Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 1851-1875 di 3834 risultati
Pagina 75 di 154

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2025-38351 KVM: x86/hyper-v: Skip non-canonical addresses during PV TLB flush18-02-20261851
MSRC Security UpdateCVE-2021-33198 In Go before 1.15.13 and 1.16.x before 1.16.5 there can be a panic for a large exponent to the math/big.Rat SetString or UnmarshalText method.18-02-20261852
MSRC Security UpdateCVE-2025-37819 irqchip/gic-v2m: Prevent use after free of gicv2m_get_fwnode()18-02-20261853
MSRC Security UpdateCVE-2025-32050 Libsoup: integer overflow in append_param_quoted18-02-20261854
MSRC Security UpdateCVE-2024-42277 iommu: sprd: Avoid NULL deref in sprd_iommu_hw_en18-02-20261855
MSRC Security UpdateCVE-2025-68371 scsi: smartpqi: Fix device resources accessed after device removal18-02-20261856
MSRC Security UpdateCVE-2025-38230 jfs: validate AG parameters in dbMount() to prevent crashes18-02-20261857
MSRC Security UpdateCVE-2023-49295 quic-go's path validation mechanism can cause denial of service18-02-20261858
MSRC Security UpdateCVE-2024-28863 node-tar vulnerable to denial of service while parsing a tar file due to lack of folders count validation18-02-20261859
MSRC Security UpdateCVE-2025-40913 Net::Dropbear versions through 0.16 for Perl contains a dependency that may be susceptible to an integer overflow18-02-20261860
MSRC Security UpdateCVE-2025-49796 Libxml: type confusion leads to denial of service (dos)18-02-20261861
MSRC Security UpdateCVE-2019-16910 Arm Mbed TLS before 2.19.0 and Arm Mbed Crypto before 2.0.0, when deterministic ECDSA is enabled, use an RNG with insufficient entropy for blinding, which might allow an attacker to recover a private key via side-channel attacks if a victim signs the same message many times. (For Mbed TLS, the fix is also available in versions 2.7.12 and 2.16.3.)18-02-20261862
MSRC Security UpdateCVE-2024-50038 netfilter: xtables: avoid NFPROTO_UNSPEC where needed18-02-20261863
MSRC Security UpdateCVE-2025-37963 arm64: bpf: Only mitigate cBPF programs loaded by unprivileged users18-02-20261864
MSRC Security UpdateCVE-2025-22870 HTTP Proxy bypass using IPv6 Zone IDs in golang.org/x/net18-02-20261865
MSRC Security UpdateCVE-2018-10906 In fuse before versions 2.9.8 and 3.x before 3.2.5 fusermount is vulnerable to a restriction bypass when SELinux is active. This allows non-root users to mount a FUSE file system with the 'allow_other' mount option regardless of whether 'user_allow_other' is set in the fuse configuration. An attacker may use this flaw to mount a FUSE file system accessible by other users and trick them into accessing files on that file system possibly causing Denial of Service or other unspecified effects.18-02-20261866
MSRC Security UpdateCVE-2024-42280 mISDN: Fix a use after free in hfcmulti_tx()18-02-20261867
MSRC Security UpdateCVE-2020-25576 An issue was discovered in the rand_core crate before 0.4.2 for Rust. Casting of byte slices to integer slices mishandles alignment constraints.18-02-20261868
MSRC Security UpdateCVE-2025-38213 Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.18-02-20261869
MSRC Security UpdateCVE-2024-47670 ocfs2: add bounds checking to ocfs2_xattr_find_entry()18-02-20261870
MSRC Security UpdateCVE-2024-21646 Azure IoT Platform Device SDK Remote Code Execution Vulnerability18-02-20261871
MSRC Security UpdateCVE-2024-30261 Undici's fetch with integrity option is too lax when algorithm is specified but hash value is in incorrect18-02-20261872
MSRC Security UpdateCVE-2025-38575 ksmbd: use aead_request_free to match aead_request_alloc18-02-20261873
MSRC Security UpdateCVE-2025-32386 Helm Allows A Specially Crafted Chart Archive To Cause Out Of Memory Termination18-02-20261874
MSRC Security UpdateCVE-2025-53605 The protobuf crate before 3.7.2 for Rust allows uncontrolled recursion in the protobuf::coded_input_stream::CodedInputStream::skip_group parsing of unknown fields in untrusted input.18-02-20261875
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter