|
303171
|
- |
|
apache
|
jserv
|
The default configuration of the jserv-status handler in jserv.conf in Apache JServ 1.1.2 includes an "allow from 127.0.0.1" line, which allows local users to discover JDBC passwords or other sensiti…
|
CWE-16
Configuration
|
CVE-2000-1247
|
2024-11-21 08:34 |
2011-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303172
|
9.8 |
CRITICAL
Network
|
gnu
|
glibc
|
manual/search.texi in the GNU C Library (aka glibc) before 2.2 lacks a statement about the unspecified tdelete return value upon deletion of a tree's root, which might allow attackers to access a dan…
|
CWE-252
Unchecked Return Value
|
CVE-1999-0199
|
2024-11-21 08:28 |
2020-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303173
|
3.3 |
LOW
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
x86/tdx: Fix data leak in mmio_read()
The mmio_read() function makes a TDVMCALL to retrieve MMIO data for an
address from the VMM…
|
NVD-CWE-noinfo
|
CVE-2024-46794
|
2024-11-21 05:56 |
2024-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303174
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Skip inactive planes within ModeSupportAndSystemConfiguration
[Why]
Coverity reports Memory - illegal accesses.
…
|
NVD-CWE-noinfo
|
CVE-2024-46812
|
2024-11-21 05:48 |
2024-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303175
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
wifi: ath12k: fix firmware crash due to invalid peer nss
Currently, if the access point receives an association
request containin…
|
NVD-CWE-noinfo
|
CVE-2024-46827
|
2024-11-21 05:40 |
2024-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303176
|
- |
|
-
|
-
|
A cross-site scripting (XSS) vulnerability in the component /master/header.php of Ganglia-web v3.73 to v3.76 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected i…
|
-
|
CVE-2024-52762
|
2024-11-21 05:35 |
2024-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303177
|
- |
|
-
|
-
|
In HWCSession::SetColorModeById of hwc_session.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional executio…
|
-
|
CVE-2018-9409
|
2024-11-21 05:35 |
2024-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303178
|
9.8 |
CRITICAL
Network
|
tenda
|
ac6_firmware
|
Tenda AC6 v2.0 v15.03.06.50 was discovered to contain a buffer overflow in the function 'fromSetSysTime.
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-52714
|
2024-11-21 05:35 |
2024-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303179
|
7.5 |
HIGH
Network
|
qualcomm
|
315_5g_iot_modem_firmware apq8064au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware ar9380_firmware csr8811_firmware csra6620_firmware csra6640_firmware csrb31024…
|
Transient DOS while parsing ESP IE from beacon/probe response frame.
|
CWE-125
Out-of-bounds Read
|
CVE-2024-33014
|
2024-11-21 05:35 |
2024-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303180
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
io_uring: check if we need to reschedule during overflow flush
In terms of normal application usage, this list will always be emp…
|
NVD-CWE-noinfo
|
CVE-2024-50060
|
2024-11-21 05:25 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|