6.3

CVSS3.1

CVE-2024-7531 - mozilla: nss: PK11_Encrypt using CKM_CHACHA20 can reveal plaintext on Intel Sandy Bridge machines

Calling `PK11_Encrypt()` in NSS using CKM_CHACHA20 and the same buffer for input and output can result in plaintext on an Intel Sandy Bridge processor. In Firefox this only affects the QUIC header protection feature when the connection is using the ChaCha20-Poly1305 cipher suite. The most likely ou…

📅 Published: Aug. 6, 2024, midnight 🔄 Last Modified: March 19, 2025, 4:15 p.m.

7.8

CVSS3.1

CVE-2024-7547 - oFono SMS Decoder Stack-based Buffer Overflow Privilege Escalation Vulnerability

oFono SMS Decoder Stack-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attackers to execute arbitrary code on affected installations of oFono. An attacker must first obtain the ability to execute code on the target modem in order to exploit this vulnerabil…

📅 Published: Aug. 5, 2024, 11:54 p.m. 🔄 Last Modified: Aug. 19, 2024, 8:03 p.m.

7.8

CVSS3.1

CVE-2024-7546 - oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability

oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attackers to execute arbitrary code on affected installations of oFono. An attacker must first obtain the ability to execute code on the target modem in order to exploit this vulnerabilit…

📅 Published: Aug. 5, 2024, 11:54 p.m. 🔄 Last Modified: Aug. 29, 2024, 5:55 p.m.

7.8

CVSS3.1

CVE-2024-7545 - oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability

oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attackers to execute arbitrary code on affected installations of oFono. An attacker must first obtain the ability to execute code on the target modem in order to exploit this vulnerabilit…

📅 Published: Aug. 5, 2024, 11:54 p.m. 🔄 Last Modified: Aug. 19, 2024, 8 p.m.

7.8

CVSS3.1

CVE-2024-7544 - oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability

oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attackers to execute arbitrary code on affected installations of oFono. An attacker must first obtain the ability to execute code on the target modem in order to exploit this vulnerabilit…

📅 Published: Aug. 5, 2024, 11:54 p.m. 🔄 Last Modified: Aug. 19, 2024, 8 p.m.

7.8

CVSS3.1

CVE-2024-7543 - oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability

oFono SimToolKit Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attackers to execute arbitrary code on affected installations of oFono. An attacker must first obtain the ability to execute code on the target modem in order to exploit this vulnerabilit…

📅 Published: Aug. 5, 2024, 11:54 p.m. 🔄 Last Modified: Aug. 19, 2024, 7:59 p.m.

3.3

CVSS3.1

CVE-2024-7542 - oFono AT CMGR Command Uninitialized Variable Information Disclosure Vulnerability

oFono AT CMGR Command Uninitialized Variable Information Disclosure Vulnerability. This vulnerability allows local attackers to disclose sensitive information on affected installations of oFono. An attacker must first obtain the ability to execute code on the target modem in order to exploit this v…

📅 Published: Aug. 5, 2024, 11:53 p.m. 🔄 Last Modified: Aug. 29, 2024, 5:56 p.m.

3.3

CVSS3.1

CVE-2024-7541 - oFono AT CMT Command Uninitialized Variable Information Disclosure Vulnerability

oFono AT CMT Command Uninitialized Variable Information Disclosure Vulnerability. This vulnerability allows local attackers to disclose sensitive information on affected installations of oFono. An attacker must first obtain the ability to execute code on the target modem in order to exploit this vu…

📅 Published: Aug. 5, 2024, 11:53 p.m. 🔄 Last Modified: Aug. 29, 2024, 5:57 p.m.

3.3

CVSS3.1

CVE-2024-7540 - oFono AT CMGL Command Uninitialized Variable Information Disclosure Vulnerability

oFono AT CMGL Command Uninitialized Variable Information Disclosure Vulnerability. This vulnerability allows local attackers to disclose sensitive information on affected installations of oFono. An attacker must first obtain the ability to execute code on the target modem in order to exploit this v…

📅 Published: Aug. 5, 2024, 11:53 p.m. 🔄 Last Modified: Aug. 29, 2024, 5:58 p.m.

7.8

CVSS3.1

CVE-2024-7539 - oFono CUSD Stack-based Buffer Overflow Code Execution Vulnerability

oFono CUSD Stack-based Buffer Overflow Code Execution Vulnerability. This vulnerability allows local attackers to execute arbitrary code on affected installations of oFono. An attacker must first obtain the ability to execute code on the target modem in order to exploit this vulnerability. The spe…

📅 Published: Aug. 5, 2024, 11:53 p.m. 🔄 Last Modified: Aug. 29, 2024, 5:59 p.m.
Total resulsts: 349182
Page 8950 of 34,919
« previous page » next page
Filters