CVE-2024-45615
- EPSS 0.07%
- Veröffentlicht 03.09.2024 22:15:04
- Zuletzt bearbeitet 03.11.2025 23:15:51
A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. The problem is missing initialization of variables expected to be initialized (as arguments to other functions, etc.).
CVE-2024-45616
- EPSS 0.07%
- Veröffentlicht 03.09.2024 22:15:04
- Zuletzt bearbeitet 03.11.2025 23:15:51
A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted USB Device or Smart Card, which would present the system with a specially crafted response to APDUs. The following problems were...
CVE-2024-44070
- EPSS 0.13%
- Veröffentlicht 19.08.2024 02:15:04
- Zuletzt bearbeitet 04.11.2025 17:16:05
An issue was discovered in FRRouting (FRR) through 10.1. bgp_attr_encap in bgpd/bgp_attr.c does not check the actual remaining stream length before taking the TLV value.
CVE-2024-7006
- EPSS 0.12%
- Veröffentlicht 12.08.2024 13:38:40
- Zuletzt bearbeitet 03.11.2025 21:18:47
A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`. This issue may allow an attacker to trigger memory allocation failures through certain means, such as restricting the heap space size or injecting faults, causing a segmentatio...
CVE-2024-3056
- EPSS 0.47%
- Veröffentlicht 02.08.2024 21:16:30
- Zuletzt bearbeitet 27.12.2024 16:15:24
A flaw was found in Podman. This issue may allow an attacker to create a specially crafted container that, when configured to share the same IPC with at least one other container, can create a large number of IPC resources in /dev/shm. The malicious ...
CVE-2024-6237
- EPSS 0.57%
- Veröffentlicht 09.07.2024 17:15:48
- Zuletzt bearbeitet 21.11.2024 09:49:15
A flaw was found in the 389 Directory Server. This flaw allows an unauthenticated user to cause a systematic server crash while sending a specific extended search request, leading to a denial of service.
CVE-2024-6505
- EPSS 0.09%
- Veröffentlicht 05.07.2024 14:15:03
- Zuletzt bearbeitet 21.11.2024 09:49:46
A flaw was found in the virtio-net device in QEMU. When enabling the RSS feature on the virtio-net network card, the indirections_table data within RSS becomes controllable. Setting excessively large values may cause an index out-of-bounds issue, pot...
CVE-2024-6387
- EPSS 54.14%
- Veröffentlicht 01.07.2024 13:15:06
- Zuletzt bearbeitet 30.09.2025 13:52:23
A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to aut...
CVE-2024-6239
- EPSS 0.13%
- Veröffentlicht 21.06.2024 14:15:14
- Zuletzt bearbeitet 21.11.2024 09:49:15
A flaw was found in the Poppler's Pdfinfo utility. This issue occurs when using -dests parameter with pdfinfo utility. By using certain malformed input files, an attacker could cause the utility to crash, leading to a denial of service.
CVE-2024-5953
- EPSS 0.09%
- Veröffentlicht 18.06.2024 10:15:11
- Zuletzt bearbeitet 03.11.2025 21:18:47
A denial of service vulnerability was found in the 389-ds-base LDAP server. This issue may allow an authenticated user to cause a server denial of service while attempting to log in with a user with a malformed hash in their password.