Aggregator
Safepay
3 months 3 weeks ago
cohenido
Safepay
3 months 3 weeks ago
cohenido
Safepay
3 months 3 weeks ago
cohenido
CVE-2020-11879 | GNOME Evolution up to 3.21.2 mailto?attach information disclosure (News 784 / Nessus ID 234518)
3 months 3 weeks ago
A vulnerability was found in GNOME Evolution and classified as problematic. Affected by this issue is some unknown functionality. The manipulation of the argument mailto?attach leads to information disclosure.
This vulnerability is handled as CVE-2020-11879. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49390 | Linux Kernel up to 5.17.14/5.18.2 lib/kobject.c dev_hold_track use after free (Nessus ID 234528)
3 months 3 weeks ago
A vulnerability has been found in Linux Kernel up to 5.17.14/5.18.2 and classified as critical. This vulnerability affects the function dev_hold_track in the library lib/kobject.c. The manipulation leads to use after free.
This vulnerability was named CVE-2022-49390. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-36327 | Bundler up to 2.2.9/2.2.16 gem injection (Nessus ID 234537)
3 months 3 weeks ago
A vulnerability was found in Bundler up to 2.2.9/2.2.16. It has been classified as problematic. Affected is an unknown function of the component gem Handler. The manipulation leads to injection.
This vulnerability is traded as CVE-2020-36327. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-53259 | quic-go up to 0.48.1 IP_PMTUDISC_DO denial of service (Nessus ID 234533)
3 months 3 weeks ago
A vulnerability was found in quic-go up to 0.48.1. It has been rated as critical. Affected by this issue is the function IP_PMTUDISC_DO. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2024-53259. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-1907 | pgAdmin Server Mode improper authentication (Nessus ID 234538)
3 months 3 weeks ago
A vulnerability was found in pgAdmin. It has been rated as problematic. This issue affects some unknown processing of the component Server Mode. The manipulation leads to improper authentication.
The identification of this vulnerability is CVE-2023-1907. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2023-53010 | Linux Kernel up to 6.1.8 snprintf buffer overflow (Nessus ID 234545)
3 months 3 weeks ago
A vulnerability classified as critical has been found in Linux Kernel up to 6.1.8. Affected is the function snprintf. The manipulation leads to buffer overflow.
This vulnerability is traded as CVE-2023-53010. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-53019 | Linux Kernel up to 6.1.8 mdiobus_get_phy out-of-bounds (Nessus ID 234545)
3 months 3 weeks ago
A vulnerability was found in Linux Kernel up to 6.1.8. It has been rated as problematic. Affected by this issue is the function mdiobus_get_phy. The manipulation leads to out-of-bounds read.
This vulnerability is handled as CVE-2023-53019. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49740 | Linux Kernel up to 5.4.231/5.10.167/5.15.92/6.1.10 brcmfmac brcmf_construct_chaninfo Count out-of-bounds (Nessus ID 234545)
3 months 3 weeks ago
A vulnerability has been found in Linux Kernel up to 5.4.231/5.10.167/5.15.92/6.1.10 and classified as problematic. This vulnerability affects the function brcmf_construct_chaninfo of the component brcmfmac. The manipulation of the argument Count leads to out-of-bounds read.
This vulnerability was named CVE-2022-49740. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-52997 | Linux Kernel up to 4.19.271/5.4.230/5.10.165/5.15.90/6.1.8 Kernel Memory ip_metrics_convert array index (Nessus ID 234545)
3 months 3 weeks ago
A vulnerability was found in Linux Kernel up to 4.19.271/5.4.230/5.10.165/5.15.90/6.1.8. It has been classified as problematic. This affects the function ip_metrics_convert of the component Kernel Memory Handler. The manipulation leads to improper validation of array index.
This vulnerability is uniquely identified as CVE-2023-52997. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49727 | Linux Kernel up to 5.18.5 l2tp_ip6_sendmsg integer overflow (Nessus ID 234545)
3 months 3 weeks ago
A vulnerability was found in Linux Kernel up to 5.18.5 and classified as problematic. This issue affects the function l2tp_ip6_sendmsg. The manipulation leads to integer overflow.
The identification of this vulnerability is CVE-2022-49727. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2022-49711 | Linux Kernel up to 5.15.48/5.18.5 fsl_mc_bus_remove use after free (Nessus ID 234545)
3 months 3 weeks ago
A vulnerability classified as critical was found in Linux Kernel up to 5.15.48/5.18.5. This vulnerability affects the function fsl_mc_bus_remove. The manipulation leads to use after free.
This vulnerability was named CVE-2022-49711. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2015-5133 | Adobe Flash Player 11.2.202.491/18.0.0.209 memory corruption (APSB15-19 / EDB-37858)
3 months 3 weeks ago
A vulnerability, which was classified as very critical, has been found in Adobe Flash Player 11.2.202.491/18.0.0.209. Affected by this issue is some unknown functionality. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2015-5133. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Убийцы теперь светятся в темноте: свинец расскажет полиции всю правду о преступлении
3 months 3 weeks ago
Поиск улик станет в разы проще благодаря перовскитам?
数万年前人类或通过特制衣物和赭石防晒霜抵御强辐射
3 months 3 weeks ago
约 4.1 万年前,地球磁场的强度骤降至现代水平的一小部分,导致到达地球表面的辐射大幅增加。研究人员提出,这一被称为“拉尚事件”的现象可能推动了尼安德特人走向灭绝,而当时的现代人类或许已经可以通过特制衣物和赭石防晒霜等物理防晒方式进行自我保护。地球磁场延伸至太空,构成了抵御有害辐射的天然屏障。磁极通常与南北极对齐,但由于地球液态外核的变化,偶尔会发生偏移。通过对火山岩和沉积物中保存的磁性特征进行研究,研究人员发现,4 万年前磁极向赤道方向偏移,磁场强度减弱至仅为当前的 10%。磁场减弱会让更多太阳辐射和宇宙辐射抵达地表,并可能改变了区域气候。现代人类属于智人演化的晚期阶段。研究人员认为,制作特制衣物及使用红色矿物赭石作为防晒霜,可能使得智人比尼安德特人更具优势,后者被认为在此期间灭绝。
CVE-2025-29042 | D-Link DIR-832x 240802 0x42232c macaddr privilege escalation
3 months 3 weeks ago
A vulnerability has been found in D-Link DIR-832x 240802 and classified as critical. This vulnerability affects the function 0x42232c. The manipulation of the argument macaddr leads to privilege escalation.
This vulnerability was named CVE-2025-29042. The attack can be initiated remotely. There is no exploit available.
vuldb.com
SecWiki News 2025-04-17 Review
3 months 3 weeks ago
2024年国际网络空间形势回顾 by ourren
伏魔挑战赛PHP WebShell记录 by ourren
自动流量分析的新方向 by ourren
鸿蒙 ArkTS 代码安全风险检测实践 by ourren
RSAC 2025 创新沙盒10强全面分析报告 by ourren
2025游戏安全PC方向初赛题解 by ourren
更多最新文章,请访问SecWiki
伏魔挑战赛PHP WebShell记录 by ourren
自动流量分析的新方向 by ourren
鸿蒙 ArkTS 代码安全风险检测实践 by ourren
RSAC 2025 创新沙盒10强全面分析报告 by ourren
2025游戏安全PC方向初赛题解 by ourren
更多最新文章,请访问SecWiki