Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 2401-2425 di 3852 risultati
Pagina 97 di 155

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2025-38208 smb: client: add NULL check in automount_fullpath18-02-20262401
MSRC Security UpdateCVE-2025-40914 Perl CryptX before version 0.087 contains a dependency that may be susceptible to an integer overflow18-02-20262402
MSRC Security UpdateCVE-2022-27649 A flaw was found in Podman where containers were started incorrectly with non-empty default permissions. A vulnerability was found in Moby (Docker Engine) where containers were started incorrectly with non-empty inheritable Linux process capabilities. This flaw allows an attacker with access to programs with inheritable file capabilities to elevate those capabilities to the permitted set when execve(2) runs.18-02-20262403
MSRC Security UpdateCVE-2024-6603 In an out-of-memory scenario an allocation could fail but free would have been called on the pointer afterwards leading to memory corruption. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.18-02-20262404
MSRC Security UpdateCVE-2025-39711 media: ivsc: Fix crash at shutdown due to missing mei_cldev_disable() calls18-02-20262405
MSRC Security UpdateCVE-2025-7783 Usage of unsafe random function in form-data for choosing boundary18-02-20262406
MSRC Security UpdateCVE-2024-39479 drm/i915/hwmon: Get rid of devm18-02-20262407
MSRC Security UpdateCVE-2025-37766 drm/amd/pm: Prevent division by zero18-02-20262408
MSRC Security UpdateCVE-2024-4778 Memory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 126.18-02-20262409
MSRC Security UpdateCVE-2023-6129 POLY1305 MAC implementation corrupts vector registers on PowerPC18-02-20262410
MSRC Security UpdateCVE-2022-30629 Session tickets lack random ticket_age_add in crypto/tls18-02-20262411
MSRC Security UpdateCVE-2024-57896 btrfs: flush delalloc workers queue before stopping cleaner kthread during unmount18-02-20262412
MSRC Security UpdateCVE-2025-21853 bpf: avoid holding freeze_mutex during mmap operation18-02-20262413
MSRC Security UpdateCVE-2025-68741 scsi: qla2xxx: Fix improper freeing of purex item18-02-20262414
MSRC Security UpdateCVE-2024-28085 wall in util-linux through 2.40 often installed with setgid tty permissions allows escape sequences to be sent to other users' terminals through argv. (Specifically escape sequences received from stdin are blocked but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover.18-02-20262415
MSRC Security UpdateCVE-2021-3602 An information disclosure flaw was found in Buildah when building containers using chroot isolation. Running processes in container builds (e.g. Dockerfile RUN commands) can access environment variables from parent and grandparent processes. When run in a container in a CI/CD environment environment variables may include sensitive information that was shared with the container in order to be used only by Buildah itself (e.g. container registry credentials).18-02-20262416
MSRC Security UpdateCVE-2025-38226 media: vivid: Change the siize of the composing18-02-20262417
MSRC Security UpdateCVE-2025-61724 Excessive CPU consumption in Reader.ReadResponse in net/textproto18-02-20262418
MSRC Security UpdateCVE-2024-35176 REXML contains a denial of service vulnerability18-02-20262419
MSRC Security UpdateCVE-2025-37830 cpufreq: scmi: Fix null-ptr-deref in scmi_cpufreq_get_rate()18-02-20262420
MSRC Security UpdateCVE-2024-35878 of: module: prevent NULL pointer dereference in vsnprintf()18-02-20262421
MSRC Security UpdateCVE-2025-6020 Linux-pam: linux-pam directory traversal18-02-20262422
MSRC Security UpdateCVE-2025-21979 wifi: cfg80211: cancel wiphy_work before freeing wiphy18-02-20262423
MSRC Security UpdateCVE-2025-68345 ALSA: hda: cs35l41: Fix NULL pointer dereference in cs35l41_hda_read_acpi()18-02-20262424
MSRC Security UpdateCVE-2024-6612 CSP violations generated links in the console tab of the developer tools, pointing to the violating resource. This caused a DNS prefetch which leaked that a CSP violation happened. This vulnerability affects Firefox < 128 and Thunderbird < 128.18-02-20262425
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter