Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 3601-3625 di 4585 risultati
Pagina 145 di 184

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2025-69649 GNU Binutils thru 2.46 readelf contains a null pointer dereference vulnerability when processing a crafted ELF binary with malformed header fields. During relocation processing, an invalid or null section pointer may be passed into display_relocations(), resulting in a segmentation fault (SIGSEGV) and abrupt termination. No evidence of memory corruption beyond the null pointer dereference, nor any possibility of code execution, was observed.14-04-20263601
MSRC Security UpdateCVE-2025-69645 Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug information. A logic error in the handling of DWARF compilation units can result in an invalid offset_size value being used inside byte_get_little_endian, leading to an abort (SIGABRT). The issue was observed in binutils 2.44. A local attacker can trigger the crash by supplying a malicious input file.14-04-20263602
MSRC Security UpdateCVE-2025-69652 GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an abort (SIGABRT) when processing a crafted ELF binary with malformed DWARF abbrev or debug information. Due to incomplete state cleanup in process_debug_info(), an invalid debug_info_p state may propagate into DWARF attribute parsing routines. When certain malformed attributes result in an unexpected data length of zero, byte_get_little_endian() triggers a fatal abort. No evidence of memory corruption or code execution was observed; the impact is limited to denial of service.14-04-20263603
MSRC Security UpdateCVE-2025-69646 Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug_rnglists data. A logic error in the handling of the debug_rnglists header can cause objdump to repeatedly print the same warning message and fail to terminate, resulting in an unbounded logging loop until the process is interrupted. The issue was observed in binutils 2.44. A local attacker can exploit this vulnerability by supplying a malicious input file, leading to excessive CPU and I/O usage and preventing completion of the objdump analysis.14-04-20263604
MSRC Security UpdateCVE-2025-11839 GNU Binutils prdbg.c tg_tag_type return value14-04-20263605
MSRC Security UpdateCVE-2025-1148 GNU Binutils ld ldelfgen.c link_order_scan memory leak14-04-20263606
MSRC Security UpdateCVE-2025-1147 GNU Binutils nm nm.c internal_strlen buffer overflow14-04-20263607
MSRC Security UpdateCVE-2026-31428 netfilter: nfnetlink_log: fix uninitialized padding leak in NFULA_PAYLOAD14-04-20263608
MSRC Security UpdateCVE-2026-31421 net/sched: cls_fw: fix NULL pointer dereference on shared blocks14-04-20263609
MSRC Security UpdateCVE-2026-31420 bridge: mrp: reject zero test interval to avoid OOM panic14-04-20263610
MSRC Security UpdateCVE-2026-31419 net: bonding: fix use-after-free in bond_xmit_broadcast()14-04-20263611
MSRC Security UpdateCVE-2026-31426 ACPI: EC: clean up handlers on probe failure in acpi_ec_setup()14-04-20263612
MSRC Security UpdateCVE-2026-31427 netfilter: nf_conntrack_sip: fix use of uninitialized rtp_addr in process_sdp14-04-20263613
MSRC Security UpdateCVE-2026-31414 netfilter: nf_conntrack_expect: use expect->helper14-04-20263614
MSRC Security UpdateCVE-2026-31422 net/sched: cls_flow: fix NULL pointer dereference on shared blocks14-04-20263615
MSRC Security UpdateCVE-2026-31417 net/x25: Fix overflow when accumulating packets14-04-20263616
MSRC Security UpdateCVE-2026-31424 netfilter: x_tables: restrict xt_check_match/xt_check_target extensions for NFPROTO_ARP14-04-20263617
MSRC Security UpdateCVE-2026-31423 net/sched: sch_hfsc: fix divide-by-zero in rtsc_min()14-04-20263618
MSRC Security UpdateCVE-2026-31416 netfilter: nfnetlink_log: account for netlink header size14-04-20263619
MSRC Security UpdateCVE-2026-40393 14-04-20263620
MSRC Security UpdateCVE-2026-40385 14-04-20263621
MSRC Security UpdateCVE-2026-40386 14-04-20263622
MSRC Security UpdateCVE-2026-39856 osslsigncode has an Out-of-Bounds Read via Unvalidated Section Bounds in PE Page Hash Calculation12-04-20263623
MSRC Security UpdateCVE-2026-39855 osslsigncode has an Integer Underflow in PE Page Hash Calculation Can Cause Out-of-Bounds Read12-04-20263624
MSRC Security UpdateCVE-2026-39853 osslsigncode has a Stack Buffer Overflow via Unbounded Digest Copy During Signature Verification12-04-20263625
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter