|
309541
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net: gso: fix tcp fraglist segmentation after pull from frag_list
Detect tcp gso fraglist skbs with corrupted geometry (see below…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-49979
|
2024-10-30 03:02 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309542
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
gso: fix udp gso fraglist segmentation after pull from frag_list
Detect gso fraglist skbs with corrupted geometry (see below) and…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-49978
|
2024-10-30 03:01 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309543
|
5.8 |
MEDIUM
Network
|
cisco
|
firepower_threat_defense_software adaptive_security_appliance_software
|
A vulnerability in the Remote Access VPN (RAVPN) service of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote a…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2024-20481
|
2024-10-30 02:47 |
2024-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309544
|
9.6 |
CRITICAL
Network
|
apple
|
ipados iphone_os
|
A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in iOS 18.1 and iPadOS 18.1. A remote attacker may be able to break out of Web Content sandbox.
|
NVD-CWE-noinfo
|
CVE-2024-40867
|
2024-10-30 02:41 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309545
|
8.8 |
HIGH
Local
|
apple
|
macos
|
A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.1, macOS Sequoia 15, macOS Sonoma 14.7.1. An application may be able to break out of its sandbox.
|
NVD-CWE-noinfo
|
CVE-2024-44122
|
2024-10-30 02:38 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309546
|
5.5 |
MEDIUM
Local
|
hp
|
oneview
|
This vulnerability could be exploited, leading to unauthorized disclosure of information to authenticated users.
|
NVD-CWE-noinfo
|
CVE-2024-42508
|
2024-10-30 02:38 |
2024-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309547
|
2.3 |
LOW
Local
|
apple
|
macos iphone_os ipados
|
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15, iOS 18 and iPadOS 18. A malicious app with root privileges may be able to access keyboard inpu…
|
NVD-CWE-noinfo
|
CVE-2024-44123
|
2024-10-30 02:37 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309548
|
- |
|
-
|
-
|
Money Manager EX WebApp (web-money-manager-ex) 1.2.2 is vulnerable to SQL Injection in the `transaction_delete_group` function. The vulnerability is due to improper sanitization of user input in the …
|
-
|
CVE-2024-41618
|
2024-10-30 02:35 |
2024-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309549
|
- |
|
-
|
-
|
Money Manager EX WebApp (web-money-manager-ex) 1.2.2 is vulnerable to Incorrect Access Control. The `redirect_if_not_loggedin` function in `functions_security.php` fails to terminate script execution…
|
-
|
CVE-2024-41617
|
2024-10-30 02:35 |
2024-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309550
|
6.5 |
MEDIUM
Network
|
apple
|
macos watchos safari iphone_os ipados
|
A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in Safari 18, iOS 17.7.1 and iPadOS 17.7.1, macOS Sequoia 15, watchOS 11, iOS 18 and iPadOS 18. Ma…
|
NVD-CWE-noinfo
|
CVE-2024-44155
|
2024-10-30 02:34 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|