Aggregator
CVE-2024-9029 | Freeimage tiff_read_iptc_profile heap-based overflow
1 year ago
A vulnerability was found in Freeimage. It has been declared as critical. This vulnerability affects the function tiff_read_iptc_profile. The manipulation leads to heap-based buffer overflow.
This vulnerability was named CVE-2024-9029. Access to the local network is required for this attack. There is no exploit available.
vuldb.com
CVE-2024-6654 | ESET Cyber Security/Endpoint Security on macOS temp file
1 year ago
A vulnerability classified as problematic was found in ESET Cyber Security and Endpoint Security on macOS. This vulnerability affects unknown code. The manipulation leads to insecure temporary file.
This vulnerability was named CVE-2024-6654. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-38861 | Checkmk Exchange Plugin up to 2.0a/2.5.5 certificate validation
1 year ago
A vulnerability, which was classified as problematic, has been found in Checkmk Exchange Plugin up to 2.0a/2.5.5. This issue affects some unknown processing. The manipulation leads to improper certificate validation.
The identification of this vulnerability is CVE-2024-38861. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-39431 | Unisoc S8000 UMTS RLC Driver out-of-bounds write
1 year ago
A vulnerability was found in Unisoc SC7731E, SC9832E, SC9863A, T310, T606, T612, T616, T610, T618, T760, T770, T820 and S8000 and classified as critical. Affected by this issue is some unknown functionality of the component UMTS RLC Driver. The manipulation leads to out-of-bounds write.
This vulnerability is handled as CVE-2024-39431. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com
CVE-2024-39432 | Unisoc S8000 UMTS RLC Driver out-of-bounds
1 year ago
A vulnerability was found in Unisoc SC7731E, SC9832E, SC9863A, T310, T606, T612, T616, T610, T618, T760, T770, T820 and S8000. It has been classified as critical. This affects an unknown part of the component UMTS RLC Driver. The manipulation leads to out-of-bounds read.
This vulnerability is uniquely identified as CVE-2024-39432. The attack needs to be done within the local network. There is no exploit available.
vuldb.com
CVE-2024-39434 | Unisoc T606/T612/T616/T610/T618/T760/T770/T820/S8000 Drm Service out-of-bounds
1 year ago
A vulnerability was found in Unisoc T606, T612, T616, T610, T618, T760, T770, T820 and S8000. It has been declared as critical. This vulnerability affects unknown code of the component Drm Service. The manipulation leads to out-of-bounds read.
This vulnerability was named CVE-2024-39434. It is possible to launch the attack on the local host. There is no exploit available.
vuldb.com
CVE-2024-39433 | Unisoc T606/T612/T616/T610/T618/T760/T770/T820/S8000 Drm Service out-of-bounds write
1 year ago
A vulnerability was found in Unisoc T606, T612, T616, T610, T618, T760, T770, T820 and S8000. It has been rated as critical. This issue affects some unknown processing of the component Drm Service. The manipulation leads to out-of-bounds write.
The identification of this vulnerability is CVE-2024-39433. The attack needs to be approached locally. There is no exploit available.
vuldb.com
Nitrogen
1 year ago
cohenido
Nitrogen
1 year ago
cohenido
CVE-2014-7124 | Consulo IP Alarm 1.4 X.509 Certificate cryptographic issues (VU#582497)
1 year ago
A vulnerability was found in Consulo IP Alarm 1.4. It has been declared as critical. This vulnerability affects unknown code of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability was named CVE-2014-7124. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com
Nitrogen
1 year ago
cohenido
Nitrogen
1 year ago
cohenido
Nitrogen
1 year ago
cohenido
Infosec products of the month: September 2024
1 year ago
Here’s a look at the most interesting products from the past month, featuring releases from: Absolute, anecdotes, ArmorCode, Binarly, Bitdefender, Druva, F5 Networks, Gcore, Guardsquare, Huntress, Ketch, LOKKER, Malwarebytes, NETGEAR, Nudge Security, Prompt Security, Rapid7, Revenera, Skyhigh Security, Strivacity, Tenable, Trellix, Vanta, Veritas Technologies, and Wing Security. Bitdefender Security for Creators protects YouTube content creators and influencers from hackers Bitdefender Security for Creators safeguards content channels and social media accounts from takeovers and supports Windows, … More →
The post Infosec products of the month: September 2024 appeared first on Help Net Security.
Help Net Security
Nitrogen
1 year ago
cohenido
CVE-2011-1591 | Wireshark 1.4.0/1.4.1/1.4.2/1.4.3/1.4.4 memory corruption (EDB-17195 / Nessus ID 53561)
1 year ago
A vulnerability classified as very critical was found in Wireshark 1.4.0/1.4.1/1.4.2/1.4.3/1.4.4. Affected by this vulnerability is an unknown functionality. The manipulation leads to memory corruption.
This vulnerability is known as CVE-2011-1591. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Kill
1 year ago
cohenido
ThreeAM
1 year ago
cohenido
ThreeAM
1 year ago
cohenido