Логотип exploitDog
bind:"CVE-2024-28956" OR bind:"CVE-2024-8805"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2024-28956" OR bind:"CVE-2024-8805"

Количество 68

Количество 68

oracle-oval логотип

ELSA-2025-20365

5 месяцев назад

ELSA-2025-20365: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2024-8805

12 месяцев назад

BlueZ HID over GATT Profile Improper Access Control Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of BlueZ. Authentication is not required to exploit this vulnerability. The specific flaw exists within the implementation of the HID over GATT Profile. The issue results from the lack of authorization prior to allowing access to functionality. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-25177.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2024-8805

12 месяцев назад

BlueZ HID over GATT Profile Improper Access Control Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of BlueZ. Authentication is not required to exploit this vulnerability. The specific flaw exists within the implementation of the HID over GATT Profile. The issue results from the lack of authorization prior to allowing access to functionality. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-25177.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2024-8805

12 месяцев назад

BlueZ HID over GATT Profile Improper Access Control Remote Code Execut ...

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2024-28956

6 месяцев назад

Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

CVSS3: 5.6
EPSS: Низкий
redhat логотип

CVE-2024-28956

6 месяцев назад

Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

CVSS3: 5.6
EPSS: Низкий
nvd логотип

CVE-2024-28956

6 месяцев назад

Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

CVSS3: 5.6
EPSS: Низкий
debian логотип

CVE-2024-28956

6 месяцев назад

Exposure of Sensitive Information in Shared Microarchitectural Structu ...

CVSS3: 5.6
EPSS: Низкий
github логотип

GHSA-7wxw-j8c5-6p5x

12 месяцев назад

BlueZ HID over GATT Profile Improper Access Control Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of BlueZ. Authentication is not required to exploit this vulnerability. The specific flaw exists within the implementation of the HID over GATT Profile. The issue results from the lack of authorization prior to allowing access to functionality. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-25177.

CVSS3: 8.8
EPSS: Низкий
fstec логотип

BDU:2024-07705

около 1 года назад

Уязвимость интерфейса HID Profile (Human Interface Device) стека протоколов Bluetooth для ОС Linux BlueZ, позволяющая нарушителю выполнить произвольные команды

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02030-1

5 месяцев назад

Security update for xen

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01703-1

5 месяцев назад

Security update for xen

EPSS: Низкий
github логотип

GHSA-hwrg-xmjh-93xc

6 месяцев назад

Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

CVSS3: 5.6
EPSS: Низкий
oracle-oval логотип

ELSA-2025-20368

5 месяцев назад

ELSA-2025-20368: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-20323

6 месяцев назад

ELSA-2025-20323: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-20318

6 месяцев назад

ELSA-2025-20318: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-10991

около 2 месяцев назад

ELSA-2025-10991: microcode_ctl security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-10108

16 дней назад

ELSA-2025-10108: microcode_ctl security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2025-07578

6 месяцев назад

Уязвимость микропрограммного обеспечения процессоров Intel, связанная с раскрытием информации, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.6
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:1449-1

6 месяцев назад

Security update for the Linux Kernel (Live Patch 34 for SLE 15 SP4)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2025-20365

ELSA-2025-20365: Unbreakable Enterprise kernel security update (IMPORTANT)

5 месяцев назад
ubuntu логотип
CVE-2024-8805

BlueZ HID over GATT Profile Improper Access Control Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of BlueZ. Authentication is not required to exploit this vulnerability. The specific flaw exists within the implementation of the HID over GATT Profile. The issue results from the lack of authorization prior to allowing access to functionality. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-25177.

CVSS3: 8.8
3%
Низкий
12 месяцев назад
nvd логотип
CVE-2024-8805

BlueZ HID over GATT Profile Improper Access Control Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of BlueZ. Authentication is not required to exploit this vulnerability. The specific flaw exists within the implementation of the HID over GATT Profile. The issue results from the lack of authorization prior to allowing access to functionality. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-25177.

CVSS3: 8.8
3%
Низкий
12 месяцев назад
debian логотип
CVE-2024-8805

BlueZ HID over GATT Profile Improper Access Control Remote Code Execut ...

CVSS3: 8.8
3%
Низкий
12 месяцев назад
ubuntu логотип
CVE-2024-28956

Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

CVSS3: 5.6
0%
Низкий
6 месяцев назад
redhat логотип
CVE-2024-28956

Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

CVSS3: 5.6
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2024-28956

Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

CVSS3: 5.6
0%
Низкий
6 месяцев назад
debian логотип
CVE-2024-28956

Exposure of Sensitive Information in Shared Microarchitectural Structu ...

CVSS3: 5.6
0%
Низкий
6 месяцев назад
github логотип
GHSA-7wxw-j8c5-6p5x

BlueZ HID over GATT Profile Improper Access Control Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of BlueZ. Authentication is not required to exploit this vulnerability. The specific flaw exists within the implementation of the HID over GATT Profile. The issue results from the lack of authorization prior to allowing access to functionality. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-25177.

CVSS3: 8.8
3%
Низкий
12 месяцев назад
fstec логотип
BDU:2024-07705

Уязвимость интерфейса HID Profile (Human Interface Device) стека протоколов Bluetooth для ОС Linux BlueZ, позволяющая нарушителю выполнить произвольные команды

CVSS3: 8.8
3%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:02030-1

Security update for xen

0%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:01703-1

Security update for xen

0%
Низкий
5 месяцев назад
github логотип
GHSA-hwrg-xmjh-93xc

Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

CVSS3: 5.6
0%
Низкий
6 месяцев назад
oracle-oval логотип
ELSA-2025-20368

ELSA-2025-20368: Unbreakable Enterprise kernel security update (IMPORTANT)

5 месяцев назад
oracle-oval логотип
ELSA-2025-20323

ELSA-2025-20323: Unbreakable Enterprise kernel security update (IMPORTANT)

6 месяцев назад
oracle-oval логотип
ELSA-2025-20318

ELSA-2025-20318: Unbreakable Enterprise kernel security update (IMPORTANT)

6 месяцев назад
oracle-oval логотип
ELSA-2025-10991

ELSA-2025-10991: microcode_ctl security update (MODERATE)

около 2 месяцев назад
oracle-oval логотип
ELSA-2025-10108

ELSA-2025-10108: microcode_ctl security update (MODERATE)

16 дней назад
fstec логотип
BDU:2025-07578

Уязвимость микропрограммного обеспечения процессоров Intel, связанная с раскрытием информации, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.6
0%
Низкий
6 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:1449-1

Security update for the Linux Kernel (Live Patch 34 for SLE 15 SP4)

6 месяцев назад

Уязвимостей на страницу