|
11
|
7.8
-
|
HIGH
Local
|
An issue was discovered in psi/zfile.c in Artifex Ghostscript before 10.04.0. Out-of-bounds data access in filenameforall can lead to arbitrary code execution.
|
CWE-125
Out-of-bounds Read
|
CVE-2024-46956
|
cpe:2.3:o:debian:debian_linux:12.0:*
|
|
|
|
|
2024-11-15 05:39
2024-11-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
12
|
7.8
-
|
HIGH
Local
|
An issue was discovered in psi/zcolor.c in Artifex Ghostscript before 10.04.0. An unchecked Implementation pointer in Pattern color space could lead to arbitrary code execution.
|
CWE-824
Access of Uninitialized Pointer
|
CVE-2024-46951
|
cpe:2.3:o:debian:debian_linux:12.0:*
|
|
|
|
|
2024-11-14 11:13
2024-11-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
13
|
7.8
-
|
HIGH
Local
|
In the Linux kernel, the following vulnerability has been resolved:
HID: amd_sfh: free driver_data after destroying hid device
HID driver callbacks aren't called anymore once hid_destroy_device() h…
|
CWE-416
Use After Free
|
CVE-2024-46746
|
cpe:2.3:o:debian:debian_linux:11.0:*
|
|
|
|
|
2026-04-23 22:54
2024-09-18
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
14
|
7.8
-
|
HIGH
Local
|
In the Linux kernel, the following vulnerability has been resolved:
drm/amdgpu: Fix out-of-bounds write warning
Check the ring type value to fix the out-of-bounds
write warning
|
CWE-787
Out-of-bounds Write
|
CVE-2024-46725
|
cpe:2.3:o:debian:debian_linux:11.0:*
|
|
|
|
|
2026-04-22 04:06
2024-09-18
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
15
|
7.8
-
|
HIGH
Local
|
In the Linux kernel, the following vulnerability has been resolved:
ipv6: fix possible UAF in ip6_finish_output2()
If skb_expand_head() returns NULL, skb has been freed
and associated dst/idev coul…
|
CWE-416
Use After Free
|
CVE-2024-44986
|
cpe:2.3:o:debian:debian_linux:11.0:*
|
|
|
|
|
2026-04-10 02:42
2024-09-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
16
|
7.8
-
|
HIGH
Local
|
In the Linux kernel, the following vulnerability has been resolved:
drm/amdgpu: Validate TA binary size
Add TA binary size validation to avoid OOB write.
(cherry picked from commit c0a04e3570d72aa…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-44977
|
cpe:2.3:o:debian:debian_linux:11.0:*
|
|
|
|
|
2026-04-10 02:42
2024-09-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
17
|
7.8
-
|
HIGH
Local
|
In the Linux kernel, the following vulnerability has been resolved:
mptcp: pm: avoid possible UaF when selecting endp
select_local_address() and select_signal_address() both select an
endpoint entr…
|
CWE-416
Use After Free
|
CVE-2024-44974
|
cpe:2.3:o:debian:debian_linux:11.0:*
|
|
|
|
|
2026-04-10 02:41
2024-09-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
18
|
8.1
-
|
HIGH
Network
|
A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote a…
|
CWE-362
Race Condition
|
CVE-2024-6387
|
cpe:2.3:o:debian:debian_linux:12.0:*
|
|
|
|
|
2024-11-21 18:49
2024-07-1
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
19
|
9.1
-
|
CRITICAL
Network
|
In MIT Kerberos 5 (aka krb5) before 1.21.3, an attacker can cause invalid memory reads during GSS message token handling by sending message tokens with invalid length fields.
|
NVD-CWE-Other
|
CVE-2024-37371
|
cpe:2.3:o:debian:debian_linux:12.0:* cpe:2.3:o:debian:debian_linux:11.0:*
|
|
|
|
|
2024-11-21 18:23
2024-06-29
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
20
|
4.3
-
|
MEDIUM
Network
|
By monitoring the time certain operations take, an attacker could have guessed which external protocol handlers were functional on a user's system. This vulnerability affects Firefox < 127, Firefox E…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2024-5690
|
cpe:2.3:o:debian:debian_linux:10.0:*
|
|
|
|
|
2024-11-21 18:48
2024-06-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|