|
313481
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
RDMA/hns: Fix soft lockup under heavy CEQE load
CEQEs are handled in interrupt handler currently. This may cause the
CPU core sta…
|
CWE-667
Improper Locking
|
CVE-2024-43872
|
2024-09-3 22:38 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313482
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
vhost/vsock: always initialize seqpacket_allow
There are two issues around seqpacket_allow:
1. seqpacket_allow is not initialized…
|
CWE-909
Missing Initialization of Resource
|
CVE-2024-43873
|
2024-09-3 22:35 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313483
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
crypto: ccp - Fix null pointer dereference in __sev_snp_shutdown_locked
Fix a null pointer dereference induced by DEBUG_TEST_DRIV…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-43874
|
2024-09-3 22:26 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313484
|
7.0 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
exec: Fix ToCToU between perm check and set-uid/gid usage
When opening a file for exec via do_filp_open(), permission checking is…
|
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
|
CVE-2024-43882
|
2024-09-3 22:25 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313485
|
- |
|
-
|
-
|
Rejected reason: Duplicate of CVE-2024-45305.
|
-
|
CVE-2024-8371
|
2024-09-3 22:15 |
2024-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313486
|
- |
|
-
|
-
|
HedgeDoc is an open source, real-time, collaborative, markdown notes application. When using HedgeDoc 1 with MySQL or MariaDB, it is possible to create notes with an alias matching the ID of existing…
|
-
|
CVE-2024-45308
|
2024-09-3 21:59 |
2024-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313487
|
- |
|
-
|
-
|
A flaw was found in the gnome-remote-desktop package. The gnome-remote-desktop system daemon performs inadequate validation of session agents using D-Bus methods related to transitioning a client con…
|
CWE-488
Exposure of Data Element to Wrong Session
|
CVE-2024-5148
|
2024-09-3 21:59 |
2024-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313488
|
5.5 |
MEDIUM
Local
|
-
|
-
|
Transient DOS while handling PS event when Program Service name length offset value is set to 255.
|
-
|
CVE-2024-33043
|
2024-09-3 21:59 |
2024-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313489
|
- |
|
-
|
-
|
gix-path is a crate of the gitoxide project dealing with git paths and their conversions. `gix-path` executes `git` to find the path of a configuration file that belongs to the `git` installation its…
|
-
|
CVE-2024-45305
|
2024-09-3 21:59 |
2024-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313490
|
8.4 |
HIGH
Local
|
-
|
-
|
Memory corruption while calculating total metadata size when a very high reserved size is requested by gralloc clients.
|
-
|
CVE-2024-33035
|
2024-09-3 21:59 |
2024-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|