Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 3126-3150 di 4005 risultati
Pagina 126 di 161

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2025-37905 firmware: arm_scmi: Balance device refcount when destroying devices18-02-20263126
MSRC Security UpdateCVE-2023-26159 Versions of the package follow-redirects before 1.15.4 are vulnerable to Improper Input Validation due to the improper handling of URLs by the url.parse() function. When new URL() throws an error it can be manipulated to misinterpret the hostname. An attacker could exploit this weakness to redirect traffic to a malicious site potentially leading to information disclosure phishing attacks or other security breaches.18-02-20263127
MSRC Security UpdateCVE-2024-47692 nfsd: return -EINVAL when namelen is 018-02-20263128
MSRC Security UpdateCVE-2025-38704 rcu/nocb: Fix possible invalid rdp's->nocb_cb_kthread pointer access18-02-20263129
MSRC Security UpdateCVE-2021-32923 HashiCorp Vault and Vault Enterprise allowed the renewal of nearly-expired token leases and dynamic secret leases (specifically those within 1 second of their maximum TTL) which caused them to be incorrectly treated as non-expiring during subsequent use. Fixed in 1.5.9 1.6.5 and 1.7.2.18-02-20263130
MSRC Security UpdateCVE-2025-38167 fs/ntfs3: handle hdr_first_de() return value18-02-20263131
MSRC Security UpdateCVE-2024-49975 uprobes: fix kernel info leak via "[uprobes]" vma18-02-20263132
MSRC Security UpdateCVE-2024-56551 drm/amdgpu: fix usage slab after free18-02-20263133
MSRC Security UpdateCVE-2025-6199 Gdk-pixbuf: uninitialized memory disclosure in gdkpixbuf gif lzw decoder18-02-20263134
MSRC Security UpdateCVE-2019-11835 cJSON before 1.7.11 allows out-of-bounds access related to multiline comments.18-02-20263135
MSRC Security UpdateCVE-2024-40965 i2c: lpi2c: Avoid calling clk_get_rate during transfer18-02-20263136
MSRC Security UpdateCVE-2024-53227 scsi: bfa: Fix use-after-free in bfad_im_module_exit()18-02-20263137
MSRC Security UpdateCVE-2024-49569 nvme-rdma: unquiesce admin_q before destroy it18-02-20263138
MSRC Security UpdateCVE-2025-7519 Polkit: xml policy file with a large number of nested elements may lead to out-of-bounds write18-02-20263139
MSRC Security UpdateCVE-2023-49993 Espeak-ng 1.52-dev was discovered to contain a Buffer Overflow18-02-20263140
MSRC Security UpdateCVE-2025-61725 Excessive CPU consumption in ParseAddress in net/mail18-02-20263141
MSRC Security UpdateCVE-2023-41913 strongSwan before 5.9.12 has a buffer overflow and possible unauthenticated remote code execution via a DH public value that exceeds the internal buffer in charon-tkm's DH proxy. The earliest affected version is 5.3.0. An attack can occur via a crafted IKE_SA_INIT message.18-02-20263142
MSRC Security UpdateCVE-2025-21945 ksmbd: fix use-after-free in smb2_lock18-02-20263143
MSRC Security UpdateCVE-2024-36969 drm/amd/display: Fix division by zero in setup_dsc_config18-02-20263144
MSRC Security UpdateCVE-2024-26987 mm/memory-failure: fix deadlock when hugetlb_optimize_vmemmap is enabled18-02-20263145
MSRC Security UpdateCVE-2024-47701 ext4: avoid OOB when system.data xattr changes underneath the filesystem18-02-20263146
MSRC Security UpdateCVE-2024-34459 An issue was discovered in xmllint (from libxml2) before 2.11.8 and 2.12.x before 2.12.7. Formatting error messages with xmllint --htmlout can result in a buffer over-read in xmlHTMLPrintFileContext in xmllint.c.18-02-20263147
MSRC Security UpdateCVE-2023-50711 `serde` deserialization for `FamStructWrapper` lacks bound checks that could potentially lead to out-of-bounds memory access18-02-20263148
MSRC Security UpdateCVE-2025-38127 ice: fix Tx scheduler error handling in XDP callback18-02-20263149
MSRC Security UpdateCVE-2023-49992 Espeak-ng 1.52-dev was discovered to contain a Stack Buffer Overflow via the function RemoveEnding at dictionary.c.18-02-20263150
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter