CVE-2024-26986
- EPSS 0.02%
- Veröffentlicht 01.05.2024 06:15:16
- Zuletzt bearbeitet 21.11.2024 09:03:33
In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix memory leak in create_process failure Fix memory leak due to a leaked mmget reference on an error handling code path that is triggered when attempting to create KFD...
CVE-2024-26987
- EPSS 0.01%
- Veröffentlicht 01.05.2024 06:15:16
- Zuletzt bearbeitet 21.11.2024 09:03:33
In the Linux kernel, the following vulnerability has been resolved: mm/memory-failure: fix deadlock when hugetlb_optimize_vmemmap is enabled When I did hard offline test with hugetlb pages, below deadlock occurs: ==================================...
CVE-2024-1874
- EPSS 57.55%
- Veröffentlicht 29.04.2024 04:15:07
- Zuletzt bearbeitet 18.06.2025 21:12:24
In PHP versions 8.1.* before 8.1.28, 8.2.* before 8.2.18, 8.3.* before 8.3.5, when using proc_open() command with array syntax, due to insufficient escaping, if the arguments of the executed command are controlled by a malicious user, the user can su...
CVE-2024-22391
- EPSS 0.18%
- Veröffentlicht 25.04.2024 15:16:04
- Zuletzt bearbeitet 21.08.2025 18:04:45
A heap-based buffer overflow vulnerability exists in the LookupTable::SetLUT functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A specially crafted malformed file can lead to memory corruption. An attacker can provide a malicious file to trig...
CVE-2024-25569
- EPSS 0.13%
- Veröffentlicht 25.04.2024 15:16:04
- Zuletzt bearbeitet 21.08.2025 18:47:29
An out-of-bounds read vulnerability exists in the RAWCodec::DecodeBytes functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A specially crafted DICOM file can lead to an out-of-bounds read. An attacker can provide a malicious file to trigger t...
CVE-2024-22373
- EPSS 0.26%
- Veröffentlicht 25.04.2024 15:16:03
- Zuletzt bearbeitet 21.08.2025 18:02:05
An out-of-bounds write vulnerability exists in the JPEG2000Codec::DecodeByStreamsCommon functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A specially crafted DICOM file can lead to a heap buffer overflow. An attacker can provide a malicious ...
CVE-2024-32662
- EPSS 0.33%
- Veröffentlicht 23.04.2024 21:15:48
- Zuletzt bearbeitet 04.02.2025 17:44:06
FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read. This occurs when `WCHAR` string is read with twice the size it has and converted to `UTF-8`, `base64` ...
CVE-2024-32659
- EPSS 0.38%
- Veröffentlicht 23.04.2024 20:15:07
- Zuletzt bearbeitet 04.02.2025 17:42:16
FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read if `((nWidth == 0) and (nHeight == 0))`. Version 3.5.1 contains a patch for the issue. No known workaro...
CVE-2024-32660
- EPSS 0.39%
- Veröffentlicht 23.04.2024 20:15:07
- Zuletzt bearbeitet 04.02.2025 17:42:38
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.5.1, a malicious server can crash the FreeRDP client by sending invalid huge allocation size. Version 3.5.1 contains a patch for the issue. No known workarounds are a...
CVE-2024-32661
- EPSS 0.58%
- Veröffentlicht 23.04.2024 20:15:07
- Zuletzt bearbeitet 04.02.2025 17:43:06
FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to a possible `NULL` access and crash. Version 3.5.1 contains a patch for the issue. No known workarounds are available.