|
249221
|
7.2 |
HIGH
Network
|
dell
|
enterprise_sonic_distribution
|
Dell Enterprise SONiC OS, version(s) 4.1.x, 4.2.x, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A high privileged attacker w…
|
CWE-78
OS Command
|
CVE-2024-45763
|
2024-11-14 01:52 |
2024-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249222
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net: bcmasp: fix potential memory leak in bcmasp_xmit()
The bcmasp_xmit() returns NETDEV_TX_OK without freeing skb
in case of map…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2024-50170
|
2024-11-14 01:44 |
2024-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249223
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
bpf: Check the remaining info_cnt before repeating btf fields
When trying to repeat the btf fields for array of nested struct, it…
|
CWE-129
Improper Validation of Array Index
|
CVE-2024-50161
|
2024-11-14 01:36 |
2024-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249224
|
- |
|
-
|
-
|
An issue Hoosk v1.7.1 allows a remote attacker to execute arbitrary code via a crafted script to the config.php component.
|
-
|
CVE-2024-51055
|
2024-11-14 01:35 |
2024-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249225
|
- |
|
-
|
-
|
An incorrect access control issue in HomeServe Home Repair' android app - 3.3.4 allows a physically proximate attacker to escalate privileges via the fingerprint authentication function.
|
-
|
CVE-2024-40240
|
2024-11-14 01:35 |
2024-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249226
|
7.0 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
tcp/dccp: Don't use timer_pending() in reqsk_queue_unlink().
Martin KaFai Lau reported use-after-free [0] in reqsk_timer_handler(…
|
CWE-416
Use After Free
|
CVE-2024-50154
|
2024-11-14 01:17 |
2024-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249227
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net/sun3_82586: fix potential memory leak in sun3_82586_send_packet()
The sun3_82586_send_packet() returns NETDEV_TX_OK without f…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2024-50168
|
2024-11-14 01:16 |
2024-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249228
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
ALSA: hda/cs8409: Fix possible NULL dereference
If snd_hda_gen_add_kctl fails to allocate memory and returns NULL, then
NULL poin…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-50160
|
2024-11-14 01:13 |
2024-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249229
|
6.5 |
MEDIUM
Adjacent
|
zephyrproject
|
zephyr
|
In ascs_cp_rsp_add in /subsys/bluetooth/audio/ascs.c, an unchecked tailroom could lead to a global buffer overflow.
|
CWE-787
Out-of-bounds Write
|
CVE-2024-6442
|
2024-11-14 01:04 |
2024-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249230
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
RDMA/bnxt_re: Fix a possible memory leak
In bnxt_re_setup_chip_ctx() when bnxt_qplib_map_db_bar() fails
driver is not freeing the…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2024-50172
|
2024-11-14 00:55 |
2024-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|