8

CVSS3.1

CVE-2024-51240 -

An issue in the luci-mod-rpc package in OpenWRT Luci LTS allows for privilege escalation from an admin account to root via the JSON-RPC-API, which is exposed by the luci-mod-rpc package

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: Nov. 6, 2024, 8:35 p.m.

5.7

CVSS3.1

CVE-2024-51004 -

Netgear R8500 v1.0.2.160 and R7000P v1.3.3.154 were discovered to multiple stack overflow vulnerabilities in the component usb_device.cgi via the cifs_user, read_access, and write_access parameters. These vulnerabilities allow attackers to cause a Denial of Service (DoS) via a crafted POST request.

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: April 30, 2025, 4:30 p.m.

5.7

CVSS3.1

CVE-2024-51018 -

Netgear R7000P v1.3.3.154 was discovered to contain a stack overflow via the pptp_user_netmask parameter at pptp.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: May 2, 2025, 3:37 p.m.

7.8

CVSS3.1

CVE-2024-50130 - netfilter: bpf: must hold reference on net namespace

In the Linux kernel, the following vulnerability has been resolved: netfilter: bpf: must hold reference on net namespace BUG: KASAN: slab-use-after-free in __nf_unregister_net_hook+0x640/0x6b0 Read of size 8 at addr ffff8880106fe400 by task repro/72= bpf_nf_link_release+0xda/0x1e0 bpf_link_free+0…

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:46 a.m.

5.7

CVSS3.1

CVE-2024-51000 -

Netgear R8500 v1.0.2.160 was discovered to contain multiple stack overflow vulnerabilities in the component wireless.cgi via the opmode, opmode_an, and opmode_an_2 parameters. These vulnerabilities allow attackers to cause a Denial of Service (DoS) via a crafted POST request.

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: April 22, 2025, 6:13 p.m.

7.1

CVSS3.1

CVE-2024-50128 - net: wwan: fix global oob in wwan_rtnl_policy

In the Linux kernel, the following vulnerability has been resolved: net: wwan: fix global oob in wwan_rtnl_policy The variable wwan_rtnl_link_ops assign a *bigger* maxtype which leads to a global out-of-bounds read when parsing the netlink attributes. Exactly same bug cause as the oob fixed in co…

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

5.5

CVSS3.1

CVE-2024-50138 - bpf: Use raw_spinlock_t in ringbuf

In the Linux kernel, the following vulnerability has been resolved: bpf: Use raw_spinlock_t in ringbuf The function __bpf_ringbuf_reserve is invoked from a tracepoint, which disables preemption. Using spinlock_t in this context can lead to a "sleep in atomic" warning in the RT variant. This issue…

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

8

CVSS3.1

CVE-2024-52019 -

Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the wan_gateway parameter at genie_fix2.cgi. This vulnerability allows attackers to execute arbitrary OS commands via a crafted request.

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: May 2, 2025, 3:39 p.m.

5.5

CVSS3.1

CVE-2024-50133 - LoongArch: Don't crash in stack_top() for tasks without vDSO

In the Linux kernel, the following vulnerability has been resolved: LoongArch: Don't crash in stack_top() for tasks without vDSO Not all tasks have a vDSO mapped, for example kthreads never do. If such a task ever ends up calling stack_top(), it will derefence the NULL vdso pointer and crash. Th…

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

5.5

CVSS3.1

CVE-2024-50136 - net/mlx5: Unregister notifier on eswitch init failure

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Unregister notifier on eswitch init failure It otherwise remains registered and a subsequent attempt at eswitch enabling might trigger warnings of the sort: [ 682.589148] ------------[ cut here ]------------ [ 682.59…

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.
Total resulsts: 342363
Page 7346 of 34,237
Β« previous page Β» next page
Filters