Skip to main content

CWE archive

CWE-754 CVEs

Programmatic archive

604 CVEs tagged with CWE-75420 Critical, 249 High, 293 Medium, 42 Low, 0 Unrated.

CVE-2021-47227

Published May 21, 2024

In the Linux kernel, the following vulnerability has been resolved: x86/fpu: Prevent state corruption in __fpu__restore_sig() The non-compacted slowpath uses __copy_from_user()…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-52678

Published May 17, 2024

In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Confirm list is non-empty before utilizing list_first_entry in kfd_topology.c Before using list_f…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-35785

Published May 17, 2024

In the Linux kernel, the following vulnerability has been resolved: tee: optee: Fix kernel panic caused by incorrect error handling The error path while failing to register devi…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2024-21809

Published May 16, 2024

Improper conditions check for some Intel(R) Quartus(R) Prime Lite Edition Design software before version 23.1 may allow an authenticated user to potentially enable escalation of p…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-38420

Published May 16, 2024

Improper conditions check in Intel(R) Power Gadget software for macOS all versions may allow an authenticated user to potentially enable information disclosure via local access.

CVSS 3.8 · Low
Vendor/product tagsBeta · best-effort

CVE-2024-34360

Published May 14, 2024

go-spacemesh is a Go implementation of the Spacemesh protocol full node. Nodes can publish activations transactions (ATXs) which reference the incorrect previous ATX of the Smeshe…

CVSS 8.2 · High

CVE-2024-32867

Published May 7, 2024

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.5 and 6.0.19, various problems in handling of fr…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-3729

Published May 2, 2024

The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to improper missing encryption exception handling on the 'fea_encrypt' function in all versions up to, and inc…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2024-4182

Published Apr 26, 2024

Mattermost versions 9.6.0, 9.5.x before 9.5.3, 9.4.x before 9.4.5, and 8.1.x before 8.1.12 fail to handle JSON parsing errors in custom status values, which allows an authenticate…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-30402

Published Apr 12, 2024

An Improper Check for Unusual or Exceptional Conditions vulnerability in the Layer 2 Address Learning Daemon (l2ald) of Juniper Networks Junos OS and Junos OS Evolved allows an un…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2024-30397

Published Apr 12, 2024

An Improper Check for Unusual or Exceptional Conditions vulnerability in the the Public Key Infrastructure daemon (pkid) of Juniper Networks Junos OS allows an unauthenticated net…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-30409

Published Apr 12, 2024

An Improper Check for Unusual or Exceptional Conditions vulnerability in telemetry processing of Juniper Networks Junos OS and Junos OS Evolved allows a network-based authenticate…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-45922

Published Mar 27, 2024

glx_pbuffer.c in Mesa 23.0.4 was discovered to contain a segmentation violation when calling __glXGetDrawableAttribute(). NOTE: this is disputed because there are no common situat…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-1713

Published Mar 14, 2024

A user who can create objects in a database with plv8 3.2.1 installed is able to cause deferred triggers to execute as the Superuser during autovacuum.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2021-47014

Published Feb 28, 2024

In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: fix wild memory access when clearing fragments while testing re-assembly/re-fragmentation…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-47007

Published Feb 28, 2024

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix panic during f2fs_resize_fs() f2fs_resize_fs() hangs in below callstack with testcase: - mkfs 16GB…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-46934

Published Feb 27, 2024

In the Linux kernel, the following vulnerability has been resolved: i2c: validate user data in compat ioctl Wrong user data may cause warning in i2c_transfer(), ex: zero msgs. U…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-46909

Published Feb 27, 2024

In the Linux kernel, the following vulnerability has been resolved: ARM: footbridge: fix PCI interrupt mapping Since commit 30fdfb929e82 ("PCI: Add a call to pci_assign_irq() in…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 276-300 of 604 CVEsPage 12 of 25