CVE-2024-57943 – Apache Exfat uninitialized page cache write vulnerability
The following table lists the changes that have been made to the CVE-2024-57943 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Jan. 21, 2025 Action […]
CVE-2024-57940 – Exfat Infinite Cluster Loop Denial of Service
In the Linux kernel, the following vulnerability has been resolved: exfat: fix the infinite loop in exfat_readdir() If the file system is corrupted so that a cluster is linked to itself in the cluster chain, and there is an unused directory entry in the cluster, ‘dentry’ will not be incremented, causing condition ‘dentry < max_dentries' […]
CVE-2024-57944 – “Qualcomm Ti IIO ADC Null Pointer Dereference”
The following table lists the changes that have been made to the CVE-2024-57944 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Jan. 21, 2025 Action […]
CVE-2024-57942 – “Ceph Linux Kernel Copy-to-Cache Write Begin Vulnerability”
In the Linux kernel, the following vulnerability has been resolved: netfs: Fix ceph copy to cache on write-begin At the end of netfs_unlock_read_folio() in which folios are marked appropriately for copying to the cache (either with by being marked dirty and having their private data set or by having PG_private_2 set) and then unlocked, the […]
CVE-2024-57941 – Linux Ceph File System NetFS Private2 Cache Cancelation Vulnerability
In the Linux kernel, the following vulnerability has been resolved: netfs: Fix the (non-)cancellation of copy when cache is temporarily disabled When the caching for a cookie is temporarily disabled (e.g. due to a DIO write on that file), future copying to the cache for that file is disabled until all fds open on that […]
CVE-2024-57939 – RISC-V Linux Sleeping in Invalid Context Memory Corruption
In the Linux kernel, the following vulnerability has been resolved: riscv: Fix sleeping in invalid context in die() die() can be called in exception handler, and therefore cannot sleep. However, die() takes spinlock_t which can sleep with PREEMPT_RT enabled. That causes the following warning: BUG: sleeping function called from invalid context at kernel/locking/spinlock_rt.c:48 in_atomic(): 1, […]
Critical Mozilla Vulnerabilities Prompt Urgent Updates for Firefox and Thunderbird Users
Critical Mozilla Vulnerabilities Prompt Urgent Updates for Firefox and Thunderbird Users Mozilla Firefox and Thunderbird users are facing a series of high-severity vulnerabilities that could leave systems open to exploitation. The Indian Computer Emergency Response Team (CERT-In) issued a … Read more Published Date: Jan 21, 2025 (35 minutes ago) Vulnerabilities has been mentioned in this […]
13,000 MikroTik Routers Hijacked by Botnet for Malspam and Cyberattacks
13,000 MikroTik Routers Hijacked by Botnet for Malspam and Cyberattacks A global network of about 13,000 hijacked Mikrotik routers has been employed as a botnet to propagate malware via spam campaigns, the latest addition to a list of botnets powered by MikroTik devices. … Read more Published Date: Jan 21, 2025 (2 hours, 40 minutes ago) Vulnerabilities […]
‘Nederland telt honderden Fortinet-apparaten met actief aangevallen lek’
‘Nederland telt honderden Fortinet-apparaten met actief aangevallen lek’ Nederland telt honderden Fortinet-apparaten die een actief aangevallen kwetsbaarheid bevatten. Wereldwijd gaat het om zo’n vijftigduizend systemen. Dat meldt The Shadowserver Foundation op basis van e … Read more Published Date: Jan 21, 2025 (1 hour, 4 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-55591
CVE-2025-0615 – Qualifio Wheel of Fortune Email Injection
The following table lists the changes that have been made to the CVE-2025-0615 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 21, 2025 Action […]