CVE-2024-27008
- EPSS 0.01%
- Veröffentlicht 01.05.2024 06:15:19
- Zuletzt bearbeitet 01.12.2025 15:17:23
In the Linux kernel, the following vulnerability has been resolved: drm: nv04: Fix out of bounds access When Output Resource (dcb->or) value is assigned in fabricate_dcb_output(), there may be out of bounds access to dac_users array in case dcb->or...
CVE-2024-27012
- EPSS 0.01%
- Veröffentlicht 01.05.2024 06:15:19
- Zuletzt bearbeitet 04.11.2025 18:16:10
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: restore set elements when delete set fails From abort path, nft_mapelem_activate() needs to restore refcounters to the original state. Currently, it uses the ...
CVE-2024-27013
- EPSS 0.01%
- Veröffentlicht 01.05.2024 06:15:19
- Zuletzt bearbeitet 04.11.2025 18:16:11
In the Linux kernel, the following vulnerability has been resolved: tun: limit printing rate when illegal packet received by tun dev vhost_worker will call tun call backs to receive packets. If too many illegal packets arrives, tun_do_read will kee...
CVE-2024-26986
- EPSS 0.01%
- Veröffentlicht 01.05.2024 06:15:16
- Zuletzt bearbeitet 04.11.2025 18:16:03
In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix memory leak in create_process failure Fix memory leak due to a leaked mmget reference on an error handling code path that is triggered when attempting to create KFD...
CVE-2024-26987
- EPSS 0.01%
- Veröffentlicht 01.05.2024 06:15:16
- Zuletzt bearbeitet 04.11.2025 18:16:04
In the Linux kernel, the following vulnerability has been resolved: mm/memory-failure: fix deadlock when hugetlb_optimize_vmemmap is enabled When I did hard offline test with hugetlb pages, below deadlock occurs: ==================================...
CVE-2024-1874
- EPSS 51.27%
- Veröffentlicht 29.04.2024 04:15:07
- Zuletzt bearbeitet 04.11.2025 19:16:27
In PHP versions 8.1.* before 8.1.28, 8.2.* before 8.2.18, 8.3.* before 8.3.5, when using proc_open() command with array syntax, due to insufficient escaping, if the arguments of the executed command are controlled by a malicious user, the user can su...
CVE-2024-22391
- EPSS 0.18%
- Veröffentlicht 25.04.2024 15:16:04
- Zuletzt bearbeitet 04.11.2025 18:15:50
A heap-based buffer overflow vulnerability exists in the LookupTable::SetLUT functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A specially crafted malformed file can lead to memory corruption. An attacker can provide a malicious file to trig...
CVE-2024-25569
- EPSS 0.14%
- Veröffentlicht 25.04.2024 15:16:04
- Zuletzt bearbeitet 04.11.2025 18:15:52
An out-of-bounds read vulnerability exists in the RAWCodec::DecodeBytes functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A specially crafted DICOM file can lead to an out-of-bounds read. An attacker can provide a malicious file to trigger t...
CVE-2024-22373
- EPSS 0.2%
- Veröffentlicht 25.04.2024 15:16:03
- Zuletzt bearbeitet 04.11.2025 18:15:50
An out-of-bounds write vulnerability exists in the JPEG2000Codec::DecodeByStreamsCommon functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A specially crafted DICOM file can lead to a heap buffer overflow. An attacker can provide a malicious ...
CVE-2024-32662
- EPSS 0.33%
- Veröffentlicht 23.04.2024 21:15:48
- Zuletzt bearbeitet 04.02.2025 17:44:06
FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read. This occurs when `WCHAR` string is read with twice the size it has and converted to `UTF-8`, `base64` ...