Aggregator
RansomHub
2 weeks 1 day ago
cohenido
Play
2 weeks 1 day ago
cohenido
Play
2 weeks 1 day ago
cohenido
CVE-2024-41025 | Linux Kernel up to 6.6.40/6.9.9 FastRPC memory leak (8b8b82dcf393/dbf4c31c9b03/ad0bd973a033 / Nessus ID 210060)
2 weeks 1 day ago
A vulnerability was found in Linux Kernel up to 6.6.40/6.9.9. It has been declared as critical. This vulnerability affects unknown code of the component FastRPC. The manipulation leads to memory leak.
This vulnerability was named CVE-2024-41025. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-42136 | Linux Kernel up to 6.1.97/6.6.38/6.9.8 /drivers/cdrom/cdrom.c last_media_change integer overflow (Nessus ID 210060)
2 weeks 1 day ago
A vulnerability classified as critical has been found in Linux Kernel up to 6.1.97/6.6.38/6.9.8. Affected is the function last_media_change of the file /drivers/cdrom/cdrom.c. The manipulation leads to integer overflow.
This vulnerability is traded as CVE-2024-42136. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-41069 | Linux Kernel up to 6.1.100/6.6.41/6.9.10 ASoC devm_kmemdup allocation of resources (Nessus ID 210060)
2 weeks 1 day ago
A vulnerability was found in Linux Kernel up to 6.1.100/6.6.41/6.9.10. It has been classified as critical. Affected is the function devm_kmemdup of the component ASoC. The manipulation leads to allocation of resources.
This vulnerability is traded as CVE-2024-41069. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-42234 | Linux Kernel up to 6.9.9 mm deferred_split_scan reference count (fc7facce686b/be9581ea8c05 / Nessus ID 210060)
2 weeks 1 day ago
A vulnerability was found in Linux Kernel up to 6.9.9. It has been declared as critical. Affected by this vulnerability is the function deferred_split_scan of the component mm. The manipulation leads to improper update of reference count.
This vulnerability is known as CVE-2024-42234. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-41036 | Linux Kernel up to 6.1.99/6.6.40/6.7/6.9.9 ks8851_start_xmit_spi deadlock (Nessus ID 210060)
2 weeks 1 day ago
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.1.99/6.6.40/6.7/6.9.9. This affects the function ks8851_start_xmit_spi. The manipulation leads to deadlock.
This vulnerability is uniquely identified as CVE-2024-41036. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-41021 | Linux Kernel up to 6.9.11/6.10.1 VM_FAULT_HWPOISON do_exception memory corruption (9e13767ccefd/a3aefb871222/df39038cd895 / Nessus ID 210060)
2 weeks 1 day ago
A vulnerability has been found in Linux Kernel up to 6.9.11/6.10.1 and classified as critical. This vulnerability affects the function do_exception of the component VM_FAULT_HWPOISON Handler. The manipulation leads to memory corruption.
This vulnerability was named CVE-2024-41021. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-41028 | Linux Kernel up to 6.1.99/6.6.40/6.9.9 toshiba_acpi out-of-bounds (Nessus ID 210060)
2 weeks 1 day ago
A vulnerability was found in Linux Kernel up to 6.1.99/6.6.40/6.9.9 and classified as problematic. Affected by this issue is some unknown functionality of the component toshiba_acpi. The manipulation leads to out-of-bounds read.
This vulnerability is handled as CVE-2024-41028. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-41051 | Linux Kernel up to 6.1.99/6.6.40/6.9.9 cachefiles ondemand_object_worker use after free (Nessus ID 210060)
2 weeks 1 day ago
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.1.99/6.6.40/6.9.9. Affected is the function ondemand_object_worker of the component cachefiles. The manipulation leads to use after free.
This vulnerability is traded as CVE-2024-41051. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-41031 | Linux Kernel up to 6.6.40/6.9.9 filemap lib/xarray.c allocation of resources (06b5a69c27ec/1ef650d3b1b2/3390916aca7a / Nessus ID 210060)
2 weeks 1 day ago
A vulnerability classified as problematic was found in Linux Kernel up to 6.6.40/6.9.9. Affected by this vulnerability is an unknown functionality in the library lib/xarray.c of the component filemap. The manipulation leads to allocation of resources.
This vulnerability is known as CVE-2024-41031. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-42150 | Linux Kernel up to 6.9.8 MSI/INTx request_irq denial of service (850103ebe6b0/bd07a9817846 / Nessus ID 210060)
2 weeks 1 day ago
A vulnerability was found in Linux Kernel up to 6.9.8. It has been classified as critical. This affects the function request_irq of the component MSI/INTx. The manipulation leads to denial of service.
This vulnerability is uniquely identified as CVE-2024-42150. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
11月特别活动来啦!首杀奖励+实物好礼+新人专享活动
2 weeks 1 day ago
2024.11.1-2024.11.30先知11月特别活动特别来袭丰厚现金奖励叠加贴心冬衣心动不如行动 速来先知平台挖洞活动范围:阿里全部业务特别提醒:11月1日-12日阿里电商相关及其他所有正在进行
EmeraldWhale's Massive Git Breach Highlights Config Gaps
2 weeks 1 day ago
The large-scale operation took advantage of open repositories, hardcoded credentials in source code, and other cloud oversights.
Kristina Beek, Associate Editor, Dark Reading
产品几年后的样子
2 weeks 1 day ago
Slax Note 和 Slax Reader,都是我愿意长期做的工具,前几天看到一句“时间会奖励朝着一个方向慢慢走的人”,就日拱一卒吧。
样本分析 | 非官方火绒剑存在后门风险,谨慎下载使用
2 weeks 1 day ago
近期,火绒安全实验室在某论坛中发现一名用户发帖上传了被篡改过的火绒剑程序。目前,火绒安全产品可对上述被篡改的病毒样本进行拦截查杀。同时我们也希望大家在官方渠道下载软件,避免企业或个人信息及财产存在被泄露的风险。
CVE-2016-6434 | Cisco FirePOWER Management Center 6.0.1 CLI improper authentication (CSCva30370 / EDB-40465)
2 weeks 1 day ago
A vulnerability classified as critical was found in Cisco FirePOWER Management Center 6.0.1. This vulnerability affects unknown code of the component CLI. The manipulation leads to improper authentication.
This vulnerability was named CVE-2016-6434. It is possible to launch the attack on the local host. Furthermore, there is an exploit available.
vuldb.com
AU10TIX Q3 2024 Global Identity Fraud Report Detects Skyrocketing Social Media Attacks
2 weeks 1 day ago