Month: February 2026
CVE-2024-44985 ipv6: prevent possible UAF in ip6_xmit()
Information published. Continue reading CVE-2024-44985 ipv6: prevent possible UAF in ip6_xmit()
CVE-2007-2768 OpenSSH when using OPIE (One-Time Passwords in Everything) for PAM allows remote attackers to determine the existence of certain user accounts which displays a different response if the user account exists and is configured to use one-time passwords (OTP) a similar issue to CVE-2007-2243.
CVE-2024-28180 Go JOSE vulnerable to Improper Handling of Highly Compressed Data (Data Amplification)
CVE-2025-52496 Mbed TLS before 3.6.4 has a race condition in AESNI detection if certain compiler optimizations occur. An attacker may be able to extract an AES key from a multithreaded program, or perform a GCM forgery.
CVE-2024-56767 dmaengine: at_xdmac: avoid null_prt_deref in at_xdmac_prep_dma_memset
CVE-2024-47723 jfs: fix out-of-bounds in dbNextAG() and diAlloc()
Information published. Continue reading CVE-2024-47723 jfs: fix out-of-bounds in dbNextAG() and diAlloc()
