[Full Disclosure] CVE-2024-22900: Unpatched Command Injection in Vinchin Backup and Recovery Versions 7.2 and Earlier
Posted by Balgogan via Fulldisclosure on Jan 26 CVE ID: CVE-2024-22900 Title: Command Injection Vulnerability in Vinchin Backup and Recovery Versions 7.2 and Earlier Description:...
[SBA-ADV-20200707-02] CVE-2020-36772: CloudLinux CageFS 7.0.8-2 or below Insufficiently Restricted Proxy Command
Posted by SBA - Advisory via Fulldisclosure on Jan 26 # CloudLinux CageFS Insufficiently Restricted Proxy Command # Link: https://github.com/sbaresearch/advisories/tree/public/2020/SBA-ADV-20200707-02_CloudLinux_CageFS_Insufficiently_Restricted_Proxy_Commands ## Vulnerability Overview ## CloudLinux...
[SBA-ADV-20200707-01] CVE-2020-36771: CloudLinux CageFS 7.1.1-1 or below Token Disclosure
Posted by SBA - Advisory via Fulldisclosure on Jan 26 # CloudLinux CageFS Token Disclosure # Link: https://github.com/sbaresearch/advisories/tree/public/2020/SBA-ADV-20200707-01_CloudLinux_CageFS_Token_Disclosure ## Vulnerability Overview ## CloudLinux CageFS 7.1.1-1...
firecracker-1.6.0-4.fc40 libkrun-1.7.2-2.fc40 rust-event-manager-0.4.0-1.fc40 rust-kvm-bindings-0.7.0-1.fc40 rust-kvm-ioctls-0.16.0-1.fc40 rust-linux-loader-0.10.0-2.fc40 rust-userfaultfd-0.8.1-1.fc40 rust-versionize-0.2.0-1.fc40 rust-vhost-0.10.0-1.fc40 rust-vhost-user-backend-0.13.1-1.fc40 rust-virtio-queue-0.11.0-1.fc40 rust-vm-memory-0.14.0-1.fc40 rust-vm-superio-0.7.0-3.fc40 rust-vmm-sys-util-0.12.1-1.fc40 virtiofsd-1.10.0-1.fc40
FEDORA-2024-9974808629 Packages in this update: firecracker-1.6.0-4.fc40 libkrun-1.7.2-2.fc40 rust-event-manager-0.4.0-1.fc40 rust-kvm-bindings-0.7.0-1.fc40 rust-kvm-ioctls-0.16.0-1.fc40 rust-linux-loader-0.10.0-2.fc40 rust-userfaultfd-0.8.1-1.fc40 rust-versionize-0.2.0-1.fc40 rust-vhost-0.10.0-1.fc40 rust-vhost-user-backend-0.13.1-1.fc40 rust-virtio-queue-0.11.0-1.fc40 rust-vm-memory-0.14.0-1.fc40 rust-vmm-sys-util-0.12.1-1.fc40 rust-vm-superio-0.7.0-3.fc40 virtiofsd-1.10.0-1.fc40 Update description: Update rust-vmm components...
USN-6609-1: Linux kernel vulnerabilities
Lin Ma discovered that the netfilter subsystem in the Linux kernel did not properly validate network family support while creating a new netfilter table. A...
USN-6608-1: Linux kernel vulnerabilities
It was discovered that the CIFS network file system implementation in the Linux kernel did not properly validate the server frame size in certain situation,...
USN-6607-1: Linux kernel (Azure) vulnerabilities
It was discovered that the SMB network file sharing protocol implementation in the Linux kernel did not properly handle certain error conditions, leading to a...
USN-6606-1: Linux kernel (OEM) vulnerabilities
It was discovered that a race condition existed in the Bluetooth subsystem of the Linux kernel, leading to a use-after-free vulnerability. A local attacker could...
USN-6605-1: Linux kernel vulnerabilities
Lin Ma discovered that the netfilter subsystem in the Linux kernel did not properly validate network family support while creating a new netfilter table. A...
USN-6604-1: Linux kernel vulnerabilities
It was discovered that the ASUS HID driver in the Linux kernel did not properly handle device removal, leading to a use-after-free vulnerability. A local...