midnight πŸ”„ Last Modified: Aug. 8, 2024, 3:04 p.m.
Total resulsts: 349182
Page 8930 of 34,919
Β« previous page Β» next page
Filters