Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 1851-1875 di 3902 risultati
Pagina 75 di 157

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2024-23722 In Fluent Bit 2.1.8 through 2.2.1 a NULL pointer dereference can be caused via an invalid HTTP payload with the content type of x-www-form-urlencoded. It crashes and does not restart. This could result in logs not being delivered properly.18-02-20261851
MSRC Security UpdateCVE-2024-49854 block bfq: fix uaf for accessing waker_bfqq after splitting18-02-20261852
MSRC Security UpdateCVE-2024-26785 iommufd: Fix protection fault in iommufd_test_syz_conv_iova18-02-20261853
MSRC Security UpdateCVE-2024-42287 scsi: qla2xxx: Complete command early within lock18-02-20261854
MSRC Security UpdateCVE-2019-11834 cJSON before 1.7.11 allows out-of-bounds access related to \x00 in a string literal.18-02-20261855
MSRC Security UpdateCVE-2022-23523 rust-vmm linux-loader vulnerable to Out-of-bounds Read18-02-20261856
MSRC Security UpdateCVE-2024-27018 netfilter: br_netfilter: skip conntrack input hook for promisc packets18-02-20261857
MSRC Security UpdateCVE-2023-7192 Kernel: refcount leak in ctnetlink_create_conntrack()18-02-20261858
MSRC Security UpdateCVE-2025-37844 cifs: avoid NULL pointer dereference in dbg call18-02-20261859
MSRC Security UpdateCVE-2024-50024 net: Fix an unsafe loop on the list18-02-20261860
MSRC Security UpdateCVE-2022-34038 Etcd v3.5.4 allows remote attackers to cause a denial of service via function PageWriter.write in pagewriter.go. NOTE: the vendor's position is that this is not a vulnerability.18-02-20261861
MSRC Security UpdateCVE-2025-38166 bpf: fix ktls panic with sockmap18-02-20261862
MSRC Security UpdateCVE-2025-29087 In SQLite 3.44.0 through 3.49.0 before 3.49.1, the concat_ws() SQL function can cause memory to be written beyond the end of a malloc-allocated buffer. If the separator argument is attacker-controlled and has a large string (e.g., 2MB or more), an integer overflow occurs in calculating the size of the result buffer, and thus malloc may not allocate enough memory.18-02-20261863
MSRC Security UpdateCVE-2024-27053 wifi: wilc1000: fix RCU usage in connect path18-02-20261864
MSRC Security UpdateCVE-2025-68336 locking/spinlock/debug: Fix data-race in do_raw_write_lock18-02-20261865
MSRC Security UpdateCVE-2022-4415 A vulnerability was found in systemd. This security flaw can cause a local information leak due to systemd-coredump not respecting the fs.suid_dumpable kernel setting.18-02-20261866
MSRC Security UpdateCVE-2025-5994 Cache poisoning via the ECS-enabled Rebirthday Attack18-02-20261867
MSRC Security UpdateCVE-2024-26789 crypto: arm64/neonbs - fix out-of-bounds access on short input18-02-20261868
MSRC Security UpdateCVE-2024-42286 scsi: qla2xxx: validate nvme_local_port correctly18-02-20261869
MSRC Security UpdateCVE-2025-37905 firmware: arm_scmi: Balance device refcount when destroying devices18-02-20261870
MSRC Security UpdateCVE-2022-23772 Rat.SetString in math/big in Go before 1.16.14 and 1.17.x before 1.17.7 has an overflow that can lead to Uncontrolled Memory Consumption.18-02-20261871
MSRC Security UpdateCVE-2023-26159 Versions of the package follow-redirects before 1.15.4 are vulnerable to Improper Input Validation due to the improper handling of URLs by the url.parse() function. When new URL() throws an error it can be manipulated to misinterpret the hostname. An attacker could exploit this weakness to redirect traffic to a malicious site potentially leading to information disclosure phishing attacks or other security breaches.18-02-20261872
MSRC Security UpdateCVE-2024-47692 nfsd: return -EINVAL when namelen is 018-02-20261873
MSRC Security UpdateCVE-2021-32923 HashiCorp Vault and Vault Enterprise allowed the renewal of nearly-expired token leases and dynamic secret leases (specifically those within 1 second of their maximum TTL) which caused them to be incorrectly treated as non-expiring during subsequent use. Fixed in 1.5.9 1.6.5 and 1.7.2.18-02-20261874
MSRC Security UpdateCVE-2025-38704 rcu/nocb: Fix possible invalid rdp's->nocb_cb_kthread pointer access18-02-20261875
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter