CVE-2024-47002 – Observium CE HTML Code Injection
The following table lists the changes that have been made to the CVE-2024-47002 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 15, 2025 Action […]
CVE-2024-45061 – Observium CE – Authenticated XSS in Weather Map Editor
The following table lists the changes that have been made to the CVE-2024-45061 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 15, 2025 Action […]
CVE-2024-12084 – “rsync Daemon Heap-Based Buffer Overflow Vulnerability”
The following table lists the changes that have been made to the CVE-2024-12084 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 15, 2025 Action […]
Rsync vulnerabilities allow remote code execution on servers, patch quickly!
Rsync vulnerabilities allow remote code execution on servers, patch quickly! Six vulnerabilities have been fixed in the newest versions of Rsync (v3.4.0), two of which could be exploited by a malicious client to achieve arbitrary code execution on a machine with a running Rsyn … Read more Published Date: Jan 15, 2025 (2 hours, 47 minutes ago) […]
Rsync-kwetsbaarheden laten aanvaller willekeurige code op server uitvoeren
Rsync-kwetsbaarheden laten aanvaller willekeurige code op server uitvoeren De populaire back-up- en synchronisatiesoftware rsync bevat zes verschillende kwetsbaarheden die een aanvaller in het ergste geval willekeurige code op een rsync-server laten uitvoeren. Gebruikers en … Read more Published Date: Jan 15, 2025 (1 hour, 50 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-12084 CVE-2024-12085
CVE-2024-11322 – CyberPower PowerPanel Business Remote Process Restart Denial-of-Service Vulnerability
The following table lists the changes that have been made to the CVE-2024-11322 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 15, 2025 Action […]
CVE-2025-21630 – Linux Kernel: io_uring: Uninitialized Message Queue Inquire
In the Linux kernel, the following vulnerability has been resolved: io_uring/net: always initialize kmsg->msg.msg_inq upfront syzbot reports that ->msg_inq may get used uinitialized from the following path: BUG: KMSAN: uninit-value in io_recv_buf_select io_uring/net.c:1094 [inline] BUG: KMSAN: uninit-value in io_recv+0x930/0x1f90 io_uring/net.c:1158 io_recv_buf_select io_uring/net.c:1094 [inline] io_recv+0x930/0x1f90 io_uring/net.c:1158 io_issue_sqe+0x420/0x2130 io_uring/io_uring.c:1740 io_queue_sqe io_uring/io_uring.c:1950 [inline] io_req_task_submit+0xfa/0x1d0 io_uring/io_uring.c:1374 io_handle_tw_list+0x55f/0x5c0 io_uring/io_uring.c:1057 tctx_task_work_run+0x109/0x3e0 […]
CVE-2025-21629 – “Linux Net IF – IPv6 extension header offload vulnerability”
In the Linux kernel, the following vulnerability has been resolved: net: reenable NETIF_F_IPV6_CSUM offload for BIG TCP packets The blamed commit disabled hardware offoad of IPv6 packets with extension headers on devices that advertise NETIF_F_IPV6_CSUM, based on the definition of that feature in skbuff.h: * * – %NETIF_F_IPV6_CSUM * – Driver (device) is only able […]
CVE-2024-5198 – OpenVPN for Windows DLL Injection Null Pointer Dereference
The following table lists the changes that have been made to the CVE-2024-5198 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 15, 2025 Action […]
CVE-2024-57896 – Vulnerability: Intel Linux Kernels btrfs Delalloc Workers Use-After-Free
In the Linux kernel, the following vulnerability has been resolved: btrfs: flush delalloc workers queue before stopping cleaner kthread during unmount During the unmount path, at close_ctree(), we first stop the cleaner kthread, using kthread_stop() which frees the associated task_struct, and then stop and destroy all the work queues. However after we stopped the cleaner […]