7.8

CVSS3.1

CVE-2026-23390 - tracing/dma: Cap dma_map_sg tracepoint arrays to prevent buffer overflow

In the Linux kernel, the following vulnerability has been resolved: tracing/dma: Cap dma_map_sg tracepoint arrays to prevent buffer overflow The dma_map_sg tracepoint can trigger a perf buffer overflow when tracing large scatter-gather lists. With devices like virtio-gpu creating large DRM buffer…

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: April 24, 2026, 6:32 p.m.

5.5

CVSS3.1

CVE-2026-23349 - HID: pidff: Fix condition effect bit clearing

In the Linux kernel, the following vulnerability has been resolved: HID: pidff: Fix condition effect bit clearing As reported by MPDarkGuy on discord, NULL pointer dereferences were happening because not all the conditional effects bits were cleared. Properly clear all conditional effect bits fr…

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: April 24, 2026, 6:06 p.m.

5.5

CVSS3.1

CVE-2026-23365 - net: usb: kalmia: validate USB endpoints

In the Linux kernel, the following vulnerability has been resolved: net: usb: kalmia: validate USB endpoints The kalmia driver should validate that the device it is probing has the proper number and types of USB endpoints it is expecting before it binds to it. If a malicious device were to not h…

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: April 24, 2026, 6:47 p.m.

9

CVSS3.1

CVE-2025-32991 -

In N2WS Backup & Recovery before 4.4.0, a two-step attack against the RESTful API results in remote code execution.

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: March 27, 2026, 9:20 a.m.

7.2

CVSS3.1

CVE-2024-51347 - Buffer Overflow in LSC Smart Indoor IP Camera ONVIF Time Zone Configuration

A buffer overflow vulnerability in the dgiot binary in LSC Smart Indoor IP Camera V7.6.32. The flaw exists in the handling of the Time Zone (TZ) parameter within the ONVIF configuration interface. The time zone (TZ) parameter does not have its length properly validated before being copied into a fi…

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: March 26, 2026, 11:51 a.m.

8.8

CVSS3.1

CVE-2024-51348 - P2P API Buffer Overflow Enables Remote Code Execution

A stack-based buffer overflow vulnerability in the P2P API service in BS Producten Petcam with firmware 33.1.0.0818 allows unauthenticated attackers within network range to overwrite the instruction pointer and achieve Remote Code Execution (RCE) by sending a specially crafted HTTP request.

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: March 26, 2026, 11:51 a.m.

7.7

CVSS3.1

CVE-2024-51346 - Information Disclosure in Eufy Homebase 2 Firmware via Cryptographic Error

An issue in Eufy Homebase 2 version 3.3.4.1h allows a local attacker to obtain sensitive information via the cryptographic scheme.

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: March 26, 2026, 11:51 a.m.

5.5

CVSS3.1

CVE-2026-23380 - tracing: Fix WARN_ON in tracing_buffers_mmap_close

In the Linux kernel, the following vulnerability has been resolved: tracing: Fix WARN_ON in tracing_buffers_mmap_close When a process forks, the child process copies the parent's VMAs but the user_mapped reference count is not incremented. As a result, when both the parent and child processes exi…

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: April 24, 2026, 4:28 p.m.

5.5

CVSS3.1

CVE-2026-23352 - x86/efi: defer freeing of boot services memory

In the Linux kernel, the following vulnerability has been resolved: x86/efi: defer freeing of boot services memory efi_free_boot_services() frees memory occupied by EFI_BOOT_SERVICES_CODE and EFI_BOOT_SERVICES_DATA using memblock_free_late(). There are two issue with that: memblock_free_late() s…

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: April 24, 2026, 5:59 p.m.

8.2

CVSS3.1

CVE-2026-31788 - xen/privcmd: restrict usage in unprivileged domU

In the Linux kernel, the following vulnerability has been resolved: xen/privcmd: restrict usage in unprivileged domU The Xen privcmd driver allows to issue arbitrary hypercalls from user space processes. This is normally no problem, as access is usually limited to root and the hypervisor will den…

πŸ“… Published: March 25, 2026, midnight πŸ”„ Last Modified: April 24, 2026, 3:19 p.m.
Total resulsts: 349182
Page 928 of 34,919
Β« previous page Β» next page
Filters