5.5

CVSS3.1

CVE-2024-50094 - sfc: Don't invoke xdp_do_flush() from netpoll.

In the Linux kernel, the following vulnerability has been resolved: sfc: Don't invoke xdp_do_flush() from netpoll. Yury reported a crash in the sfc driver originated from netpoll_send_udp(). The netconsole sends a message and then netpoll invokes the driver's NAPI function with a budget of zero. โ€ฆ

๐Ÿ“… Published: Nov. 5, 2024, midnight ๐Ÿ”„ Last Modified: Oct. 1, 2025, 9:15 p.m.

5.7

CVSS3.1

CVE-2024-52015 -

Netgear R8500 v1.0.2.160, XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 were discovered to contain a stack overflow via the pptp_user_ip parameter at bsw_pptp.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

๐Ÿ“… Published: Nov. 5, 2024, midnight ๐Ÿ”„ Last Modified: May 21, 2025, 8:24 p.m.

5.5

CVSS3.1

CVE-2024-50100 - USB: gadget: dummy-hcd: Fix "task hung" problem

In the Linux kernel, the following vulnerability has been resolved: USB: gadget: dummy-hcd: Fix "task hung" problem The syzbot fuzzer has been encountering "task hung" problems ever since the dummy-hcd driver was changed to use hrtimers instead of regular timers. It turns out that the problems aโ€ฆ

๐Ÿ“… Published: Nov. 5, 2024, midnight ๐Ÿ”„ Last Modified: Oct. 1, 2025, 9:15 p.m.

5.7

CVSS3.1

CVE-2024-52028 -

Netgear R7000P v1.3.3.154 was discovered to contain a stack overflow via the pptp_user_netmask parameter at wiz_pptp.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

๐Ÿ“… Published: Nov. 5, 2024, midnight ๐Ÿ”„ Last Modified: May 2, 2025, 3:36 p.m.

5.7

CVSS3.1

CVE-2024-52029 -

Netgear R7000P v1.3.3.154 was discovered to contain a stack overflow via the pptp_user_netmask parameter at genie_pptp.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

๐Ÿ“… Published: Nov. 5, 2024, midnight ๐Ÿ”„ Last Modified: May 2, 2025, 3:36 p.m.

8.4

CVSS3.1

CVE-2024-51381 -

Cross-Site Request Forgery (CSRF) vulnerability in JATOS v3.9.3 that allows attackers to perform actions reserved for administrators, including creating admin accounts. This critical flaw can lead to unauthorized activities, compromising the security and integrity of the platform, especially if an โ€ฆ

๐Ÿ“… Published: Nov. 5, 2024, midnight ๐Ÿ”„ Last Modified: June 24, 2025, 1:20 p.m.

5.7

CVSS3.1

CVE-2024-52017 -

Netgear XR300 v1.0.3.78 was discovered to contain a stack overflow via the passphrase parameter at bridge_wireless_main.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

๐Ÿ“… Published: Nov. 5, 2024, midnight ๐Ÿ”„ Last Modified: May 2, 2025, 3:43 p.m.

5.7

CVSS3.1

CVE-2024-52024 -

Netgear XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 was discovered to contain a stack overflow via the pppoe_localip parameter at wizpppoe.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

๐Ÿ“… Published: Nov. 5, 2024, midnight ๐Ÿ”„ Last Modified: May 21, 2025, 8:12 p.m.

5.5

CVSS3.1

CVE-2023-52920 - bpf: support non-r10 register spill/fill to/from stack in precision tracking

In the Linux kernel, the following vulnerability has been resolved: bpf: support non-r10 register spill/fill to/from stack in precision tracking Use instruction (jump) history to record instructions that performed register spill/fill to/from stack, regardless if this was done through read-only r1โ€ฆ

๐Ÿ“… Published: Nov. 5, 2024, midnight ๐Ÿ”„ Last Modified: July 30, 2025, 5:58 a.m.

9.8

CVSS3.1

CVE-2024-51358 -

An issue in Linux Server Heimdall v.2.6.1 allows a remote attacker to execute arbitrary code via a crafted script to the Add new application.

๐Ÿ“… Published: Nov. 5, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 7, 2024, 8:35 p.m.
Total resulsts: 342368
Page 7345 of 34,237
ยซ previous page ยป next page
Filters