|
250711
|
9.8 |
CRITICAL
Network
|
vivektamrakar
|
wp_rest_api_fns
|
Authentication Bypass Using an Alternate Path or Channel vulnerability in Vivek Tamrakar WP REST API FNS allows Authentication Bypass.This issue affects WP REST API FNS: from n/a through 1.0.0.
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2024-49328
|
2024-10-24 02:08 |
2024-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250712
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drivers/perf: Fix ali_drw_pmu driver interrupt status clearing
The alibaba_uncore_pmu driver forgot to clear all interrupt status…
|
CWE-459
Incomplete Cleanup
|
CVE-2024-47731
|
2024-10-24 02:06 |
2024-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250713
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
crypto: hisilicon/qm - inject error before stopping queue
The master ooo cannot be completely closed when the
accelerator core re…
|
CWE-416
Use After Free
|
CVE-2024-47730
|
2024-10-24 02:03 |
2024-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250714
|
4.7 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
fsnotify: clear PARENT_WATCHED flags lazily
In some setups directories can have many (usually negative) dentries.
Hence __fsnotif…
|
CWE-362
Race Condition
|
CVE-2024-47660
|
2024-10-24 02:00 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250715
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
padata: use integer wrap around to prevent deadlock on seq_nr overflow
When submitting more than 2^32 padata objects to padata_do…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2024-47739
|
2024-10-24 01:58 |
2024-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250716
|
7.1 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
powercap: intel_rapl: Fix off by one in get_rpi()
The rp->priv->rpi array is either rpi_msr or rpi_tpmi which have
NR_RAPL_PRIMIT…
|
CWE-193
Off-by-one Error
|
CVE-2024-49862
|
2024-10-24 01:53 |
2024-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250717
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Remove register from DCN35 DMCUB diagnostic collection
[Why]
These registers should not be read from driver and …
|
NVD-CWE-noinfo
|
CVE-2024-47662
|
2024-10-24 01:53 |
2024-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250718
|
7.1 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix helper writes to read-only maps
Lonial found an issue that despite user- and BPF-side frozen BPF map
(like in case of .r…
|
NVD-CWE-noinfo
|
CVE-2024-49861
|
2024-10-24 01:48 |
2024-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250719
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
spi: hisi-kunpeng: Add verification for the max_frequency provided by the firmware
If the value of max_speed_hz is 0, it may caus…
|
CWE-369
Divide By Zero
|
CVE-2024-47664
|
2024-10-24 01:47 |
2024-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250720
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
i3c: mipi-i3c-hci: Error out instead on BUG_ON() in IBI DMA setup
Definitely condition dma_get_cache_alignment * defined value > …
|
NVD-CWE-noinfo
|
CVE-2024-47665
|
2024-10-24 01:44 |
2024-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|