DE EN FR
hlukh.ch Stand: 2026-02-25T18:01:17.263Z · week: 2024-W20

Sicherheitswarnungen

Kuratiert aus öffentlich verfügbaren Advisories. Fokus: Sichtbarkeit, Einordnung und schneller Export – ohne Clickbait.

Neueste Warnungen
CVE-2024-30045
.NET and Visual Studio Remote Code Execution Vulnerability
2026‑02‑21 · CVE-2024-30045
MSRC 2026‑02‑21 Mittel
CVE-2023-4133
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
2026‑02‑21 · CVE-2023-4133
MSRC 2026‑02‑21 Mittel
CVE-2024-35995
ACPI: CPPC: Use access_width over bit_width for system memory accesses
2026‑02‑21 · CVE-2024-35995
MSRC 2026‑02‑21 Mittel
CVE-2024-36949
amd/amdkfd: sync all devices to wait all processes being evicted
2026‑02‑21 · CVE-2024-36949
MSRC 2026‑02‑21 Mittel
CVE-2024-4772
An HTTP digest authentication nonce value was generated using `rand()` which could lead to predictable values. This vulnerability affects Firefox &lt; 126.
2026‑02‑21 · CVE-2024-4772
MSRC 2026‑02‑21 Mittel
CVE-2024-33394
An issue in kubevirt kubevirt v1.2.0 and before allows a local attacker to execute arbitrary code via a crafted command to get the token component.
2026‑02‑21 · CVE-2024-33394
MSRC 2026‑02‑21 Mittel
CVE-2024-34397
An issue was discovered in GNOME GLib before 2.78.5, and 2.79.x and 2.80.x before 2.80.1. When a GDBus-based client subscribes to signals from a trusted system service such as NetworkManager on a shared computer, other users of the same computer can send spoofed D-Bus signals that the GDBus-based client will wrongly interpret as having been sent by the trusted system service. This could lead to the GDBus-based client behaving incorrectly, with an application-dependent impact.
2026‑02‑21 · CVE-2024-34397
MSRC 2026‑02‑21 Mittel
CVE-2024-34402
An issue was discovered in uriparser through 0.9.7. ComposeQueryEngine in UriQuery.c has an integer overflow via long keys or values, with a resultant buffer overflow.
2026‑02‑21 · CVE-2024-34402
MSRC 2026‑02‑21 Hoch
CVE-2024-34403
An issue was discovered in uriparser through 0.9.7. ComposeQueryMallocExMm in UriQuery.c has an integer overflow via a long string.
2026‑02‑21 · CVE-2024-34403
MSRC 2026‑02‑21 Mittel
CVE-2024-4775
An iterator stop condition was missing when handling WASM code in the built-in profiler, potentially leading to invalid memory access and undefined behavior. *Note:* This issue only affects the application when the profiler is running. This vulnerability affects Firefox &lt; 126.
2026‑02‑21 · CVE-2024-4775
MSRC 2026‑02‑21 Mittel
CVE-2024-24787
Arbitrary code execution during build on Darwin in cmd/go
2026‑02‑21 · CVE-2024-24787
MSRC 2026‑02‑21 Mittel
CVE-2024-36009
ax25: Fix netdev refcount issue
2026‑02‑21 · CVE-2024-36009
MSRC 2026‑02‑21 Mittel
CVE-2024-35887
ax25: fix use-after-free bugs caused by ax25_ds_del_timer
2026‑02‑21 · CVE-2024-35887
MSRC 2026‑02‑21 Mittel
CVE-2024-30053
Azure Migrate Cross-Site Scripting Vulnerability
2026‑02‑21 · CVE-2024-30053
MSRC 2026‑02‑21 Mittel
CVE-2024-30060
Azure Monitor Agent Elevation of Privilege Vulnerability
2026‑02‑21 · CVE-2024-30060
MSRC 2026‑02‑21 Hoch
CVE-2024-36917
block: fix overflow in blk_ioctl_discard()
2026‑02‑21 · CVE-2024-36917
MSRC 2026‑02‑21 Mittel
CVE-2024-35826
block: Fix page refcounts for unaligned buffers in __bio_release_pages()
2026‑02‑21 · CVE-2024-35826
MSRC 2026‑02‑21 Mittel
CVE-2024-35965
Bluetooth: L2CAP: Fix not validating setsockopt user input
2026‑02‑21 · CVE-2024-35965
MSRC 2026‑02‑21 Mittel
CVE-2024-36013
Bluetooth: L2CAP: Fix slab-use-after-free in l2cap_connect()
2026‑02‑21 · CVE-2024-36013
MSRC 2026‑02‑21 Mittel
CVE-2024-36012
Bluetooth: msft: fix slab-use-after-free in msft_do_close()
2026‑02‑21 · CVE-2024-36012
MSRC 2026‑02‑21 Hoch
CVE-2024-36938
