5.5

CVSS3.1

CVE-2024-39489 - ipv6: sr: fix memleak in seg6_hmac_init_algo

In the Linux kernel, the following vulnerability has been resolved: ipv6: sr: fix memleak in seg6_hmac_init_algo seg6_hmac_init_algo returns without cleaning up the previous allocations if one fails, so it's going to leak all that memory and the crypto tfms. Update seg6_hmac_exit to only free th…

πŸ“… Published: July 10, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:16 a.m.

9.8

CVSS3.1

CVE-2024-25077 -

An issue was discovered on Renesas SmartBond DA14691, DA14695, DA14697, and DA14699 devices. The Nonce used for on-the-fly decryption of flash images is stored in an unsigned header, allowing its value to be modified without invalidating the signature used for secureboot image verification. Because…

πŸ“… Published: July 10, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2024-39493 - crypto: qat - Fix ADF_DEV_RESET_SYNC memory leak

In the Linux kernel, the following vulnerability has been resolved: crypto: qat - Fix ADF_DEV_RESET_SYNC memory leak Using completion_done to determine whether the caller has gone away only works after a complete call. Furthermore it's still possible that the caller has not yet called wait_for_c…

πŸ“… Published: July 10, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 12:57 p.m.

6.2

CVSS3.1

CVE-2024-39490 - ipv6: sr: fix missing sk_buff release in seg6_input_core

In the Linux kernel, the following vulnerability has been resolved: ipv6: sr: fix missing sk_buff release in seg6_input_core The seg6_input() function is responsible for adding the SRH into a packet, delegating the operation to the seg6_input_core(). This function uses the skb_cow_head() to ensur…

πŸ“… Published: July 10, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:16 a.m.

6.1

CVSS3.1

CVE-2024-40336 -

idccms v1.35 is vulnerable to Cross Site Scripting (XSS) within the 'Image Advertising Management.'

πŸ“… Published: July 10, 2024, midnight πŸ”„ Last Modified: April 15, 2025, 5 p.m.

8.8

CVSS3.1

CVE-2024-40334 -

idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/serverFile_deal.php?mudi=upFileDel&dataID=3

πŸ“… Published: July 10, 2024, midnight πŸ”„ Last Modified: Nov. 21, 2024, 9:31 a.m.

7

CVSS3.1

CVE-2024-39492 - mailbox: mtk-cmdq: Fix pm_runtime_get_sync() warning in mbox shutdown

In the Linux kernel, the following vulnerability has been resolved: mailbox: mtk-cmdq: Fix pm_runtime_get_sync() warning in mbox shutdown The return value of pm_runtime_get_sync() in cmdq_mbox_shutdown() will return 1 when pm runtime state is active, and we don't want to get the warning message i…

πŸ“… Published: July 10, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:16 a.m.

9.1

CVSS3.1

CVE-2024-37770 -

14Finger v1.1 was discovered to contain a remote command execution (RCE) vulnerability in the fingerprint function. This vulnerability allows attackers to execute arbitrary commands via a crafted payload.

πŸ“… Published: July 10, 2024, midnight πŸ”„ Last Modified: July 1, 2025, 2:17 p.m.

8.8

CVSS3.1

CVE-2024-40331 -

idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/dbBakMySQL_deal.php?mudi=backup

πŸ“… Published: July 10, 2024, midnight πŸ”„ Last Modified: April 15, 2025, 5:01 p.m.

6.8

CVSS3.1

CVE-2024-40332 -

idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/moneyRecord_deal.php?mudi=delRecord

πŸ“… Published: July 10, 2024, midnight πŸ”„ Last Modified: Nov. 21, 2024, 9:31 a.m.
Total resulsts: 348415
Page 9122 of 34,842
Β« previous page Β» next page
Filters