Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 2176-2200 di 3853 risultati
Pagina 88 di 155

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2024-12905 An Improper Link Resolution Before File Access ("Link Following") and Improper Limitation of a Pathname to a Restricted Directory ("Path Traversal"). This vulnerability occurs when extracting a maliciously crafted tar file, which can result in unauthorized file writes or overwrites outside the intended extraction directory. The issue is associated with index.js in the tar-fs package. This issue affects tar-fs: from 0.0.0 before 1.16.4, from 2.0.0 before 2.1.2, from 3.0.0 before 3.0.8.18-02-20262176
MSRC Security UpdateCVE-2024-34156 Stack exhaustion in Decoder.Decode in encoding/gob18-02-20262177
MSRC Security UpdateCVE-2025-53905 Vim has path traversial issue with tar.vim and special crafted tar files18-02-20262178
MSRC Security UpdateCVE-2022-1708 A vulnerability was found in CRI-O that causes memory or disk space exhaustion on the node for anyone with access to the Kube API. The ExecSync request runs commands in a container and logs the output of the command. This output is then read by CRI-O after command execution and it is read in a manner where the entire file corresponding to the output of the command is read in. Thus if the output of the command is large it is possible to exhaust the memory or the disk space of the node when CRI-O reads the output of the command. The highest threat from this vulnerability is system availability.18-02-20262179
MSRC Security UpdateCVE-2024-57980 media: uvcvideo: Fix double free in error path18-02-20262180
MSRC Security UpdateCVE-2025-38115 net_sched: sch_sfq: fix a potential crash on gso_skb handling18-02-20262181
MSRC Security UpdateCVE-2024-56766 mtd: rawnand: fix double free in atmel_pmecc_create_user()18-02-20262182
MSRC Security UpdateCVE-2023-2650 Possible DoS translating ASN.1 object identifiers18-02-20262183
MSRC Security UpdateCVE-2024-46748 cachefiles: Set the max subreq size for cache writes to MAX_RW_COUNT18-02-20262184
MSRC Security UpdateCVE-2019-19317 lookupName in resolve.c in SQLite 3.30.1 omits bits from the colUsed bitmask in the case of a generated column, which allows attackers to cause a denial of service or possibly have unspecified other impact.18-02-20262185
MSRC Security UpdateCVE-2022-0811 A flaw was found in CRI-O in the way it set kernel options for a pod. This issue allows anyone with rights to deploy a pod on a Kubernetes cluster that uses the CRI-O runtime to achieve a container escape and arbitrary code execution as root on the cluster node, where the malicious pod was deployed.18-02-20262186
MSRC Security UpdateCVE-2025-38100 x86/iopl: Cure TIF_IO_BITMAP inconsistencies18-02-20262187
MSRC Security UpdateCVE-2025-6965 Integer Truncation on SQLite18-02-20262188
MSRC Security UpdateCVE-2024-49895 drm/amd/display: Fix index out of bounds in DCN30 degamma hardware format translation18-02-20262189
MSRC Security UpdateCVE-2024-57973 rdma/cxgb4: Prevent potential integer overflow on 32bit18-02-20262190
MSRC Security UpdateCVE-2025-37833 net/niu: Niu requires MSIX ENTRY_DATA fields touch before entry reads18-02-20262191
MSRC Security UpdateCVE-2023-46118 Denial of Service by publishing large messages over the HTTP API18-02-20262192
MSRC Security UpdateCVE-2025-38163 f2fs: fix to do sanity check on sbi->total_valid_block_count18-02-20262193
MSRC Security UpdateCVE-2024-2398 HTTP/2 push headers memory-leak18-02-20262194
MSRC Security UpdateCVE-2024-41009 bpf: Fix overrunning reservations in ringbuf18-02-20262195
MSRC Security UpdateCVE-2025-30211 KEX init error results with excessive memory usage18-02-20262196
MSRC Security UpdateCVE-2023-42467 QEMU through 8.0.0 could trigger a division by zero in scsi_disk_reset in hw/scsi/scsi-disk.c because scsi_disk_emulate_mode_select does not prevent s->qdev.blocksize from being 256. This stops QEMU and the guest immediately.18-02-20262197
MSRC Security UpdateCVE-2024-50013 exfat: fix memory leak in exfat_load_bitmap()18-02-20262198
MSRC Security UpdateCVE-2024-57978 media: imx-jpeg: Fix potential error pointer dereference in detach_pm()18-02-20262199
MSRC Security UpdateCVE-2025-37744 wifi: ath12k: fix memory leak in ath12k_pci_remove()18-02-20262200
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter