Aggregator
冒牌PDF编辑器分发TamperedChef信息窃取木马
9 months 2 weeks ago
安全客
CVE-2024-42075 | Linux Kernel up to 6.9.7 bpf arena_vm_close use after free (87496a1b01e8/b90d77e5fd78 / WID-SEC-2024-1722)
9 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 6.9.7. It has been classified as critical. Impacted is the function arena_vm_close of the component bpf. Performing manipulation results in use after free.
This vulnerability is cataloged as CVE-2024-42075. The attack must originate from the local network. There is no exploit available.
Upgrading the affected component is recommended.
vuldb.com
CVE-2024-42074 | Linux Kernel up to 6.6.36/6.9.7 ASoC snd_acp_resume chip_pdev null pointer dereference (e158ed266fc1/b0c39ae1cc86/98d919dfee1c / Nessus ID 210060)
9 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 6.6.36/6.9.7 and classified as critical. The impacted element is the function snd_acp_resume of the component ASoC. Executing manipulation of the argument chip_pdev can lead to null pointer dereference.
This vulnerability is tracked as CVE-2024-42074. The attack is only possible within the local network. No exploit exists.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2024-42071 | Linux Kernel up to 6.9.7 ionic napi_consume_skb stack-based overflow (ef7646ed49ff/84b767f9e34f / WID-SEC-2024-1722)
9 months 2 weeks ago
A vulnerability labeled as critical has been found in Linux Kernel up to 6.9.7. The impacted element is the function napi_consume_skb of the component ionic. The manipulation results in stack-based buffer overflow.
This vulnerability is known as CVE-2024-42071. Access to the local network is required for this attack. No exploit is available.
The affected component should be upgraded.
vuldb.com
CVE-2024-42072 | Linux Kernel up to 6.9.7 bpf may_goto infinite loop (175827e04f4b/2b2efe1937ca / Nessus ID 215820)
9 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 6.9.7 and classified as critical. This issue affects the function may_goto of the component bpf. Such manipulation leads to infinite loop.
This vulnerability is listed as CVE-2024-42072. The attack must be carried out from within the local network. There is no available exploit.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2024-42073 | Linux Kernel up to 6.1.96/6.6.36/6.9.7 on Spectrum spectrum_buffers port_page use after free (Nessus ID 210060 / WID-SEC-2024-1722)
9 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.1.96/6.6.36/6.9.7 on Spectrum. Affected by this issue is some unknown functionality of the component spectrum_buffers. The manipulation of the argument port_page leads to use after free.
This vulnerability is referenced as CVE-2024-42073. The attack needs to be initiated within the local network. No exploit is available.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2024-42069 | Linux Kernel up to 6.6.36/6.9.7 mana auxiliary_device_add double free (3243e64eb4d8/ed45c0a0b662/1864b8224195 / Nessus ID 210060)
9 months 2 weeks ago
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.6.36/6.9.7. Impacted is the function auxiliary_device_add of the component mana. Such manipulation leads to double free.
This vulnerability is referenced as CVE-2024-42069. The attack needs to be initiated within the local network. No exploit is available.
You should upgrade the affected component.
vuldb.com
CVE-2024-42070 | Linux Kernel up to 6.9.7 nf_tables memory leak (Nessus ID 207802 / WID-SEC-2024-1722)
9 months 2 weeks ago
A vulnerability was found in Linux Kernel up to 6.9.7. It has been classified as problematic. This affects an unknown function of the component nf_tables. The manipulation leads to memory leak.
This vulnerability is listed as CVE-2024-42070. The attack must be carried out from within the local network. There is no available exploit.
Upgrading the affected component is recommended.
vuldb.com
CVE-2024-42068 | Linux Kernel up to 5.15.161/6.1.96/6.6.36/6.6.37/6.9.7 bpf set_memory_ro memory corruption (Nessus ID 207738 / WID-SEC-2024-1722)
9 months 2 weeks ago
A vulnerability categorized as critical has been discovered in Linux Kernel up to 5.15.161/6.1.96/6.6.36/6.6.37/6.9.7. This affects the function set_memory_ro of the component bpf. The manipulation results in memory corruption.
This vulnerability is reported as CVE-2024-42068. The attacker must have access to the local network to execute the attack. No exploit exists.
It is advisable to upgrade the affected component.
vuldb.com
Malicious npm Package Masquerades as Popular Email Library
9 months 2 weeks ago
A malicious npm package “nodejs-smtp” has been discovered impersonating nodemailer and injecting code to drain crypto wallets
虚假TradingView广告推送Brokewell安卓银行木马
9 months 2 weeks ago
安全客
Anubis
9 months 2 weeks ago
You must login to view this content
cohenido
Google молчит о сбоях, РКН отрицает блокировки. Локальные проблемы или избирательные сбои?
9 months 2 weeks ago
Пользователи жалуются на обрывы звонков и отсутствие звука.
Dell security advisory (AV25-558)
9 months 2 weeks ago
Canadian Centre for Cyber Security
微软敦促OEM厂商修复Win11系统USB-C接口提示问题
9 months 2 weeks ago
安全客
IBM security advisory (AV25-557)
9 months 2 weeks ago
Canadian Centre for Cyber Security
行业首推!360大模型安全能力斩获权威认证
9 months 2 weeks ago
安全客
Everest
9 months 2 weeks ago
You must login to view this content
cohenido
再添数字政府新名片!深圳“深治慧”平台入选2025数博会创新案例
9 months 2 weeks ago
安全客