Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 3101-3125 di 4252 risultati
Pagina 125 di 171

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2025-38145 soc: aspeed: Add NULL check in aspeed_lpc_enable_snoop()18-02-20263101
MSRC Security UpdateCVE-2025-37878 perf/core: Fix WARN_ON(!ctx) in __free_event() for partial init18-02-20263102
MSRC Security UpdateCVE-2025-58754 Axios is vulnerable to DoS attack through lack of data size check18-02-20263103
MSRC Security UpdateCVE-2024-37370 In MIT Kerberos 5 (aka krb5) before 1.21.3 an attacker can modify the plaintext Extra Count field of a confidential GSS krb5 wrap token causing the unwrapped token to appear truncated to the application.18-02-20263104
MSRC Security UpdateCVE-2025-38039 net/mlx5e: Avoid WARN_ON when configuring MQPRIO with HTB offload enabled18-02-20263105
MSRC Security UpdateCVE-2023-30589 The llhttp parser in the http module in Node v20.2.0 does not strictly use the CRLF sequence to delimit HTTP requests. This can lead to HTTP Request Smuggling (HRS). The CR character (without LF) is sufficient to delimit HTTP header fields in the llhttp parser. According to RFC7230 section 3 only the CRLF sequence should delimit each header-field. This impacts all Node.js active versions: v16 v18 and v20 18-02-20263106
MSRC Security UpdateCVE-2024-36013 Bluetooth: L2CAP: Fix slab-use-after-free in l2cap_connect()18-02-20263107
MSRC Security UpdateCVE-2025-68324 scsi: imm: Fix use-after-free bug caused by unfinished delayed work18-02-20263108
MSRC Security UpdateCVE-2025-38149 net: phy: clear phydev->devlink when the link is deleted18-02-20263109
MSRC Security UpdateCVE-2023-3817 Excessive time spent checking DH q parameter value18-02-20263110
MSRC Security UpdateCVE-2024-50036 net: do not delay dst_entries_add() in dst_release()18-02-20263111
MSRC Security UpdateCVE-2024-56626 ksmbd: fix Out-of-Bounds Write in ksmbd_vfs_stream_write18-02-20263112
MSRC Security UpdateCVE-2024-50061 i3c: master: cdns: Fix use after free vulnerability in cdns_i3c_master Driver Due to Race Condition18-02-20263113
MSRC Security UpdateCVE-2022-34169 Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets18-02-20263114
MSRC Security UpdateCVE-2025-37992 net_sched: Flush gso_skb list too during ->change()18-02-20263115
MSRC Security UpdateCVE-2023-6546 Kernel: gsm multiplexing race condition leads to privilege escalation18-02-20263116
MSRC Security UpdateCVE-2023-4504 OpenPrinting CUPS/libppd Postscript Parsing Heap Overflow18-02-20263117
MSRC Security UpdateCVE-2024-38541 of: module: add buffer overflow check in of_modalias()18-02-20263118
MSRC Security UpdateCVE-2025-27152 Possible SSRF and Credential Leakage via Absolute URL in axios Requests18-02-20263119
MSRC Security UpdateCVE-2025-38075 scsi: target: iscsi: Fix timeout on deleted connection18-02-20263120
MSRC Security UpdateCVE-2024-6257 HashiCorp go-getter Vulnerable to Code Execution On Git Update Via Git Config Manipulation18-02-20263121
MSRC Security UpdateCVE-2025-38136 usb: renesas_usbhs: Reorder clock handling and power management in probe18-02-20263122
MSRC Security UpdateCVE-2021-46023 An Untrusted Pointer Dereference was discovered in function mrb_vm_exec in mruby before 3.1.0-rc. The vulnerability causes a segmentation fault and application crash.18-02-20263123
MSRC Security UpdateCVE-2025-21981 ice: fix memory leak in aRFS after reset18-02-20263124
MSRC Security UpdateCVE-2022-46146 Prometheus Exporter Toolkit vulnerable to basic authentication bypass18-02-20263125
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter