|
81
|
5.5
-
|
MEDIUM
Local
|
A flaw was found in Shim when an error happened while creating a new ESL variable. If Shim fails to create the new variable, it tries to print an error message to the user; however, the number of par…
|
CWE-476
NULL Pointer Dereference
|
CVE-2023-40546
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:19
2024-01-30
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
82
|
7.8
-
|
HIGH
Local
|
A null pointer dereference flaw was found in the hugetlbfs_fill_super function in the Linux kernel hugetlbfs (HugeTLB pages) functionality. This issue may allow a local user to crash the system or po…
|
-
|
CVE-2024-0841
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:47
2024-01-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
83
|
7.5
-
|
HIGH
Network
|
A segment fault (SEGV) flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFReadRGBATileExt() API. This flaw allows a remote attacker to cause a heap-buffer ove…
|
CWE-122 CWE-787
Heap-based Buffer Overflow Out-of-bounds Write
|
CVE-2023-52356
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2026-04-10 06:16
2024-01-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
84
|
7.5
-
|
HIGH
Network
|
An out-of-memory flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFRasterScanlineSize64() API. This flaw allows a remote attacker to cause a denial of servic…
|
CWE-787
Out-of-bounds Write
|
CVE-2023-52355
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:39
2024-01-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
85
|
8.3
-
|
HIGH
Adjacent
|
A remote code execution vulnerability was found in Shim. The Shim boot support trusts attacker-controlled values when parsing an HTTP response. This flaw allows an attacker to craft a specific malici…
|
-
|
CVE-2023-40547
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-11-21 17:19
2024-01-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
86
|
7.1
-
|
HIGH
Local
|
A use-after-free flaw was found in the __ext4_remount in fs/ext4/super.c in ext4 in the Linux kernel. This flaw allows a local user to cause an information leak problem while freeing the old quota fi…
|
CWE-416
Use After Free
|
CVE-2024-0775
|
cpe:2.3:o:redhat:enterprise_linux:9.0:*
|
|
|
|
|
2024-11-21 17:47
2024-01-22
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
87
|
7.0
-
|
HIGH
Local
|
A use-after-free flaw was found in the Linux Kernel due to a race problem in the unix garbage collector's deletion of SKB races with unix_stream_read_generic() on the socket that the SKB is queued on.
|
-
|
CVE-2023-6531
|
cpe:2.3:o:redhat:enterprise_linux:9.0:*
|
|
|
|
|
2024-11-21 17:44
2024-01-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
88
|
6.6
-
|
MEDIUM
Local
|
A flaw was found in the Netfilter subsystem in the Linux kernel. The issue is in the nft_byteorder_eval() function, where the code iterates through a loop and writes to the `dst` array. On each itera…
|
NVD-CWE-Other
|
CVE-2024-0607
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:46
2024-01-19
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
89
|
7.8
-
|
HIGH
Local
|
A flaw was found in the X.Org server. The cursor code in both Xephyr and Xwayland uses the wrong type of private at creation. It uses the cursor bits type with the cursor as private, and when initiat…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-0409
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-11-21 17:46
2024-01-19
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
90
|
5.5
-
|
MEDIUM
Local
|
A flaw was found in the X.Org server. The GLX PBuffer code does not call the XACE hook when creating the buffer, leaving it unlabeled. When the client issues another request to access that resource (…
|
NVD-CWE-Other
|
CVE-2024-0408
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-11-21 17:46
2024-01-19
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|