|
61
|
5.5
-
|
MEDIUM
Local
|
A flaw was found in QEMU. An assertion failure was present in the usb_ep_get() function in hw/net/core.c when trying to get the USB endpoint from a USB device. This flaw may allow a malicious unprivi…
|
-
|
CVE-2024-8354
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-11-21 18:53
2024-09-19
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
62
|
2.9
-
|
LOW
Physics
|
A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver. A crafted USB device or smart card with malicious responses to the APDUs during the card enrollment process using…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-8443
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-10-1 22:15
2024-09-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
63
|
3.9
-
|
LOW
Physics
|
A vulnerability was found in pkcs15-init in OpenSC. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs.
Insufficient…
|
CWE-908
Use of Uninitialized Resource
|
CVE-2024-45618
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-09-14 01:30
2024-09-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
64
|
3.9
-
|
LOW
Physics
|
A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially craft…
|
CWE-908
Use of Uninitialized Resource
|
CVE-2024-45617
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-09-14 04:21
2024-09-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
65
|
3.9
-
|
LOW
Physics
|
A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially craft…
|
CWE-908
Use of Uninitialized Resource
|
CVE-2024-45616
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-09-14 04:21
2024-09-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
66
|
3.9
-
|
LOW
Physics
|
A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK.
The problem is missing initialization of variables expected to be initialized (as arguments to other function…
|
CWE-908
Use of Uninitialized Resource
|
CVE-2024-45615
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-09-14 04:21
2024-09-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
67
|
3.9
-
|
LOW
Physics
|
A vulnerability was found in the pkcs15-init tool in OpenSC. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. When …
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-45620
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-09-20 04:21
2024-09-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
68
|
4.3
-
|
MEDIUM
Physics
|
A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially craft…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-45619
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-09-24 08:26
2024-09-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
69
|
7.5
-
|
HIGH
Network
|
An issue was discovered in FRRouting (FRR) through 10.1. bgp_attr_encap in bgpd/bgp_attr.c does not check the actual remaining stream length before taking the TLV value.
|
NVD-CWE-noinfo
|
CVE-2024-44070
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-08-31 01:19
2024-08-19
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
70
|
7.5
-
|
HIGH
Network
|
A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`. This issue may allow an attacker to trigger memory allocation failures through certain means, such as restricting the heap sp…
|
-
|
CVE-2024-7006
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 18:50
2024-08-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|