Aggregator
CVE-2024-46744 | Linux Kernel up to 6.10.9 Length Variables squashfs_read_inode memory corruption
1 year 5 months ago
A vulnerability was found in Linux Kernel up to 6.10.9 and classified as critical. Affected by this issue is the function squashfs_read_inode of the component Length Variables Handler. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2024-46744. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46742 | Linux Kernel up to 6.6.50/6.10.9 SMB Server smb2_open null pointer dereference (07f384c5be1f/3b692794b81f/4e8771a3666c)
1 year 5 months ago
A vulnerability has been found in Linux Kernel up to 6.6.50/6.10.9 and classified as critical. Affected by this vulnerability is the function smb2_open of the component SMB Server. The manipulation leads to null pointer dereference.
This vulnerability is known as CVE-2024-46742. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46740 | Linux Kernel up to 6.10.9 binder use after free
1 year 5 months ago
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.10.9. Affected is an unknown function of the component binder. The manipulation leads to use after free.
This vulnerability is traded as CVE-2024-46740. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46739 | Linux Kernel up to 6.10.9 uio_hv_generic null pointer dereference
1 year 5 months ago
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.10.9. This issue affects some unknown processing of the component uio_hv_generic. The manipulation leads to null pointer dereference.
The identification of this vulnerability is CVE-2024-46739. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46737 | Linux Kernel up to 6.10.9 nvmet-tcp nvmet_tcp_alloc_cmds null pointer dereference
1 year 5 months ago
A vulnerability classified as critical was found in Linux Kernel up to 6.10.9. This vulnerability affects the function nvmet_tcp_alloc_cmds of the component nvmet-tcp. The manipulation leads to null pointer dereference.
This vulnerability was named CVE-2024-46737. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46736 | Linux Kernel up to 6.6.50/6.10.9 SMB Client smb2_rename_path use after free (b27ea9c96efd/1a46c7f6546b/3523a3df03c6)
1 year 5 months ago
A vulnerability classified as critical has been found in Linux Kernel up to 6.6.50/6.10.9. This affects the function smb2_rename_path of the component SMB Client. The manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2024-46736. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46782 | Linux Kernel up to 6.10.9 rhashtable.h nf_unregister_net_hooks use after free
1 year 5 months ago
A vulnerability was found in Linux Kernel up to 6.10.9. It has been rated as critical. Affected by this issue is the function nf_unregister_net_hooks of the file include/linux/rhashtable.h. The manipulation leads to use after free.
This vulnerability is handled as CVE-2024-46782. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46792 | Linux Kernel up to 6.10.9 raw_copy_to_user/raw_copy_from_user memory corruption (a3b6ff6c896a/b686ecdeacf6)
1 year 5 months ago
A vulnerability was found in Linux Kernel up to 6.10.9. It has been declared as critical. Affected by this vulnerability is the function raw_copy_to_user/raw_copy_from_user. The manipulation leads to memory corruption.
This vulnerability is known as CVE-2024-46792. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46786 | Linux Kernel up to 6.6.50/6.10.9 fscache timer_reduce use after free (e0d724932ad1/0a11262549ac/72a6e22c604c)
1 year 5 months ago
A vulnerability was found in Linux Kernel up to 6.6.50/6.10.9. It has been classified as critical. Affected is the function timer_reduce of the component fscache. The manipulation leads to use after free.
This vulnerability is traded as CVE-2024-46786. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46763 | Linux Kernel up to 5.10.225/5.15.166/6.1.109/6.6.50/6.10.9 FOU GRO fou_gro_receive null pointer dereference
1 year 5 months ago
A vulnerability was found in Linux Kernel up to 5.10.225/5.15.166/6.1.109/6.6.50/6.10.9 and classified as critical. This issue affects the function fou_gro_receive of the component FOU GRO Handler. The manipulation leads to null pointer dereference.
The identification of this vulnerability is CVE-2024-46763. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
十年,变与不变
1 year 5 months ago
变,是探索突破;
不变,是恪守本心。
Chrome Introduces One-Time Permissions and Enhanced Safety Check for Safer Browsing
1 year 5 months ago
Google has announced that it's rolling out a new set of features to its Chrome browser that gives users more control over their data when surfing the internet and protects them against online threats.
"With the newest version of Chrome, you can take advantage of our upgraded Safety Check, opt out of unwanted website notifications more easily and grant select permissions to a site for one time
The Hacker News
CVE-2024-46760 | Linux Kernel up to 6.6.50/6.10.9 rtw88 rtw_rx_fill_rx_status null pointer dereference (c83d464b82a8/25eaef533bf3/adc539784c98)
1 year 5 months ago
A vulnerability has been found in Linux Kernel up to 6.6.50/6.10.9 and classified as critical. This vulnerability affects the function rtw_rx_fill_rx_status of the component rtw88. The manipulation leads to null pointer dereference.
This vulnerability was named CVE-2024-46760. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Understanding cyber-incident disclosure
1 year 5 months ago
Proper disclosure of a cyber-incident can help shield your business from further financial and reputational damage, and cyber-insurers can step in to help
CVE-2024-46746 | Linux Kernel up to 5.15.166/6.1.109/6.6.50/6.10.9 hid_destroy_device use after free
1 year 5 months ago
A vulnerability, which was classified as critical, was found in Linux Kernel up to 5.15.166/6.1.109/6.6.50/6.10.9. This affects the function hid_destroy_device. The manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2024-46746. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46745 | Linux Kernel up to 6.10.9 input_mt_init_slots allocation of resources
1 year 5 months ago
A vulnerability, which was classified as problematic, has been found in Linux Kernel up to 6.10.9. Affected by this issue is the function input_mt_init_slots. The manipulation leads to allocation of resources.
This vulnerability is handled as CVE-2024-46745. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-46741 | Linux Kernel up to 6.6.50/6.10.9 drivers/misc/fastrpc.c fastrpc_req_mmap double free (f77dc8a75859/bfc1704d909d/e8c276d4dc0e)
1 year 5 months ago
A vulnerability classified as critical was found in Linux Kernel up to 6.6.50/6.10.9. Affected by this vulnerability is the function fastrpc_req_mmap of the file drivers/misc/fastrpc.c. The manipulation leads to double free.
This vulnerability is known as CVE-2024-46741. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
补天8月榜单发布 | 恭喜各位白帽黑客!
1 year 5 months ago
榜单发布,速来围观
CVE-2024-46735 | Linux Kernel up to 6.1.109/6.6.50/6.10.9 ublk_ctrl_start_recovery null pointer dereference
1 year 5 months ago
A vulnerability classified as critical has been found in Linux Kernel up to 6.1.109/6.6.50/6.10.9. Affected is the function ublk_ctrl_start_recovery. The manipulation leads to null pointer dereference.
This vulnerability is traded as CVE-2024-46735. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com