Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 1576-1600 di 3768 risultati
Pagina 64 di 151

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2024-55549 xsltGetInheritedNsList in libxslt before 1.1.43 has a use-after-free issue21-02-20261576
MSRC Security UpdateCVE-2024-46782 ila: call nf_unregister_net_hooks() sooner21-02-20261577
MSRC Security UpdateCVE-2024-46763 fou: Fix null-ptr-deref in GRO.21-02-20261578
MSRC Security UpdateCVE-2025-1767 This CVE only affects Kubernetes clusters that utilize the in-tree gitRepo volume to clone git repositories from other pods within the same node. Since the in-tree gitRepo volume feature has been deprecated and will not receive security updates upstream, any cluster still using this feature remains vulnerable.21-02-20261579
MSRC Security UpdateCVE-2024-9407 Buildah: podman: improper input validation in bind-propagation option of dockerfile run --mount instruction21-02-20261580
MSRC Security UpdateCVE-2024-46676 nfc: pn533: Add poll mod list filling check21-02-20261581
MSRC Security UpdateCVE-2024-44949 parisc: fix a possible DMA corruption21-02-20261582
MSRC Security UpdateCVE-2025-29768 Vim vulnerable to potential data loss with zip.vim and special crafted zip files21-02-20261583
MSRC Security UpdateCVE-2024-45001 net: mana: Fix RX buf alloc_size alignment and atomic op panic21-02-20261584
MSRC Security UpdateCVE-2024-46781 nilfs2: fix missing cleanup on rollforward recovery error21-02-20261585
MSRC Security UpdateCVE-2024-46832 MIPS: cevt-r4k: Don't call get_c0_compare_int if timer irq is installed21-02-20261586
MSRC Security UpdateCVE-2022-24791 Use after free in Wasmtime21-02-20261587
MSRC Security UpdateCVE-2024-46757 Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.21-02-20261588
MSRC Security UpdateCVE-2024-44991 tcp: prevent concurrent execution of tcp_sk_exit_batch21-02-20261589
MSRC Security UpdateCVE-2022-32207 When curl < 7.84.0 saves cookies alt-svc and hsts data to local files it makes the operation atomic by finalizing the operation with a rename from a temporary name to the final target file name.In that rename operation it might accidentally *widen* the permissions for the target file leaving the updated file accessible to more users than intended.21-02-20261590
MSRC Security UpdateCVE-2024-45003 vfs: Don't evict inode under the inode lru traversing context21-02-20261591
MSRC Security UpdateCVE-2024-46759 hwmon: (adc128d818) Fix underflows seen when writing limit attributes21-02-20261592
MSRC Security UpdateCVE-2022-27774 An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.21-02-20261593
MSRC Security UpdateCVE-2024-44951 serial: sc16is7xx: fix TX fifo corruption21-02-20261594
MSRC Security UpdateCVE-2024-58088 bpf: Fix deadlock when freeing cgroup storage21-02-20261595
MSRC Security UpdateCVE-2024-46679 ethtool: check device is present when getting link settings21-02-20261596
MSRC Security UpdateCVE-2024-50066 mm/mremap: fix move_normal_pmd/retract_page_tables race21-02-20261597
MSRC Security UpdateCVE-2022-27779 libcurl wrongly allows cookies to be set for Top Level Domains (TLDs) if thehost name is provided with a trailing dot.curl can be told to receive and send cookies. curl's "cookie engine" can bebuilt with or without [Public Suffix List](https://publicsuffix.org/)awareness. If PSL support not provided a more rudimentary check exists to atleast prevent cookies from being set on TLDs. This check was broken if thehost name in the URL uses a trailing dot.This can allow arbitrary sites to set cookies that then would get sent to adifferent and unrelated site or domain.21-02-20261598
MSRC Security UpdateCVE-2024-45720 Apache Subversion: Command line argument injection on Windows platforms21-02-20261599
MSRC Security UpdateCVE-2025-21861 mm/migrate_device: don't add folio to be freed to LRU in migrate_device_finalize()21-02-20261600
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter