VulnSea

Weekly digest

Week 12, 2024 (18–24 Mar)

26 new CVEs this week, in line with the recent average. Severity skewed high: 2 critical and 18 high, 77% of the total. One arrived with exploitation evidence or public exploit code already attached. No new KEV entries. linux was the most-affected vendor with 6.

26
New CVEs
2
Critical
0
KEV additions
0
Records changed

New this week, ranked by depth score

The 12 that matter most of the 26 published.

CVE-2024-1753High· 8.6PoC
2y ago

A flaw was found in Buildah (and subsequently Podman Build) which allows containers to mount arbitrary locations on the host filesystem into build containers

A flaw was found in Buildah (and subsequently Podman Build) which allows containers to mount arbitrary locations on the host filesystem into build containers. A malicious Containerfile can use a dummy image with a symbolic link to the ro…

▾ MidnightRed Hat · buildahEPSS 0.49%via NVD
CVE-2024-29859Critical· 9.8
2y ago

In MISP before 2.4.187, add_misp_export in app/Controller/EventsController.php does not properly check for a valid file upload.

In MISP before 2.4.187, add_misp_export in app/Controller/EventsController.php does not properly check for a valid file upload.

▾ Midnightmisp-project · mispEPSS 0.82%via NVD
CVE-2024-29858Critical· 9.8
2y ago

In MISP before 2.4.187, __uploadLogo in app/Controller/OrganisationsController.php does not properly check for a valid logo upload.

In MISP before 2.4.187, __uploadLogo in app/Controller/OrganisationsController.php does not properly check for a valid logo upload.

▾ Midnightmisp-project · mispEPSS 0.38%via NVD
CVE-2024-26641High· 8.6
2y ago

In the Linux kernel, the following vulnerability has been resolved: ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() syzbot found __ip6_tnl_rcv() could access unitiliazed data [1]. Call pskb_inet_may_pull() to fix this, a…

In the Linux kernel, the following vulnerability has been resolved: ip6_tunnel: make sure to pull inner header in __ip6_tnl_rcv() syzbot found __ip6_tnl_rcv() could access unitiliazed data [1]. Call pskb_inet_may_pull() to fix this, a…

▾ Twilightnetapp · active_iq_unified_managerEPSS 0.57%via NVD
CVE-2023-41334High· 8.4
2y ago

RCE in TranformGraph().to_dot_graph function

RCE in TranformGraph().to_dot_graph function

▾ Twilightastropy · astropyEPSS 1.1%via OSV
CVE-2024-29019High· 8.1
2y ago

ESPHome vulnerable to Authentication bypass via Cross site request forgery

ESPHome vulnerable to Authentication bypass via Cross site request forgery

▾ Twilightesphome · esphomeEPSS 0.27%via OSV
CVE-2024-22257High· 8.2
2y ago

In Spring Security, versions 5.7.x prior to 5.7.12, 5.8.x prior to 5.8.11, versions 6.0.x prior to 6.0.9, versions 6.1.x prior to 6.1.8, versions 6.2.x prior to 6.2.3, an application is possible vulnerable to broken access control whe…

In Spring Security, versions 5.7.x prior to 5.7.12, 5.8.x prior to 5.8.11, versions 6.0.x prior to 6.0.9, versions 6.1.x prior to 6.1.8, versions 6.2.x prior to 6.2.3, an application is possible vulnerable to broken access control whe…

▾ TwilightEPSS 0.96%via NVD
CVE-2024-26643High· 7.8
2y ago

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout While the rhashtable set gc runs asynchronously, a race allows it to collect elements …

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout While the rhashtable set gc runs asynchronously, a race allows it to collect elements …

▾ Twilightlinux · linux_kernelEPSS 0.20%via NVD
CVE-2024-26642High· 7.8
2y ago

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: disallow anonymous set with timeout flag Anonymous sets are never used with timeout from userspace, reject this. Exception to this rule is NFT_SE…

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: disallow anonymous set with timeout flag Anonymous sets are never used with timeout from userspace, reject this. Exception to this rule is NFT_SE…

▾ Twilightlinux · linux_kernelEPSS 0.27%via NVD
CVE-2024-26640High· 7.8
2y ago

In the Linux kernel, the following vulnerability has been resolved: tcp: add sanity checks to rx zerocopy TCP rx zerocopy intent is to map pages initially allocated from NIC drivers, not pages owned by a fs. This patch adds to can_map…

In the Linux kernel, the following vulnerability has been resolved: tcp: add sanity checks to rx zerocopy TCP rx zerocopy intent is to map pages initially allocated from NIC drivers, not pages owned by a fs. This patch adds to can_map…

▾ Twilightlinux · linux_kernelEPSS 0.24%via NVD
CVE-2024-26637High· 7.8
2y ago

In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: rely on mac80211 debugfs handling for vif mac80211 started to delete debugfs entries in certain cases, causing a ath11k to crash when it tried to delete …

In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: rely on mac80211 debugfs handling for vif mac80211 started to delete debugfs entries in certain cases, causing a ath11k to crash when it tried to delete …

▾ Twilightlinux · linux_kernelEPSS 0.21%via NVD
CVE-2024-26632High· 7.8
2y ago

In the Linux kernel, the following vulnerability has been resolved: block: Fix iterating over an empty bio with bio_for_each_folio_all If the bio contains no data, bio_first_folio() calls page_folio() on a NULL pointer and oopses

In the Linux kernel, the following vulnerability has been resolved: block: Fix iterating over an empty bio with bio_for_each_folio_all If the bio contains no data, bio_first_folio() calls page_folio() on a NULL pointer and oopses. Mov…

▾ Twilightlinux · linux_kernelEPSS 0.24%via NVD

Most-affected vendors

By CVEs published in the period.