NA - CVE-2024-12648 - Buffer overflow in TIFF data EXIF tag...
Buffer overflow in TIFF data EXIF tag processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product...
NA - CVE-2024-12649 - Buffer overflow in XPS data font processing of...
Buffer overflow in XPS data font processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being...
Medium - CVE-2024-27263 - IBM Sterling B2B Integrator 6.0.0.0 through...
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 could allow an authenticated user to obtain sensitive information from the dashboard UI using man in the middle...
Medium - CVE-2024-22315 - IBM Fusion and IBM Fusion HCI 2.3.0 through...
IBM Fusion and IBM Fusion HCI 2.3.0 through 2.8.2 is vulnerable to insecure network connection by allowing an attacker who gains access to a Fusion container to establish an external network...
NA - CVE-2024-45336 - The HTTP client drops sensitive headers after...
The HTTP client drops sensitive headers after following a cross-domain redirect. For example, a request to a.com/ containing an Authorization header which is redirected to b.com/ will not send that...
NA - CVE-2024-45339 - When logs are written to a widely-writable...
When logs are written to a widely-writable directory (the default), an unprivileged attacker may predict a privileged process's log file path and pre-create a symbolic link to a sensitive file...
NA - CVE-2024-45340 - Credentials provided via the new GOAUTH feature...
Credentials provided via the new GOAUTH feature were not being properly segmented by domain, allowing a malicious server to request credentials they should not have access to. By default, unless...
NA - CVE-2024-45341 - A certificate with a URI which has a IPv6...
A certificate with a URI which has a IPv6 address with a zone ID may incorrectly satisfy a URI name constraint that applies to the certificate chain. Certificates containing URIs are not permitted...
NA - CVE-2024-0135 - NVIDIA Container Toolkit contains an improper...
NVIDIA Container Toolkit contains an improper isolation vulnerability where a specially crafted container image could lead to modification of a host binary. A successful exploit of this...