CVE-2024-51569 |
Description: Out-of-bounds Read vulnerability in Apache NimBLE.
Missing proper validation of HCI Number Of Completed Packets could lead to out-of-bound access when parsing HCI event and invalid read from HCI transport memory.
This issue requires broken or bogus Bluetooth controller and thus severity is considered low.
This issue affects Apache NimBLE: through 1.7.0.
Users are recommended to upgrade to version 1.8.0, which fixes the issue.
EPSS Score: 0.04%
November 27th, 2024 (6 months ago)
|
CVE-2024-51566 |
Description: The NVMe driver queue processing is vulernable to guest-induced infinite loops.
CVSS: MEDIUM (6.5) EPSS Score: 0.04%
November 27th, 2024 (6 months ago)
|
CVE-2024-51565 |
Description: The hda driver is vulnerable to a buffer over-read from a guest-controlled value.
CVSS: MEDIUM (6.5) EPSS Score: 0.04%
November 27th, 2024 (6 months ago)
|
CVE-2024-51563 |
Description: The virtio_vq_recordon function is subject to a time-of-check to time-of-use (TOCTOU) race condition.
CVSS: MEDIUM (6.5) EPSS Score: 0.04%
November 27th, 2024 (6 months ago)
|
CVE-2024-51562 |
Description: The NVMe driver function nvme_opc_get_log_page is vulnerable to a buffer over-read from a guest-controlled value.
CVSS: MEDIUM (6.5) EPSS Score: 0.04%
November 27th, 2024 (6 months ago)
|
CVE-2024-51208 |
|
CVE-2024-51072 |
|
CVE-2024-51058 |
Description: Local File Inclusion (LFI) vulnerability has been discovered in TCPDF 6.7.5. This vulnerability enables a user to read arbitrary files from the server's file system through src tag, potentially exposing sensitive information.
CVSS: MEDIUM (6.2) EPSS Score: 0.05%
November 27th, 2024 (6 months ago)
|
CVE-2024-50942 |
|
CVE-2024-50377 |
Description: A CWE-798 "Use of Hard-coded Credentials" was discovered affecting the following devices manufactured by Advantech: EKI-6333AC-2G (<= 1.6.3), EKI-6333AC-2GD (<= v1.6.3) and EKI-6333AC-1GPO (<= v1.2.1). The vulnerability is associated to the backup configuration functionality that by default encrypts the archives using a static password.
CVSS: MEDIUM (6.5) EPSS Score: 0.04%
November 27th, 2024 (6 months ago)
|