|
304081
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
wifi: iwlwifi: mvm: don't wait for tx queues if firmware is dead
There is a WARNING in iwl_trans_wait_tx_queues_empty() (that was…
|
NVD-CWE-noinfo
|
CVE-2024-47672
|
2024-11-9 01:15 |
2024-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304082
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
ASoC: meson: axg-card: fix 'use-after-free'
Buffer 'card->dai_link' is reallocated in 'meson_card_reallocate_links()',
so move 'p…
|
CWE-416
Use After Free
|
CVE-2024-46849
|
2024-11-9 01:15 |
2024-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304083
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
spi: nxp-fspi: fix the KASAN report out-of-bounds bug
Change the memcpy length to fix the out-of-bounds issue when writing the
da…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-46853
|
2024-11-9 01:15 |
2024-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304084
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
gpio: prevent potential speculation leaks in gpio_device_get_desc()
Userspace may trigger a speculative read of an address outsid…
|
NVD-CWE-noinfo
|
CVE-2024-44931
|
2024-11-9 01:15 |
2024-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304085
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
wifi: mac80211: fix NULL dereference at band check in starting tx ba session
In MLD connection, link_data/link_conf are dynamical…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-43911
|
2024-11-9 01:15 |
2024-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304086
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Add null checks for 'stream' and 'plane' before dereferencing
This commit adds null checks for the 'stream' and …
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-43904
|
2024-11-9 01:15 |
2024-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304087
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net: ipv6: ensure we call ipv6_mc_down() at most once
There are two reasons for addrconf_notify() to be called with NETDEV_DOWN:
…
|
NVD-CWE-noinfo
|
CVE-2022-48910
|
2024-11-9 01:15 |
2024-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304088
|
8.0 |
HIGH
Adjacent
|
enelx
|
waybox_pro_firmware
|
A heap buffer overflow could be triggered by sending a specific packet to TCP port 7700.
|
CWE-787
Out-of-bounds Write
|
CVE-2023-29125
|
2024-11-9 01:10 |
2024-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304089
|
8.8 |
HIGH
Adjacent
|
enelx
|
waybox_pro_firmware
|
Waybox Enel TCF Agent service could be used to get administrator’s privileges over the Waybox system.
|
NVD-CWE-Other
|
CVE-2023-29121
|
2024-11-9 01:09 |
2024-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304090
|
8.8 |
HIGH
Adjacent
|
enelx
|
waybox_pro_firmware
|
Waybox Enel X web management application could be used to execute arbitrary OS commands and provide administrator’s privileges over the Waybox system.
|
CWE-78
OS Command
|
CVE-2023-29120
|
2024-11-9 01:09 |
2024-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|