A vulnerability was found in Linux Kernel up to 6.11.2. It has been rated as critical. This issue affects the function hda_sdw_machine_select. The manipulation leads to infinite loop.
The identification of this vulnerability is CVE-2024-50011. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.6.53/6.7/6.10.12/6.11.1. It has been declared as problematic. Affected by this vulnerability is the function mt7915_band_config. The manipulation leads to race condition.
This vulnerability is known as CVE-2024-47715. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Progress Sitefinity up to 14.4.8142/15.0.8229/15.1.8327/15.2.8421 and classified as critical. This vulnerability affects unknown code. The manipulation leads to session expiration.
This vulnerability was named CVE-2024-11627. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, was found in Progress Software Sitefinity up to 14.4.8142/15.0.8229/15.1.8327/15.2.8421. This affects an unknown part. The manipulation leads to information exposure through error message.
This vulnerability is uniquely identified as CVE-2024-11625. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday said there are no indications that the cyber attack targeting the Treasury Department impacted other federal agencies.
The agency said it's working closely with the Treasury Department and BeyondTrust to get a better understanding of the breach and mitigate its impacts.
"The security of federal systems and the data they