Aggregator
TOTOLINK X6000R Routers Hit by Three Vulnerabilities Allowing Remote Code Execution
Three critical security flaws were discovered in firmware version V9.4.0cu.1360_B20241207 of the TOTOLINK X6000R router released on March 28, 2025. These vulnerabilities range from argument injection and command injection to a security bypass that can lead to remote code execution. Attackers can crash devices, corrupt system files, and execute arbitrary commands without authentication. Users must […]
The post TOTOLINK X6000R Routers Hit by Three Vulnerabilities Allowing Remote Code Execution appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Chrome Security Update Patches 21 Vulnerabilities that Allow Attackers to Execute Arbitrary Code
Google has released Chrome 141 to address 21 security vulnerabilities, including critical flaws that could allow attackers to crash browsers and potentially execute malicious code. The update, rolling out across Windows, Mac, and Linux platforms, patches several high-severity vulnerabilities that pose significant risks to user security. The most severe vulnerability addressed is CVE-2025-11205, a heap […]
The post Chrome Security Update Patches 21 Vulnerabilities that Allow Attackers to Execute Arbitrary Code appeared first on Cyber Security News.
CVE-2024-53074 | Linux Kernel up to 6.11.6 iwlwifi information disclosure (70ddf9ce1894/3ed092997a00 / Nessus ID 216493)
CVE-2024-53077 | Linux Kernel up to 6.11.6 rpcrdma xa_init_flags memory leak (36b7f5a4f300/63a81588cd20 / Nessus ID 216493)
CVE-2024-53086 | Linux Kernel up to 6.11.7 drm xe_sync_in_fence_get locking (96397b1e25dd/64a2b6ed4bfd / Nessus ID 216493)
CVE-2024-53087 | Linux Kernel up to 6.11.7 xe memory leak (2f92b77a8ce0/af797b831d89 / Nessus ID 216493)
CVE-2024-53084 | Linux Kernel up to 6.11.7 imagination reference count (cb86db12b290/b04ce1e718bd / Nessus ID 216493)
CVE-2024-53083 | Linux Kernel up to 6.6.60/6.11.7 qcom-pmic hdr_len/txbuf_len uninitialized pointer (35925e2b7b40/74d8cee747b3/029778a4fd2c / Nessus ID 216493)
CVE-2024-53079 | Linux Kernel up to 6.6.61/6.11.7 THP folio_undo_large_rmappable allocation of resources (fc4951c3e335/afb1352d06b1/f8f931bba0f9 / Nessus ID 213018)
CVE-2024-53070 | Linux Kernel up to 5.15.171/6.1.116/6.6.60/6.11.7 dwc3_core_exit denial of service (Nessus ID 211777 / WID-SEC-2024-3509)
CVE-2024-53081 | Linux Kernel up to 6.1.116/6.6.60/6.11.7 ar0521 integer underflow (Nessus ID 211777 / WID-SEC-2024-3509)
CVE-2024-53072 | Linux Kernel up to 6.1.116/6.6.60/6.11.7 amd_pmc information exposure (Nessus ID 211777 / WID-SEC-2024-3509)
Termix Docker Image Leaking SSH Credentials (CVE-2025-59951)
A critical vulnerability in the official Termix Docker image puts users at risk of exposing sensitive SSH credentials. The flaw allows anyone with network access to retrieve stored host addresses, usernames, and passwords without logging in. How the Vulnerability Works Termix provides a Docker image that runs a Node.js backend behind an Nginx reverse proxy. […]
The post Termix Docker Image Leaking SSH Credentials (CVE-2025-59951) appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.