Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 3601-3625 di 3996 risultati
Pagina 145 di 160

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2024-58017 printk: Fix signed integer overflow when defining LOG_BUF_LEN_MAX18-02-20263601
MSRC Security UpdateCVE-2024-58071 team: prevent adding a device which is already a team device lower18-02-20263602
MSRC Security UpdateCVE-2023-4535 Opensc: out-of-bounds read in myeid driver handling encryption using symmetric keys18-02-20263603
MSRC Security UpdateCVE-2024-39936 An issue was discovered in HTTP2 in Qt before 5.15.18 6.x before 6.2.13 6.3.x through 6.5.x before 6.5.7 and 6.6.x through 6.7.x before 6.7.3. Code to make security-relevant decisions about an established connection may execute too early because the encrypted() signal has not yet been emitted and processed..18-02-20263604
MSRC Security UpdateCVE-2023-23914 A cleartext transmission of sensitive information vulnerability exists in curl 18-02-20263605
MSRC Security UpdateCVE-2025-49630 Apache HTTP Server: mod_proxy_http2 denial of service18-02-20263606
MSRC Security UpdateCVE-2024-42288 scsi: qla2xxx: Fix for possible memory corruption18-02-20263607
MSRC Security UpdateCVE-2024-58069 rtc: pcf85063: fix potential OOB write in PCF85063 NVMEM read18-02-20263608
MSRC Security UpdateCVE-2023-40661 Opensc: multiple memory issues with pkcs15-init (enrollment tool)18-02-20263609
MSRC Security UpdateCVE-2024-50044 Bluetooth: RFCOMM: FIX possible deadlock in rfcomm_sk_state_change18-02-20263610
MSRC Security UpdateCVE-2024-44931 gpio: prevent potential speculation leaks in gpio_device_get_desc()18-02-20263611
MSRC Security UpdateCVE-2025-27516 Jinja sandbox breakout through attr filter selecting format method18-02-20263612
MSRC Security UpdateCVE-2024-47252 Apache HTTP Server: mod_ssl error log variable escaping18-02-20263613
MSRC Security UpdateCVE-2023-40660 Opensc: potential pin bypass when card tracks its own login state18-02-20263614
MSRC Security UpdateCVE-2024-58058 ubifs: skip dumping tnc tree when zroot is null18-02-20263615
MSRC Security UpdateCVE-2024-56739 rtc: check if __rtc_read_time was successful in rtc_timer_do_work()18-02-20263616
MSRC Security UpdateCVE-2021-23840 Integer overflow in CipherUpdate18-02-20263617
MSRC Security UpdateCVE-2024-43913 nvme: apple: fix device reference counting18-02-20263618
MSRC Security UpdateCVE-2025-52939 Potential heap-buffer overflow vulnerability in NotepadNext18-02-20263619
MSRC Security UpdateCVE-2024-3651 Denial of Service via Quadratic Complexity in kjd/idna18-02-20263620
MSRC Security UpdateCVE-2023-2977 A vulnerbility was found in OpenSC. This security flaw cause a buffer overrun vulnerability in pkcs15 cardos_have_verifyrc_package. The attacker can supply a smart card package with malformed ASN1 context. The cardos_have_verifyrc_package function scans the ASN1 buffer for 2 tags where remaining length is wrongly caculated due to moved starting pointer. This leads to possible heap-based buffer oob read. In cases where ASAN is enabled while compiling this causes a crash. Further info leak or more damage is possible.18-02-20263621
MSRC Security UpdateCVE-2023-27538 An authentication bypass vulnerability exists in libcurl prior to v8.0.0 where it reuses a previously established SSH connection despite the fact that an SSH option was modified which should have prevented reuse. libcurl maintains a pool of previously used connections to reuse them for subsequent transfers if the configurations match. However two SSH settings were omitted from the configuration check allowing them to match easily potentially leading to the reuse of an inappropriate connection.18-02-20263622
MSRC Security UpdateCVE-2024-58063 wifi: rtlwifi: fix memory leaks and invalid access at probe error path18-02-20263623
MSRC Security UpdateCVE-2025-10148 predictable WebSocket mask18-02-20263624
MSRC Security UpdateCVE-2024-43204 Apache HTTP Server: SSRF with mod_headers setting Content-Type header18-02-20263625
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter