Aggregator
CVE-2024-26910 | Linux Kernel up to 6.7.5 Netfilter synchronize_rcu race condition (Nessus ID 209785)
1 day 17 hours ago
A vulnerability was found in Linux Kernel up to 6.7.5. It has been rated as problematic. This issue affects the function synchronize_rcu of the component Netfilter. The manipulation leads to race condition.
The identification of this vulnerability is CVE-2024-26910. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48652 | Linux Kernel up to 5.19.11/6.0 num_txq ice_vsi_cfg_tc allocation of resources (7c945e5b4787/a509702cac95 / Nessus ID 209785)
1 day 17 hours ago
A vulnerability was found in Linux Kernel up to 5.19.11/6.0. It has been classified as critical. This affects the function ice_vsi_cfg_tc of the component num_txq. The manipulation leads to allocation of resources.
This vulnerability is uniquely identified as CVE-2022-48652. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-35899 | Linux Kernel up to 6.8.4 Netfilter nf_tables_trans_destroy_work use after free (Nessus ID 209785)
1 day 17 hours ago
A vulnerability, which was classified as problematic, has been found in Linux Kernel up to 6.8.4. Affected by this issue is the function nf_tables_trans_destroy_work of the component Netfilter. The manipulation leads to use after free.
This vulnerability is handled as CVE-2024-35899. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-38564 | Linux Kernel up to 6.6.32/6.8.11/6.9.2 bpf type confusion (Nessus ID 209785)
1 day 17 hours ago
A vulnerability was found in Linux Kernel up to 6.6.32/6.8.11/6.9.2. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component bpf. The manipulation leads to type confusion.
This vulnerability is known as CVE-2024-38564. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-52735 | Linux Kernel up to 5.15.94/6.1.12 sock_map_close/sock_map_destroy/sock_map_unhash stack-based overflow (f312367f5246/749985988148/5b4a79ba65a1 / Nessus ID 209785)
1 day 17 hours ago
A vulnerability, which was classified as critical, was found in Linux Kernel up to 5.15.94/6.1.12. Affected is the function sock_map_close/sock_map_destroy/sock_map_unhash. The manipulation leads to stack-based buffer overflow.
This vulnerability is traded as CVE-2023-52735. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-52745 | Linux Kernel up to 5.4.231/5.10.167/5.15.93/6.1.11 IPoIB null pointer dereference (Nessus ID 209785)
1 day 17 hours ago
A vulnerability was found in Linux Kernel up to 5.4.231/5.10.167/5.15.93/6.1.11 and classified as critical. Affected by this issue is some unknown functionality of the component IPoIB. The manipulation leads to null pointer dereference.
This vulnerability is handled as CVE-2023-52745. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-52736 | Linux Kernel up to 5.10.168/5.15.94/6.1.12 ALSA remove initialization (Nessus ID 209785)
1 day 17 hours ago
A vulnerability was found in Linux Kernel up to 5.10.168/5.15.94/6.1.12. It has been classified as problematic. Affected is the function remove of the component ALSA. The manipulation leads to improper initialization.
This vulnerability is traded as CVE-2023-52736. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48761 | Linux Kernel up to 5.10.95/5.15.18/5.16.4 xhci-plat genpd_prepare denial of service (Nessus ID 209785)
1 day 17 hours ago
A vulnerability was found in Linux Kernel up to 5.10.95/5.15.18/5.16.4. It has been rated as critical. Affected by this issue is the function genpd_prepare of the component xhci-plat. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2022-48761. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-35839 | Linux Kernel up to 6.1.74/6.6.13/6.7.1 Netfilter dev_get_by_index_rcu stack-based overflow (Nessus ID 209785)
1 day 17 hours ago
A vulnerability was found in Linux Kernel up to 6.1.74/6.6.13/6.7.1. It has been declared as critical. This vulnerability affects the function dev_get_by_index_rcu of the component Netfilter. The manipulation leads to stack-based buffer overflow.
This vulnerability was named CVE-2024-35839. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-52853 | Linux Kernel up to 6.6.1 cp2112 workqueue.c initialization (Nessus ID 209785)
1 day 17 hours ago
A vulnerability, which was classified as problematic, has been found in Linux Kernel up to 6.6.1. This issue affects some unknown processing of the file workqueue.c of the component cp2112. The manipulation leads to improper initialization.
The identification of this vulnerability is CVE-2023-52853. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48767 | Linux Kernel up to 5.10.95/5.15.18/5.16.4 ceph_string memory leak (Nessus ID 209785)
1 day 17 hours ago
A vulnerability classified as critical was found in Linux Kernel up to 5.10.95/5.15.18/5.16.4. This vulnerability affects the function ceph_string. The manipulation leads to memory leak.
This vulnerability was named CVE-2022-48767. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-48771 | Linux Kernel up to 5.16.3 File Descriptor put_unused_fd file descriptor consumption (Nessus ID 209785)
1 day 17 hours ago
A vulnerability has been found in Linux Kernel up to 5.16.3 and classified as critical. Affected by this vulnerability is the function put_unused_fd of the component File Descriptor Handler. The manipulation leads to uncontrolled file descriptor consumption.
This vulnerability is known as CVE-2022-48771. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
China's Elite Cyber Corps Hone Skills on Virtual Battlefields
1 day 17 hours ago
The nation leads in the number of capture-the-flag tournaments sponsored by government and industry — a strategy from which Western nations could learn.
Robert Lemos, Contributing Writer
Apple security advisory (AV24-620)
1 day 17 hours ago
Canadian Centre for Cyber Security
CVE-2024-40853 | Apple iOS/iPadOS 17.x Lockscreen access control
1 day 17 hours ago
A vulnerability classified as problematic was found in Apple iOS and iPadOS 17.x. This vulnerability affects unknown code of the component Lockscreen. The manipulation leads to improper access controls.
This vulnerability was named CVE-2024-40853. It is possible to launch the attack on the physical device. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-44302 | Apple tvOS Font information disclosure
1 day 17 hours ago
A vulnerability was found in Apple tvOS. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Font Handler. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2024-44302. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-44302 | Apple watchOS Font information disclosure
1 day 17 hours ago
A vulnerability classified as problematic has been found in Apple watchOS. This affects an unknown part of the component Font Handler. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2024-44302. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-44302 | Apple visionOS Font information disclosure
1 day 17 hours ago
A vulnerability was found in Apple visionOS. It has been classified as problematic. Affected is an unknown function of the component Font Handler. The manipulation leads to information disclosure.
This vulnerability is traded as CVE-2024-44302. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-44302 | Apple iOS/iPadOS Font information disclosure
1 day 17 hours ago
A vulnerability was found in Apple iOS and iPadOS. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Font Handler. The manipulation leads to information disclosure.
This vulnerability is known as CVE-2024-44302. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com