bpf skmsg: Fix NULL pointer dereference in sk_psock_skb_ingress_enqueue
2026‑02‑21 · CVE-2024-36938
MSRC 2026‑02‑21 Mittel
CVE-2023-52676
bpf: Guard stack limits against 32bit overflow
2026‑02‑21 · CVE-2023-52676
MSRC 2026‑02‑21 Mittel
CVE-2024-35784
btrfs: fix deadlock with fiemap and extent locking
2026‑02‑21 · CVE-2024-35784
MSRC 2026‑02‑21 Mittel
CVE-2024-35849
btrfs: fix information leak in btrfs_ioctl_logical_to_ino()
2026‑02‑21 · CVE-2024-35849
MSRC 2026‑02‑21 Hoch
CVE-2023-52737
btrfs: lock the inode in shared mode before starting fiemap
2026‑02‑21 · CVE-2023-52737
MSRC 2026‑02‑21 Mittel
CVE-2024-35949
btrfs: make sure that WRITTEN is set on all metadata blocks
2026‑02‑21 · CVE-2024-35949
MSRC 2026‑02‑21 Hoch
CVE-2024-35956
btrfs: qgroup: fix qgroup prealloc rsv leak in subvolume operations
2026‑02‑21 · CVE-2024-35956
MSRC 2026‑02‑21 Mittel
CVE-2023-52732
ceph: blocklist the kclient when receiving corrupted snap trace
2026‑02‑21 · CVE-2023-52732
MSRC 2026‑02‑21 Mittel
CVE-2023-52831
cpu/hotplug: Don't offline the last non-isolated CPU
2026‑02‑21 · CVE-2023-52831
MSRC 2026‑02‑21 Mittel
CVE-2024-26945
crypto: iaa - Fix nr_cpus &lt; nr_iaa case
2026‑02‑21 · CVE-2024-26945
MSRC 2026‑02‑21 Hoch
CVE-2024-27061
crypto: sun8i-ce - Fix use after free in unprepare
2026‑02‑21 · CVE-2024-27061
MSRC 2026‑02‑21 Hoch
CVE-2024-30251
Denial of service when trying to parse malformed POST requests in aiohttp
2026‑02‑21 · CVE-2024-30251
MSRC 2026‑02‑21 Hoch
CVE-2024-30019
DHCP Server Service Denial of Service Vulnerability
2026‑02‑21 · CVE-2024-30019
MSRC 2026‑02‑21 Mittel
CVE-2024-35939
dma-direct: Leak pages on dma_set_decrypted() failure
2026‑02‑21 · CVE-2024-35939
MSRC 2026‑02‑21 Mittel
CVE-2024-35990
dma: xilinx_dpdma: Fix locking
2026‑02‑21 · CVE-2024-35990
MSRC 2026‑02‑21 Mittel
CVE-2024-27408
dmaengine: dw-edma: eDMA: Add sync read before starting the DMA transfer in remote setup
2026‑02‑21 · CVE-2024-27408
MSRC 2026‑02‑21 Mittel
CVE-2024-36909
Drivers: hv: vmbus: Don't free ring buffers that couldn't be re-encrypted
2026‑02‑21 · CVE-2024-36909
MSRC 2026‑02‑21 Mittel
CVE-2024-36913
Drivers: hv: vmbus: Leak pages if set_memory_encrypted() fails
2026‑02‑21 · CVE-2024-36913
MSRC 2026‑02‑21 Hoch
CVE-2024-36912
Drivers: hv: vmbus: Track decrypted status in vmbus_gpadl
2026‑02‑21 · CVE-2024-36912
MSRC 2026‑02‑21 Hoch
CVE-2023-52812
drm/amd: check num of link levels when update pcie param
2026‑02‑21 · CVE-2023-52812
MSRC 2026‑02‑21 Hoch
CVE-2024-26948
drm/amd/display: Add a dc_state NULL check in dc_state_release
2026‑02‑21 · CVE-2024-26948
MSRC 2026‑02‑21 Mittel
CVE-2024-36897
drm/amd/display: Atom Integrated System Info v2_2 for DCN35
2026‑02‑21 · CVE-2024-36897
MSRC 2026‑02‑21 Mittel
CVE-2024-36024
drm/amd/display: Disable idle reallow as part of command/gpint execution
2026‑02‑21 · CVE-2024-36024
MSRC 2026‑02‑21 Mittel
CVE-2023-52671
drm/amd/display: Fix hang/underflow when transitioning to ODM4:1
2026‑02‑21 · CVE-2023-52671
MSRC 2026‑02‑21 Mittel
CVE-2024-27041
drm/amd/display: fix NULL checks for adev-&gt;dm.dc in amdgpu_dm_fini()
2026‑02‑21 · CVE-2024-27041
MSRC 2026‑02‑21 Mittel
CVE-2024-35799
drm/amd/display: Prevent crash when disable stream
2026‑02‑21 · CVE-2024-35799
MSRC 2026‑02‑21 Mittel
CVE-2024-36914
drm/amd/display: Skip on writeback when it's not applicable
2026‑02‑21 · CVE-2024-36914
MSRC 2026‑02‑21 Hoch
CVE-2024-27400
drm/amdgpu: once more fix the call oder in amdgpu_ttm_move() v2
2026‑02‑21 · CVE-2024-27400
MSRC 2026‑02‑21 Mittel
CVE-2024-35931
drm/amdgpu: Skip do PCI error slot reset during RAS recovery
2026‑02‑21 · CVE-2024-35931
MSRC 2026‑02‑21 Mittel
CVE-2024-26949
drm/amdgpu/pm: Fix NULL pointer dereference when get power limit
2026‑02‑21 · CVE-2024-26949
MSRC 2026‑02‑21 Mittel
Seite 1