5.5

CVSS3.1

CVE-2024-57901 - af_packet: fix vlan_get_protocol_dgram() vs MSG_PEEK

In the Linux kernel, the following vulnerability has been resolved: af_packet: fix vlan_get_protocol_dgram() vs MSG_PEEK Blamed commit forgot MSG_PEEK case, allowing a crash [1] as found by syzbot. Rework vlan_get_protocol_dgram() to not touch skb at all, so that it can be used from many cpus on…

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 9:18 p.m.

5.5

CVSS3.1

CVE-2024-57902 - af_packet: fix vlan_get_tci() vs MSG_PEEK

In the Linux kernel, the following vulnerability has been resolved: af_packet: fix vlan_get_tci() vs MSG_PEEK Blamed commit forgot MSG_PEEK case, allowing a crash [1] as found by syzbot. Rework vlan_get_tci() to not touch skb at all, so that it can be used from many cpus on the same skb. Add a …

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 9:18 p.m.

7.8

CVSS3.1

CVE-2024-57014 -

TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "recHour" parameter in setScheduleCfg.

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: March 18, 2025, 3:15 p.m.

7.8

CVSS3.1

CVE-2024-57857 - RDMA/siw: Remove direct link to net_device

In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Remove direct link to net_device Do not manage a per device direct link to net_device. Rely on associated ib_devices net_device management, not doubling the effort locally. A badly managed local link to net_device was c…

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: May 4, 2025, 10:05 a.m.

4.8

CVSS3.1

CVE-2024-41453 -

A cross-site scripting (XSS) vulnerability in Process Maker pm4core-docker 4.1.21-RC7 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name parameter.

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.8

CVSS3.1

CVE-2024-57021 -

TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "eHour" parameter in setWiFiScheduleCfg.

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: March 20, 2025, 3:15 p.m.

7.8

CVSS3.1

CVE-2024-57887 - drm: adv7511: Fix use-after-free in adv7533_attach_dsi()

In the Linux kernel, the following vulnerability has been resolved: drm: adv7511: Fix use-after-free in adv7533_attach_dsi() The host_node pointer was assigned and freed in adv7533_parse_dt(), and later, adv7533_attach_dsi() uses the same. Fix this use-after-free issue byΒ dropping of_node_put() i…

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 9:18 p.m.

8.8

CVSS3.1

CVE-2024-57012 -

TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "week" parameter in setScheduleCfg.

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: March 14, 2025, 4:15 p.m.

6.8

CVSS3.1

CVE-2024-57024 -

TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "eMinute" parameter in setWiFiScheduleCfg.

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: April 7, 2025, 6:10 p.m.

8.8

CVSS3.1

CVE-2024-57011 -

TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "minute" parameters in setScheduleCfg.

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: March 17, 2025, 5:15 p.m.
Total resulsts: 346506
Page 6847 of 34,651
Β« previous page Β» next page
Filters