CVE-2024-6119
- EPSS 8.49%
- Veröffentlicht 03.09.2024 16:15:07
- Zuletzt bearbeitet 03.06.2025 10:51:54
Issue summary: Applications performing certificate name checks (e.g., TLS clients checking server certificates) may attempt to read an invalid memory address resulting in abnormal termination of the application process. Impact summary: Abnormal term...
CVE-2024-38808
- EPSS 0.81%
- Veröffentlicht 20.08.2024 08:15:05
- Zuletzt bearbeitet 18.06.2025 12:10:28
In Spring Framework versions 5.3.0 - 5.3.38 and older unsupported versions, it is possible for a user to provide a specially crafted Spring Expression Language (SpEL) expression that may cause a denial of service (DoS) condition. Specifically, an ap...
CVE-2024-21147
- EPSS 0.72%
- Veröffentlicht 16.07.2024 23:15:16
- Zuletzt bearbeitet 17.06.2025 19:57:24
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0...
CVE-2024-21140
- EPSS 0.57%
- Veröffentlicht 16.07.2024 23:15:15
- Zuletzt bearbeitet 18.06.2025 12:09:38
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0...
CVE-2024-21138
- EPSS 0.33%
- Veröffentlicht 16.07.2024 23:15:14
- Zuletzt bearbeitet 05.12.2024 22:05:55
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0...
CVE-2024-21131
- EPSS 0.44%
- Veröffentlicht 16.07.2024 23:15:13
- Zuletzt bearbeitet 05.12.2024 22:02:52
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0...
CVE-2024-6387
- EPSS 54.14%
- Veröffentlicht 01.07.2024 13:15:06
- Zuletzt bearbeitet 30.09.2025 13:52:23
A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to aut...
CVE-2024-30171
- EPSS 0.1%
- Veröffentlicht 14.05.2024 15:21:52
- Zuletzt bearbeitet 21.11.2024 09:11:21
An issue was discovered in Bouncy Castle Java TLS API and JSSE Provider before 1.78. Timing-based leakage may occur in RSA based handshakes because of exception processing.
CVE-2024-33600
- EPSS 0.2%
- Veröffentlicht 06.05.2024 20:15:11
- Zuletzt bearbeitet 18.06.2025 14:50:25
nscd: Null pointer crashes after notfound response If the Name Service Cache Daemon's (nscd) cache fails to add a not-found netgroup response to the cache, the client request can result in a null pointer dereference. This flaw was introduced in gli...
CVE-2024-21101
- EPSS 0.13%
- Veröffentlicht 16.04.2024 22:15:31
- Zuletzt bearbeitet 10.02.2025 23:15:11
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are 7.5.33 and prior, 7.6.29 and prior, 8.0.36 and prior and 8.3.0 and prior. Difficult to exploit vulnerability allows h...