|
251661
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
HID: core: fix shift-out-of-bounds in hid_report_raw_event
Syzbot reported shift-out-of-bounds in hid_report_raw_event.
microsof…
|
NVD-CWE-Other
|
CVE-2022-48978
|
2024-10-26 03:46 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251662
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: fix array index out of bound error in DCN32 DML
[Why&How]
LinkCapacitySupport array is indexed with the number o…
|
CWE-129
Improper Validation of Array Index
|
CVE-2022-48979
|
2024-10-26 03:40 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251663
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net: dsa: sja1105: avoid out of bounds access in sja1105_init_l2_policing()
The SJA1105 family has 45 L2 policing table entries
(…
|
CWE-787
Out-of-bounds Write
|
CVE-2022-48980
|
2024-10-26 03:36 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251664
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/shmem-helper: Remove errant put in error path
drm_gem_shmem_mmap() doesn't own this reference, resulting in the GEM
object ge…
|
CWE-416
Use After Free
|
CVE-2022-48981
|
2024-10-26 03:33 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251665
|
8.1 |
HIGH
Network
|
microsoft
|
windows_server_2012 windows_10_1507 windows_server_2016 windows_server_2022_23h2 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_10_1607 windows_server_2019 windows…
|
Windows MSHTML Platform Spoofing Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43573
|
2024-10-26 03:17 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251666
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10_1507 windows_server_2016 windows_server_2022_23h2 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_10_1607 windows…
|
Microsoft Management Console Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43572
|
2024-10-26 03:17 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251667
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: Fix crash when replugging CSR fake controllers
It seems fake CSR 5.0 clones can cause the suspend notifier to be
regis…
|
NVD-CWE-noinfo
|
CVE-2022-48982
|
2024-10-26 03:12 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251668
|
- |
|
-
|
-
|
In lwis_device_event_states_clear_locked of lwis_event.c, there is a possible privilege escalation due to a double free. This could lead to local escalation of privilege with no additional execution …
|
-
|
CVE-2024-44098
|
2024-10-26 02:35 |
2024-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251669
|
- |
|
-
|
-
|
Nagios XI before 2024R1 was discovered to improperly handle API keys generation (randomly-generated), allowing attackers to possibly generate the same set of API keys for all users and utilize them t…
|
-
|
CVE-2023-48082
|
2024-10-26 02:15 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251670
|
8.1 |
HIGH
Network
|
google
|
chrome
|
Inappropriate implementation in Extensions in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to bypass site isolation via a crafted Chrome Extension. (Chromium security severity: High)
|
NVD-CWE-noinfo
|
CVE-2024-10229
|
2024-10-26 02:04 |
2024-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|