Количество 26 124
Количество 26 124
CVE-2024-1543
CVE-2024-1454
Opensc: memory use after free in authentic driver when updating token info
CVE-2024-1441
Libvirt: off-by-one error in udevlistinterfacesbystatus()
CVE-2024-14040
net: nexthop: Increase weight to u16
CVE-2024-14027
xattr: switch to CLASS(fd)
CVE-2024-13978
LibTIFF fax2ps tiff2pdf.c t2p_read_tiff_init null pointer dereference
CVE-2024-13176
Timing side-channel in ECDSA signature computation
CVE-2024-1312
Kernel: race condition leads to use after free during vma lock in lock_vma_under_rcu
CVE-2024-1298
CVE-2024-12905
An Improper Link Resolution Before File Access ("Link Following") and Improper Limitation of a Pathname to a Restricted Directory ("Path Traversal"). This vulnerability occurs when extracting a maliciously crafted tar file, which can result in unauthorized file writes or overwrites outside the intended extraction directory. The issue is associated with index.js in the tar-fs package. This issue affects tar-fs: from 0.0.0 before 1.16.4, from 2.0.0 before 2.1.2, from 3.0.0 before 3.0.8.
CVE-2024-1284
Chromium: CVE-2024-1284 Use after free in Mojo
CVE-2024-1283
Chromium: CVE-2024-1283 Heap buffer overflow in Skia
CVE-2024-12797
RFC7250 handshakes with unauthenticated servers don't abort as expected
CVE-2024-12747
Rsync: race condition in rsync handling symbolic links
CVE-2024-12718
Bypass extraction filter to modify file metadata outside extraction directory
CVE-2024-12705
DNS-over-HTTPS implementation suffers from multiple issues under heavy query load
CVE-2024-12695
Chromium: CVE-2024-12695 Out of bounds write in V8
CVE-2024-12694
Chromium: CVE-2024-12694 Use after free in Compositing
CVE-2024-12693
Chromium: CVE-2024-12693 Out of bounds memory access in V8
CVE-2024-12692
Chromium: CVE-2024-12692 Type Confusion in V8
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVSS3: 5.5 | 0% Низкий | больше 1 года назад | ||
CVE-2024-1454 Opensc: memory use after free in authentic driver when updating token info | CVSS3: 3.4 | 0% Низкий | больше 1 года назад | |
CVE-2024-1441 Libvirt: off-by-one error in udevlistinterfacesbystatus() | CVSS3: 5.5 | 0% Низкий | около 2 лет назад | |
CVE-2024-14040 net: nexthop: Increase weight to u16 | 0% Низкий | 22 дня назад | ||
CVE-2024-14027 xattr: switch to CLASS(fd) | CVSS3: 5.5 | 0% Низкий | 5 месяцев назад | |
CVE-2024-13978 LibTIFF fax2ps tiff2pdf.c t2p_read_tiff_init null pointer dereference | CVSS3: 2.5 | 0% Низкий | 11 месяцев назад | |
CVE-2024-13176 Timing side-channel in ECDSA signature computation | CVSS3: 4.1 | 1% Низкий | больше 1 года назад | |
CVE-2024-1312 Kernel: race condition leads to use after free during vma lock in lock_vma_under_rcu | CVSS3: 4.7 | 0% Низкий | 6 месяцев назад | |
CVSS3: 6 | 0% Низкий | около 2 лет назад | ||
CVE-2024-12905 An Improper Link Resolution Before File Access ("Link Following") and Improper Limitation of a Pathname to a Restricted Directory ("Path Traversal"). This vulnerability occurs when extracting a maliciously crafted tar file, which can result in unauthorized file writes or overwrites outside the intended extraction directory. The issue is associated with index.js in the tar-fs package. This issue affects tar-fs: from 0.0.0 before 1.16.4, from 2.0.0 before 2.1.2, from 3.0.0 before 3.0.8. | CVSS3: 7.5 | 2% Низкий | 6 дней назад | |
CVE-2024-1284 Chromium: CVE-2024-1284 Use after free in Mojo | 1% Низкий | больше 2 лет назад | ||
CVE-2024-1283 Chromium: CVE-2024-1283 Heap buffer overflow in Skia | 19% Средний | больше 2 лет назад | ||
CVE-2024-12797 RFC7250 handshakes with unauthenticated servers don't abort as expected | CVSS3: 6.3 | 2% Низкий | больше 1 года назад | |
CVE-2024-12747 Rsync: race condition in rsync handling symbolic links | CVSS3: 5.6 | 0% Низкий | больше 1 года назад | |
CVE-2024-12718 Bypass extraction filter to modify file metadata outside extraction directory | CVSS3: 4.3 | 1% Низкий | около 1 года назад | |
CVE-2024-12705 DNS-over-HTTPS implementation suffers from multiple issues under heavy query load | CVSS3: 7.5 | 18% Средний | 6 дней назад | |
CVE-2024-12695 Chromium: CVE-2024-12695 Out of bounds write in V8 | 0% Низкий | больше 1 года назад | ||
CVE-2024-12694 Chromium: CVE-2024-12694 Use after free in Compositing | 0% Низкий | больше 1 года назад | ||
CVE-2024-12693 Chromium: CVE-2024-12693 Out of bounds memory access in V8 | 0% Низкий | больше 1 года назад | ||
CVE-2024-12692 Chromium: CVE-2024-12692 Type Confusion in V8 | 6% Низкий | больше 1 года назад |
Уязвимостей на страницу