Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 2951-2975 di 4005 risultati
Pagina 119 di 161

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2025-40914 Perl CryptX before version 0.087 contains a dependency that may be susceptible to an integer overflow18-02-20262951
MSRC Security UpdateCVE-2022-27649 A flaw was found in Podman where containers were started incorrectly with non-empty default permissions. A vulnerability was found in Moby (Docker Engine) where containers were started incorrectly with non-empty inheritable Linux process capabilities. This flaw allows an attacker with access to programs with inheritable file capabilities to elevate those capabilities to the permitted set when execve(2) runs.18-02-20262952
MSRC Security UpdateCVE-2024-6603 In an out-of-memory scenario an allocation could fail but free would have been called on the pointer afterwards leading to memory corruption. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.18-02-20262953
MSRC Security UpdateCVE-2025-39711 media: ivsc: Fix crash at shutdown due to missing mei_cldev_disable() calls18-02-20262954
MSRC Security UpdateCVE-2024-39479 drm/i915/hwmon: Get rid of devm18-02-20262955
MSRC Security UpdateCVE-2025-7783 Usage of unsafe random function in form-data for choosing boundary18-02-20262956
MSRC Security UpdateCVE-2025-37766 drm/amd/pm: Prevent division by zero18-02-20262957
MSRC Security UpdateCVE-2024-4778 Memory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 126.18-02-20262958
MSRC Security UpdateCVE-2023-6129 POLY1305 MAC implementation corrupts vector registers on PowerPC18-02-20262959
MSRC Security UpdateCVE-2022-30629 Session tickets lack random ticket_age_add in crypto/tls18-02-20262960
MSRC Security UpdateCVE-2024-57896 btrfs: flush delalloc workers queue before stopping cleaner kthread during unmount18-02-20262961
MSRC Security UpdateCVE-2025-21853 bpf: avoid holding freeze_mutex during mmap operation18-02-20262962
MSRC Security UpdateCVE-2025-68741 scsi: qla2xxx: Fix improper freeing of purex item18-02-20262963
MSRC Security UpdateCVE-2024-28085 wall in util-linux through 2.40 often installed with setgid tty permissions allows escape sequences to be sent to other users' terminals through argv. (Specifically escape sequences received from stdin are blocked but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover.18-02-20262964
MSRC Security UpdateCVE-2021-3602 An information disclosure flaw was found in Buildah when building containers using chroot isolation. Running processes in container builds (e.g. Dockerfile RUN commands) can access environment variables from parent and grandparent processes. When run in a container in a CI/CD environment environment variables may include sensitive information that was shared with the container in order to be used only by Buildah itself (e.g. container registry credentials).18-02-20262965
MSRC Security UpdateCVE-2025-38226 media: vivid: Change the siize of the composing18-02-20262966
MSRC Security UpdateCVE-2025-61724 Excessive CPU consumption in Reader.ReadResponse in net/textproto18-02-20262967
MSRC Security UpdateCVE-2025-37830 cpufreq: scmi: Fix null-ptr-deref in scmi_cpufreq_get_rate()18-02-20262968
MSRC Security UpdateCVE-2024-35176 REXML contains a denial of service vulnerability18-02-20262969
MSRC Security UpdateCVE-2024-35878 of: module: prevent NULL pointer dereference in vsnprintf()18-02-20262970
MSRC Security UpdateCVE-2025-6020 Linux-pam: linux-pam directory traversal18-02-20262971
MSRC Security UpdateCVE-2025-21979 wifi: cfg80211: cancel wiphy_work before freeing wiphy18-02-20262972
MSRC Security UpdateCVE-2024-6612 CSP violations generated links in the console tab of the developer tools, pointing to the violating resource. This caused a DNS prefetch which leaked that a CSP violation happened. This vulnerability affects Firefox < 128 and Thunderbird < 128.18-02-20262973
MSRC Security UpdateCVE-2025-68345 ALSA: hda: cs35l41: Fix NULL pointer dereference in cs35l41_hda_read_acpi()18-02-20262974
MSRC Security UpdateCVE-2023-24534 Excessive memory allocation in net/http and net/textproto18-02-20262975
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter