5.5

CVSS3.1

CVE-2025-21670 - vsock/bpf: return early if transport is not assigned

In the Linux kernel, the following vulnerability has been resolved: vsock/bpf: return early if transport is not assigned Some of the core functions can only be called if the transport has been assigned. As Michal reported, a socket might have the transport at NULL, for example after a failed con…

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: Oct. 1, 2025, 8:18 p.m.

5.5

CVSS3.1

CVE-2025-21668 - pmdomain: imx8mp-blk-ctrl: add missing loop break condition

In the Linux kernel, the following vulnerability has been resolved: pmdomain: imx8mp-blk-ctrl: add missing loop break condition Currently imx8mp_blk_ctrl_remove() will continue the for loop until an out-of-bounds exception occurs. pstate: 60000005 (nZCv daif -PAN -UAO -TCO -DIT -SSBS BTYPE=--) p…

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 9:19 p.m.

7.5

CVSS3.1

CVE-2024-53319 -

A heap buffer overflow in the XML Text Escaping component of Qualisys C++ SDK commit a32a21a allows attackers to cause Denial of Service (DoS) via escaping special XML characters.

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: Feb. 3, 2025, 8:15 p.m.

7.5

CVSS3.1

CVE-2024-53582 -

An issue found in the Copy and View functions in the File Manager component of OpenPanel v0.3.4 allows attackers to execute a directory traversal via a crafted HTTP request.

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: May 23, 2025, 3:58 p.m.

5.5

CVSS3.1

CVE-2025-21667 - iomap: avoid avoid truncating 64-bit offset to 32 bits

In the Linux kernel, the following vulnerability has been resolved: iomap: avoid avoid truncating 64-bit offset to 32 bits on 32-bit kernels, iomap_write_delalloc_scan() was inadvertently using a 32-bit position due to folio_next_index() returning an unsigned long. This could lead to an infinite …

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 9:19 p.m.

9.8

CVSS3.1

CVE-2024-55062 -

Code Injection vulnerability in EasyVirt DCScope <= 8.6.0 and CO2Scope <= 1.3.0 allows remote unauthenticated attackers to execute arbitrary code to /api/license/sendlicense/.

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: May 24, 2025, 1:18 a.m.

9.1

CVSS3.1

CVE-2024-53537 -

An issue in OpenPanel v0.3.4 to v0.2.1 allows attackers to execute a directory traversal in File Actions of File Manager.

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: Oct. 2, 2025, 6:32 p.m.

5.5

CVSS3.1

CVE-2025-21672 - afs: Fix merge preference rule failure condition

In the Linux kernel, the following vulnerability has been resolved: afs: Fix merge preference rule failure condition syzbot reported a lock held when returning to userspace[1]. This is because if argc is less than 0 and the function returns directly, the held inode lock is not released. Fix thi…

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: Oct. 1, 2025, 8:18 p.m.

8.8

CVSS3.1

CVE-2024-57434 -

macrozheng mall-tiny 1.0.1 is vulnerable to Incorrect Access Control. The project imports users by default, and the test user is made a super administrator.

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: April 22, 2025, 3:29 p.m.

5.5

CVSS3.1

CVE-2025-21678 - gtp: Destroy device along with udp socket's netns dismantle.

In the Linux kernel, the following vulnerability has been resolved: gtp: Destroy device along with udp socket's netns dismantle. gtp_newlink() links the device to a list in dev_net(dev) instead of src_net, where a udp tunnel socket is created. Even when src_net is removed, the device stays alive…

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 9:19 p.m.
Total resulsts: 343757
Page 6355 of 34,376
Β« previous page Β» next page
Filters