USN-6765-1: Linux kernel (OEM) vulnerabilities
Alon Zahavi discovered that the NVMe-oF/TCP subsystem in the Linux kernel did not properly validate H2C PDU data, leading to a null pointer dereference vulnerability....
USN-6764-1: libde265 vulnerability
It was discovered that libde265 could be made to allocate memory that exceeds the maximum supported size. If a user or automated system were tricked...
USN-6754-2: nghttp2 vulnerability
USN-6754-1 fixed vulnerabilities in nghttp2. This update provides the corresponding update for Ubuntu 24.04 LTS. Original advisory details: It was discovered that nghttp2 incorrectly handled...
USN-6763-1: libvirt vulnerability
Martin Širokov discovered that libvirt incorrectly handled certain memory operations. A local attacker could possibly use this issue to access virtproxyd without authorization. Read More
mingw-python-jinja2-3.1.4-1.fc40
FEDORA-2024-e3caf31c98 Packages in this update: mingw-python-jinja2-3.1.4-1.fc40 Update description: Update to jinja2-3.1.4, fixes CVE-2024-34064. Read More
mingw-python-jinja2-3.1.4-1.fc39
FEDORA-2024-e609c057ad Packages in this update: mingw-python-jinja2-3.1.4-1.fc39 Update description: Update to jinja2-3.1.4, fixes CVE-2024-34064. Read More
mingw-python-werkzeug-3.0.3-1.fc40
FEDORA-2024-8e8ff9d6ec Packages in this update: mingw-python-werkzeug-3.0.3-1.fc40 Update description: Update to werkzeug-3.0.3, fixes CVE-2024-34069. Read More
ZDI-24-427: Adobe Acrobat Reader DC AcroForm Out-Of-Bounds Read Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Adobe Acrobat Reader DC. User interaction is required to exploit this vulnerability...
ZDI-24-426: Adobe Acrobat Reader DC AcroForm Use-After-Free Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Adobe Acrobat Reader DC. User interaction is required to exploit this vulnerability...
ZDI-24-425: Adobe Acrobat Reader DC AcroForm Use-After-Free Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Adobe Acrobat Reader DC. User interaction is required to exploit this vulnerability...