1101
|
4.6 |
MEDIUM
Physics
|
samsung
|
flow
|
Improper access control in Samsung Flow prior to version 4.9.15.7 allows physical attackers to access data across multiple user profiles.
Update
|
NVD-CWE-noinfo
|
CVE-2024-49407
|
2024-11-13 09:53 |
2024-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1102
|
6.7 |
MEDIUM
Local
|
samsung
|
galaxy_s24_firmware
|
Out-of-bounds write in Battery Full Capacity node prior to Firmware update Sep-2024 Release on Galaxy S24 allows local attackers to write out-of-bounds memory. System privilege is required for trigge…
Update
|
CWE-787
Out-of-bounds Write
|
CVE-2024-49409
|
2024-11-13 09:51 |
2024-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1103
|
6.7 |
MEDIUM
Local
|
samsung
|
galaxy_s24_firmware
|
Out-of-bounds write in usb driver prior to Firmware update Sep-2024 Release on Galaxy S24 allows local attackers to write out-of-bounds memory. System privilege is required for triggering this vulner…
Update
|
CWE-787
Out-of-bounds Write
|
CVE-2024-49408
|
2024-11-13 09:51 |
2024-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1104
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf_tables: prevent nf_skb_duplicated corruption
syzbot found that nf_dup_ipv4() or nf_dup_ipv6() could write
per-cpu v…
Update
|
NVD-CWE-noinfo
|
CVE-2024-49952
|
2024-11-13 09:46 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1105
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
sfc: Don't invoke xdp_do_flush() from netpoll.
Yury reported a crash in the sfc driver originated from
netpoll_send_udp(). The ne…
Update
|
NVD-CWE-noinfo
|
CVE-2024-50094
|
2024-11-13 09:42 |
2024-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1106
|
3.3 |
LOW
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net: netconsole: fix wrong warning
A warning is triggered when there is insufficient space in the buffer
for userdata. However, t…
Update
|
NVD-CWE-noinfo
|
CVE-2024-50092
|
2024-11-13 09:40 |
2024-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1107
|
9.1 |
CRITICAL
Network
mitsubishielectric
|
fx3u-32mt\/es_firmware fx3u-48mt\/es_firmware fx3u-64mt\/es_firmware fx3u-80mt\/es_firmware fx3u-128mt\/e_firmware fx3u-16mt\/es_firmware fx3u-16mr\/es_firmware fx3u-32mr\/es_fir…
|
Missing Authentication for Critical Function vulnerability in Mitsubishi Electric Corporation MELSEC-F Series CPU modules, MELSEC iQ-F Series, MELSEC iQ-R series CPU modules, MELSEC iQ-R series, MELS…
Update
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2023-4699
|
2024-11-13 09:15 |
2023-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
1108
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
dm vdo: don't refer to dedupe_context after releasing it
Clear the dedupe_context pointer in a data_vio whenever ownership of
the…
Update
|
NVD-CWE-noinfo
|
CVE-2024-50091
|
2024-11-13 06:44 |
2024-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1109
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/xe/oa: Fix overflow in oa batch buffer
By default xe_bb_create_job() appends a MI_BATCH_BUFFER_END to batch
buffer, this is n…
Update
|
NVD-CWE-noinfo
|
CVE-2024-50090
|
2024-11-13 06:41 |
2024-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1110
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
ppp: do not assume bh is held in ppp_channel_bridge_input()
Networking receive path is usually handled from BH handler.
However, …
Update
|
NVD-CWE-noinfo
|
CVE-2024-49946
|
2024-11-13 06:37 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|