|
250841
|
4.3 |
MEDIUM
Network
|
-
|
-
|
Microsoft Edge (Chromium-based) Spoofing Vulnerability
|
CWE-449
The UI Performs the Wrong Action
|
CVE-2024-43577
|
2024-10-24 04:15 |
2024-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250842
|
7.3 |
HIGH
Network
|
djangoproject
|
django
|
An issue was discovered in Django 5.0 before 5.0.8 and 4.2 before 4.2.15. QuerySet.values() and values_list() methods on models with a JSONField are subject to SQL injection in column aliases via a c…
|
CWE-89
SQL Injection
|
CVE-2024-42005
|
2024-10-24 03:22 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250843
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
icmp: change the order of rate limits
ICMP messages are ratelimited :
After the blamed commits, the two rate limiters are applie…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2024-47678
|
2024-10-24 02:58 |
2024-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250844
|
- |
|
-
|
-
|
Buffer Overflow in coap_msg.c in FreeCoAP allows remote attackers to execute arbitrary code or cause a denial of service (stack buffer overflow) via a crafted packet.
|
-
|
CVE-2024-40494
|
2024-10-24 02:35 |
2024-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250845
|
- |
|
-
|
-
|
An issue in the server_handle_regular function of the test_coap_server.c file within the FreeCoAP project allows remote attackers to cause a Denial of Service through specially crafted packets.
|
-
|
CVE-2024-31029
|
2024-10-24 02:35 |
2024-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250846
|
- |
|
-
|
-
|
An issue in Casa Systems NTC-221 version 2.0.99.0 and before allows a remote attacker to execute arbitrary code via a crafted payload to the /www/cgi-bin/nas.cgi component.
|
-
|
CVE-2024-26519
|
2024-10-24 02:35 |
2024-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250847
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
PCI: kirin: Fix buffer overflow in kirin_pcie_parse_port()
Within kirin_pcie_parse_port(), the pcie->num_slots is compared to
pci…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-47751
|
2024-10-24 02:33 |
2024-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250848
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
RDMA/hns: Fix Use-After-Free of rsv_qp on HIP08
Currently rsv_qp is freed before ib_unregister_device() is called
on HIP08. Durin…
|
CWE-416
Use After Free
|
CVE-2024-47750
|
2024-10-24 02:29 |
2024-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250849
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
vhost_vdpa: assign irq bypass producer token correctly
We used to call irq_bypass_unregister_producer() in
vhost_vdpa_setup_vq_ir…
|
CWE-416
Use After Free
|
CVE-2024-47748
|
2024-10-24 02:28 |
2024-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250850
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
mm: call the security_mmap_file() LSM hook in remap_file_pages()
The remap_file_pages syscall handler calls do_mmap() directly, w…
|
CWE-670
Always-Incorrect Control Flow Implementation
|
CVE-2024-47745
|
2024-10-24 02:25 |
2024-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|