|
250601
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
iommufd: Protect against overflow of ALIGN() during iova allocation
Userspace can supply an iova and uptr such that the target io…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-47719
|
2024-10-25 01:21 |
2024-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250602
|
9.8 |
CRITICAL
Network
|
vasiliskerasiotis
|
affiliator
|
Unrestricted Upload of File with Dangerous Type vulnerability in Vasilis Kerasiotis Affiliator allows Upload a Web Shell to a Web Server.This issue affects Affiliator: from n/a through 2.1.3.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-49326
|
2024-10-25 01:13 |
2024-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250603
|
3.3 |
LOW
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
usb: typec: tipd: Free IRQ only if it was requested before
In polling mode, if no IRQ was requested there is no need to free it.
…
|
CWE-763
Release of Invalid Pointer or Reference
|
CVE-2024-50057
|
2024-10-25 01:12 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250604
|
9.8 |
CRITICAL
Network
|
sovratec
|
sovratec_case_management
|
Unrestricted Upload of File with Dangerous Type vulnerability in Sovratec Sovratec Case Management allows Upload a Web Shell to a Web Server.This issue affects Sovratec Case Management: from n/a thro…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-49324
|
2024-10-25 01:11 |
2024-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250605
|
9.8 |
CRITICAL
Network
|
asepbagjapriandana
|
woostagram_connect
|
Unrestricted Upload of File with Dangerous Type vulnerability in Asep Bagja Priandana Woostagram Connect allows Upload a Web Shell to a Web Server.This issue affects Woostagram Connect: from n/a thro…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-49327
|
2024-10-25 01:07 |
2024-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250606
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
soc: xilinx: rename cpu_number1 to dummy_cpu_number
The per cpu variable cpu_number1 is passed to xlnx_event_handler as
argument …
|
NVD-CWE-noinfo
|
CVE-2024-43851
|
2024-10-25 01:07 |
2024-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250607
|
9.8 |
CRITICAL
Network
|
vivektamrakar
|
wp_rest_api_fns
|
Unrestricted Upload of File with Dangerous Type vulnerability in Vivek Tamrakar WP REST API FNS allows Upload a Web Shell to a Web Server.This issue affects WP REST API FNS: from n/a through 1.0.0.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-49329
|
2024-10-25 01:05 |
2024-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250608
|
7.1 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
iio: health: afe4404: Fix oob read in afe4404_[read|write]_raw
KASAN report out-of-bounds read as follows:
BUG: KASAN: global-ou…
|
CWE-125
Out-of-bounds Read
|
CVE-2022-49032
|
2024-10-25 01:04 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250609
|
7.1 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
iio: health: afe4403: Fix oob read in afe4403_read_raw
KASAN report out-of-bounds read as follows:
BUG: KASAN: global-out-of-bou…
|
CWE-125
Out-of-bounds Read
|
CVE-2022-49031
|
2024-10-25 01:03 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250610
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
soc: qcom: pdr: protect locator_addr with the main mutex
If the service locator server is restarted fast enough, the PDR can
rewr…
|
CWE-667
Improper Locking
|
CVE-2024-43849
|
2024-10-25 01:02 |
2024-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|