NA - CVE-2022-23088 - The 802.11 beacon handling routine failed to...
The 802.11 beacon handling routine failed to validate the length of an IEEE 802.11s Mesh ID before copying it to a heap-allocated buffer. While a FreeBSD Wi-Fi client is in scanning mode (i.e.,...
NA - CVE-2022-23089 - When dumping core and saving process...
When dumping core and saving process information, proc_getargv() might return an sbuf which have a sbuf_len() of 0 or -1, which is not properly handled. An out-of-bound read can happen when user...
NA - CVE-2024-1488 - A vulnerability was found in Unbound due to...
A vulnerability was found in Unbound due to incorrect default permissions, allowing any process outside the unbound group to modify the unbound runtime configuration. If a process can connect over...
NA - CVE-2024-25559 - URL spoofing vulnerability exists in a-blog cms...
URL spoofing vulnerability exists in a-blog cms Ver.3.1.0 to Ver.3.1.8. If an attacker sends a specially crafted request, the administrator of the product may be forced to access an arbitrary...
NA - CVE-2024-25940 - `bhyveload -h ` may be used to grant loader...
`bhyveload -h ` may be used to grant loader access to the directory tree on the host. Affected versions of bhyveload(8) do not make any attempt to restrict loader's access to , allowing the...
NA - CVE-2024-25941 - The jail(2) system call has not limited a...
The jail(2) system call has not limited a visiblity of allocated TTYs (the kern.ttys sysctl). This gives rise to an information leak about processes outside the current jail. Attacker can get...
NA - CVE-2024-25620 - Helm is a tool for managing Charts. Charts are...
Helm is a tool for managing Charts. Charts are packages of pre-configured Kubernetes resources. When either the Helm client or SDK is used to save a chart whose name within the `Chart.yaml` file...
Medium - CVE-2024-20722 - Substance3D - Painter versions 9.1.1 and...
Substance3D - Painter versions 9.1.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability...
NA - CVE-2024-20723 - Substance3D - Painter versions 9.1.1 and...
Substance3D - Painter versions 9.1.1 and earlier are affected by a Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of...
Medium - CVE-2024-20724 - Substance3D - Painter versions 9.1.1 and...
Substance3D - Painter versions 9.1.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability...