5.5

CVSS3.1

CVE-2024-53090 - afs: Fix lock recursion

In the Linux kernel, the following vulnerability has been resolved: afs: Fix lock recursion afs_wake_up_async_call() can incur lock recursion. The problem is that it is called from AF_RXRPC whilst holding the ->notify_lock, but it tries to take a ref on the afs_call struct in order to pass it to…

πŸ“… Published: Nov. 21, 2024, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:55 a.m.

7.1

CVSS3.1

CVE-2024-9875 -

Okta Privileged Access server agent (SFTD) versions 1.82.0 to 1.84.0 are affected by a privilege escalation vulnerability when the sudo command bundles feature is enabled. To remediate this vulnerability, upgrade the Okta Privileged Access server agent (SFTD) to version 1.87.1 or greater.

πŸ“… Published: Nov. 20, 2024, 10:23 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

0.0

CVE-2024-11505 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: Nov. 20, 2024, 9:30 p.m. πŸ”„ Last Modified: July 5, 2025, 11:15 p.m.

8.2

CVSS4.0

CVE-2024-52581 - Litestar allows unbounded resource consumption (DoS vulnerability)

Litestar is an Asynchronous Server Gateway Interface (ASGI) framework. Prior to version 2.13.0, the multipart form parser shipped with litestar expects the entire request body as a single byte string and there is no default limit for the total size of the request body. This allows an attacker to up…

πŸ“… Published: Nov. 20, 2024, 8:50 p.m. πŸ”„ Last Modified: Nov. 25, 2024, 2:15 p.m.

6.5

CVSS3.1

CVE-2018-9487 -

In setVpnForcedLocked of Vpn.java, there is a possible blocking of internet traffic through vpn due to a bad uid check. This could lead to local denial of service with no additional execution privileges needed. User interaction is needed for exploitation.

πŸ“… Published: Nov. 20, 2024, 5:50 p.m. πŸ”„ Last Modified: Dec. 19, 2024, 3:57 p.m.

6.5

CVSS3.1

CVE-2018-9486 -

In hidh_l2cif_data_ind of hidh_conn.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure over bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: Nov. 20, 2024, 5:49 p.m. πŸ”„ Last Modified: Dec. 19, 2024, 3:56 p.m.

6.5

CVSS3.1

CVE-2018-9485 -

In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure over bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: Nov. 20, 2024, 5:47 p.m. πŸ”„ Last Modified: Dec. 18, 2024, 6:45 p.m.

7.5

CVSS3.1

CVE-2018-9484 -

In l2cu_send_peer_config_rej of l2c_utils.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: Nov. 20, 2024, 5:45 p.m. πŸ”„ Last Modified: Dec. 18, 2024, 6:46 p.m.

6.5

CVSS3.1

CVE-2018-9483 -

In bta_dm_remove_sec_dev_entry of bta_dm_act.cc, there is a possible out of bounds read due to a use after free. This could lead to remote information disclosure over bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: Nov. 20, 2024, 5:43 p.m. πŸ”„ Last Modified: Dec. 18, 2024, 6:47 p.m.

6.2

CVSS3.1

CVE-2018-9482 -

In intr_data_copy_cb of btif_hd.cc, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure in the Bluetooth service with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: Nov. 20, 2024, 5:41 p.m. πŸ”„ Last Modified: Dec. 18, 2024, 6:48 p.m.
Total resulsts: 346583
Page 7513 of 34,659
Β« previous page Β» next page
Filters