- EPSS 0.01%
- Veröffentlicht 01.04.2024 09:15:51
- Zuletzt bearbeitet 03.02.2025 14:32:27
In the Linux kernel, the following vulnerability has been resolved: ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs The dreamcastcard->timer could schedule the spu_dma_work and the spu_dma_work could also arm the dreamcastcard->timer. ...
CVE-2024-28085
- EPSS 10.51%
- Veröffentlicht 27.03.2024 19:15:48
- Zuletzt bearbeitet 20.03.2025 17:58:00
wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received fr...
CVE-2023-52627
- EPSS 0.01%
- Veröffentlicht 26.03.2024 18:15:09
- Zuletzt bearbeitet 29.04.2025 16:34:33
In the Linux kernel, the following vulnerability has been resolved: iio: adc: ad7091r: Allow users to configure device events AD7091R-5 devices are supported by the ad7091r-5 driver together with the ad7091r-base driver. Those drivers declared iio ...
CVE-2023-52622
- EPSS 0.01%
- Veröffentlicht 26.03.2024 18:15:08
- Zuletzt bearbeitet 17.03.2025 15:19:52
In the Linux kernel, the following vulnerability has been resolved: ext4: avoid online resizing failures due to oversized flex bg When we online resize an ext4 filesystem with a oversized flexbg_size, mkfs.ext4 -F -G 67108864 $dev -b 4096 100...
CVE-2024-26644
- EPSS 0.01%
- Veröffentlicht 26.03.2024 16:15:12
- Zuletzt bearbeitet 17.07.2025 17:15:33
In the Linux kernel, the following vulnerability has been resolved: btrfs: don't abort filesystem when attempting to snapshot deleted subvolume If the source file descriptor to the snapshot ioctl refers to a deleted subvolume, we get the following ...
CVE-2024-26645
- EPSS 0.01%
- Veröffentlicht 26.03.2024 16:15:12
- Zuletzt bearbeitet 17.03.2025 15:20:10
In the Linux kernel, the following vulnerability has been resolved: tracing: Ensure visibility when inserting an element into tracing_map Running the following two commands in parallel on a multi-processor AArch64 machine can sporadically produce a...
CVE-2024-29025
- EPSS 0.25%
- Veröffentlicht 25.03.2024 20:15:08
- Zuletzt bearbeitet 19.09.2025 15:10:53
Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers & clients. The `HttpPostRequestDecoder` can be tricked to accumulate data. While the decoder can store items o...
CVE-2024-30203
- EPSS 0.03%
- Veröffentlicht 25.03.2024 15:15:52
- Zuletzt bearbeitet 01.05.2025 14:33:44
In Emacs before 29.3, Gnus treats inline MIME contents as trusted.
CVE-2024-30204
- EPSS 0.02%
- Veröffentlicht 25.03.2024 15:15:52
- Zuletzt bearbeitet 01.05.2025 14:33:32
In Emacs before 29.3, LaTeX preview is enabled by default for e-mail attachments.
CVE-2024-30205
- EPSS 0.03%
- Veröffentlicht 25.03.2024 15:15:52
- Zuletzt bearbeitet 01.05.2025 14:32:31
In Emacs before 29.3, Org mode considers contents of remote files to be trusted. This affects Org Mode before 9.6.23.