1581
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net: bcmasp: fix potential memory leak in bcmasp_xmit()
The bcmasp_xmit() returns NETDEV_TX_OK without freeing skb
in case of map…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2024-50170
|
2024-11-14 01:44 |
2024-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1582
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
bpf: Check the remaining info_cnt before repeating btf fields
When trying to repeat the btf fields for array of nested struct, it…
|
CWE-129
Improper Validation of Array Index
|
CVE-2024-50161
|
2024-11-14 01:36 |
2024-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1583
|
- |
|
-
|
-
|
An issue Hoosk v1.7.1 allows a remote attacker to execute arbitrary code via a crafted script to the config.php component.
|
-
|
CVE-2024-51055
|
2024-11-14 01:35 |
2024-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1584
|
- |
|
-
|
-
|
An incorrect access control issue in HomeServe Home Repair' android app - 3.3.4 allows a physically proximate attacker to escalate privileges via the fingerprint authentication function.
|
-
|
CVE-2024-40240
|
2024-11-14 01:35 |
2024-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1585
|
- |
|
-
|
-
|
Potential vulnerabilities have been identified in the HP Display Control software component within the HP Application Enabling Software Driver which might allow escalation of privilege.
|
-
|
CVE-2024-29080
|
2024-11-14 01:35 |
2024-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1586
|
- |
|
-
|
-
|
A Cross Site Scripting vulnerability exists in Piwigo before 14.3.0 script because of missing sanitization in create_tag in admin/include/functions.php.
|
-
|
CVE-2024-28662
|
2024-11-14 01:35 |
2024-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1587
|
2.7 |
LOW
Network
|
-
|
-
|
Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Enterprise Infrastructure SEC). Supported versions that are affected are Prior to 9.2.8.0. Easily exploit…
|
-
|
CVE-2024-20905
|
2024-11-14 01:35 |
2024-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1588
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
firmware: arm_scmi: Fix the double free in scmi_debugfs_common_setup()
Clang static checker(scan-build) throws below warning?
|…
|
CWE-415
Double Free
|
CVE-2024-50159
|
2024-11-14 01:19 |
2024-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1589
|
7.0 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
tcp/dccp: Don't use timer_pending() in reqsk_queue_unlink().
Martin KaFai Lau reported use-after-free [0] in reqsk_timer_handler(…
|
CWE-416
Use After Free
|
CVE-2024-50154
|
2024-11-14 01:17 |
2024-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1590
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net/sun3_82586: fix potential memory leak in sun3_82586_send_packet()
The sun3_82586_send_packet() returns NETDEV_TX_OK without f…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2024-50168
|
2024-11-14 01:16 |
2024-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|