Search CVE reports


Toggle filters

9471 – 9480 of 60314 results


CVE-2024-6564

Medium priority
Needs evaluation

Buffer overflow in "rcar_dev_init" due to using due to using untrusted data (rcar_image_number) as a loop counter before verifying it against RCAR_MAX_BL3X_IMAGE. This could lead to a full bypass of secure boot.

1 affected package

arm-trusted-firmware

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
arm-trusted-firmware Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-6563

Medium priority
Needs evaluation

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Renesas arm-trusted-firmware allows Local Execution of Code. This vulnerability is associated with program...

1 affected package

arm-trusted-firmware

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
arm-trusted-firmware Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-39695

Medium priority
Not affected

Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An out-of-bounds read was found in Exiv2 version v0.28.2. The vulnerability is in the parser for the ASF...

1 affected package

exiv2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
exiv2 Not affected Not affected Not affected Not affected
Show less packages

CVE-2024-39308

Medium priority
Needs evaluation

RailsAdmin is a Rails engine that provides an interface for managing data. RailsAdmin list view has the XSS vulnerability, caused by improperly-escaped HTML title attribute. Upgrade to 3.1.3 or 2.2.2 (to be released).

1 affected package

ruby-rails-admin

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ruby-rails-admin Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2024-6163

Medium priority
Needs evaluation

Certain http endpoints of Checkmk in Checkmk < 2.3.0p10 < 2.2.0p31, < 2.1.0p46, <= 2.0.0p39 allows remote attacker to bypass authentication and access data

1 affected package

check-mk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
check-mk Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2024-27903

Medium priority
Ignored

OpenVPN plug-ins on Windows with OpenVPN 2.6.9 and earlier could be loaded from any directory, which allows an attacker to load an arbitrary plug-in which can be used to interact with the privileged OpenVPN interactive service.

1 affected package

openvpn

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openvpn Not affected Not affected Not affected Not affected
Show less packages

CVE-2024-27459

Medium priority
Ignored

The interactive service in OpenVPN 2.6.9 and earlier allows an attacker to send data causing a stack overflow which can be used to execute arbitrary code with more privileges.

1 affected package

openvpn

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openvpn Not affected Not affected Not affected Not affected
Show less packages

CVE-2024-24974

Medium priority
Ignored

The interactive service in OpenVPN 2.6.9 and earlier allows the OpenVPN service pipe to be accessed remotely, which allows a remote attacker to interact with the privileged OpenVPN interactive service.

1 affected package

openvpn

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openvpn Not affected Not affected Not affected Not affected
Show less packages

CVE-2024-6409

Medium priority
Not affected

A race condition vulnerability was discovered in how signals are handled by OpenSSH's server (sshd). If a remote attacker does not authenticate within a set time period, then sshd's SIGALRM handler is called...

2 affected packages

openssh, openssh-ssh1

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openssh Not affected Not affected Not affected Not affected
openssh-ssh1 Not affected Not affected Not affected Not affected
Show less packages

CVE-2024-39486

Medium priority

Some fixes available 24 of 45

In the Linux kernel, the following vulnerability has been resolved: drm/drm_file: Fix pid refcounting race <[email protected]>, Maxime Ripard <[email protected]>, Thomas Zimmermann <[email protected]> filp->pid...

128 affected packages

linux-hwe, linux-hwe-5.4, linux-hwe-5.8, linux-hwe-5.11, linux-hwe-5.13...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-hwe Not in release Not in release Not in release Ignored
linux-hwe-5.4 Not in release Not in release Not in release Not affected
linux-hwe-5.8 Not in release Not in release Ignored Not in release
linux-hwe-5.11 Not in release Not in release Ignored Not in release
linux-hwe-5.13 Not in release Not in release Ignored Not in release
linux-hwe-5.15 Not in release Not in release Not affected Not in release
linux-hwe-5.19 Not in release Ignored Not in release Not in release
linux-hwe-6.2 Not in release Ignored Not in release Not in release
linux-hwe-6.5 Not in release Ignored Not in release Not in release
linux-hwe-edge Not in release Not in release Not in release Not affected
linux-lts-xenial Not in release Not in release Not in release Not in release
linux-kvm Not in release Not affected Not affected Not affected
linux-allwinner-5.19 Not in release Ignored Not in release Not in release
linux-aws-5.0 Not in release Not in release Not in release Ignored
linux-aws-5.3 Not in release Not in release Not in release Ignored
linux-aws-5.4 Not in release Not in release Not in release Not affected
linux-aws-5.8 Not in release Not in release Ignored Not in release
linux-aws-5.11 Not in release Not in release Ignored Not in release
linux-aws-5.13 Not in release Not in release Ignored Not in release
linux-aws-5.15 Not in release Not in release Not affected Not in release
linux-aws-5.19 Not in release Ignored Not in release Not in release
linux-aws-6.2 Not in release Ignored Not in release Not in release
linux-aws-6.5 Not in release Ignored Not in release Not in release
linux-aws-hwe Not in release Not in release Not in release Not in release
linux-azure Fixed Not affected Not affected Ignored
linux-azure-4.15 Not in release Not in release Not in release Not affected
linux-azure-5.3 Not in release Not in release Not in release Ignored
linux-azure-5.4 Not in release Not in release Not in release Not affected
linux-azure-5.8 Not in release Not in release Ignored Not in release
linux-azure-5.11 Not in release Not in release Ignored Not in release
linux-azure-5.13 Not in release Not in release Ignored Not in release
linux-azure-5.15 Not in release Not in release Not affected Not in release
linux-azure-5.19 Not in release Ignored Not in release Not in release
linux-azure-6.2 Not in release Ignored Not in release Not in release
linux-azure-6.5 Not in release Ignored Not in release Not in release
linux-azure-fde Not in release Not affected Ignored Not in release
linux-azure-fde-5.15 Not in release Not in release Not affected Not in release
linux-azure-fde-5.19 Not in release Ignored Not in release Not in release
linux-azure-fde-6.2 Not in release Ignored Not in release Not in release
linux-bluefield Not in release Not in release Not affected Not in release
linux-azure-edge Not in release Not in release Not in release Ignored
linux-fips Not in release Not affected Not affected Not affected
linux-aws-fips Not in release Not affected Not affected Not affected
linux-azure-fips Not in release Not affected Not affected Not affected
linux-gcp-fips Not in release Not affected Not affected Not affected
linux-gcp Fixed Not affected Not affected Ignored
linux-gcp-4.15 Not in release Not in release Not in release Not affected
linux-gcp-5.3 Not in release Not in release Not in release Ignored
linux-gcp-5.4 Not in release Not in release Not in release Not affected
linux-gcp-5.8 Not in release Not in release Ignored Not in release
linux-gcp-5.11 Not in release Not in release Ignored Not in release
linux-gcp-5.13 Not in release Not in release Ignored Not in release
linux-gcp-5.15 Not in release Not in release Not affected Not in release
linux-gcp-5.19 Not in release Ignored Not in release Not in release
linux-gcp-6.2 Not in release Ignored Not in release Not in release
linux-gcp-6.5 Not in release Ignored Not in release Not in release
linux-gke Fixed Not affected Ignored Not in release
linux-gke-4.15 Not in release Not in release Not in release Ignored
linux-gke-5.4 Not in release Not in release Not in release Ignored
linux-gke-5.15 Not in release Not in release Ignored Not in release
linux-gkeop Fixed Not affected Not affected Not in release
linux-gkeop-5.4 Not in release Not in release Not in release Ignored
linux-gkeop-5.15 Not in release Not in release Not affected Not in release
linux-ibm Fixed Not affected Not affected Not in release
linux-ibm-5.4 Not in release Not in release Not in release Not affected
linux-ibm-5.15 Not in release Not in release Not affected Not in release
linux-intel Not affected Not in release Not in release Not in release
linux-intel-5.13 Not in release Not in release Ignored Not in release
linux-intel-iotg Not in release Not affected Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Not affected Not in release
linux-iot Not in release Not in release Not affected Not in release
linux-laptop Not in release Not in release Not in release Not in release
linux-lowlatency Fixed Not affected Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Not affected Not in release
linux-lowlatency-hwe-5.19 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.2 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.5 Not in release Ignored Not in release Not in release
linux-nvidia Fixed Not affected Not in release Not in release
linux-nvidia-6.2 Not in release Ignored Not in release Not in release
linux-nvidia-6.5 Not in release Ignored Not in release Not in release
linux-oracle-5.0 Not in release Not in release Not in release Ignored
linux-oracle-5.3 Not in release Not in release Not in release Ignored
linux-oracle-5.4 Not in release Not in release Not in release Not affected
linux-oracle-5.8 Not in release Not in release Ignored Not in release
linux-oracle-5.11 Not in release Not in release Ignored Not in release
linux-oracle-5.13 Not in release Not in release Ignored Not in release
linux-oracle-5.15 Not in release Not in release Not affected Not in release
linux-oracle-6.5 Not in release Ignored Not in release Not in release
linux-oem Not in release Not in release Not in release Ignored
linux-oem-5.6 Not in release Not in release Ignored Not in release
linux-oem-5.10 Not in release Not in release Ignored Not in release
linux-oem-5.13 Not in release Not in release Ignored Not in release
linux-oem-5.14 Not in release Not in release Ignored Not in release
linux-oem-5.17 Not in release Ignored Not in release Not in release
linux-oem-6.0 Not in release Ignored Not in release Not in release
linux-oem-6.1 Not in release Ignored Not in release Not in release
linux-oem-6.5 Not in release Ignored Not in release Not in release
linux-oem-6.8 Fixed Not in release Not in release Not in release
linux-raspi2 Not in release Not in release Ignored Ignored
linux-raspi-5.4 Not in release Not in release Not in release Not affected
linux-riscv Fixed Ignored Ignored Not in release
linux-riscv-5.8 Not in release Not in release Ignored Not in release
linux-riscv-5.11 Not in release Not in release Ignored Not in release
linux-riscv-5.15 Not in release Not in release Not affected Not in release
linux-riscv-5.19 Not in release Ignored Not in release Not in release
linux-riscv-6.5 Not in release Ignored Not in release Not in release
linux-starfive Not in release Not in release Not in release Not in release
linux-starfive-5.19 Not in release Ignored Not in release Not in release
linux-starfive-6.2 Not in release Ignored Not in release Not in release
linux-starfive-6.5 Not in release Ignored Not in release Not in release
linux-xilinx-zynqmp Not in release Not affected Not affected Not in release
linux Fixed Not affected Not affected Not affected
linux-aws Fixed Not affected Not affected Not affected
linux-oracle Fixed Not affected Not affected Not affected
linux-raspi Fixed Not affected Not affected Not in release
linux-nvidia-6.8 Not in release Fixed Not in release Not in release
linux-nvidia-lowlatency Fixed Not in release Not in release Not in release
linux-hwe-6.8 Not in release Fixed Not in release Not in release
linux-lowlatency-hwe-6.8 Not in release Fixed Not in release Not in release
linux-riscv-6.8 Not in release Fixed Not in release Not in release
linux-intel-iot-realtime Not in release Not affected Not in release Not in release
linux-raspi-realtime Fixed Not in release Not in release Not in release
linux-realtime Fixed Not affected Not in release Not in release
linux-aws-6.8 Not in release Fixed Not in release Not in release
linux-gcp-6.8 Not in release Fixed Not in release Not in release
linux-oracle-6.8 Not in release Fixed Not in release Not in release
linux-azure-6.8 Not in release Fixed Not in release Not in release
linux-oem-6.11 Not affected Not in release Not in release Not in release
Show all 128 packages Show less packages