Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 2651-2675 di 3852 risultati
Pagina 107 di 155

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2024-4775 An iterator stop condition was missing when handling WASM code in the built-in profiler, potentially leading to invalid memory access and undefined behavior. *Note:* This issue only affects the application when the profiler is running. This vulnerability affects Firefox < 126.18-02-20262651
MSRC Security UpdateCVE-2025-37914 net_sched: ets: Fix double list add in class with netem as child qdisc18-02-20262652
MSRC Security UpdateCVE-2025-38062 genirq/msi: Store the IOMMU IOVA directly in msi_desc instead of iommu_cookie18-02-20262653
MSRC Security UpdateCVE-2024-30260 Undici's Proxy-Authorization header not cleared on cross-origin redirect for dispatch request stream pipeline18-02-20262654
MSRC Security UpdateCVE-2024-47691 f2fs: fix to avoid use-after-free in f2fs_stop_gc_thread()18-02-20262655
MSRC Security UpdateCVE-2024-56627 ksmbd: fix Out-of-Bounds Read in ksmbd_vfs_stream_read18-02-20262656
MSRC Security UpdateCVE-2023-7104 SQLite SQLite3 make alltest sqlite3session.c sessionReadRecord heap-based overflow18-02-20262657
MSRC Security UpdateCVE-2025-38160 clk: bcm: rpi: Add NULL check in raspberrypi_clk_register()18-02-20262658
MSRC Security UpdateCVE-2024-26836 platform/x86: think-lmi: Fix password opcode ordering for workstations18-02-20262659
MSRC Security UpdateCVE-2024-34155 Stack exhaustion in all Parse functions in go/parser18-02-20262660
MSRC Security UpdateCVE-2024-4770 When saving a page to PDF, certain font styles could have led to a potential use-after-free crash. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.18-02-20262661
MSRC Security UpdateCVE-2022-4450 Double free after calling PEM_read_bio_ex18-02-20262662
MSRC Security UpdateCVE-2025-32387 Helm Allows A Specially Crafted JSON Schema To Cause A Stack Overflow18-02-20262663
MSRC Security UpdateCVE-2024-5642 Buffer overread when using an empty list with SSLContext.set_npn_protocols()18-02-20262664
MSRC Security UpdateCVE-2025-37874 net: ngbe: fix memory leak in ngbe_probe() error path18-02-20262665
MSRC Security UpdateCVE-2022-49636 vlan: fix memory leak in vlan_newlink()18-02-20262666
MSRC Security UpdateCVE-2022-28737 There's a possible overflow in handle_image() when shim tries to load and execute crafted EFI executables18-02-20262667
MSRC Security UpdateCVE-2025-59529 simple protocol server ignores accepts unlimited connections and logs failures without limit18-02-20262668
MSRC Security UpdateCVE-2023-51764 Postfix through 3.8.5 allows SMTP smuggling unless configured with smtpd_data_restrictions=reject_unauth_pipelining and smtpd_discard_ehlo_keywords=chunking (or certain other options that exist in recent versions). Remote attackers can use a published exploitation technique to inject e-mail messages with a spoofed MAIL FROM address allowing bypass of an SPF protection mechanism. This occurs because Postfix supports . but some other popular e-mail servers do not. To prevent attack variants (by always disallowing without ) a different solution is required such as the smtpd_forbid_bare_newline=yes option with a Postfix minimum version of 3.5.23 3.6.13 3.7.9 3.8.4 or 3.9.18-02-20262669
MSRC Security UpdateCVE-2024-49992 drm/stm: Avoid use-after-free issues with crtc and plane18-02-20262670
MSRC Security UpdateCVE-2024-25176 LuaJIT through 2.1 and OpenRusty luajit2 before v2.1-20240626 have a stack-buffer-overflow in lj_strfmt_wfnum in lj_strfmt_num.c.18-02-20262671
MSRC Security UpdateCVE-2025-38068 crypto: lzo - Fix compression buffer overrun18-02-20262672
MSRC Security UpdateCVE-2025-21867 bpf, test_run: Fix use-after-free issue in eth_skb_pkt_type()18-02-20262673
MSRC Security UpdateCVE-2025-38158 hisi_acc_vfio_pci: fix XQE dma address error18-02-20262674
MSRC Security UpdateCVE-2024-47671 USB: usbtmc: prevent kernel-usb-infoleak18-02-20262675
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter