CVE-2025-0725 – Apache libcurl integer overflow vulnerability boils down to buffer overflow

The following table lists the changes that have been made to the CVE-2025-0725 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 2499f714-1537-4658-8207-48ae4bb9eae9 Feb. 05, 2025 Action […]

CVE-2025-0665 – libcurl Eventfd File Descriptor Double Close

The following table lists the changes that have been made to the CVE-2025-0665 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 2499f714-1537-4658-8207-48ae4bb9eae9 Feb. 05, 2025 Action […]

CVE-2025-0167 – Apache Curl HTTP Redirects Password Leak in Netrc File

The following table lists the changes that have been made to the CVE-2025-0167 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 2499f714-1537-4658-8207-48ae4bb9eae9 Feb. 05, 2025 Action […]

CVE-2024-6356 – GitLab Security Policy Bot Cross-Project Access

The following table lists the changes that have been made to the CVE-2024-6356 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 05, 2025 Action […]

CVE-2024-1539 – GitLab EE Information Disclosure Vulnerability

The following table lists the changes that have been made to the CVE-2024-1539 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 05, 2025 Action […]

CVE-2023-6386 – GitLab Denial of Service

The following table lists the changes that have been made to the CVE-2023-6386 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 05, 2025 Action […]

CVE-2023-52925 – Apache Linux Kernel Nf_tables Expired Entry Vulnerability

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: don’t fail inserts if duplicate has expired nftables selftests fail: run-tests.sh testcases/sets/0044interval_overlap_0 Expected: 0-2 . 0-3, got: W: [FAILED] ./testcases/sets/0044interval_overlap_0: got 1 Insertion must ignore duplicate but expired entries. Moreover, there is a strange asymmetry in nft_pipapo_activate: It refetches the current element, whereas […]

CVE-2023-52924 – Apache Netfilter nf_tables Use Count Leak Vulnerability

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: don’t skip expired elements during walk There is an asymmetry between commit/abort and preparation phase if the following conditions are met: 1. set is a verdict map (“1.2.3.4 : jump foo”) 2. timeouts are enabled In this case, following sequence is problematic: 1. […]

VS meldt actief misbruik van lekken in Apache OFBiz en Microsoft .NET

VS meldt actief misbruik van lekken in Apache OFBiz en Microsoft .NET Aanvallers maken actief misbruik van kwetsbaarheden in Apache OFBiz en Microsoft .NET, zo laat het Cybersecurity and Infrastructure Security Agency (CISA) van het Amerikaanse ministerie van Homeland S … Read more Published Date: Feb 05, 2025 (3 hours, 17 minutes ago) Vulnerabilities has been mentioned […]

Zyxel waarschuwt voor actief aangevallen lekken in end-of-life modems

Zyxel waarschuwt voor actief aangevallen lekken in end-of-life modems Zyxel waarschuwt eigenaren van verschillende modem-routers voor actief aangevallen kwetsbaarheden. De apparaten in kwestie zijn end-of-life en Zyxel zal dan ook geen updates uitbrengen om de beveiligi … Read more Published Date: Feb 05, 2025 (2 hours, 13 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-0890 […]