Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 2476-2500 di 3856 risultati
Pagina 100 di 155

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2024-58069 rtc: pcf85063: fix potential OOB write in PCF85063 NVMEM read18-02-20262476
MSRC Security UpdateCVE-2023-40661 Opensc: multiple memory issues with pkcs15-init (enrollment tool)18-02-20262477
MSRC Security UpdateCVE-2024-50044 Bluetooth: RFCOMM: FIX possible deadlock in rfcomm_sk_state_change18-02-20262478
MSRC Security UpdateCVE-2024-44931 gpio: prevent potential speculation leaks in gpio_device_get_desc()18-02-20262479
MSRC Security UpdateCVE-2025-27516 Jinja sandbox breakout through attr filter selecting format method18-02-20262480
MSRC Security UpdateCVE-2024-47252 Apache HTTP Server: mod_ssl error log variable escaping18-02-20262481
MSRC Security UpdateCVE-2023-40660 Opensc: potential pin bypass when card tracks its own login state18-02-20262482
MSRC Security UpdateCVE-2024-58058 ubifs: skip dumping tnc tree when zroot is null18-02-20262483
MSRC Security UpdateCVE-2024-56739 rtc: check if __rtc_read_time was successful in rtc_timer_do_work()18-02-20262484
MSRC Security UpdateCVE-2021-23840 Integer overflow in CipherUpdate18-02-20262485
MSRC Security UpdateCVE-2024-43913 nvme: apple: fix device reference counting18-02-20262486
MSRC Security UpdateCVE-2025-52939 Potential heap-buffer overflow vulnerability in NotepadNext18-02-20262487
MSRC Security UpdateCVE-2024-3651 Denial of Service via Quadratic Complexity in kjd/idna18-02-20262488
MSRC Security UpdateCVE-2023-2977 A vulnerbility was found in OpenSC. This security flaw cause a buffer overrun vulnerability in pkcs15 cardos_have_verifyrc_package. The attacker can supply a smart card package with malformed ASN1 context. The cardos_have_verifyrc_package function scans the ASN1 buffer for 2 tags where remaining length is wrongly caculated due to moved starting pointer. This leads to possible heap-based buffer oob read. In cases where ASAN is enabled while compiling this causes a crash. Further info leak or more damage is possible.18-02-20262489
MSRC Security UpdateCVE-2023-27538 An authentication bypass vulnerability exists in libcurl prior to v8.0.0 where it reuses a previously established SSH connection despite the fact that an SSH option was modified which should have prevented reuse. libcurl maintains a pool of previously used connections to reuse them for subsequent transfers if the configurations match. However two SSH settings were omitted from the configuration check allowing them to match easily potentially leading to the reuse of an inappropriate connection.18-02-20262490
MSRC Security UpdateCVE-2024-58063 wifi: rtlwifi: fix memory leaks and invalid access at probe error path18-02-20262491
MSRC Security UpdateCVE-2025-10148 predictable WebSocket mask18-02-20262492
MSRC Security UpdateCVE-2024-43204 Apache HTTP Server: SSRF with mod_headers setting Content-Type header18-02-20262493
MSRC Security UpdateCVE-2025-38090 drivers/rapidio/rio_cm.c: prevent possible heap overwrite18-02-20262494
MSRC Security UpdateCVE-2024-44987 ipv6: prevent UAF in ip6_send_skb()18-02-20262495
MSRC Security UpdateCVE-2020-26160 jwt-go before 4.0.0-preview1 allows attackers to bypass intended access restrictions in situations with []string{} for m["aud"] (which is allowed by the specification). Because the type assertion fails "" is the value of aud. This is a security problem if the JWT token is presented to a service that lacks its own audience check.18-02-20262496
MSRC Security UpdateCVE-2024-56757 Bluetooth: btusb: mediatek: add intf release flow when usb disconnect18-02-20262497
MSRC Security UpdateCVE-2023-41915 OpenPMIx PMIx before 4.2.6 and 5.0.x before 5.0.1 allows attackers to obtain ownership of arbitrary files via a race condition during execution of library code with UID 0.18-02-20262498
MSRC Security UpdateCVE-2025-21748 ksmbd: fix integer overflows on 32 bit systems18-02-20262499
MSRC Security UpdateCVE-2024-47710 sock_map: Add a cond_resched() in sock_hash_free()18-02-20262500
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter