Cheerful Christian mom is pillar of Florida community and loves going on TV... but she has a childhood secret so evil that she stuttered with shock when confronted with it txtify archive
Private chef and her banker husband distraught after their son, 2, and his nanny are struck by truck near $2.6m San Francisco home txtify archive
Husband of doomed dive group leader says 'something must have happened down there' as mystery surrounds why the five attempted to explore 'cave so deep even divers with best equipment don't try' txtify archive
Shocking identity of killer hit-and-run driver who struck man, drove around his dying body then went to work txtify archive
Fears for American Idol star Randy Jackson, 69, after 'frail' TV appearance following 100lb weight loss txtify archive
Dodge-driving mother's idiotic decision that almost killed her child - as furious cop angrily berates her txtify archive
Wealthy dad 'snarled the worst thing a parent could say' to younger daughter before he allegedly executed wife outside their gated community home during nightmare divorce txtify archive
Understanding of Egypt's Great Pyramid flipped upside down amid claims ancient wonder is a 'planetary beacon' txtify archive
CDC issues travel warning for popular beach destination over life-threatening incurable mosquito virus txtify archive
Kate shows Meghan how it's done! Princess of Wales's pasta-making skills are praised by Italian chef - after Duchess's controversial spaghetti recipe left fans outraged txtify archive
Taxpayers to foot Trump's $1.7 BILLION bill as president sues his own government: 'I'm paying myself' txtify archive
IED near Alabama reservoir detonated after officials warn of 'unprecedented' critical infrastructure threat txtify archive
Murkowski vs Trump: Senator sides with Democrats on Iran after series of breaks with president txtify archive
Bishop Barron slams 'borderline communists' Sanders, Mamdani ahead of Trump prayer event: 'Economy that kills' txtify archive
Disturbing spiral of once-popular private school student now charged with brutal killing of transgender student at Seattle university txtify archive
Raiders No. 1 pick Fernando Mendoza hilariously recreates iconic movie with quarterback rival Kirk Cousins txtify archive
Fans mock Trevor Lawrence's 'brutal' new haircut as he gets rid of iconic look for Jaguars' schedule release txtify archive
Sole survivor of Maldives dive tragedy who watched her five companions leave on fatal trip while 'twist of fate' kept her on boat txtify archive
Moment two men 'try to push cyclists and cause a crash during Giro d'Italia for social media challenge' txtify archive
Las Vegas missed out on hosting World Cup games but it won't stop football fans from experiencing the bright lights of Sin City this summer txtify archive
Shockingly high probability of Alex Murdaugh being ACQUITTED of murdering wife and son: New evidence bombshell, secret retrial strategy and 'second shooter' theory txtify archive
Move over Apple Martin! Christy Turlington, 57, reveals mini-me model daughter has graduated college and is ready for her Vogue cover txtify archive
Standout female athlete, 24, dies after boat was taken without permission and crashed into dock near Boston airport txtify archive
Realtors fear housing slump is spreading as prices fall in nearly half of America's biggest cities txtify archive
Viral businessman who bragged about wealth slapped with federal charges in endangered species harassment case txtify archive
Livvy Dunne sets pulses racing on Sports Illustrated party red carpet as she wows alongside Baywatch co-star Brooks Nader and Alix Earle txtify archive
Civil rights activist says he is stepping in to ensure black teen charged with notorious murder of football star, 17, gets fair trial txtify archive
Search for new James Bond officially kicks off as auditions begin - so who is in the frame to be the next 007? txtify archive
Progressive challenger complicates Democrat path in House fight to unseat GOP incumbent Rep Mike Flood txtify archive
Chiefs coach Andy Reid hints he's invited to Travis Kelce and Taylor Swift's star-studded wedding txtify archive
Julia Louis-Dreyfus reveals 'big argument' that erupted on Seinfeld... after Jerry admitted to show's mistake txtify archive
Hayden Panettiere says she was 'groomed' into childhood stardom: 'I was like a little soldier' txtify archive
Tennis legend Serena Williams makes wild revelation about her 'extreme' parenting style txtify archive
Golf star Brooks Koepka lifts the lid on 'family issues' with wife Jena Sims in candid PGA Championship interview: 'Took a toll on me' txtify archive
Parental intuition saved toddler's life after mom and dad rushed her to ER when she wouldn't stop crying, with doctors flooding room after frightening discovery was made txtify archive
Married nurse, 27, who'd recently given birth to second child executed by stranger in parking lot as she finished long hospital shift txtify archive
Elderly woman's death after stone church collapsed on top of her during tornado was avoidable, lawsuit alleges txtify archive
Iowa Dem admits being ‘uncomfortable’ with whiteness as she seeks to flip competitive House seat txtify archive
Scientists have discovered a SHORTCUT to the moon - and it could slash the cost of future missions txtify archive
Venus Williams set to make French Open comeback after five-year hiatus... despite furious calls for tennis legend to call it quits txtify archive
Best robot vacuums: The five tried and tested models that will outperform your favourite cordless hoover and they're on sale right now - don't miss out txtify archive
Trump unleashes very personal attack on CBS News star Norah O'Donnell weeks after she infuriated him with question about White House Correspondents' Dinner shooting txtify archive
Coast Guard releases new photos of sailboat seized in missing American's Bahamas disappearance case txtify archive
Auburn grad who just landed dream job allegedly shot and killed by boyfriend's father in Alabama txtify archive
Song about choking women and bondage makes it through to Eurovision final - after Romanian singer performs on all fours in skimpy leather outfit txtify archive
Song about choking women and bondage makes it through to Eurovision final - after Romanian singer performs on all fours in skimpy leather outfit txtify archive
Shock NBA team LeBron James could leave Lakers for amid tense showdown talks with wife Savannah: 'Unbelievable' txtify archive
Obama remains Dem headliner while president with most votes ever fades into background: 'It was all a dream' txtify archive
Rare glimpse inside secretive compound at heart of Chinese power... as Trump reveals his delight at 'beautiful' gift from 'friend' Xi txtify archive
Jennifer Lopez's makeup-free face at age 56 leaves fans stunned... as she reveals her anti-aging secrets txtify archive
I'm godfather to Candace Owens' daughter and Charlie Kirk was my friend... so I know the real reason she's attacking Erika - and I'll never publicly condemn her txtify archive
CVE-2026-32161 Windows Native WiFi Miniport Driver Remote Code Execution Vulnerability txtify archive
Uninsured Brit breaks his neck falling out of a tree during French holiday - and is left with huge medical bills txtify archive
Ryan Lochte hits back at 'clowns' claiming he is 'unrecognizable' as he reveals real reason for drastic change in looks txtify archive
Golf fans rip Bryson DeChambeau after realizing his worrying dip in form has coincided with cringe dance video txtify archive
Tennessee Titans brutally troll their NFL rivals with savage lookalikes on Nashville's iconic Broadway txtify archive
Nicki Minaj reveals how Gavin Newsom and Jay-Z turned her into MAGA Republican and Trump's 'number one fan' txtify archive
Can't lose weight no matter what you do? These are the 7 surprising reasons why, including 'healthy' hacks actually making you put on pounds. Our expert reveals all - and why midlife women are particularly affected txtify archive
Oscar-winning artist Buffy Sainte-Marie has honorary degree revoked after faking Indigenous ancestry txtify archive
Taliban recognises child marriage under new rules, with specific guidelines for 'virgin girls' txtify archive
Taliban recognises child marriage under new rules, with specific guidelines for 'virgin girls' txtify archive
The most beautiful new museums in the world named in the prestigious Prix Versailles awards - including a unique cultural centre just an £18 flight away txtify archive
Rogue AI 'helper' deletes company's database after deciding to think for itself - sparking Terminator-style warning for businesses txtify archive
I'm a pastor who attended a secret UFO disclosure meeting. We saw images of 'translucent beings' that chilled me to the bone... the files could fulfil a dark biblical prophecy txtify archive
Welcome to hantavirus quarantine: Six people including a Brit arrive at remote Australian facility where they will be kept in isolation for at least three weeks txtify archive
Welcome to hantavirus quarantine: Six people including a Brit arrive at remote Australian facility where they will be kept in isolation for at least three weeks txtify archive
One dead, dozens across 31 states hospitalized from antibiotic-resistant bacteria linked to chickens and eggs txtify archive
Trump departs China after touting trade deals, agreement with Xi on Iran and more top headlines txtify archive
Sorry, but this is my message to all middle-aged women like Gillian Anderson who are embracing the curls. It may be brutal, but you'll thank me: ROWAN PELLING txtify archive
Chargers aim savage digs at Taylor Swift and Travis Kelce in viral schedule release video... after mocking Mike Vrabel over Dianna Russini scandal txtify archive
Life as a newlywed was bliss. Then a mystery illness left me paralyzed and blind overnight... and this terrifying condition is more common than anyone realizes txtify archive
Rabat's rocket! With Dubai off the tourist map, Morocco opens 'dupe' of UAE city's famous Burj Khalifa skyscraper - including lavish Waldorf Astoria hotel txtify archive
Lonely pensioner is conned out of £7,500 after thinking she had been in a year-long relationship with James Blunt txtify archive
Tiger Woods is handed a major golf lifeline as he bids to return to action after completing Swiss rehab stint txtify archive
Trump wraps widely-watched trip to China, departing on Air Force One after high-stakes Xi meeting txtify archive
GOP can't agree on key part of Trump's housing affordability push as infighting continues txtify archive
Israel, Jews targeted worldwide as well-funded leftist, Islamist groups join for ‘Nakba 78’ protests txtify archive
Shocking video of THAT Britney Spears night out after rehab: Watch her humiliating liquor store antics before 'BARKING and carrying knife' at restaurant... forcing family to admit the unsayable about 'train wreck' star txtify archive
The health benefits of honey revealed... and if it's REALLY better for you than a spoonful of sugar txtify archive
Adorable baby capybara is born at Edinburgh Zoo - as enamoured fans call for it to be named 'David Attenbara' txtify archive
Musk's hilarious selfie fatigue as stream of Chinese business leaders flock to take photos with him during Trump's visit txtify archive
Criminal profiler reveals 'extremely rare' red flag in case of suspected serial killer migrant in Texas txtify archive
Ivanka Trump's daughter Arabella, 14, is her TWIN as they pose for rare photo together in matching outfits txtify archive
Scientists issue urgent warning about drinking TEA - as research reveals your kettle can release up to 3 billion dangerous microplastic particles into your cuppa txtify archive
Spencer Pratt breaks silence on claims his bid for LA Mayor is being filmed for reality TV show txtify archive
Has Timmy washed up dead? Fears for whale rescued in £1.3million operation as carcass washes up in Denmark txtify archive
CVE-2026-33814 Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net txtify archive
CVE-2026-29181 OpenTelemetry-Go multi-value `baggage` header extraction causes excessive allocations (remote dos amplification) txtify archive
Kylian Mbappe lashes out at Real Madrid boss Alvaro Arbeloa with bizarre claim about being fourth-choice striker - before manager says 'he must not have understood' after he was BOOED txtify archive
Emmy-nominated TV reporter who was brutally 'blindsided' after being fired on her birthday reveals her new job txtify archive
Bronx man convicted of running secret Chinese police station in Manhattan used to monitor dissidents txtify archive
CVE-2026-43968 CR Injection in SSE Encoder Enables Event Splitting via cow_sse:event/1 txtify archive
CVE-2026-7790 Unbounded chunk-size hex digits in cowlib cause quadratic CPU and memory DoS txtify archive
CVE-2026-43969 Cookie Request Header Injection via Unvalidated Encoder in cow_cookie:cookie/1 txtify archive
CVE-2026-7210 The expat and elementtree parsers use insufficient entropy for XML hash-flooding protection txtify archive
CVE-2026-34956 Openvswitch: open vswitch: denial of service via malformed ftp epasv command txtify archive
CVE-2026-42011 Gnutls: gnutls: security bypass due to incorrect name constraint handling txtify archive
CVE-2026-42304 Twisted: Denial of Service (DoS) in twisted.names via Crafted DNS Compression Pointer Chains txtify archive
Marco Rubio warns China of 'repercussions' as he reveals what really happened during closed-door Trump and Xi meeting txtify archive
Nancy Guthrie sheriff says he has 'secret' information about abduction that has not been shared and still believes arrest will be made txtify archive
Meet UK's Eurovision act LOOK MUM NO COMPUTER: Synth-building musician and YouTube star goes for a 'risky different tactic' in a bid to break the nation's 29-year losing streak txtify archive
Alex Murdaugh's lawyers reveal his reaction to overturned conviction, admit they won't get paid for next trial: 'No more money left' txtify archive
Mystery blonde Trump aide with unfettered access to President's phone sparks White House friction: Real reason his posts contain random capital letters... and shadowy team behind them unmasked txtify archive
Glamorous Texas Democrat's secret KINK exposed: Congressional candidate's past life returns to haunt her txtify archive
UFC icon Miesha Tate reveals the five training habits she has now completely abandoned txtify archive
Horrifying final days of killer dad Chris Watts' pregnant wife before she was slaughtered alongside their daughters. Read all the chilling texts and receipts in full for first time: 'My eyes burn from crying' txtify archive
ISC Stormcast For Friday, May 15th, 2026 https://isc.sans.edu/podcastdetail/9934, (Fri, May 15th) txtify archive
NYC construction worker and wife sue over claims his freak PORTA POTTY accident ruined their sex life txtify archive
Scottie Scheffler makes ominous start to his PGA Championship defense but holds seven-way tie for the lead at Aronimink txtify archive
Man is arrested after British mother pleaded for help when her 'toddler son was kidnapped' in Cyprus by his 'abusive' father txtify archive
Highest-ranking Tren de Aragua member ever extradited to US set to appear in Houston courtroom: DOJ txtify archive
China cozies up as Trump touts delegation of richest business heavyweights at Xi summit txtify archive
Ex-counterterror chief Joe Kent says Trump was 'poised' to make better Iran deal than Obama-era JCPOA txtify archive
Death row inmate who ate 3 last meals granted bond after Supreme Court overturned his conviction txtify archive
Supreme Court keeps broader access to abortion pill mifepristone in place while legal fight continues txtify archive
Far-left commentator says Trump ballroom project provides proof of ‘dictatorship’ ambition txtify archive
DOJ demands sanctuary states end 'blatantly unlawful' anti-ICE policy as a matter of life and death txtify archive
Lawmakers raise alarm over Neville Roy Singham's $278M network spreading CCP propaganda in the U.S. txtify archive
Small plane crashes into Ohio home killing 2 on board, igniting blaze in residential area txtify archive
House Democrats fail to fracture GOP support for Trump's Iran strategy in war powers vote txtify archive
Centcom Commander Says Epic Fury Crippled Iran, Enhanced Military Partnerships in Region txtify archive
DHS rails against illegal aliens hit with capital murder charges for allegedly killing unborn baby: 'monsters' txtify archive
Fetterman defends Erika Kirk's emotional response to WHCA Dinner shooting: 'What’s wrong with people?’ txtify archive
Students at top party college on edge after rape, strangulation reported in campus housing txtify archive
FBI offers $200K reward for former Air Force intelligence agent accused of spying for Iran txtify archive
Lipsky cited in Bloomberg on a potential rare earths and semiconductors deal between US and China txtify archive
Fugitive tied to decades-old slaying of punk rocker roommate caught in tropical hot spot: feds txtify archive
Ship seized off coast of UAE near Strait of Hormuz may have been 'floating armory': report txtify archive
FBI reports largest drop in violent crime and murder since 1937 as homicides fall more than 18% txtify archive
Nearly 1 in 12 defendants on ankle monitors in Chicago have gone AWOL, authorities say txtify archive
Suspect in custody for alleged murder of college student after police released eerie surveillance photos txtify archive
Rurik Jutting is one the most dangerous killers I've ever encountered... so what he is up to now now beggars belief. Read all about it exclusively when you sign up to The Crime Desk newsletter txtify archive
ThreatsDay Bulletin: PAN-OS RCE, Mythos cURL Bug, AI Tokenizer Attacks, and 10+ Stories txtify archive
Black Dahlia breakthrough: LAPD examines new fingerprint tied to victim’s ex-boyfriend txtify archive
Non-Jewish professor says he was fired for calling out Hamas supporters in online post txtify archive
Fox News True Crime Newsletter: Buster Murdaugh seen for first time since dad's murder conviction overturned txtify archive
Video shows undercover cops shooting man threatening shoppers with fake gun in ‘justified’ defense: officials txtify archive
Hamas used sexual violence 'deliberately and systematically' on Oct 7, commission report finds txtify archive
Illegal immigrant who killed American woman outside her home walks free decades later – then into ICE custody txtify archive
Trump pledges to raise detained pastor's case with Xi Jinping during Beijing visit as family pleads for help txtify archive
ISC Stormcast For Thursday, May 14th, 2026 https://isc.sans.edu/podcastdetail/9932, (Thu, May 14th) txtify archive
Iran says its small subs deployed to Strait of Hormuz as expert explains threat: ‘Vulnerable to detection’ txtify archive
The US AI health data collision: Charting the future of US cross-border data flow policy, health data, and health and biopharma AI policy txtify archive
Dark Reading Celebrates 20 Years as a Leading Authority on Cybersecurity, Highlighting the People, Events, Ideas, and Technologies Shaping the Modern Risk Landscape txtify archive
Department of War Enhances Lethal Strike Capacity Through Partnership With New Entrants txtify archive
CVE-2025-48431 Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid pointer error. txtify archive
CVE-2026-42151 Prometheus Azure AD remote write OAuth client secret exposed via config API txtify archive
CVE-2026-42154 Prometheus: remote read endpoint allows denial of service via crafted snappy payload txtify archive
CVE-2026-6210 Type confusion and heap-buffer-overflow in Qt SVG marker handling causing application crash txtify archive
CVE-2026-8177 XML::LibXML versions through 2.0210 for Perl read out-of-bounds heap memory when parsing XML node names containing truncated UTF-8 byte sequences txtify archive
CVE-2026-39819 Invoking "go bug" follows symlinks in predictable temporary filenames in cmd/go txtify archive
CVE-2026-39825 ReverseProxy forwards queries with more than urlmaxqueryparams parameters in net/http/httputil txtify archive
CVE-2026-33814 Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net txtify archive
CVE-2026-31767 drm/i915/dsi: Don't do DSC horizontal timing adjustments in command mode txtify archive
CVE-2026-43895 jq: Embedded NUL in jq import paths causes local redaction-policy bypass and preserves sensitive fields in published artifacts txtify archive
CVE-2026-43894 jq: Wild stack write via signed-integer overflow in decNumber D2U() macro txtify archive
[GUEST DIARY] Tearing apart website fraud to see how it works., (Wed, May 13th) txtify archive
ISC Stormcast For Wednesday, May 13th, 2026 https://isc.sans.edu/podcastdetail/9930, (Wed, May 13th) txtify archive
Islamabad denies sheltering Iran jets, Trump praises Pakistan's mediation as 'absolutely great' txtify archive
Inside the Christian border town in Lebanon that says it survived by defying Hezbollah txtify archive
SpaceX: It’s no secret that we intend to launch Starship a lot, targeting 1000s of flights/year. That will require the ability to launch from many different locations, so we are constantly exploring to find viable sites to expand Starship operations in the future, both domestically & internationally comments txtify archive
‘It would be insane’ for spy agencies to lack early access to AI models, lawmaker says txtify archive
AG Rokita Sues to Dissolve Noblesville Nonprofit; Hamilton County GOP Chair at Center of Property Sale Dispute txtify archive
CVE-2026-34343 Windows Application Identity (AppID) Subsystem Elevation of Privilege Vulnerability txtify archive
CVE-2026-34344 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-34345 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-35416 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-35418 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-40380 Windows Volume Manager Extension Driver Remote Code Execution Vulnerability txtify archive
CVE-2026-40407 Windows Common Log File System Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-40417 Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability txtify archive
CVE-2026-41088 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-41109 GitHub Copilot and Visual Studio Code Security Feature Bypass Vulnerability txtify archive
CVE-2026-32161 Windows Native WiFi Miniport Driver Remote Code Execution Vulnerability txtify archive
CVE-2026-33835 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-34337 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-34339 Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability txtify archive
CVE-2026-34341 Windows Link-Layer Discovery Protocol (LLDP) Elevation of Privilege Vulnerability txtify archive
CVE-2026-40397 Windows Common Log File System Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-41086 Windows Admin Center in Azure Portal Elevation of Privilege Vulnerability txtify archive
CVE-2026-41103 Microsoft SSO Plugin for Jira & Confluence Elevation of Privilege Vulnerability txtify archive
CVE-2026-42830 Azure Monitor Agent Metrics Extension Elevation of Privilege Vulnerability txtify archive
Webinar: What the Riskiest SOC Alerts Go Unanswered - and How Radiant Security Can Help txtify archive
CVE-2026-29181 OpenTelemetry-Go multi-value `baggage` header extraction causes excessive allocations (remote dos amplification) txtify archive
CVE-2026-39882 OpenTelemetry-Go OTLP HTTP exporters read unbounded HTTP response bodies txtify archive
ISC Stormcast For Tuesday, May 12th, 2026 https://isc.sans.edu/podcastdetail/9928, (Tue, May 12th) txtify archive
Trump administration rejects UN migration declaration, says 'mass migration was never safe' txtify archive
Macron takes the stage uninvited at Africa summit to scold crowd for 'total lack of respect' txtify archive
Iran regime power players may eye Russia in Assad-style escape as US talks falter: expert txtify archive
SpaceX: “Launch rehearsal complete. During a flight-like countdown, more than 5,000 metric tonnes (11+ million pounds) of propellant were loaded on the fully stacked Starship and Super Heavy V3 vehicles for the first time” comments txtify archive
Readout of Secretary of War Pete Hegseth's Meeting with Republic of Korea Minister of National Defense Ahn Gyu-back txtify archive
Starmer on the brink: UK PM fights for survival as party takes beating in local elections txtify archive
Jerry Pike (NSF): “You'll Thank Me Later! The SpaceX Starship transport barge has just been fitted with a brand new roof enclosure, and looks just about fully finished. This barge should soon transport some of the first Superheavy boosters and ships from Starbase to the Cape!” comments txtify archive
Secretary of War Pete Hegseth Hosted Bilateral Meeting With the Republic of Korea Minister of National Defense Ahn Gyu-back at the Pentagon txtify archive
GTIG AI Threat Tracker: Adversaries Leverage AI for Vulnerability Exploitation, Augmented Operations, and Initial Access txtify archive
FORGING THE DIGITAL BATTLESPACE: Five Eyes Allies Accelerate 'Project Arcadia' at the Combined Digital Leadership Summit txtify archive
So you want to ask an OSINT subreddit for advice on how to find your third grade crush? txtify archive
CVE-2026-31592 KVM: SEV: Protect *all* of sev_mem_enc_register_region() with kvm->lock txtify archive
CVE-2026-31579 wireguard: device: use exit_rtnl callback instead of manual rtnl_lock in pre_exit txtify archive
CVE-2026-43308 btrfs: don't BUG() on unexpected delayed ref type in run_one_delayed_ref() txtify archive
CVE-2026-43294 drm: renesas: rz-du: mipi_dsi: fix kernel panic when rebooting for some panels txtify archive
CVE-2026-31536 smb: server: let send_done handle a completion without IB_SEND_SIGNALED txtify archive
CVE-2026-43299 btrfs: do not ASSERT() when the fs flips RO inside btrfs_repair_io_failure() txtify archive
CVE-2024-53201 drm/amd/display: Fix null check for pipe_ctx->plane_state in dcn20_program_pipe txtify archive
CVE-2026-43305 drm/amd/display: Fix mismatched unlock for DMUB HW lock in HWSS fast path txtify archive
CVE-2025-38585 staging: media: atomisp: Fix stack buffer overflow in gmin_get_var_int() txtify archive
CVE-2025-38269 btrfs: exit after state insertion failure at btrfs_convert_extent_bit() txtify archive
CVE-2026-43443 ASoC: amd: acp-mach-common: Add missing error check for clock acquisition txtify archive
CVE-2025-38279 bpf: Do not include stack ptr register in precision backtracking bookkeeping txtify archive
CVE-2026-43300 drm/panel: Fix a possible null-pointer dereference in jdi_panel_dsi_remove() txtify archive
CVE-2025-71299 spi: cadence-quadspi: Parse DT for flashes with the rest of the DT parsing txtify archive
CVE-2026-43416 powerpc, perf: Check that current->mm is alive before getting user callchain txtify archive
CVE-2026-23383 bpf, arm64: Force 8-byte alignment for JIT buffer to prevent atomic tearing txtify archive
CVE-2026-23272 netfilter: nf_tables: unconditionally bump set->nelems before insertion txtify archive
CVE-2024-36024 drm/amd/display: Disable idle reallow as part of command/gpint execution txtify archive
CVE-2025-40325 md/raid10: wait barrier before returning discard request with REQ_NOWAIT txtify archive
CVE-2024-50217 btrfs: fix use-after-free of block device file in __btrfs_free_extra_devids() txtify archive
CVE-2026-43101 ipv6: ioam: fix potential NULL dereferences in __ioam6_fill_trace_data() txtify archive
CVE-2026-43219 net: cpsw_new: Fix potential unregister of netdev that has not been registered yet txtify archive
CVE-2024-24856 NULL pointer deference in acpi_db_convert_to_package of Linux acpi module txtify archive
CVE-2024-57898 wifi: cfg80211: clear link ID from bitmap during link delete after clean up txtify archive
CVE-2025-22115 btrfs: fix block group refcount race in btrfs_create_pending_block_groups() txtify archive
CVE-2024-49945 net/ncsi: Disable the ncsi work before freeing the associated structure txtify archive
CVE-2025-21885 RDMA/bnxt_re: Fix the page details for the srq created by kernel consumers txtify archive
CVE-2025-68190 drm/amdgpu/atom: Check kcalloc() for WS buffer in amdgpu_atom_execute_table_locked() txtify archive
CVE-2024-47702 bpf: Fail verification for sign-extension of packet data/data_end/data_meta txtify archive
CVE-2026-43161 iommu/vt-d: Skip dev-iotlb flush for inaccessible PCIe device without scalable mode txtify archive
CVE-2024-47662 drm/amd/display: Remove register from DCN35 DMCUB diagnostic collection txtify archive
CVE-2024-46834 ethtool: fail closed if we can't get max channel used in indirection tables txtify archive
CVE-2026-31715 f2fs: fix UAF caused by decrementing sbi->nr_pages[] in f2fs_write_end_io() txtify archive
CVE-2024-46727 drm/amd/display: Add otg_master NULL check within resource_log_pipe_topology_update txtify archive
CVE-2024-1151 Kernel: stack overflow problem in open vswitch kernel module leading to dos txtify archive
CVE-2025-37861 scsi: mpi3mr: Synchronous access b/w reset and tm thread for reply queue txtify archive
CVE-2026-31771 Bluetooth: hci_event: move wake reason storage into validated event handlers txtify archive
CVE-2026-43049 HID: logitech-hidpp: Prevent use-after-free on force feedback initialisation failure txtify archive
CVE-2024-26672 drm/amdgpu: Fix variable 'mca_funcs' dereferenced before NULL check in 'amdgpu_mca_smu_get_mca_entry()' txtify archive
CVE-2024-58089 btrfs: fix double accounting race when btrfs_run_delalloc_range() failed txtify archive
CVE-2024-25740 A memory leak flaw was found in the UBI driver in drivers/mtd/ubi/attach.c in the Linux kernel through 6.7.4 for UBI_IOCATT, because kobj->name is not released. txtify archive
CVE-2024-23848 In the Linux kernel through 6.7.1, there is a use-after-free in cec_queue_msg_fh, related to drivers/media/cec/core/cec-adap.c and drivers/media/cec/core/cec-api.c. txtify archive
CVE-2022-4543 A flaw named "EntryBleed" was found in the Linux Kernel Page Table Isolation (KPTI). This issue could allow a local attacker to leak KASLR base via prefetch side-channels based on TLB timing for Intel systems. txtify archive
CVE-2026-7259 Null pointer dereference in php_mb_check_encoding() via mb_ereg_search_init() txtify archive
CVE-2026-7262 NULL pointer dereference in SOAP apache:Map decoder with missing <value> txtify archive
CVE-2026-7261 SoapServer session-persisted object use-after-free via SOAP header fault txtify archive
CVE-2026-42256 net-imap: Denial of service via high iteration count for `SCRAM-*` authentication txtify archive
Remains recovered of US soldier who went missing in military exercises in Morocco, 2nd soldier still missing txtify archive
Massive 11,000-carat ruby believed to be second-largest ever found in conflict-ridden country txtify archive
Second suspected oil slick near Iran raises fears of major disaster in vital global oil corridor txtify archive
From London synagogues to New York preschools — antisemitic attacks escalating on both sides of the Atlantic txtify archive
Woman who spent 7 years in Chinese prison describes torture, surveillance and loss of her husband txtify archive
CVE-2026-41889 pgx: SQL Injection via placeholder confusion with dollar quoted string literals txtify archive
CVE-2026-33079 Mistune ReDoS in LINK_TITLE_RE allows denial of service with crafted Markdown titles txtify archive
CVE-2026-39825 ReverseProxy forwards queries with more than urlmaxqueryparams parameters in net/http/httputil txtify archive
CVE-2026-39819 Invoking "go bug" follows symlinks in predictable temporary filenames in cmd/go txtify archive
CVE-2026-33814 Infinite loop in HTTP/2 transport when given bad SETTINGS_MAX_FRAME_SIZE in net/http/internal/http2 in golang.org/x/net txtify archive
North Korea updates constitution to require automatic nuclear strike if Kim Jong Un is assassinated: report txtify archive
Man accused of threatening former Prince Andrew near Sandringham home pleads not guilty in court txtify archive
Labour MP puts Cabinet 'on notice,' threatens to trigger leadership challenge against Starmer by Monday txtify archive
SpaceX: “Starship and Super Heavy V3 together at the Starbase launch pad for the first time”; “First full stack of Starship V3” comments txtify archive
Putin says he thinks the war with Ukraine 'is coming to an end' as Trump-brokered 3-day ceasefire begins txtify archive
Max Evans (NSF): “After rolling to Pad 2 last night, Ship 39 has been stacked atop Booster 19 this morning for the FIRST EVER Starship Version 3 full stack ahead of a presumed wet dress rehearsal (WDR) later today.” comments txtify archive
CVE-2026-3832 Gnutls: gnutls: security bypass allows acceptance of revoked server certificates via crafted ocsp response txtify archive
CVE-2026-4948 Firewalld: firewalld: local unprivileged user can modify firewall state due to d-bus setter mis-authorization txtify archive
Statement by Chief Pentagon Spokesman, Sean Parnell, on "Establishment of the Department of War COVID-19 Reinstatement and Reconciliation Task Force" and "Reinstating Service Members Unjustly Discharged Under the Coronavirus Disease 2019 Vaccine Mandate" Memorandums txtify archive
Fake Call History Apps Stole Payments From Users After 7.3 Million Play Store Downloads txtify archive
Bauerle Danzman quoted in Washington Post article on how the Meta-Manus unwinding is unlikely to be a priority during the Trump-Xi meeting. txtify archive
Tannebaum quoted in Politico article on the realities of this year’s Milken Institute Global Conference txtify archive
McDowell cited in Bloomberg article on how swap lines could undermine faith in the dollar txtify archive
Nikoladze was quoted in a BBC article about how China’s “teapot refineries” buy sanctioned crude at reduced prices txtify archive
Department of War Releases Unidentified Anomalous Phenomena Files in Historic Transparency Effort txtify archive
CVE-2026-43274 mailbox: mchp-ipc-sbi: fix out-of-bounds access in mchp_ipc_get_cluster_aggr_irq() txtify archive
CVE-2026-43161 iommu/vt-d: Skip dev-iotlb flush for inaccessible PCIe device without scalable mode txtify archive
CVE-2026-6842 Nano: nano: local attacker can inject malicious .desktop launcher due to insecure directory permissions txtify archive
CVE-2026-43101 ipv6: ioam: fix potential NULL dereferences in __ioam6_fill_trace_data() txtify archive
CVE-2026-25589 RedisBloom RESTORE invalid memory access may allow remote code execution txtify archive
CVE-2026-25588 RedisTimeSeries RESTORE invalid memory access may allow remote code execution txtify archive
CVE-2026-23479 redis-server use-after-free in unblock client flow may allow remote code execution txtify archive
CVE-2026-25243 redis-server RESTORE invalid memory access may allow remote code execution txtify archive
CVE-2026-41673 xmldom: Denial of service via uncontrolled recursion in XML serialization txtify archive
CVE-2026-41675 xmldom: XML node injection through unvalidated processing instruction serialization txtify archive
SpaceX: “Full duration and full thrust 33-engine static fire with Super Heavy V3” [2 videos] comments txtify archive
ChromeKiwi: “Thanks to the last @RGVaerialphotos flyover, we got confirmation that this frame is in fact for horizontal transport to Florida. There are two sliding hold-down clamps on the top in pink and two fixed clamps on the bottom in pink.” comments txtify archive
With launches slated to grow a hundredfold, Space Force seeks more sites, money, people, and AI txtify archive
Department of War Awards Academy District 20 a $42.7 Million Grant for Douglass Valley K8 School at the United States Air Force Academy, Colorado txtify archive
What the EU-Mercosur trade deal’s provisional implementation means and what comes next txtify archive
Zack Golden/NSF: “👀 My goodness that was incredible!! Booster 19 performed a ~14 second static fire test. That looked much better and the deluge system seems to have lasted for the full duration. Great progress!” comments txtify archive
CISA's sharp reductions in election-security assistance could leave midterms vulnerable, senator says txtify archive
Chromium: CVE-2026-7944 Insufficient validation of untrusted input in Persistent Cache txtify archive
CVE-2026-33821 Microsoft Dynamics 365 Customer Insights Elevation of Privilege Vulnerability txtify archive
CVE-2026-41105 Azure Monitor Action Group Notification System Elevation of Privilege Vulnerability txtify archive
CVE-2026-33109 Azure Managed Instance for Apache Cassandra Remote Code Execution Vulnerability txtify archive
CVE-2026-40379 Microsoft Enterprise Security Token Service (ESTS) Spoofing Vulnerability txtify archive
CVE-2026-33844 Azure Managed Instance for Apache Cassandra Remote Code Execution Vulnerability txtify archive
ThreatsDay Bulletin: Edge Plaintext Passwords, ICS 0-Days, Patch-or-Die Alerts and 25+ New Stories txtify archive
Minute by minute, how Maddie McCann mysteriously vanished from her bed as her parents dined just 50m away txtify archive
CVE-2026-6383 Kubevirt: kubevirt: unauthorized subresource access due to improper rbac evaluation txtify archive
CVE-2026-34032 Apache HTTP Server: mod_proxy_ajp: Heap Buffer Over-Read Due to Missing Null-Termination Check (ajp_msg_get_string) txtify archive
CVE-2026-34059 Apache HTTP Server: mod_proxy_ajp: Heap Over-Read and memory disclosure in ajp_parse_data() txtify archive
CVE-2026-33523 Apache HTTP Server: multiple modules: HTTP response splitting forwarding malicious status line txtify archive
CVE-2026-3832 Gnutls: gnutls: security bypass allows acceptance of revoked server certificates via crafted ocsp response txtify archive
CVE-2026-3833 Gnutls: gnutls: policy bypass due to case-sensitive nameconstraints comparison txtify archive
CVE-2026-28810 Predictable DNS Transaction IDs Enable Cache Poisoning in Built-in Resolver txtify archive
CVE-2026-43868 Apache Thrift: Rust implementation vulnerable to CVE-2020-13949 pattern txtify archive
CVE-2026-43101 ipv6: ioam: fix potential NULL dereferences in __ioam6_fill_trace_data() txtify archive
CVE-2026-43219 net: cpsw_new: Fix potential unregister of netdev that has not been registered yet txtify archive
CVE-2026-43237 drm/amdgpu: Refactor amdgpu_gem_va_ioctl for Handling Last Fence Update and Timeline Management v4 txtify archive
CVE-2026-43191 drm/amd/display: Adjust PHY FSM transition to TX_EN-to-PLL_ON for TMDS on DCN35 txtify archive
CVE-2026-43274 mailbox: mchp-ipc-sbi: fix out-of-bounds access in mchp_ipc_get_cluster_aggr_irq() txtify archive
CVE-2026-43161 iommu/vt-d: Skip dev-iotlb flush for inaccessible PCIe device without scalable mode txtify archive
CVE-2026-43176 wifi: rtw89: pci: validate release report content before using for RTL8922DE txtify archive
CVE-2026-42154 Prometheus: remote read endpoint allows denial of service via crafted snappy payload txtify archive
CVE-2026-42151 Prometheus Azure AD remote write OAuth client secret exposed via config API txtify archive
CVE-2026-35579 CoreDNS TSIG authentication bypass on gRPC, QUIC, DoH, and DoH3 transports txtify archive
CVE-2026-32934 CoreDNS DNS-over-QUIC unbounded goroutine growth leads to denial of service txtify archive
CVE-2026-32936 CoreDNS DoH GET path missing size validation causes CPU and memory amplification txtify archive
CVE-2026-33489 CoreDNS transfer plugin subzone ACL bypass via lexicographic zone comparison txtify archive
Shipping Giant Maersk Maintains Guidance Despite Rising Costs From Middle East Conflict txtify archive
Defense Business Brief: Pitching America first; Visa deal?; Skunk Works exec moves up; plus a little more txtify archive
Pentagon leaders love agentic AI. But it’s giving cyber criminals nation-state-like powers txtify archive
Threat Brief: Exploitation of PAN-OS Captive Portal Zero-Day for Unauthenticated Remote Code Execution txtify archive
Claude (@claudeai) on X: We’ve agreed to a partnership with @SpaceX that will substantially increase our compute capacity. comments txtify archive
Alex NSF: “And with [May 5 Starlink 17-29 launch], SpaceX now sets a new record for longest streak of successful landings by Falcon boosters. 268 and counting.” comments txtify archive
CVE-2026-34003 Xorg: xwayland: x.org x server: information exposure and denial of service via out-of-bounds memory access txtify archive
CVE-2026-33999 Xorg: xwayland: x.org x server: denial of service via integer underflow in xkb compatibility map handling txtify archive
CVE-2026-34001 Xorg: xwayland: x.org x server: use-after-free vulnerability leads to server crash and potential memory corruption txtify archive
CVE-2026-41066 lxml: Default configuration of iterparse() and ETCompatXMLParser() allows XXE to local files txtify archive
GWU Interview with Chris Kubecka, Cybersecurity Expert, Journalist and Volunteer Rescue Worker comments txtify archive
CrowdStrike Named a Leader in the First-Ever Gartner® Magic Quadrant™ for Cyberthreat Intelligence Technologies txtify archive
Secretary of War Pete Hegseth and Chairman of the Joint Chiefs of Staff Gen. Dan Caine Hold a Press Briefing txtify archive
Michael Nicolls: “Stunning first-sat views from @Starlink launch G10-38 on May 1. Watch as the Starlink sats cruise over an entire orbit, through sunrise and sunset, and slowly separate from each as they complete their post-launch deployment sequence before beginning orbit raise.” comments txtify archive
Dispatch from Beirut: Israel-Hezbollah talks risk falling into a failed, decades-long pattern txtify archive
Hi may I asked how to have osint investigator mindset and workflow? Rather than only tools? txtify archive
CVE-2026-6842 Nano: nano: local attacker can inject malicious .desktop launcher due to insecure directory permissions txtify archive
CVE-2025-8224 GNU Binutils BFD Library elf.c bfd_elf_get_str_section null pointer dereference txtify archive
CVE-2026-27141 Sending certain HTTP/2 frames can cause a server to panic in golang.org/x/net txtify archive
CVE-2026-40170 ngtcp2 has a qlog transport parameter serialization stack buffer overflow txtify archive
Tannebaum featured on Bloomberg’s Balance of Power on how companies are grappling with geopolitical risk txtify archive
Chinese electric vehicle exports rise amid the oil crisis, posing a dilemma for importing countries txtify archive
Charai for The Jerusalem Strategic Tribune: Breaking the Architecture of Iran’s Regime Power txtify archive
CVE-2026-32148 Lockfile checksums not verified in Hex allows dependency integrity bypass txtify archive
CVE-2026-34757 LIBPNG has a yse-after-free in png_set_PLTE, png_set_tRNS and png_set_hIST leading to corrupted chunk data and potential heap information disclosure txtify archive
CVE-2026-6842 Nano: nano: local attacker can inject malicious .desktop launcher due to insecure directory permissions txtify archive
CVE-2025-8224 GNU Binutils BFD Library elf.c bfd_elf_get_str_section null pointer dereference txtify archive
CVE-2026-6846 Binutils: binutils: arbitrary code execution via malformed xcoff object file processing txtify archive
Liftoff of SpaceX's Falcon Heavy x ViaSat-3 F3, shot on my remotely triggered camera placed less than half a mile from the pad. comments txtify archive
Hey everyone, I’m on my Android phone now and I came across a need for downloading Google map images for a research purpose. Does anyone have recommendations for tools or methods to effectively download images from Google map? Thank you. txtify archive
Tran quoted in South China Morning Post article on how a series of mini-crises could cascade into a collective economic collapse txtify archive
CVE-2026-31608 smb: server: avoid double-free in smb_direct_free_sendmsg after smb_direct_flush_send_list() txtify archive
CVE-2026-4948 Firewalld: firewalld: local unprivileged user can modify firewall state due to d-bus setter mis-authorization txtify archive
CVE-2026-3184 Util-linux: util-linux: access control bypass due to improper hostname canonicalization txtify archive
CVE-2026-27456 util-linux: TOCTOU Race Condition in util-linux mount(8) - Loop Device Setup txtify archive
CVE-2026-31478 ksmbd: replace hardcoded hdr2_len with offsetof() in smb2_calc_max_out_buf_len() txtify archive
CVE-2026-0967 Libssh: libssh: denial of service via inefficient regular expression processing txtify archive
CVE-2026-0965 Libssh: libssh: denial of service via improper configuration file handling txtify archive
CVE-2026-25645 Requests has Insecure Temp File Reuse in its extract_zipped_paths() utility function txtify archive
CVE-2026-3731 libssh SFTP Extension Name sftp.c sftp_extensions_get_data out-of-bounds txtify archive
CVE-2026-3087 shutil.unpack_archive() doesn't check for Windows absolute paths in ZIPs txtify archive
CVE-2026-6357 pip self-update functionality can import newly installed modules after wheel installation txtify archive
CVE-2025-48431 Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid pointer error. txtify archive
CVE-2026-31609 smb: client: avoid double-free in smbd_free_send_io() after smbd_send_batch_flush() txtify archive
CVE-2026-31608 smb: server: avoid double-free in smb_direct_free_sendmsg after smb_direct_flush_send_list() txtify archive
CVE-2026-31599 media: vidtv: fix NULL pointer dereference in vidtv_channel_pmt_match_sections txtify archive
Breaking with OPEC, the UAE is now a free agent. What this means for markets and regional unity txtify archive
CVE-2026-24051 OpenTelemetry-Go Affected by Arbitrary Code Execution via PATH Hijacking txtify archive
CVE-2026-41898 rust-openssl: Unchecked callback-returned length in PSK and cookie generate trampolines can cause OpenSSL to leak adjacent memory to the network peer txtify archive
CVE-2026-2708 Libsoup: libsoup: http request smuggling via duplicate content-length headers txtify archive
CVE-2026-5778 Integer underflow leads to out-of-bounds access in sniffer ChaCha decrypt path. txtify archive
CVE-2026-5295 Stack Buffer Overflow in wolfSSL PKCS7 wc_PKCS7_DecryptOri() via Oversized OID txtify archive
CVE-2026-5503 out-of-bounds write in TLSX_EchChangeSNI via attacker-controlled publicName txtify archive
CVE-2026-34477 Apache Log4j Core: verifyHostName attribute silently ignored in TLS configuration, allowing hostname verification bypass txtify archive
CVE-2026-35206 Helm Chart extraction output directory collapse via `Chart.yaml` name dot-segment txtify archive
CVE-2026-3298 Out-of-bounds write in Windows asyncio.ProacterEventLoop.sock_recvfrom_into() when using nbytes txtify archive
CVE-2026-28390 Possible NULL Dereference When Processing CMS KeyTransportRecipientInfo txtify archive
CVE-2025-15504 lief-project LIEF ELF Binary Parser.tcc parse_binary null pointer dereference txtify archive
CVE-2026-32283 Unauthenticated TLS 1.3 KeyUpdate record can cause persistent connection retention and DoS in crypto/tls txtify archive
CVE-2026-41681 rust-openssl: MdCtxRef::digest_final() writes past caller buffer with no length check txtify archive
CVE-2026-41677 rust-openssl: Out-of-bounds read in PEM password callback when user callback returns an oversized length txtify archive
CVE-2026-6409 Denial of Service (DoS) vulnerability exists in the Protobuf PHP library during the parsing of untrusted input txtify archive
CVE-2026-34978 OpenPrinting CUPS: Path traversal in RSS notify-recipient-uri enables file write outside CacheDir/rss (and clobbering of job.cache) txtify archive
CVE-2026-41676 rust-openssl: Deriver::derive and PkeyCtxRef::derive can overflow short buffers on OpenSSL 1.1.1 txtify archive
CVE-2026-31512 Bluetooth: L2CAP: Validate PDU length before reading SDU length in l2cap_ecred_data_rcv() txtify archive
CVE-2026-34073 cryptography has incomplete DNS name constraint enforcement on peer names txtify archive
CVE-2026-2100 P11-kit: p11-kit: null dereference via c_derivekey with specific null parameters txtify archive
CVE-2026-31478 ksmbd: replace hardcoded hdr2_len with offsetof() in smb2_calc_max_out_buf_len() txtify archive
CVE-2026-34043 Serialize JavaScript has CPU Exhaustion Denial of Service via crafted array-like objects txtify archive
CVE-2026-33916 Handlebars.js has Prototype Pollution Leading to XSS through Partial Template Injection txtify archive
CVE-2026-23422 dpaa2-switch: Fix interrupt storm after receiving bad if_id in IRQ handler txtify archive
CVE-2026-33542 Incus does not verify combined fingerprint when downloading images from simplestreams servers txtify archive
CVE-2026-31576 media: hackrf: fix to not free memory after the device is registered in hackrf_probe() txtify archive
CVE-2026-1005 Integer underflow leads to out-of-bounds access in sniffer AES-GCM/CCM/ARIA-GCM decrypt path txtify archive
CVE-2026-34480 Apache Log4j Core: Silent log event loss in XmlLayout due to unescaped XML 1.0 forbidden characters txtify archive
CVE-2026-34479 Apache Log4j 1 to Log4j 2 bridge: Silent log event loss in Log4j1XmlLayout due to unescaped XML 1.0 forbidden characters txtify archive
CVE-2026-34481 Apache Log4j JSON Template Layout: Improper serialization of non-finite floating-point values in JsonTemplateLayout txtify archive
CVE-2026-5460 Heap Use-After-Free in PQC Hybrid KeyShare Error Cleanup in wolfSSL TLS 1.3 txtify archive
CVE-2026-31500 Bluetooth: btintel: serialize btintel_hw_error() with hci_req_sync_lock txtify archive
CVE-2026-31507 net/smc: fix double-free of smc_spd_priv when tee() duplicates splice pipe buffer txtify archive
CVE-2026-31619 ALSA: fireworks: bound device-supplied status before string array lookup txtify archive
CVE-2025-48431 Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid pointer error. txtify archive
CVE-2026-6357 pip self-update functionality can import newly installed modules after wheel installation txtify archive
CVE-2026-31592 KVM: SEV: Protect *all* of sev_mem_enc_register_region() with kvm->lock txtify archive
CVE-2026-31588 KVM: x86: Use scratch field in MMIO fragment to hold small write values txtify archive
CVE-2026-31496 netfilter: nf_conntrack_expect: skip expectations in other netns via proc txtify archive
CVE-2026-31615 usb: gadget: renesas_usb3: validate endpoint index in standard request handlers txtify archive
CVE-2026-31536 smb: server: let send_done handle a completion without IB_SEND_SIGNALED txtify archive
CISA and U.S. Government Partners Unveil Guide to Accelerate Zero Trust Adoption in Operational Technology txtify archive
Charai for The Jerusalem Strategic Tribune: The Crown’s Moral Voice: King Charles in Washington and the Test of Western Clarity txtify archive
CVE-2026-31619 ALSA: fireworks: bound device-supplied status before string array lookup txtify archive
CVE-2026-31592 KVM: SEV: Protect *all* of sev_mem_enc_register_region() with kvm->lock txtify archive
CVE-2026-31578 media: as102: fix to not free memory after the device is registered in as102_usb_probe() txtify archive
CVE-2026-31576 media: hackrf: fix to not free memory after the device is registered in hackrf_probe() txtify archive
CVE-2026-31588 KVM: x86: Use scratch field in MMIO fragment to hold small write values txtify archive
CVE-2026-33056 tar-rs: unpack_in can chmod arbitrary directories by following symlinks txtify archive
CVE-2026-2369 Libsoup: libsoup: buffer overread due to integer underflow when handling zero-length resources txtify archive
CVE-2026-22701 filelock Time-of-Check-Time-of-Use (TOCTOU) Symlink Vulnerability in SoftFileLock txtify archive
CVE-2025-68146 filelock has TOCTOU race condition that allows symlink attacks during lock file creation txtify archive
CVE-2026-2443 Libsoup: out-of-bounds read in libsoup handle_partial_get() leading to heap information disclosure txtify archive
CVE-2026-31536 smb: server: let send_done handle a completion without IB_SEND_SIGNALED txtify archive
CVE-2026-41677 rust-openssl: Out-of-bounds read in PEM password callback when user callback returns an oversized length txtify archive
CVE-2026-28390 Possible NULL Dereference When Processing CMS KeyTransportRecipientInfo txtify archive
CVE-2026-41140 Poetry: Path traversal in tar extraction on Python 3.10.0 - 3.10.12 and 3.11.0 - 3.11.4 txtify archive
CVE-2026-34003 Xorg: xwayland: x.org x server: information exposure and denial of service via out-of-bounds memory access txtify archive
CVE-2026-34001 Xorg: xwayland: x.org x server: use-after-free vulnerability leads to server crash and potential memory corruption txtify archive
CVE-2026-33999 Xorg: xwayland: x.org x server: denial of service via integer underflow in xkb compatibility map handling txtify archive
CVE-2026-27141 Sending certain HTTP/2 frames can cause a server to panic in golang.org/x/net txtify archive
CVE-2026-24051 OpenTelemetry-Go Affected by Arbitrary Code Execution via PATH Hijacking txtify archive
CVE-2026-29181 OpenTelemetry-Go multi-value `baggage` header extraction causes excessive allocations (remote dos amplification) txtify archive
CVE-2026-41898 rust-openssl: Unchecked callback-returned length in PSK and cookie generate trampolines can cause OpenSSL to leak adjacent memory to the network peer txtify archive
CVE-2026-2708 Libsoup: libsoup: http request smuggling via duplicate content-length headers txtify archive
CVE-2026-41066 lxml: Default configuration of iterparse() and ETCompatXMLParser() allows XXE to local files txtify archive
CVE-2026-31670 net: rfkill: prevent unlimited numbers of rfkill events from being created txtify archive
CVE-2026-31579 wireguard: device: use exit_rtnl callback instead of manual rtnl_lock in pre_exit txtify archive
CVE-2026-31577 nilfs2: fix NULL i_assoc_inode dereference in nilfs_mdt_save_to_shadow_map txtify archive
CVE-2026-31552 wifi: wlcore: Return -ENOMEM instead of -EAGAIN if there is not enough headroom txtify archive
CVE-2026-31478 ksmbd: replace hardcoded hdr2_len with offsetof() in smb2_calc_max_out_buf_len() txtify archive
CVE-2026-41079 OpenPrinting CUPS: Heap out-of-bounds read in SNMP supply-level polling leaks stack memory to authenticated users txtify archive
CVE-2026-33103 Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability txtify archive
Horror of Putin's nuclear bomb in space: Global leaders are so worried they've started manoeuvres against it. Now TOM LEONARD reveals how it would cripple the West... and that's just the start txtify archive
CrowdStrike Expands ChatGPT Enterprise Integration with Enhanced Audit Logging and Activity Monitoring txtify archive
CVE-2026-23368 net: phy: register phy led_triggers during probe to avoid AB-BA deadlock txtify archive
CVE-2026-31592 KVM: SEV: Protect *all* of sev_mem_enc_register_region() with kvm->lock txtify archive
CVE-2026-31578 media: as102: fix to not free memory after the device is registered in as102_usb_probe() txtify archive
CVE-2026-31595 PCI: endpoint: pci-epf-vntb: Stop cmd_handler work in epf_ntb_epc_cleanup txtify archive
CVE-2026-31576 media: hackrf: fix to not free memory after the device is registered in hackrf_probe() txtify archive
CVE-2026-31588 KVM: x86: Use scratch field in MMIO fragment to hold small write values txtify archive
CVE-2026-31579 wireguard: device: use exit_rtnl callback instead of manual rtnl_lock in pre_exit txtify archive
CVE-2026-41681 rust-openssl: MdCtxRef::digest_final() writes past caller buffer with no length check txtify archive
CVE-2026-41677 rust-openssl: Out-of-bounds read in PEM password callback when user callback returns an oversized length txtify archive
CVE-2026-31609 smb: client: avoid double-free in smbd_free_send_io() after smbd_send_batch_flush() txtify archive
CVE-2026-41676 rust-openssl: Deriver::derive and PkeyCtxRef::derive can overflow short buffers on OpenSSL 1.1.1 txtify archive
CVE-2026-31608 smb: server: avoid double-free in smb_direct_free_sendmsg after smb_direct_flush_send_list() txtify archive
CVE-2026-31670 net: rfkill: prevent unlimited numbers of rfkill events from being created txtify archive
CVE-2026-41907 uuid: Missing buffer bounds check in `v3`/`v5`/`v6` when `buf` is provided txtify archive
CVE-2026-31615 usb: gadget: renesas_usb3: validate endpoint index in standard request handlers txtify archive
CVE-2026-41066 lxml: Default configuration of iterparse() and ETCompatXMLParser() allows XXE to local files txtify archive
CVE-2026-41140 Poetry: Path traversal in tar extraction on Python 3.10.0 - 3.10.12 and 3.11.0 - 3.11.4 txtify archive
CVE-2026-31577 nilfs2: fix NULL i_assoc_inode dereference in nilfs_mdt_save_to_shadow_map txtify archive
CVE-2026-23422 dpaa2-switch: Fix interrupt storm after receiving bad if_id in IRQ handler txtify archive
CVE-2026-31599 media: vidtv: fix NULL pointer dereference in vidtv_channel_pmt_match_sections txtify archive
CVE-2026-23401 KVM: x86/mmu: Drop/zap existing present SPTE even when creating an MMIO SPTE txtify archive
CVE-2026-23399 nf_tables: nft_dynset: fix possible stateful expression memleak in error path txtify archive
CVE-2026-31536 smb: server: let send_done handle a completion without IB_SEND_SIGNALED txtify archive
CVE-2026-23392 netfilter: nf_tables: release flowtable after rcu grace period on error txtify archive
CVE-2026-31593 KVM: SEV: Reject attempts to sync VMSA of an already-launched/encrypted vCPU txtify archive
CVE-2026-31646 net: lan966x: fix page_pool error handling in lan966x_fdma_rx_alloc_page_pool() txtify archive
CVE-2026-31619 ALSA: fireworks: bound device-supplied status before string array lookup txtify archive
CVE-2026-41079 OpenPrinting CUPS: Heap out-of-bounds read in SNMP supply-level polling leaks stack memory to authenticated users txtify archive
Inside Josef Fritzl's rape dungeon: How incestuous Austrian monster imprisoned his daughter for 8,642 DAYS in soundproofed, purpose-built cellar, forcing her to give birth to seven of his children txtify archive
Minute by minute, how the Chernobyl disaster unfolded: 40 years on, dramatic reconstruction of the botched safety drill that spawned worst nuclear accident in history txtify archive
Dollar Dominance Monitor cited in Financial Times article on quantity of global trade invoiced in dollars txtify archive
CVE-2026-23439 udp_tunnel: fix NULL deref caused by udp_sock_create6 when CONFIG_IPV6=n txtify archive
CVE-2026-23438 net: mvpp2: guard flow control update with global_tx_fc in buffer switching txtify archive
CVE-2026-23340 net: sched: avoid qdisc_reset_all_tx_gt() vs dequeue race for lockless qdiscs txtify archive
CVE-2026-23324 can: usb: etas_es58x: correctly anchor the urb in the read bulk callback txtify archive
CVE-2026-23315 wifi: mt76: Fix possible oob access in mt76_connac2_mac_write_txwi_80211() txtify archive
Media Invitation Announced for United States v. Khalid Shaikh Mohammad et al. Pre-Trial Hearing txtify archive
Tannebaum quoted in CNN article explaining that the recent Iranian crypto freeze will not dent the country’s war efforts txtify archive
Secretary of War Pete Hegseth and Chairman of the Joint Chiefs of Staff Gen. Dan Caine Hold a Press Briefing txtify archive
Children of Military Families Visit Arlington National Cemetery, Reflect on Meaning of Service txtify archive
Chhangani quoted in The Banker article explaining that new Pakistani laws now allow registered Virtual Asset Service Providers to hold bank accounts in the country txtify archive
CVE-2026-31478 ksmbd: replace hardcoded hdr2_len with offsetof() in smb2_calc_max_out_buf_len() txtify archive
CVE-2026-31500 Bluetooth: btintel: serialize btintel_hw_error() with hci_req_sync_lock txtify archive
CVE-2026-31507 net/smc: fix double-free of smc_spd_priv when tee() duplicates splice pipe buffer txtify archive
I'm thinking of doing a free course on pivot generation and exploitation. Any cool examples or stories of where pivots have taken you in your investigations or analysis would be very welcome. txtify archive
Snow Flurries: How UNC6692 Employed Social Engineering to Deploy a Custom Malware Suite txtify archive
CISA, National Cyber Security Centre (NCSC) UK, and Global Partners Issue Advisory on Chinese Government-Linked Covert Cyber Networks txtify archive
CISA Warns of FIRESTARTER Malware Targeting Cisco ASA including Firepower and Secure Firewall Products txtify archive
Can AI Attack the Cloud? Lessons From Building an Autonomous Cloud Offensive Multi-Agent System txtify archive
CVE-2026-39882 OpenTelemetry-Go OTLP HTTP exporters read unbounded HTTP response bodies txtify archive
CVE-2026-33750 brace-expansion: Zero-step sequence causes process hang and memory exhaustion txtify archive
CVE-2026-27820 zlib: Buffer Overflow in Zlib::GzipReader ungetc via large input leads to memory corruption txtify archive
CVE-2026-6409 Denial of Service (DoS) vulnerability exists in the Protobuf PHP library during the parsing of untrusted input txtify archive
CVE-2026-28808 ScriptAlias CGI targets bypass directory auth in inets httpd (mod_auth vs mod_cgi path mismatch) txtify archive
CVE-2026-6507 Dnsmasq: dnsmasq: denial of service due to out-of-bounds write in dhcp bootreply processing txtify archive
CVE-2026-31512 Bluetooth: L2CAP: Validate PDU length before reading SDU length in l2cap_ecred_data_rcv() txtify archive
CVE-2026-31451 ext4: replace BUG_ON with proper error handling in ext4_read_inline_folio txtify archive
CVE-2026-31478 ksmbd: replace hardcoded hdr2_len with offsetof() in smb2_calc_max_out_buf_len() txtify archive
CVE-2026-31500 Bluetooth: btintel: serialize btintel_hw_error() with hci_req_sync_lock txtify archive
CVE-2026-31507 net/smc: fix double-free of smc_spd_priv when tee() duplicates splice pipe buffer txtify archive
CVE-2026-31469 virtio_net: Fix UAF on dst_ops when IFF_XMIT_DST_RELEASE is cleared and napi_tx is false txtify archive
CVE-2026-31496 netfilter: nf_conntrack_expect: skip expectations in other netns via proc txtify archive
CVE-2026-40890 github.com/gomarkdown/markdown: Out-of-bounds Read in SmartypantsRenderer txtify archive
CVE-2025-14821 Libssh: libssh: insecure default configuration leads to local man-in-the-middle attacks on windows txtify archive
CVE-2026-4786 Incomplete mitigation of CVE-2026-4519, %action expansion for command injection to webbrowser.open() txtify archive
Honorable Jay Hurst and Lt. Gen. Steven Whitney Hold Press Briefing on the Department's Fiscal Year 2027 Defense Budget txtify archive
CVE-2026-32223 Windows USB Printing Stack (usbprint.sys) Elevation of Privilege Vulnerability txtify archive
CVE-2026-26168 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-21523 GitHub Copilot and Visual Studio Code Remote Code Execution Vulnerability txtify archive
CVE-2026-4786 Incomplete mitigation of CVE-2026-4519, %action expansion for command injection to webbrowser.open() txtify archive
CVE-2026-6100 Use-after-free in lzma.LZMADecompressor, bz2.BZ2Decompressor, and gzip.GzipFile after re-use under memory pressure txtify archive
CVE-2026-33056 tar-rs: unpack_in can chmod arbitrary directories by following symlinks txtify archive
CVE-2026-40179 Prometheus: Stored XSS via metric names and label values in web UI tooltips and metrics explorer txtify archive
CVE-2025-14821 Libssh: libssh: insecure default configuration leads to local man-in-the-middle attacks on windows txtify archive
CVE-2026-39956 jq: Missing runtime type checks for _strindices lead to crash and limited memory disclosure txtify archive
CVE-2026-35199 SymCrypt SymCryptXmssSign function - Heap overflow via 64->32-bit leaf-count truncation txtify archive
CVE-2026-39979 jq: Out-of-Bounds Read in jv_parse_sized() Error Formatting for Non-NUL-Terminated Counted Buffers txtify archive
CVE-2026-33948 jq: Embedded-NUL Truncation in CLI JSON Input Path Causes Prefix-Only Validation of Malformed Input txtify archive
CVE-2026-33947 jq: Unbounded Recursion in jv_setpath(), jv_getpath() and delpaths_sorted() txtify archive
CVE-2026-32316 jq: Integer overflow in jvp_string_append() allows Heap-based Buffer Overflow txtify archive
Statement from Chairman of the Afghanistan Withdrawal Special Review Panel Sean Parnell txtify archive
Secretary of War Pete Hegseth and Chairman of the Joint Chiefs of Staff Gen. Dan Caine Hold a Press Briefing txtify archive
CVE-2026-32223 Windows USB Printing Stack (usbprint.sys) Elevation of Privilege Vulnerability txtify archive
CVE-2026-34757 LIBPNG has a yse-after-free in png_set_PLTE, png_set_tRNS and png_set_hIST leading to corrupted chunk data and potential heap information disclosure txtify archive
CVE-2026-27143 Missing bound checks can lead to memory corruption in safe Go in cmd/compile txtify archive
CVE-2026-32282 TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix txtify archive
CVE-2026-27144 Miscompilation allows memory corruption via CONVNOP-wrapped array copy in cmd/compile txtify archive
CVE-2026-32283 Unauthenticated TLS 1.3 KeyUpdate record can cause persistent connection retention and DoS in crypto/tls txtify archive
CVE-2026-28390 Possible NULL Dereference When Processing CMS KeyTransportRecipientInfo txtify archive
CVE-2026-33056 tar-rs: unpack_in can chmod arbitrary directories by following symlinks txtify archive
CVE-2026-2646 Heap buffer overflow in session parsing with wolfSSL_d2i_SSL_SESSION() function txtify archive
CVE-2026-2645 Acceptance of CertificateVerify Message before ClientKeyExchange in TLS 1.2 txtify archive
CVE-2026-35611 Addressable has a Regular Expression Denial of Service in Addressable templates txtify archive
CVE-2026-35093 Libinput: libinput: unauthorized code execution and information disclosure through lua bytecode plugins txtify archive
CVE-2026-34601 xmldom: XML injection via unsafe CDATA serialization allows attacker-controlled markup insertion txtify archive
CVE-2026-4176 Perl versions from 5.9.4 before 5.40.4-RC1, from 5.41.0 before 5.42.2-RC1, from 5.43.0 before 5.43.9 contain a vulnerable version of Compress::Raw::Zlib txtify archive
CVE-2026-27171 zlib before 1.3.2 allows CPU consumption via crc32_combine64 and crc32_combine_gen64 because x2nmodp can do right shifts within a loop that has no termination condition. txtify archive
CVE-2025-14523 Libsoup: libsoup: duplicate host header handling causes host-parsing discrepancy (first- vs last-value wins) txtify archive
CVE-2026-33940 Handlebars.js has JavaScript Injection via AST Type Confusion when passing an object as dynamic partial txtify archive
CVE-2025-61729 Excessive resource consumption when printing error string for host certificate validation in crypto/x509 txtify archive
CVE-2026-33939 Handlebars.js has Denial of Service via Malformed Decorator Syntax in Template Compilation txtify archive
CVE-2026-33941 Handlebars.js has JavaScript Injection in CLI Precompiler via Unescaped Names and Options txtify archive
CVE-2026-33938 Handlebars.js has JavaScript Injection via AST Type Confusion by tampering @partial-block txtify archive
CVE-2026-33891 Forge has Denial of Service via Infinite Loop in BigInteger.modInverse() with Zero Input txtify archive
CVE-2026-33896 Forge has a basicConstraints bypass in its certificate chain verification (RFC 5280 violation) txtify archive
CVE-2026-1519 Excessive NSEC3 iterations cause high CPU load during insecure delegation validation txtify archive
CVE-2026-33416 LIBPNG has use-after-free via pointer aliasing in `png_set_tRNS` and `png_set_PLTE` txtify archive
CVE-2025-30258 In GnuPG before 2.5.5, if a user chooses to import a certificate with certain crafted subkey data that lacks a valid backsig or that has incorrect usage flags, the user loses the ability to verify signatures made from certain other signing keys, aka a "verification DoS." txtify archive
CVE-2026-40175 Axios has Unrestricted Cloud Metadata Exfiltration via Header Injection Chain txtify archive
CVE-2026-34480 Apache Log4j Core: Silent log event loss in XmlLayout due to unescaped XML 1.0 forbidden characters txtify archive
CVE-2026-34479 Apache Log4j 1 to Log4j 2 bridge: Silent log event loss in Log4j1XmlLayout due to unescaped XML 1.0 forbidden characters txtify archive
CVE-2026-34481 Apache Log4j JSON Template Layout: Improper serialization of non-finite floating-point values in JsonTemplateLayout txtify archive
CVE-2026-5460 Heap Use-After-Free in PQC Hybrid KeyShare Error Cleanup in wolfSSL TLS 1.3 txtify archive
CVE-2026-5778 Integer underflow leads to out-of-bounds access in sniffer ChaCha decrypt path. txtify archive
CVE-2026-5295 Stack Buffer Overflow in wolfSSL PKCS7 wc_PKCS7_DecryptOri() via Oversized OID txtify archive
CVE-2026-5503 out-of-bounds write in TLSX_EchChangeSNI via attacker-controlled publicName txtify archive
CVE-2026-5501 Improper Certificate Signature Verification in X.509 Chain Validation Allows Forged Leaf Certificates txtify archive
CVE-2026-5500 Improper Validation of AES-GCM Authentication Tag Length in PKCS#7 Envelope Allows Authentication Bypass txtify archive
CVE-2026-23653 GitHub Copilot and Visual Studio Code Information Disclosure Vulnerability txtify archive
CVE-2026-25184 Applocker Filter Driver (applockerfltr.sys) Elevation of Privilege Vulnerability txtify archive
CVE-2026-23670 Windows Virtualization-Based Security (VBS) Security Feature Bypass Vulnerability txtify archive
CVE-2026-26155 Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability txtify archive
CVE-2026-26174 Windows Server Update Service (WSUS) Elevation of Privilege Vulnerability txtify archive
CVE-2026-26183 Remote Access Management service/API (RPC server) Elevation of Privilege Vulnerability txtify archive
CVE-2026-27908 Windows TDI Translation Driver (tdx.sys) Elevation of Privilege Vulnerability txtify archive
CVE-2026-27917 Windows WFP NDIS Lightweight Filter Driver (wfplwfs.sys) Elevation of Privilege Vulnerability txtify archive
CVE-2026-27921 Windows TDI Translation Driver (tdx.sys) Elevation of Privilege Vulnerability txtify archive
CVE-2026-27926 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-27929 Windows LUA File Virtualization Filter Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-32071 Windows Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability txtify archive
CVE-2026-32073 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-32082 Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege Vulnerability txtify archive
CVE-2026-32083 Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege Vulnerability txtify archive
CVE-2026-32087 Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability txtify archive
CVE-2026-32093 Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability txtify archive
CVE-2026-32181 Connected User Experiences and Telemetry Service Denial of Service Vulnerability txtify archive
CVE-2026-32184 Microsoft High Performance Compute (HPC) Pack Elevation of Privilege Vulnerability txtify archive
CVE-2026-32216 Windows Redirected Drive Buffering System Denial of Service Vulnerability txtify archive
CVE-2026-32223 Windows USB Printing Stack (usbprint.sys) Elevation of Privilege Vulnerability txtify archive
CVE-2026-32224 Windows Server Update Service (WSUS) Elevation of Privilege Vulnerability txtify archive
CVE-2026-33098 Windows Container Isolation FS Filter Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-33116 .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability txtify archive
CVE-2026-32212 Universal Plug and Play (upnp.dll) Information Disclosure Vulnerability txtify archive
CVE-2026-32631 GitHub: CVE-2026-32631 'git clone' from manipulated repositories can leak NTLM hashes txtify archive
CVE-2026-21637 HackerOne: CVE-2026-21637 TLS PSK/ALPN Callback Exceptions Bypass Error Handlers txtify archive
CVE-2026-26153 Windows Encrypted File System (EFS) Elevation of Privilege Vulnerability txtify archive
CVE-2026-26168 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-26173 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-26176 Windows Client Side Caching driver (csc.sys) Elevation of Privilege Vulnerability txtify archive
CVE-2026-26177 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-26178 Windows Advanced Rasterization Platform Elevation of Privilege Vulnerability txtify archive
CVE-2026-26182 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-27922 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-32068 Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege Vulnerability txtify archive
CVE-2026-32070 Windows Common Log File System Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-32086 Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability txtify archive
CVE-2026-32150 Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability txtify archive
CVE-2026-33099 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-33100 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-33103 Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability txtify archive
CVE-2026-33824 Windows Internet Key Exchange (IKE) Service Extensions Remote Code Execution Vulnerability txtify archive
CVE-2026-32214 Universal Plug and Play (upnp.dll) Information Disclosure Vulnerability txtify archive
CVE-2026-32187 Microsoft Edge (Chromium-based) Defense in Depth Vulnerability - Rejected txtify archive
CVE-2026-28390 Possible NULL Dereference When Processing CMS KeyTransportRecipientInfo txtify archive
CVE-2026-3184 Util-linux: util-linux: access control bypass due to improper hostname canonicalization txtify archive
CVE-2026-27456 util-linux: TOCTOU Race Condition in util-linux mount(8) - Loop Device Setup txtify archive
CVE-2026-0967 Libssh: libssh: denial of service via inefficient regular expression processing txtify archive
CVE-2026-0965 Libssh: libssh: denial of service via improper configuration file handling txtify archive
CVE-2026-4647 Binutils: out-of-bounds read in xcoff relocation processing in gnu binutils bfd library txtify archive
CVE-2025-69649 GNU Binutils thru 2.46 readelf contains a null pointer dereference vulnerability when processing a crafted ELF binary with malformed header fields. During relocation processing, an invalid or null section pointer may be passed into display_relocations(), resulting in a segmentation fault (SIGSEGV) and abrupt termination. No evidence of memory corruption beyond the null pointer dereference, nor any possibility of code execution, was observed. txtify archive
CVE-2025-69645 Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug information. A logic error in the handling of DWARF compilation units can result in an invalid offset_size value being used inside byte_get_little_endian, leading to an abort (SIGABRT). The issue was observed in binutils 2.44. A local attacker can trigger the crash by supplying a malicious input file. txtify archive
CVE-2025-69652 GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an abort (SIGABRT) when processing a crafted ELF binary with malformed DWARF abbrev or debug information. Due to incomplete state cleanup in process_debug_info(), an invalid debug_info_p state may propagate into DWARF attribute parsing routines. When certain malformed attributes result in an unexpected data length of zero, byte_get_little_endian() triggers a fatal abort. No evidence of memory corruption or code execution was observed; the impact is limited to denial of service. txtify archive
CVE-2025-69646 Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug_rnglists data. A logic error in the handling of the debug_rnglists header can cause objdump to repeatedly print the same warning message and fail to terminate, resulting in an unbounded logging loop until the process is interrupted. The issue was observed in binutils 2.44. A local attacker can exploit this vulnerability by supplying a malicious input file, leading to excessive CPU and I/O usage and preventing completion of the objdump analysis. txtify archive
CVE-2026-31428 netfilter: nfnetlink_log: fix uninitialized padding leak in NFULA_PAYLOAD txtify archive
CVE-2026-31427 netfilter: nf_conntrack_sip: fix use of uninitialized rtp_addr in process_sdp txtify archive
CVE-2026-31424 netfilter: x_tables: restrict xt_check_match/xt_check_target extensions for NFPROTO_ARP txtify archive
Secretary of War Hegseth Hosted Bilateral Meeting With Indonesian Defense Minister Sjafrie txtify archive
CVE-2026-39856 osslsigncode has an Out-of-Bounds Read via Unvalidated Section Bounds in PE Page Hash Calculation txtify archive
CVE-2026-39855 osslsigncode has an Integer Underflow in PE Page Hash Calculation Can Cause Out-of-Bounds Read txtify archive
CVE-2026-39853 osslsigncode has a Stack Buffer Overflow via Unbounded Digest Copy During Signature Verification txtify archive
CVE-2026-28390 Possible NULL Dereference When Processing CMS KeyTransportRecipientInfo txtify archive
CVE-2026-34757 LIBPNG has a yse-after-free in png_set_PLTE, png_set_tRNS and png_set_hIST leading to corrupted chunk data and potential heap information disclosure txtify archive
CVE-2026-35206 Helm Chart extraction output directory collapse via `Chart.yaml` name dot-segment txtify archive
CVE-2026-4878 Libcap: libcap: privilege escalation via toctou race condition in cap_set_file() txtify archive
CVE-2026-33810 Case-sensitive excludedSubtrees name constraints cause Auth Bypass in crypto/x509 txtify archive
CVE-2026-27143 Missing bound checks can lead to memory corruption in safe Go in cmd/compile txtify archive
CVE-2026-32282 TOCTOU permits root escape on Linux via Root.Chmod in os in internal/syscall/unix txtify archive
CVE-2026-27144 Miscompilation allows memory corruption via CONVNOP-wrapped array copy in cmd/compile txtify archive
CVE-2026-32283 Unauthenticated TLS 1.3 KeyUpdate record can cause persistent connection retention and DoS in crypto/tls txtify archive
CVE-2026-29181 OpenTelemetry-Go multi-value `baggage` header extraction causes excessive allocations (remote dos amplification) txtify archive
CVE-2026-39882 OpenTelemetry-Go OTLP HTTP exporters read unbounded HTTP response bodies txtify archive
CVE-2026-28390 Possible NULL Dereference When Processing CMS KeyTransportRecipientInfo txtify archive
CVE-2026-35611 Addressable has a Regular Expression Denial of Service in Addressable templates txtify archive
CVE-2026-28810 Predictable DNS Transaction IDs Enable Cache Poisoning in Built-in Resolver txtify archive
CVE-2026-39316 CUPS has a use-after-free in `cupsdDeleteTemporaryPrinters` via dangling subscription pointer txtify archive
CVE-2026-39314 CUPS has an integer underflow in `_ppdCreateFromIPP` causes root cupsd crash via negative `job-password-supported` txtify archive
Secretary Hegseth to Host Honor Cordon and Meeting with Indonesian Minister of Defense, April 13 txtify archive
Media Invitation Announced for United States v. Khalid Shaikh Mohammad et al. Pre-Trial Hearing txtify archive
CVE-2026-32241 Flannel vulnerable to cross-node remote code execution via extension backend BackendData injection txtify archive
CVE-2026-4897 Polkit: polkit: denial of service via unbounded input processing through standard input txtify archive
CVE-2026-34445 ONNX: Malicious ONNX models can crash servers by exploiting unprotected object settings. txtify archive
CVE-2026-34446 ONNX: Arbitrary File Read via ExternalData Hardlink Bypass in ONNX load txtify archive
CVE-2026-35093 Libinput: libinput: unauthorized code execution and information disclosure through lua bytecode plugins txtify archive
CVE-2026-39314 CUPS has an integer underflow in `_ppdCreateFromIPP` causes root cupsd crash via negative `job-password-supported` txtify archive
CVE-2026-39316 CUPS has a use-after-free in `cupsdDeleteTemporaryPrinters` via dangling subscription pointer txtify archive
CVE-2026-34990 OpenPrinting CUPS: Local print admin token disclosure using temporary printers txtify archive
CVE-2026-34980 OpenPrinting CUPS: Shared PostScript queue lets anonymous Print-Job requests reach `lp` code execution over the network txtify archive
CVE-2026-34978 OpenPrinting CUPS: Path traversal in RSS notify-recipient-uri enables file write outside CacheDir/rss (and clobbering of job.cache) txtify archive
CVE-2026-34933 Avahi: Reachable assertion in `transport_flags_from_domain()` via conflicting publish flags crashes avahi-daemon txtify archive
Secretary of War Pete Hegseth and Chairman of the Joint Chiefs Air Force Gen. Dan Caine Hold a Press Briefing txtify archive
CVE-2026-4645 Github.com/antchfx/xpath: xpath: denial of service via crafted boolean xpath expressions txtify archive
CVE-2006-10003 XML::Parser versions through 2.47 for Perl has an off-by-one heap buffer overflow in st_serial_stack txtify archive
CVE-2026-5201 Gdk-pixbuf: gdk-pixbuf: denial of service via heap-based buffer overflow when processing a specially crafted jpeg image txtify archive
CVE-2026-33936 python-ecdsa: Denial of Service via improper DER length validation in crafted private keys txtify archive
CVE-2026-32241 Flannel vulnerable to cross-node remote code execution via extension backend BackendData injection txtify archive
CVE-2026-27456 util-linux: TOCTOU Race Condition in util-linux mount(8) - Loop Device Setup txtify archive
CVE-2026-34990 OpenPrinting CUPS: Local print admin token disclosure using temporary printers txtify archive
CVE-2026-27447 OpenPrinting CUPS: Authorization bypass via case-insensitive group-member lookup txtify archive
CVE-2026-34978 OpenPrinting CUPS: Path traversal in RSS notify-recipient-uri enables file write outside CacheDir/rss (and clobbering of job.cache) txtify archive
CVE-2026-34980 OpenPrinting CUPS: Shared PostScript queue lets anonymous Print-Job requests reach `lp` code execution over the network txtify archive
CVE-2026-3184 Util-linux: util-linux: access control bypass due to improper hostname canonicalization txtify archive
CVE-2026-31408 Bluetooth: SCO: Fix use-after-free in sco_recv_frame() due to missing sock_hold txtify archive
CVE-2026-27456 util-linux: TOCTOU Race Condition in util-linux mount(8) - Loop Device Setup txtify archive
CVE-2026-34990 OpenPrinting CUPS: Local print admin token disclosure using temporary printers txtify archive
CVE-2026-27447 OpenPrinting CUPS: Authorization bypass via case-insensitive group-member lookup txtify archive
CVE-2026-34978 OpenPrinting CUPS: Path traversal in RSS notify-recipient-uri enables file write outside CacheDir/rss (and clobbering of job.cache) txtify archive
CVE-2026-34980 OpenPrinting CUPS: Shared PostScript queue lets anonymous Print-Job requests reach `lp` code execution over the network txtify archive
CVE-2026-4897 Polkit: polkit: denial of service via unbounded input processing through standard input txtify archive
CVE-2026-2100 P11-kit: p11-kit: null dereference via c_derivekey with specific null parameters txtify archive
CVE-2026-5107 FRRouting FRR EVPN Type-2 Route bgp_evpn.c process_type2_route access control txtify archive
CVE-2026-34073 cryptography has incomplete DNS name constraint enforcement on peer names txtify archive
CVE-2026-26135 Azure Custom Locations Resource Provider (RP) Elevation of Privilege Vulnerability txtify archive
CVE-2026-33105 Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability txtify archive
CVE-2026-34043 Serialize JavaScript has CPU Exhaustion Denial of Service via crafted array-like objects txtify archive
CVE-2026-33542 Incus does not verify combined fingerprint when downloading images from simplestreams servers txtify archive
CVE-2026-33936 python-ecdsa: Denial of Service via improper DER length validation in crafted private keys txtify archive
CVE-2026-33750 brace-expansion: Zero-step sequence causes process hang and memory exhaustion txtify archive
CVE-2026-0967 Libssh: libssh: denial of service via inefficient regular expression processing txtify archive
CVE-2026-0965 Libssh: libssh: denial of service via improper configuration file handling txtify archive
CVE-2026-5107 FRRouting FRR EVPN Type-2 Route bgp_evpn.c process_type2_route access control txtify archive
CVE-2026-2739 This affects versions of the package bn.js before 5.2.3. Calling maskn(0) on any BN instance corrupts the internal state, causing toString(), divmod(), and other methods to enter an infinite loop, hanging the process indefinitely. txtify archive
CVE-2026-33416 LIBPNG has use-after-free via pointer aliasing in `png_set_tRNS` and `png_set_PLTE` txtify archive
CVE-2026-2436 Libsoup: libsoup: denial of service via use-after-free in soupserver during tls handshake txtify archive
CVE-2026-4897 Polkit: polkit: denial of service via unbounded input processing through standard input txtify archive
CVE-2026-2100 P11-kit: p11-kit: null dereference via c_derivekey with specific null parameters txtify archive
CVE-2026-5119 Libsoup: libsoup: information disclosure via cleartext transmission of cookies during https tunnel establishment txtify archive
CVE-2026-5121 Libarchive: libarchive: arbitrary code execution via integer overflow in iso9660 image processing txtify archive
CVE-2026-5201 Gdk-pixbuf: gdk-pixbuf: denial of service via heap-based buffer overflow when processing a specially crafted jpeg image txtify archive
CVE-2026-4176 Perl versions from 5.9.4 before 5.40.4-RC1, from 5.41.0 before 5.42.2-RC1, from 5.43.0 before 5.43.9 contain a vulnerable version of Compress::Raw::Zlib txtify archive
CVE-2026-33542 Incus does not verify combined fingerprint when downloading images from simplestreams servers txtify archive
CVE-2026-33750 brace-expansion: Zero-step sequence causes process hang and memory exhaustion txtify archive
CVE-2026-0967 Libssh: libssh: denial of service via inefficient regular expression processing txtify archive
CVE-2026-0965 Libssh: libssh: denial of service via improper configuration file handling txtify archive
CVE-2026-4645 Github.com/antchfx/xpath: xpath: denial of service via crafted boolean xpath expressions txtify archive
CVE-2026-34043 Serialize JavaScript has CPU Exhaustion Denial of Service via crafted array-like objects txtify archive
CVE-2026-4176 Perl versions from 5.9.4 before 5.40.4-RC1, from 5.41.0 before 5.42.2-RC1, from 5.43.0 before 5.43.9 contain a vulnerable version of Compress::Raw::Zlib txtify archive
Secretary of War Pete Hegseth and Chairman of the Joint Chiefs Air Force Gen. Dan Caine Hold a Press Briefing txtify archive
North Korea-Nexus Threat Actor Compromises Widely Used Axios NPM Package in Supply Chain Attack txtify archive
CVE-2026-33416 LIBPNG has use-after-free via pointer aliasing in `png_set_tRNS` and `png_set_PLTE` txtify archive
CVE-2026-25645 Requests has Insecure Temp File Reuse in its extract_zipped_paths() utility function txtify archive
CVE-2026-33940 Handlebars.js has JavaScript Injection via AST Type Confusion when passing an object as dynamic partial txtify archive
CVE-2026-33939 Handlebars.js has Denial of Service via Malformed Decorator Syntax in Template Compilation txtify archive
CVE-2026-33916 Handlebars.js has Prototype Pollution Leading to XSS through Partial Template Injection txtify archive
CVE-2026-33941 Handlebars.js has JavaScript Injection in CLI Precompiler via Unescaped Names and Options txtify archive
CVE-2026-33938 Handlebars.js has JavaScript Injection via AST Type Confusion by tampering @partial-block txtify archive
CVE-2026-33542 Incus does not verify combined fingerprint when downloading images from simplestreams servers txtify archive
CVE-2026-33936 python-ecdsa: Denial of Service via improper DER length validation in crafted private keys txtify archive
CVE-2026-33891 Forge has Denial of Service via Infinite Loop in BigInteger.modInverse() with Zero Input txtify archive
CVE-2026-33896 Forge has a basicConstraints bypass in its certificate chain verification (RFC 5280 violation) txtify archive
CVE-2026-33750 brace-expansion: Zero-step sequence causes process hang and memory exhaustion txtify archive
CVE-2026-0967 Libssh: libssh: denial of service via inefficient regular expression processing txtify archive
CVE-2026-0965 Libssh: libssh: denial of service via improper configuration file handling txtify archive
CVE-2026-33672 Picomatch: Method Injection in POSIX Character Classes causes incorrect Glob Matching txtify archive
CVE-2026-23399 nf_tables: nft_dynset: fix possible stateful expression memleak in error path txtify archive
CVE-2026-25645 Requests has Insecure Temp File Reuse in its extract_zipped_paths() utility function txtify archive
CVE-2026-33416 LIBPNG has use-after-free via pointer aliasing in `png_set_tRNS` and `png_set_PLTE` txtify archive
CVE-2026-3591 A stack use-after-return flaw in SIG(0) handling code may enable ACL bypass txtify archive
CVE-2026-3119 Authenticated query containing a TKEY record may cause named to terminate unexpectedly txtify archive
CVE-2026-33936 python-ecdsa: Denial of Service via improper DER length validation in crafted private keys txtify archive
CVE-2026-32241 Flannel vulnerable to cross-node remote code execution via extension backend BackendData injection txtify archive
CVE-2026-1519 Excessive NSEC3 iterations cause high CPU load during insecure delegation validation txtify archive
CVE-2026-4645 Github.com/antchfx/xpath: xpath: denial of service via crafted boolean xpath expressions txtify archive
CVE-2026-2369 Libsoup: libsoup: buffer overread due to integer underflow when handling zero-length resources txtify archive
CVE-2026-3547 wolfSSL: out-of-bounds read (DoS) in ALPN parsing due to incomplete validation txtify archive
CVE-2026-23227 drm/exynos: vidi: use ctx->lock to protect struct vidi_context member variables related to memory alloc/free txtify archive
CVE-2026-27135 nghttp2 Denial of service: Assertion failure due to the missing state validation txtify archive
CVE-2026-23267 f2fs: fix IS_CHECKPOINTED flag inconsistency issue caused by concurrent atomic commit and checkpoint writes txtify archive
CVE-2025-66413 Git for Windows leaks NTLM hash when cloning from an attacker-controlled server txtify archive
CVE-2026-23327 cxl/mbox: validate payload size before accessing contents in cxl_payload_from_user_allowed() txtify archive
CVE-2026-23386 gve: fix incorrect buffer cleanup in gve_tx_clean_pending_packets for QPL txtify archive
CVE-2026-23325 wifi: mt76: mt7996: Fix possible oob access in mt7996_mac_write_txwi_80211() txtify archive
CVE-2026-4645 Github.com/antchfx/xpath: xpath: denial of service via crafted boolean xpath expressions txtify archive
CVE-2026-4775 Libtiff: libtiff: arbitrary code execution or denial of service via signed integer overflow in tiff file processing txtify archive
CVE-2026-4647 Binutils: out-of-bounds read in xcoff relocation processing in gnu binutils bfd library txtify archive
CVE-2025-71109 MIPS: ftrace: Fix memory corruption when kernel is located beyond 32 bits txtify archive
CVE-2026-3381 Compress::Raw::Zlib versions through 2.219 for Perl use potentially insecure versions of zlib txtify archive
CVE-2025-66413 Git for Windows leaks NTLM hash when cloning from an attacker-controlled server txtify archive
CVE-2026-27142 URLs in meta content attribute actions are not escaped in html/template txtify archive
CVE-2024-45336 Sensitive headers incorrectly sent after cross-domain redirect in net/http txtify archive
CVE-2026-23284 net: ethernet: mtk_eth_soc: Reset prog ptr to old_prog in case of error in mtk_xdp_setup() txtify archive
CVE-2026-23324 can: usb: etas_es58x: correctly anchor the urb in the read bulk callback txtify archive
CVE-2026-23327 cxl/mbox: validate payload size before accessing contents in cxl_payload_from_user_allowed() txtify archive
CVE-2026-23310 bpf/bonding: reject vlan+srcmac xmit_hash_policy change when XDP is loaded txtify archive
CVE-2026-23386 gve: fix incorrect buffer cleanup in gve_tx_clean_pending_packets for QPL txtify archive
CVE-2026-23340 net: sched: avoid qdisc_reset_all_tx_gt() vs dequeue race for lockless qdiscs txtify archive
CVE-2026-23307 can: ems_usb: ems_usb_read_bulk_callback(): check the proper length of a message txtify archive
CVE-2026-23383 bpf, arm64: Force 8-byte alignment for JIT buffer to prevent atomic tearing txtify archive
CVE-2026-23390 tracing/dma: Cap dma_map_sg tracepoint arrays to prevent buffer overflow txtify archive
CVE-2026-23368 net: phy: register phy led_triggers during probe to avoid AB-BA deadlock txtify archive
CVE-2026-23325 wifi: mt76: mt7996: Fix possible oob access in mt7996_mac_write_txwi_80211() txtify archive
CVE-2026-23392 netfilter: nf_tables: release flowtable after rcu grace period on error txtify archive
CVE-2026-23315 wifi: mt76: Fix possible oob access in mt76_connac2_mac_write_txwi_80211() txtify archive
CVE-2026-2443 Libsoup: out-of-bounds read in libsoup handle_partial_get() leading to heap information disclosure txtify archive
CVE-2025-58160 Tracing logging user input may result in poisoning logs with ANSI escape sequences txtify archive
CVE-2025-13462 tarfile: Skip DIRTYPE normalization during GNU LONGNAME/LONGLINK handling txtify archive
CVE-2026-2646 Heap buffer overflow in session parsing with wolfSSL_d2i_SSL_SESSION() function txtify archive
CVE-2026-3547 wolfSSL: out-of-bounds read (DoS) in ALPN parsing due to incomplete validation txtify archive
CVE-2026-2645 Acceptance of CertificateVerify Message before ClientKeyExchange in TLS 1.2 txtify archive
CVE-2026-1005 Integer underflow leads to out-of-bounds access in sniffer AES-GCM/CCM/ARIA-GCM decrypt path txtify archive
CVE-2026-0819 Stack buffer overflow in PKCS7 SignedData encoding with custom signed attributes txtify archive
CVE-2026-2369 Libsoup: libsoup: buffer overread due to integer underflow when handling zero-length resources txtify archive
CVE-2026-3099 Libsoup: libsoup: authentication bypass via digest authentication replay attack txtify archive
CVE-2026-4424 Libarchive: libarchive: information disclosure via heap out-of-bounds read in rar archive processing txtify archive
CVE-2026-4426 Libarchive: libarchive: denial of service via malformed iso file processing txtify archive
CVE-2026-33056 tar-rs: unpack_in can chmod arbitrary directories by following symlinks txtify archive
CVE-2026-3381 Compress::Raw::Zlib versions through 2.219 for Perl use potentially insecure versions of zlib txtify archive
How Iran's ruthless enforcers use rape to crush dissent: Brutal sex attacks on victims as young as 12 used to strike fear into protesters, rights groups reveal amid fury over sickening nurse gang rape txtify archive
Stripped, electrocuted and forced to fight each other to the death on camera: New evidence shows how Putin's commanders are torturing their own men txtify archive
CVE-2026-27135 nghttp2 Denial of service: Assertion failure due to the missing state validation txtify archive
CVE-2026-27448 pyOpenSSL allows TLS connection bypass via unhandled callback exception in set_tlsext_servername_callback txtify archive
CVE-2026-3632 Libsoup: libsoup: http smuggling and server-side request forgery via malformed hostnames txtify archive
CVE-2026-3634 Libsoup: libsoup: http header injection and response splitting via crlf injection in content-type header txtify archive
CVE-2026-32766 astral-tokio-tar insufficiently validates PAX extensions during extraction txtify archive
CVE-2026-23272 netfilter: nf_tables: unconditionally bump set->nelems before insertion txtify archive
CVE-2026-23277 net/sched: teql: fix NULL pointer dereference in iptunnel_xmit on TEQL slave xmit txtify archive
CVE-2026-3731 libssh SFTP Extension Name sftp.c sftp_extensions_get_data out-of-bounds txtify archive
CVE-2022-46456 NASM v2.16 was discovered to contain a global buffer overflow in the component dbgdbg_typevalue at /output/outdbg.c. txtify archive
CVE-2006-10003 XML::Parser versions through 2.47 for Perl has an off-by-one heap buffer overflow in st_serial_stack txtify archive
CVE-2006-10002 XML::Parser versions through 2.47 for Perl could overflow the pre-allocated buffer size cause a heap corruption (double free or corruption) and crashes txtify archive
CVE-2026-23227 drm/exynos: vidi: use ctx->lock to protect struct vidi_context member variables related to memory alloc/free txtify archive
CVE-2026-23220 ksmbd: fix infinite loop caused by next_smb2_rcv_hdr_off reset in error paths txtify archive
CVE-2026-23171 bonding: fix use-after-free due to enslave fail after slave array update txtify archive
CVE-2026-23157 btrfs: do not strictly require dirty metadata threshold for metadata writepages txtify archive
CVE-2026-23126 netdevsim: fix a race issue related to the operation on bpf_bound_progs list txtify archive
CVE-2026-23110 scsi: core: Wake up the error handler when final completions race against each other txtify archive
CVE-2026-27135 nghttp2 Denial of service: Assertion failure due to the missing state validation txtify archive
CVE-2026-23268 apparmor: fix unprivileged local user can do privileged policy management txtify archive
CVE-2026-23267 f2fs: fix IS_CHECKPOINTED flag inconsistency issue caused by concurrent atomic commit and checkpoint writes txtify archive
CVE-2025-71269 btrfs: do not free data reservation in fallback from inline due to -ENOSPC txtify archive
Secretary of War Pete Hegseth and Chairman of the Joint Chiefs Air Force Gen. Dan Caine Hold a Press Briefing txtify archive
CVE-2026-27448 pyOpenSSL allows TLS connection bypass via unhandled callback exception in set_tlsext_servername_callback txtify archive
CVE-2025-71265 fs: ntfs3: fix infinite loop in attr_load_runs_range on inconsistent metadata txtify archive
CVE-2026-4111 Libarchive: infinite loop denial of service in rar5 decompression via archive_read_data() in libarchive txtify archive
CVE-2026-3381 Compress::Raw::Zlib versions through 2.219 for Perl use potentially insecure versions of zlib txtify archive
CVE-2026-4105 Systemd: systemd: privilege escalation via improper access control in registermachine d-bus method txtify archive
CVE-2026-4111 Libarchive: infinite loop denial of service in rar5 decompression via archive_read_data() in libarchive txtify archive
Ransomware Under Pressure: Tactics, Techniques, and Procedures in a Shifting Threat Landscape txtify archive
CVE-2026-27138 Panic in name constraint checking for malformed certificates in crypto/x509 txtify archive
CVE-2026-27141 Sending certain HTTP/2 frames can cause a server to panic in golang.org/x/net txtify archive
CVE-2025-58160 Tracing logging user input may result in poisoning logs with ANSI escape sequences txtify archive
CVE-2026-27171 zlib before 1.3.2 allows CPU consumption via crc32_combine64 and crc32_combine_gen64 because x2nmodp can do right shifts within a loop that has no termination condition. txtify archive
CVE-2026-3381 Compress::Raw::Zlib versions through 2.219 for Perl use potentially insecure versions of zlib txtify archive
Secretary of War Pete Hegseth and Chairman of the Joint Chiefs Air Force Gen. Dan Caine Hold a Press Briefing txtify archive
CVE-2026-25172 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability txtify archive
CVE-2026-25173 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability txtify archive
CVE-2026-26111 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability txtify archive
CVE-2026-26030 GitHub: CVE-2026-26030 Microsoft Semantic Kernel InMemoryVectorStore filter functionality vulnerable txtify archive
CVE-2025-61727 Improper application of excluded DNS name constraints when verifying wildcard names in crypto/x509 txtify archive
CVE-2025-61729 Excessive resource consumption when printing error string for host certificate validation in crypto/x509 txtify archive
CVE-2025-58186 Lack of limit when parsing cookies can cause memory exhaustion in net/http txtify archive
CVE-2026-24293 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-26148 Microsoft Azure AD SSH Login extension for Linux Elevation of Privilege Vulnerability txtify archive
CVE-2026-23865 An integer overflow in the tt_var_load_item_variation_store function of the Freetype library in versions 2.13.2 and 2.13.3 may allow for an out of bounds read operation when parsing HVAR/VVAR/MVAR tables in OpenType variable fonts. This issue is fixed in version 2.14.2. txtify archive
CVE-2026-27138 Panic in name constraint checking for malformed certificates in crypto/x509 txtify archive
CVE-2026-27142 URLs in meta content attribute actions are not escaped in html/template txtify archive
CVE-2025-69644 An issue was discovered in Binutils before 2.46. The objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed debug information. A logic flaw in the handling of DWARF location list headers can cause objdump to enter an unbounded loop and produce endless output until manually interrupted. This issue affects versions prior to the upstream fix and allows a local attacker to cause excessive resource consumption by supplying a malicious input file. txtify archive
CVE-2025-69651 GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an invalid pointer free when processing a crafted ELF binary with malformed relocation or symbol data. If dump_relocations returns early due to parsing errors, the internal all_relocations array may remain partially uninitialized. Later, process_got_section_contents() may attempt to free an invalid r_symbol pointer, triggering memory corruption checks in glibc and causing the program to terminate with SIGABRT. No evidence of further memory corruption or code execution was observed; the impact is limited to denial of service. txtify archive
CVE-2025-69649 GNU Binutils thru 2.46 readelf contains a null pointer dereference vulnerability when processing a crafted ELF binary with malformed header fields. During relocation processing, an invalid or null section pointer may be passed into display_relocations(), resulting in a segmentation fault (SIGSEGV) and abrupt termination. No evidence of memory corruption beyond the null pointer dereference, nor any possibility of code execution, was observed. txtify archive
CVE-2025-69645 Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug information. A logic error in the handling of DWARF compilation units can result in an invalid offset_size value being used inside byte_get_little_endian, leading to an abort (SIGABRT). The issue was observed in binutils 2.44. A local attacker can trigger the crash by supplying a malicious input file. txtify archive
CVE-2025-69652 GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an abort (SIGABRT) when processing a crafted ELF binary with malformed DWARF abbrev or debug information. Due to incomplete state cleanup in process_debug_info(), an invalid debug_info_p state may propagate into DWARF attribute parsing routines. When certain malformed attributes result in an unexpected data length of zero, byte_get_little_endian() triggers a fatal abort. No evidence of memory corruption or code execution was observed; the impact is limited to denial of service. txtify archive
CVE-2025-69650 GNU Binutils thru 2.46 readelf contains a double free vulnerability when processing a crafted ELF binary with malformed relocation data. During GOT relocation handling, dump_relocations may return early without initializing the all_relocations array. As a result, process_got_section_contents() may pass an uninitialized r_symbol pointer to free(), leading to a double free and terminating the program with SIGABRT. No evidence of exploitable memory corruption or code execution was observed; the impact is limited to denial of service. txtify archive
CVE-2025-69646 Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug_rnglists data. A logic error in the handling of the debug_rnglists header can cause objdump to repeatedly print the same warning message and fail to terminate, resulting in an unbounded logging loop until the process is interrupted. The issue was observed in binutils 2.44. A local attacker can exploit this vulnerability by supplying a malicious input file, leading to excessive CPU and I/O usage and preventing completion of the objdump analysis. txtify archive
CVE-2026-3731 libssh SFTP Extension Name sftp.c sftp_extensions_get_data out-of-bounds txtify archive
Military Commissions Media Invitation Announced for United States v. Abd al-Rahim al-Nashiri Trial txtify archive
CVE-2026-23660 Windows Admin Center in Azure Portal Elevation of Privilege Vulnerability txtify archive
CVE-2026-23671 Windows Bluetooth RFCOM Protocol Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-23672 Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability txtify archive
CVE-2026-23673 Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability txtify archive
CVE-2026-24283 Multiple UNC Provider Kernel Driver Elevation of Privilege Vulnerability txtify archive
CVE-2026-24291 Windows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege Vulnerability txtify archive
CVE-2026-24292 Windows Connected Devices Platform Service Elevation of Privilege Vulnerability txtify archive
CVE-2026-24293 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-24295 Windows Device Association Service Elevation of Privilege Vulnerability txtify archive
CVE-2026-24296 Windows Device Association Service Elevation of Privilege Vulnerability txtify archive
CVE-2026-25166 Windows System Image Manager Assessment and Deployment Kit (ADK) Remote Code Execution Vulnerability txtify archive
CVE-2026-25172 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability txtify archive
CVE-2026-25173 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability txtify archive
CVE-2026-25174 Windows Extensible File Allocation Table Elevation of Privilege Vulnerability txtify archive
CVE-2026-25176 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-25178 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-25179 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability txtify archive
CVE-2026-25186 Windows Accessibility Infrastructure (ATBroker.exe) Information Disclosure Vulnerability txtify archive
CVE-2026-26111 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability txtify archive
CVE-2026-20967 System Center Operations Manager (SCOM) Elevation of Privilege Vulnerability txtify archive
CVE-2026-26148 Microsoft Azure AD SSH Login extension for Linux Elevation of Privilege Vulnerability txtify archive
CVE-2026-23665 Linux Azure Diagnostic extension (LAD) Elevation of Privilege Vulnerability txtify archive
CVE-2026-26117 Arc Enabled Servers - Azure Connected Machine Agent Elevation of Privilege Vulnerability txtify archive
CVE-2026-26141 Hybrid Worker Extension (Arc‑enabled Windows VMs) Elevation of Privilege Vulnerability txtify archive
CVE-2026-26030 GitHub: CVE-2026-26030 Microsoft Semantic Kernel InMemoryVectorStore filter functionality vulnerable txtify archive
CVE-2026-28364 In OCaml before 4.14.3 and 5.x before 5.4.1, a buffer over-read in Marshal deserialization (runtime/intern.c) enables remote code execution through a multi-phase attack chain. The vulnerability stems from missing bounds validation in the readblock() function, which performs unbounded memcpy() operations using attacker-controlled lengths from crafted Marshal data. txtify archive
CVE-2026-22701 filelock Time-of-Check-Time-of-Use (TOCTOU) Symlink Vulnerability in SoftFileLock txtify archive
CVE-2025-68146 filelock has TOCTOU race condition that allows symlink attacks during lock file creation txtify archive
CVE-2026-26122 Microsoft ACI Confidential Containers Information Disclosure Vulnerability txtify archive
CVE-2026-23651 Microsoft ACI Confidential Containers Elevation of Privilege Vulnerability txtify archive
CVE-2026-26124 Microsoft ACI Confidential Containers Elevation of Privilege Vulnerability txtify archive
CVE-2026-26122 Microsoft ACI Confidential Containers Information Disclosure Vulnerability txtify archive
CVE-2026-23865 An integer overflow in the tt_var_load_item_variation_store function of the Freetype library in versions 2.13.2 and 2.13.3 may allow for an out of bounds read operation when parsing HVAR/VVAR/MVAR tables in OpenType variable fonts. This issue is fixed in version 2.14.2. txtify archive
CVE-2026-24821 A heap-based buffer over-read that might affect a system that compiles untrusted Lua code in turanszkij/WickedEngine. txtify archive
CVE-2026-23651 Microsoft ACI Confidential Containers Elevation of Privilege Vulnerability txtify archive
CVE-2026-26124 Microsoft ACI Confidential Containers Elevation of Privilege Vulnerability txtify archive
CVE-2026-26122 Microsoft ACI Confidential Containers Information Disclosure Vulnerability txtify archive
CVE-2024-24856 NULL pointer deference in acpi_db_convert_to_package of Linux acpi module txtify archive
CVE-2022-4543 A flaw named "EntryBleed" was found in the Linux Kernel Page Table Isolation (KPTI). This issue could allow a local attacker to leak KASLR base via prefetch side-channels based on TLB timing for Intel systems. txtify archive
CVE-2026-0038 In multiple functions of mem_protect.c, there is a possible way to execute arbitrary code due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. txtify archive
CVE-2026-23865 An integer overflow in the tt_var_load_item_variation_store function of the Freetype library in versions 2.13.2 and 2.13.3 may allow for an out of bounds read operation when parsing HVAR/VVAR/MVAR tables in OpenType variable fonts. This issue is fixed in version 2.14.2. txtify archive
CVE-2026-24821 A heap-based buffer over-read that might affect a system that compiles untrusted Lua code in turanszkij/WickedEngine. txtify archive
CVE-2026-27141 Sending certain HTTP/2 frames can cause a server to panic in golang.org/x/net txtify archive
CVE-2025-58160 Tracing logging user input may result in poisoning logs with ANSI escape sequences txtify archive
CVE-2026-27965 Vitess users with backup storage access can gain unauthorized access to production deployment environments txtify archive
CVE-2025-69873 ajv (Another JSON Schema Validator) before 8.18.0 is vulnerable to Regular Expression Denial of Service (ReDoS) when the $data option is enabled. The pattern keyword accepts runtime data via JSON Pointer syntax ($data reference), which is passed directly to the JavaScript RegExp() constructor without validation. An attacker can inject a malicious regex pattern (e.g., "^(a|a)*$") combined with crafted input to cause catastrophic backtracking. A 31-character payload causes approximately 44 seconds of CPU blocking, with each additional character doubling execution time. This enables complete denial of service with a single HTTP request against any API using ajv with $data: true for dynamic schema validation. txtify archive
CVE-2025-62878 Local Path Provisioner vulnerable to Path Traversal via parameters.pathPattern txtify archive
CVE-2025-61145 libtiff up to v4.7.1 was discovered to contain a double free via the component tools/tiffcrop.c. txtify archive
CVE-2026-23220 ksmbd: fix infinite loop caused by next_smb2_rcv_hdr_off reset in error paths txtify archive
CVE-2026-27969 Vitess users with backup storage access can write to arbitrary file paths on restore txtify archive
CVE-2025-69873 ajv (Another JSON Schema Validator) before 8.18.0 is vulnerable to Regular Expression Denial of Service (ReDoS) when the $data option is enabled. The pattern keyword accepts runtime data via JSON Pointer syntax ($data reference), which is passed directly to the JavaScript RegExp() constructor without validation. An attacker can inject a malicious regex pattern (e.g., "^(a|a)*$") combined with crafted input to cause catastrophic backtracking. A 31-character payload causes approximately 44 seconds of CPU blocking, with each additional character doubling execution time. This enables complete denial of service with a single HTTP request against any API using ajv with $data: true for dynamic schema validation. txtify archive
CVE-2026-23220 ksmbd: fix infinite loop caused by next_smb2_rcv_hdr_off reset in error paths txtify archive
CVE-2026-23216 scsi: target: iscsi: Fix use-after-free in iscsit_dec_conn_usage_count() txtify archive
CVE-2026-28364 In OCaml before 4.14.3 and 5.x before 5.4.1, a buffer over-read in Marshal deserialization (runtime/intern.c) enables remote code execution through a multi-phase attack chain. The vulnerability stems from missing bounds validation in the readblock() function, which performs unbounded memcpy() operations using attacker-controlled lengths from crafted Marshal data. txtify archive
CVE-2026-22997 net: can: j1939: j1939_xtp_rx_rts_session_active(): deactivate session upon receiving the second rts txtify archive
CVE-2026-22976 net/sched: sch_qfq: Fix NULL deref when deactivating inactive aggregate in qfq_reset txtify archive
CVE-2025-71150 ksmbd: Fix refcount leak when invalid session is found on session lookup txtify archive
CVE-2025-68211 ksm: use range-walk function to jump over holes in scan_get_next_rmap_item txtify archive
CVE-2023-54207 HID: uclogic: Correct devm device reference for hidinput input_dev name txtify archive
CVE-2026-21518 GitHub Copilot and Visual Studio Code Security Feature Bypass Vulnerability txtify archive
CVE-2026-21523 GitHub Copilot and Visual Studio Code Remote Code Execution Vulnerability txtify archive
CVE-2025-69873 ajv (Another JSON Schema Validator) before 8.18.0 is vulnerable to Regular Expression Denial of Service (ReDoS) when the $data option is enabled. The pattern keyword accepts runtime data via JSON Pointer syntax ($data reference), which is passed directly to the JavaScript RegExp() constructor without validation. An attacker can inject a malicious regex pattern (e.g., "^(a|a)*$") combined with crafted input to cause catastrophic backtracking. A 31-character payload causes approximately 44 seconds of CPU blocking, with each additional character doubling execution time. This enables complete denial of service with a single HTTP request against any API using ajv with $data: true for dynamic schema validation. txtify archive
CVE-2026-27969 Vitess users with backup storage access can write to arbitrary file paths on restore txtify archive
CVE-2026-27965 Vitess users with backup storage access can gain unauthorized access to production deployment environments txtify archive
CISA Issues Updated RESURGE Malware Analysis Highlighting a Stealthy but Active Threat txtify archive
CVE-2025-62878 Local Path Provisioner vulnerable to Path Traversal via parameters.pathPattern txtify archive
CVE-2025-61145 libtiff up to v4.7.1 was discovered to contain a double free via the component tools/tiffcrop.c. txtify archive
CVE-2025-61144 libtiff up to v4.7.1 was discovered to contain a stack overflow via the readSeparateStripsIntoBuffer function. txtify archive
CVE-2025-61143 libtiff up to v4.7.1 was discovered to contain a NULL pointer dereference via the component libtiff/tif_open.c. txtify archive
CVE-2021-20233 A flaw was found in grub2 in versions prior to 2.06. Setparam_prefix() in the menu rendering code performs a length calculation on the assumption that expressing a quoted single quote will require 3 characters while it actually requires 4 characters which allows an attacker to corrupt memory by one byte for each quote in the input. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. txtify archive
CVE-2021-20225 A flaw was found in grub2 in versions prior to 2.06. The option parser allows an attacker to write past the end of a heap-allocated buffer by calling certain commands with a large number of specific short forms of options. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. txtify archive
Immediate Action Required: CISA Issues Emergency Directive to Secure Cisco SD-WAN Systems txtify archive
CVE-2026-26960 node-tar has Arbitrary File Read/Write via Hardlink Target Escape Through Symlink Chain in Extraction txtify archive
CVE-2025-68973 In GnuPG through 2.4.8, armor_filter in g10/armor.c has two increments of an index variable where one is intended, leading to an out-of-bounds write for crafted input. (For ExtendedLTS, 2.2.51 and later are fixed versions.) txtify archive
CVE-2026-2739 This affects versions of the package bn.js before 5.2.3. Calling maskn(0) on any BN instance corrupts the internal state, causing toString(), divmod(), and other methods to enter an infinite loop, hanging the process indefinitely. txtify archive
Horrific executions of El Mencho's 'cannibal cartel': From hitmen who cut out and ate victim's heart to mass beheadings and rivals 'blasted with flame throwers', how slain drug lord used extreme violence to spread fear txtify archive
Every detail of Jeffrey Epstein's massive web of influence uncovered in the Mail's interactive Deep Dive into hundreds of surprising connections txtify archive
CVE-2025-71101 platform/x86: hp-bioscfg: Fix out-of-bounds array access in ACPI package parsing txtify archive
CVE-2025-71109 MIPS: ftrace: Fix memory corruption when kernel is located beyond 32 bits txtify archive
CVE-2025-61729 Excessive resource consumption when printing error string for host certificate validation in crypto/x509 txtify archive
CVE-2025-71066 net/sched: ets: Always remove class from active list before deleting in ets_qdisc_change txtify archive
CVE-2025-58436 OpenPrinting CUPS slow client can halt cupsd, leading to a possible DoS attack txtify archive
CVE-2025-68808 media: vidtv: initialize local pointers upon transfer of memory ownership txtify archive
CVE-2025-68781 usb: phy: fsl-usb: Fix use-after-free in delayed work during device removal txtify archive
CVE-2022-22576 An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S) IMAP(S) POP3(S) and LDAP(S) (openldap only). txtify archive
CVE-2025-34468 libcoap Stack-Based Buffer Overflow in Address Resolution DoS or Potential RCE txtify archive
CVE-2025-66382 In libexpat through 2.7.3, a crafted file with an approximate size of 2 MiB can lead to dozens of seconds of processing time. txtify archive
CVE-2022-32206 curl < 7.84.0 supports "chained" HTTP compression algorithms meaning that a serverresponse can be compressed multiple times and potentially with different algorithms. The number of acceptable "links" in this "decompression chain" was unbounded allowing a malicious server to insert a virtually unlimited number of compression steps.The use of such a decompression chain could result in a "malloc bomb" makingcurl end up spending enormous amounts of allocated heap memory or trying toand returning out of memory errors. txtify archive
CVE-2022-27782 libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However several TLS andSSH settings were left out from the configuration match checks making themmatch too easily. txtify archive
CVE-2026-21860 Werkzeug safe_join() allows Windows special device names with compound extensions txtify archive
CVE-2025-65637 A denial-of-service vulnerability exists in github.com/sirupsen/logrus when using Entry.Writer() to log a single-line payload larger than 64KB without newline characters. txtify archive
CVE-2025-21839 KVM: x86: Load DR6 with guest value only before entering .vcpu_run() loop txtify archive
CVE-2025-15444 Crypt::Sodium::XS module versions prior to 0.000042, for Perl, include a vulnerable version of libsodium txtify archive
CVE-2025-48637 In multiple functions of mem_protect.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. txtify archive
CVE-2025-61727 Improper application of excluded DNS name constraints when verifying wildcard names in crypto/x509 txtify archive
CVE-2020-36426 An issue was discovered in Arm Mbed TLS before 2.24.0. mbedtls_x509_crl_parse_der has a buffer over-read (of one byte). txtify archive
CVE-2024-58089 btrfs: fix double accounting race when btrfs_run_delalloc_range() failed txtify archive
CVE-2021-24119 In Trusted Firmware Mbed TLS 2.24.0, a side-channel vulnerability in base64 PEM file decoding allows system-level (administrator) attackers to obtain information about secret RSA keys via a controlled-channel and side-channel attack on software running in isolated environments that can be single stepped, especially Intel SGX. txtify archive
CVE-2023-52969 MariaDB Server 10.4 through 10.5.*, 10.6 through 10.6.*, 10.7 through 10.11.*, and 11.0 through 11.0.* can sometimes crash with an empty backtrace log. This may be related to make_aggr_tables_info and optimize_stage2. txtify archive
CVE-2024-46751 btrfs: don't BUG_ON() when 0 reference count at btrfs_lookup_extent_info() txtify archive
CVE-2024-46786 fscache: delete fscache_cookie_lru_timer when fscache exits to avoid UAF txtify archive
CVE-2024-50008 wifi: mwifiex: Fix memcpy() field-spanning write warning in mwifiex_cmd_802_11_scan_ext() txtify archive
CVE-2024-49954 static_call: Replace pointless WARN_ON() in static_call_module_notify() txtify archive
CVE-2024-8176 Libexpat: expat: improper restriction of xml entity expansion depth in libexpat txtify archive
CVE-2024-55549 xsltGetInheritedNsList in libxslt before 1.1.43 has a use-after-free issue txtify archive
CVE-2025-1767 This CVE only affects Kubernetes clusters that utilize the in-tree gitRepo volume to clone git repositories from other pods within the same node. Since the in-tree gitRepo volume feature has been deprecated and will not receive security updates upstream, any cluster still using this feature remains vulnerable. txtify archive
CVE-2024-9407 Buildah: podman: improper input validation in bind-propagation option of dockerfile run --mount instruction txtify archive
CVE-2025-29768 Vim vulnerable to potential data loss with zip.vim and special crafted zip files txtify archive
CVE-2024-46832 MIPS: cevt-r4k: Don't call get_c0_compare_int if timer irq is installed txtify archive
CVE-2024-46757 Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. txtify archive
CVE-2022-32207 When curl < 7.84.0 saves cookies alt-svc and hsts data to local files it makes the operation atomic by finalizing the operation with a rename from a temporary name to the final target file name.In that rename operation it might accidentally *widen* the permissions for the target file leaving the updated file accessible to more users than intended. txtify archive
CVE-2022-27774 An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers. txtify archive
CVE-2022-27779 libcurl wrongly allows cookies to be set for Top Level Domains (TLDs) if thehost name is provided with a trailing dot.curl can be told to receive and send cookies. curl's "cookie engine" can bebuilt with or without [Public Suffix List](https://publicsuffix.org/)awareness. If PSL support not provided a more rudimentary check exists to atleast prevent cookies from being set on TLDs. This check was broken if thehost name in the URL uses a trailing dot.This can allow arbitrary sites to set cookies that then would get sent to adifferent and unrelated site or domain. txtify archive
CVE-2024-45720 Apache Subversion: Command line argument injection on Windows platforms txtify archive
CVE-2025-21861 mm/migrate_device: don't add folio to be freed to LRU in migrate_device_finalize() txtify archive
CVE-2022-27781 libcurl provides the `CURLOPT_CERTINFO` option to allow applications torequest details to be returned about a server's certificate chain.Due to an erroneous function a malicious server could make libcurl built withNSS get stuck in a never-ending busy-loop when trying to retrieve thatinformation. txtify archive
CVE-2024-46834 ethtool: fail closed if we can't get max channel used in indirection tables txtify archive
CVE-2025-21866 powerpc/code-patching: Fix KASAN hit by not flagging text patching area as VM_ALLOC txtify archive
CVE-2024-46756 Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. txtify archive
CVE-2022-27775 An information disclosure vulnerability exists in curl 7.65.0 to 7.82.0 are vulnerable that by using an IPv6 address that was in the connection pool but with a different zone id it could reuse a connection instead. txtify archive
CVE-2024-46758 Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. txtify archive
CVE-2024-0133 NVIDIA Container Toolkit 1.16.1 or earlier contains a vulnerability in the default mode of operation allowing a specially crafted container image to create empty files on the host file system. This does not impact use cases where CDI is used. A successful exploit of this vulnerability may lead to data tampering. txtify archive
CVE-2022-32208 When curl < 7.84.0 does FTP transfers secured by krb5 it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed and even allows it to inject data to the client. txtify archive
CVE-2022-27780 The curl URL parser wrongly accepts percent-encoded URL separators like '/'when decoding the host name part of a URL making it a *different* URL usingthe wrong host name when it is later retrieved.For example a URL like `http://example.com%2F127.0.0.1/` would be allowed bythe parser and get transposed into `http://example.com/127.0.0.1/`. This flawcan be used to circumvent filters checks and more. txtify archive
CVE-2024-49945 net/ncsi: Disable the ncsi work before freeing the associated structure txtify archive
CVE-2024-46841 btrfs: don't BUG_ON on ENOMEM from btrfs_lookup_extent_info() in walk_down_proc() txtify archive
CVE-2024-9632 Xorg-x11-server: tigervnc: heap-based buffer overflow privilege escalation vulnerability txtify archive
CVE-2024-8927 cgi.force_redirect configuration is bypassable due to the environment variable collision txtify archive
CVE-2024-46743 of/irq: Prevent device address out-of-bounds read in interrupt map walk txtify archive
CVE-2024-47191 pam_oath.so in oath-toolkit 2.6.7 through 2.6.11 before 2.6.12 allows root privilege escalation because in the context of PAM code running as root it mishandles usersfile access such as by calling fchown in the presence of a symlink. txtify archive
CVE-2024-46742 smb/server: fix potential null-ptr-deref of lease_ctx_info in smb2_open() txtify archive
CVE-2024-9341 Podman: buildah: cri-o: fips crypto-policy directory mounting issue in containers/common go library txtify archive
CVE-2024-50002 static_call: Handle module init failure correctly in static_call_del_module() txtify archive
CVE-2024-50084 net: microchip: vcap api: Fix memory leaks in vcap_api_encode_rule_test() txtify archive
CVE-2024-46749 Bluetooth: btnxpuart: Fix Null pointer dereference in btnxpuart_flush() txtify archive
CVE-2024-46811 drm/amd/display: Fix index may exceed array range within fpu_update_bw_bounding_box txtify archive
CVE-2024-47554 Apache Commons IO: Possible denial of service attack on untrusted input to XmlStreamReader txtify archive
CVE-2024-46738 VMCI: Fix use-after-free when removing resource in vmci_resource_remove() txtify archive
CVE-2013-4416 The Ocaml xenstored implementation (oxenstored) in Xen 4.1.x, 4.2.x, and 4.3.x allows local guest domains to cause a denial of service (domain shutdown) via a large message reply. txtify archive
CVE-2024-46810 drm/bridge: tc358767: Check if fully initialized before signalling HPD event via IRQ txtify archive
CVE-2024-50005 mac802154: Fix potential RCU dereference issue in mac802154_scan_worker txtify archive
CVE-2024-46687 btrfs: fix a use-after-free when hitting errors inside btrfs_submit_chunk() txtify archive
CVE-2024-39291 drm/amdgpu: Fix buffer size in gfx_v9_4_3_init_ cp_compute_microcode() and rlc_microcode() txtify archive
CVE-2024-45022 mm/vmalloc: fix page mapping if vm_area_alloc_pages() with high order fallback to order 0 txtify archive
CVE-2023-52920 bpf: support non-r10 register spill/fill to/from stack in precision tracking txtify archive
CVE-2024-49959 jbd2: stop waiting for space when jbd2_cleanup_journal_tail() returns error txtify archive
CVE-2024-42311 hfs: fix to initialize fields of hfs_inode_info after hfs_alloc_inode() txtify archive
CVE-2024-49968 ext4: filesystems without casefold feature cannot be mounted with siphash txtify archive
CVE-2024-42308 Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. txtify archive
CVE-2023-7256 Double-free in libpcap before 1.10.5 with remote packet capture support. txtify archive
CVE-2024-8006 NULL pointer dereference in libpcap before 1.10.5 with remote packet capture support txtify archive
CVE-2024-33877 HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5T__conv_struct_opt in H5Tconv.c. txtify archive
CVE-2024-33873 HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5D__scatter_mem in H5Dscatgath.c. txtify archive
CVE-2024-32624 HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__ref_mem_setnull in H5Tref.c (called from H5T__conv_ref in H5Tconv.c) resulting in the corruption of the instruction pointer. txtify archive
CVE-2024-26951 wireguard: netlink: check for dangling peer via is_dead instead of empty list txtify archive
CVE-2023-6864 Memory safety bugs present in Firefox 120, Firefox ESR 115.5, and Thunderbird 115.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 115.6, Thunderbird < 115.6, and Firefox < 121. txtify archive
CVE-2017-15042 An unintended cleartext issue exists in Go before 1.8.4 and 1.9.x before 1.9.1. RFC 4954 requires that, during SMTP, the PLAIN auth scheme must only be used on network connections secured with TLS. The original implementation of smtp.PlainAuth in Go 1.0 enforced this requirement, and it was documented to do so. In 2013, upstream issue #5184, this was changed so that the server may decide whether PLAIN is acceptable. The result is that if you set up a man-in-the-middle SMTP server that doesn't advertise STARTTLS and does advertise that PLAIN auth is OK, the smtp.PlainAuth implementation sends the username and password. txtify archive
CVE-2023-6856 The WebGL `DrawElementsInstanced` method was susceptible to a heap buffer overflow when used on systems with the Mesa VM driver. This issue could allow an attacker to perform remote code execution and sandbox escape. This vulnerability affects Firefox ESR < 115.6, Thunderbird < 115.6, and Firefox < 121. txtify archive
CVE-2025-24855 numbers.c in libxslt before 1.1.43 has a use-after-free because, in nested XPath evaluations, an XPath context node can be modified but never restored. This is related to xsltNumberFormatGetValue, xsltEvalXPathPredicate, xsltEvalXPathStringNs, and xsltComputeSortResultInternal. txtify archive
CVE-2025-71136 media: adv7842: Avoid possible out-of-bounds array accesses in adv7842_cp_log_status() txtify archive
CVE-2017-1000097 On Darwin, user's trust preferences for root certificates were not honored. If the user had a root certificate loaded in their Keychain that was explicitly not trusted, a Go program would still verify a connection using that root certificate. txtify archive
CVE-2025-71091 team: fix check for port enabled in team_queue_override_port_prio_changed() txtify archive
CVE-2025-68788 fsnotify: do not generate ACCESS/MODIFY events on child for special files txtify archive
CVE-2025-68815 net/sched: ets: Remove drr class from the active list if it changes to strict txtify archive
CVE-2025-68818 scsi: Revert "scsi: qla2xxx: Perform lockless command completion in abort path" txtify archive
CVE-2025-71097 ipv4: Fix reference count leak when using error routes with nexthop objects txtify archive
Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) txtify archive
Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) txtify archive
Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) txtify archive
CVE-2025-68800 mlxsw: spectrum_mr: Fix use-after-free when updating multicast route stats txtify archive
CVE-2020-0569 Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticated user to potentially enable denial of service via local access. txtify archive
CVE-2020-14378 An integer underflow in dpdk versions before 18.11.10 and before 19.11.5 in the `move_desc` function can lead to large amounts of CPU cycles being eaten up in a long running loop. An attacker could cause `move_desc` to get stuck in a 4,294,967,295-count iteration loop. Depending on how `vhost_crypto` is being used this could prevent other VMs or network tasks from being serviced by the busy DPDK lcore for an extended period. txtify archive
CVE-2025-68778 btrfs: don't log conflicting inode if it's a dir moved in the current transaction txtify archive
CVE-2025-71079 net: nfc: fix deadlock between nfc_unregister_device and rfkill_fop_write txtify archive
CVE-2025-68806 ksmbd: fix buffer validation by including null terminator size in EA length txtify archive
CVE-2021-33503 An issue was discovered in urllib3 before 1.26.5. When provided with a URL containing many @ characters in the authority component the authority regular expression exhibits catastrophic backtracking causing a denial of service if a URL were passed as a parameter or redirected to via an HTTP redirect. txtify archive
CVE-2022-42916 In curl before 7.86.0 the HSTS check could be bypassed to trick it into staying with HTTP. Using its HSTS support curl can be instructed to use HTTPS directly (instead of using an insecure cleartext HTTP step) even when HTTP is provided in the URL. This mechanism could be bypassed if the host name in the given URL uses IDN characters that get replaced with ASCII counterparts as part of the IDN conversion e.g. using the character UTF-8 U+3002 (IDEOGRAPHIC FULL STOP) instead of the common ASCII full stop of U+002E (.). The earliest affected version is 7.77.0 2021-05-26. txtify archive
CVE-2026-22801 LIBPNG has an integer truncation causing heap buffer over-read in png_image_write_* txtify archive
CVE-2026-22701 filelock Time-of-Check-Time-of-Use (TOCTOU) Symlink Vulnerability in SoftFileLock txtify archive
CVE-2025-60876 BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control bytes in the HTTP request-target (path/query), allowing the request line to be split and attacker-controlled headers to be injected. To preserve the HTTP/1.1 request-line shape METHOD SP request-target SP HTTP/1.1, a raw space (0x20) in the request-target must also be rejected (clients should use %20). txtify archive
CVE-2025-68291 mptcp: Initialise rcv_mss before calling tcp_send_active_reset() in mptcp_do_fastclose(). txtify archive
CVE-2022-43680 In libexpat through 2.4.9 there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations. txtify archive
CVE-2023-46343 In the Linux kernel before 6.5.9 there is a NULL pointer dereference in send_acknowledge in net/nfc/nci/spi.c. txtify archive
CVE-2023-51043 In the Linux kernel before 6.4.5 drivers/gpu/drm/drm_atomic.c has a use-after-free during a race condition between a nonblocking atomic commit and a driver unload. txtify archive
CVE-2024-23850 In btrfs_get_root_ref in fs/btrfs/disk-io.c in the Linux kernel through 6.7.1 there can be an assertion failure and crash because a subvolume can be read out too soon after its root item is inserted upon subvolume creation. txtify archive
CVE-2024-0775 Kernel: use-after-free while changing the mount option in __ext4_remount leading txtify archive
CVE-2023-51042 In the Linux kernel before 6.4.12 amdgpu_cs_wait_all_fences in drivers/gpu/drm/amd/amdgpu/amdgpu_cs.c has a fence use-after-free. txtify archive
CVE-2024-23848 In the Linux kernel through 6.7.1, there is a use-after-free in cec_queue_msg_fh, related to drivers/media/cec/core/cec-adap.c and drivers/media/cec/core/cec-api.c. txtify archive
CVE-2024-23851 copy_params in drivers/md/dm-ioctl.c in the Linux kernel through 6.7.1 can attempt to allocate more than INT_MAX bytes and crash because of a missing param_kernel->data_size check. This is related to ctl_ioctl. txtify archive
CVE-2023-6531 Kernel: gc's deletion of an skb races with unix_stream_read_generic() leading to uaf txtify archive
CVE-2024-23849 In rds_recv_track_latency in net/rds/af_rds.c in the Linux kernel through 6.7.1 there is an off-by-one error for an RDS_MSG_RX_DGRAM_TRACE_MAX comparison resulting in out-of-bounds access. txtify archive
CVE-2024-22705 An issue was discovered in ksmbd in the Linux kernel before 6.6.10. smb2_get_data_area_len in fs/smb/server/smb2misc.c can cause an smb_strndup_from_utf16 out-of-bounds access because the relationship between Name data and CreateContexts data is mishandled. txtify archive
CVE-2023-51258 A memory leak issue discovered in YASM v.1.3.0 allows a local attacker to cause a denial of service via the new_Token function in the modules/preprocs/nasm/nasm-pp:1512. txtify archive
CVE-2024-0741 An out of bounds write in ANGLE could have allowed an attacker to corrupt memory leading to a potentially exploitable crash. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7. txtify archive
CVE-2023-49569 Maliciously crafted Git server replies can lead to path traversal and RCE on go-git clients txtify archive
CVE-2024-0646 Kernel: ktls overwrites readonly memory pages when using function splice with a ktls socket as destination txtify archive
CVE-2024-0565 Kernel: cifs filesystem decryption improper input validation remote code execution vulnerability in function receive_encrypted_standard of client txtify archive
CVE-2024-0562 Kernel: use-after-free after removing device in wb_inode_writeback_end in mm/page-writeback.c txtify archive
CVE-2022-29526 Go before 1.17.10 and 1.18.x before 1.18.2 has Incorrect Privilege Assignment. When called with a non-zero flags parameter the Faccessat function could incorrectly report that a file is accessible. txtify archive
CVE-2022-32149 Denial of service via crafted Accept-Language header in golang.org/x/text/language txtify archive
CVE-2020-22217 Buffer overflow vulnerability in c-ares before 1_16_1 thru 1_17_0 via function ares_parse_soa_reply in ares_parse_soa_reply.c. txtify archive
CVE-2022-4904 A flaw was found in the c-ares package. The ares_set_sortlist is missing checks about the validity of the input string which allows a possible arbitrary length stack overflow. This issue may cause a denial of service or a limited impact on confidentiality and integrity. txtify archive
CVE-2021-44716 net/http in Go before 1.16.12 and 1.17.x before 1.17.5 allows uncontrolled memory consumption in the header canonicalization cache via HTTP/2 requests. txtify archive
CVE-2023-6040 An out-of-bounds access vulnerability involving netfilter was reported and fixed as: f1082dd31fe4 (netfilter: nf_tables: Reject tables of unsupported family) txtify archive
CVE-2023-46219 When saving HSTS data to an excessively long file name curl could end up removing all contents making subsequent requests using that file unaware of the HSTS status they should otherwise use. txtify archive
CVE-2020-18032 Buffer Overflow in Graphviz Graph Visualization Tools from commit ID f8b9e035 and earlier allows remote attackers to execute arbitrary code or cause a denial of service (application crash) by loading a crafted file into the "lib/common/shapes.c" component. txtify archive
CVE-2020-21528 A Segmentation Fault issue discovered in in ieee_segment function in outieee.c in nasm 2.14.03 and 2.15 allows remote attackers to cause a denial of service via crafted assembly file. txtify archive
CVE-2018-1129 A flaw was found in the way signature calculation was handled by cephx authentication protocol. An attacker having access to ceph cluster network who is able to alter the message payload was able to bypass signature checks done by cephx protocol. Ceph branches master mimic luminous and jewel are believed to be vulnerable. txtify archive
CVE-2021-38191 An issue was discovered in the tokio crate before 1.8.1 for Rust. Upon a JoinHandle::abort, a Task may be dropped in the wrong thread. txtify archive
CVE-2023-3600 During the worker lifecycle, a use-after-free condition could have occured, which could have led to a potentially exploitable crash. This vulnerability affects Firefox < 115.0.2, Firefox ESR < 115.0.2, and Thunderbird < 115.0.1. txtify archive
CVE-2020-15586 Go before 1.13.13 and 1.14.x before 1.14.5 has a data race in some net/http servers as demonstrated by the httputil.ReverseProxy Handler because it reads a request body and writes a response at the same time. txtify archive
CVE-2023-29405 Improper sanitization of LDFLAGS with embedded spaces in go command with cgo in cmd/go txtify archive
CVE-2024-20963 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H). txtify archive
CVE-2024-20965 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H). txtify archive
CVE-2024-20969 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 5.5 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H). txtify archive
CVE-2019-11358 jQuery before 3.4.0 as used in Drupal Backdrop CMS and other products mishandles jQuery.extend(true {} ...) because of Object.prototype pollution. If an unsanitized source object contained an enumerable __proto__ property it could extend the native Object.prototype. txtify archive
CVE-2024-20985 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: UDF). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H). txtify archive
CVE-2024-20967 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 5.5 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H). txtify archive
CVE-2024-20981 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H). txtify archive
CVE-2025-21959 netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree() txtify archive
CVE-2024-20973 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H). txtify archive
CVE-2023-37203 Insufficient validation in the Drag and Drop API in conjunction with social engineering, may have allowed an attacker to trick end-users into creating a shortcut to local system files. This could have been leveraged to execute arbitrary code. This vulnerability affects Firefox < 115. txtify archive
CVE-2024-20961 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H). txtify archive
CVE-2024-30251 Denial of service when trying to parse malformed POST requests in aiohttp txtify archive
CVE-2019-16168 In SQLite through 3.29.0 whereLoopAddBtreeIndex in sqlite3.c can crash a browser or other application because of missing validation of a sqlite_stat1 sz field aka a "severe division by zero in the query planner." txtify archive
CVE-2024-20971 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H). txtify archive
CVE-2024-20977 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H). txtify archive
CVE-2018-19416 An issue was discovered in sysstat 12.1.1. The remap_struct function in sa_common.c has an out-of-bounds read during a memmove call, as demonstrated by sadf. txtify archive
CVE-2022-48619 An issue was discovered in drivers/input/input.c in the Linux kernel before 5.17.10. An attacker can cause a denial of service (panic) because input_set_capability mishandles the situation in which an event code falls outside of a bitmap. txtify archive
CVE-2022-42915 curl before 7.86.0 has a double free. If curl is told to use an HTTP proxy for a transfer with a non-HTTP(S) URL it sets up the connection to the remote server by issuing a CONNECT request to the proxy and then tunnels the rest of the protocol through. An HTTP proxy might refuse this request (HTTP proxies often only allow outgoing connections to specific port numbers like 443 for HTTPS) and instead return a non-200 status code to the client. Due to flaws in the error/cleanup handling this could trigger a double free in curl if one of the following schemes were used in the URL for the transfer: dict gopher gophers ldap ldaps rtmp rtmps or telnet. The earliest affected version is 7.77.0. txtify archive
CVE-2022-2585 It was discovered that when exec'ing from a non-leader thread armed POSIX CPU timers would be left on a list but freed leading to a use-after-free. txtify archive
CVE-2010-4756 The glob implementation in the GNU C Library (aka glibc or libc6) allows remote authenticated users to cause a denial of service (CPU and memory consumption) via crafted glob expressions that do not match any pathnames, as demonstrated by glob expressions in STAT commands to an FTP daemon, a different vulnerability than CVE-2010-2632. txtify archive
CVE-2019-14203 An issue was discovered in Das U-Boot through 2019.07. There is a stack-based buffer overflow in this nfs_handler reply helper function: nfs_mount_reply. txtify archive
CVE-2023-48161 Buffer Overflow vulnerability in GifLib Project GifLib v.5.2.1 allows a local attacker to obtain sensitive information via the DumpSCreen2RGB function in gif2rgb.c txtify archive
CVE-2023-45857 An issue discovered in Axios 1.5.1 inadvertently reveals the confidential XSRF-TOKEN stored in cookies by including it in the HTTP header X-XSRF-TOKEN for every request made to any host allowing attackers to view sensitive information. txtify archive
CVE-2022-46457 NASM v2.16 was discovered to contain a segmentation violation in the component ieee_write_file at /output/outieee.c. txtify archive
CVE-2024-57256 An integer overflow in ext4fs_read_symlink in Das U-Boot before 2025.01-rc1 occurs for zalloc (adding one to an le32 variable) via a crafted ext4 filesystem with an inode size of 0xffffffff, resulting in a malloc of zero and resultant memory overwrite. txtify archive
CVE-2023-39742 giflib v5.2.1 was discovered to contain a segmentation fault via the component getarg.c. txtify archive
CVE-2019-16707 Hunspell 1.7.0 has an invalid read operation in SuggestMgr::leftcommonsubstring in suggestmgr.cxx. txtify archive
CVE-2018-20505 SQLite 3.25.2 when queries are run on a table with a malformed PRIMARY KEY allows remote attackers to cause a denial of service (application crash) by leveraging the ability to run arbitrary SQL statements (such as in certain WebSQL use cases). txtify archive
CVE-2022-28506 There is a heap-buffer-overflow in GIFLIB 5.2.1 function DumpScreen2RGB() in gif2rgb.c:298:45. txtify archive
CVE-2019-14193 An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with an unvalidated length at nfs_readlink_reply, in the "if" block after calculating the new path length. txtify archive
CVE-2022-24999 qs before 6.10.3, as used in Express before 4.17.3 and other products, allows attackers to cause a Node process hang for an Express application because an __ proto__ key can be used. In many typical Express use cases, an unauthenticated remote attacker can place the attack payload in the query string of the URL that is used to visit the application, such as a[__proto__]=b&a[__proto__]&a[length]=100000000. The fix was backported to qs 6.9.7, 6.8.3, 6.7.3, 6.6.1, 6.5.3, 6.4.1, 6.3.3, and 6.2.4 (and therefore Express 4.17.3, which has "deps: qs@6.9.7" in its release description, is not vulnerable). txtify archive
CVE-2020-10941 Arm Mbed TLS before 2.16.5 allows attackers to obtain sensitive information (an RSA private key) by measuring cache usage during an import. txtify archive
CVE-2019-18222 The ECDSA signature implementation in ecdsa.c in Arm Mbed Crypto 2.1 and Mbed TLS through 2.19.1 does not reduce the blinded scalar before computing the inverse, which allows a local attacker to recover the private key via side-channel attacks. txtify archive
CVE-2023-42365 A use-after-free vulnerability was discovered in BusyBox v.1.36.1 via a crafted awk pattern in the awk.c copyvar function. txtify archive
CVE-2012-6708 jQuery before 1.9.0 is vulnerable to Cross-site Scripting (XSS) attacks. The jQuery(strInput) function does not differentiate selectors from HTML in a reliable fashion. In vulnerable versions jQuery determined whether the input was HTML by looking for the '<' character anywhere in the string giving attackers more flexibility when attempting to construct a malicious payload. In fixed versions jQuery only deems the input to be HTML if it explicitly starts with the '<' character limiting exploitability only to attackers who can control the beginning of a string which is far less common. txtify archive
CVE-2022-33967 squashfs filesystem implementation of U-Boot versions from v2020.10-rc2 to v2022.07-rc5 contains a heap-based buffer overflow vulnerability due to a defect in the metadata reading process. Loading a specially crafted squashfs image may lead to a denial-of-service (DoS) condition or arbitrary code execution. txtify archive
CVE-2023-42364 A use-after-free vulnerability in BusyBox v.1.36.1 allows attackers to cause a denial of service via a crafted awk pattern in the awk.c evaluate function. txtify archive
CVE-2022-45410 When a ServiceWorker intercepted a request with <code>FetchEvent</code>, the origin of the request was lost after the ServiceWorker took ownership of it. This had the effect of negating SameSite cookie protections. This was addressed in the spec and then in browsers. This vulnerability affects Firefox ESR < 102.5, Thunderbird < 102.5, and Firefox < 107. txtify archive
CVE-2025-38300 crypto: sun8i-ce-cipher - fix error handling in sun8i_ce_cipher_prepare() txtify archive
CVE-2025-27810 Mbed TLS before 2.28.10 and 3.x before 3.6.3, in some cases of failed memory allocation or hardware errors, uses uninitialized stack memory to compose the TLS Finished message, potentially leading to authentication bypasses such as replays. txtify archive
CVE-2025-60753 An issue was discovered in libarchive bsdtar before version 3.8.1 in function apply_substitution in file tar/subst.c when processing crafted -s substitution rules. This can cause unbounded memory allocation and lead to denial of service (Out-of-Memory crash). txtify archive
CVE-2022-27536 Certificate.Verify in crypto/x509 in Go 1.18.x before 1.18.1 can be caused to panic on macOS when presented with certain malformed certificates. This allows a remote TLS server to cause a TLS client to panic. txtify archive
CVE-2024-50613 libsndfile through 1.2.2 has a reachable assertion, that may lead to application exit, in mpeg_l3_encode.c mpeg_l3_encoder_close. txtify archive
CVE-2023-42366 A heap-buffer-overflow was discovered in BusyBox v.1.36.1 in the next_token function at awk.c:1159. txtify archive
CVE-2025-53547 Helm Chart Dependency Updating With Malicious Chart.yaml Content And Symlink Can Lead To Code Execution txtify archive
CVE-2019-14197 An issue was discovered in Das U-Boot through 2019.07. There is a read of out-of-bounds data at nfs_read_reply. txtify archive
CVE-2024-50614 TinyXML2 through 10.0.0 has a reachable assertion for UINT_MAX/16, that may lead to application exit, in tinyxml2.cpp XMLUtil::GetCharacterRef. txtify archive
CVE-2020-36475 An issue was discovered in Mbed TLS before 2.25.0 (and before 2.16.9 LTS and before 2.7.18 LTS). The calculations performed by mbedtls_mpi_exp_mod are not limited; thus, supplying overly large parameters could lead to denial of service when generating Diffie-Hellman key pairs. txtify archive
CVE-2024-50615 TinyXML2 through 10.0.0 has a reachable assertion for UINT_MAX/digit, that may lead to application exit, in tinyxml2.cpp XMLUtil::GetCharacterRef. txtify archive
CVE-2020-36477 An issue was discovered in Mbed TLS before 2.24.0. The verification of X.509 certificates when matching the expected common name (the cn argument of mbedtls_x509_crt_verify) with the actual certificate name is mishandled: when the subjecAltName extension is present, the expected name is compared to any name in that extension regardless of its type. This means that an attacker could impersonate a 4-byte or 16-byte domain by getting a certificate for the corresponding IPv4 or IPv6 address (this would require the attacker to control that IP address, though). txtify archive
CVE-2023-6816 Xorg-x11-server: heap buffer overflow in devicefocusevent and procxiquerypointer txtify archive
CVE-2023-28154 Webpack 5 before 5.76.0 does not avoid cross-realm object access. ImportParserPlugin.js mishandles the magic comment feature. An attacker who controls a property of an untrusted object can obtain access to the real global object. txtify archive
CVE-2010-0291 The Linux kernel before 2.6.32.4 allows local users to gain privileges or cause a denial of service (panic) by calling the (1) mmap or (2) mremap function, aka the "do_mremap() mess" or "mremap/mmap mess." txtify archive
CVE-2011-4969 Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inject arbitrary web script or HTML via a crafted tag. txtify archive
CVE-2022-33103 Das U-Boot from v2020.10 to v2022.07-rc3 was discovered to contain an out-of-bounds write via the function sqfs_readdir(). txtify archive
CVE-2025-38249 ALSA: usb-audio: Fix out-of-bounds read in snd_usb_get_audioformat_uac3() txtify archive
CVE-2020-36424 An issue was discovered in Arm Mbed TLS before 2.24.0. An attacker can recover a private key (for RSA or static Diffie-Hellman) via a side-channel attack against generation of base blinding/unblinding values. txtify archive
CVE-2023-45853 MiniZip in zlib through 1.3 has an integer overflow and resultant heap-based buffer overflow in zipOpenNewFileInZip4_64 via a long filename comment or extra field. NOTE: MiniZip is not a supported part of the zlib product. NOTE: pyminizip through 0.2.6 is also vulnerable because it bundles an affected zlib version and exposes the applicable MiniZip code through its compress API. txtify archive
CVE-2024-31755 cJSON v1.7.17 was discovered to contain a segmentation violation which can trigger through the second parameter of function cJSON_SetValuestring at cJSON.c. txtify archive
CVE-2025-38245 atm: Release atm_dev_mutex after removing procfs in atm_dev_deregister(). txtify archive
CVE-2024-42040 Buffer Overflow vulnerability in the net/bootp.c in DENEX U-Boot from its initial commit in 2002 (3861aa5) up to today on any platform allows an attacker on the local network to leak memory from four up to 32 bytes of memory stored behind the packet to the network depending on the later use of DHCP-provided parameters via crafted DHCP responses. txtify archive
CVE-2025-37936 perf/x86/intel: KVM: Mask PEBS_ENABLE loaded for guest with vCPU's value. txtify archive
CVE-2025-64436 KubeVirt Excessive Role Permissions Could Enable Unauthorized VMI Migrations Between Nodes txtify archive
CVE-2024-42068 bpf: Take return from set_memory_ro() into account with bpf_prog_lock_ro() txtify archive
CVE-2025-23144 backlight: led_bl: Hold led_access lock when calling led_sysfs_disable() txtify archive
CVE-2024-57911 iio: dummy: iio_simply_dummy_buffer: fix information leak in triggered buffer txtify archive
CVE-2019-14200 An issue was discovered in Das U-Boot through 2019.07. There is a stack-based buffer overflow in this nfs_handler reply helper function: rpc_lookup_reply. txtify archive
CVE-2025-37973 wifi: cfg80211: fix out-of-bounds access during multi-link element defragmentation txtify archive
CVE-2025-38258 mm/damon/sysfs-schemes: free old damon_sysfs_scheme_filter->memcg_path on write txtify archive
CVE-2019-14198 An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with a failed length check at nfs_read_reply when calling store_block in the NFSv3 case. txtify archive
CVE-2025-37758 ata: pata_pxa: Fix potential NULL pointer dereference in pxa_ata_probe() txtify archive
CVE-2024-32650 Rustls vulnerable to an infinite loop in rustls::conn::ConnectionCommon::complete_io() with proper client input txtify archive
CVE-2022-30790 Das U-Boot 2022.01 has a Buffer Overflow, a different issue than CVE-2022-30552. txtify archive
CVE-2023-28155 The Request package through 2.88.1 for Node.js allows a bypass of SSRF mitigations via an attacker-controller server that does a cross-protocol redirect (HTTP to HTTPS or HTTPS to HTTP). NOTE: This vulnerability only affects products that are no longer supported by the maintainer. txtify archive
CVE-2024-57798 drm/dp_mst: Ensure mst_primary pointer is valid in drm_dp_mst_handle_up_req() txtify archive
CVE-2019-14192 An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy when parsing a UDP packet due to a net_process_received_packet integer underflow during an nc_input_packet call. txtify archive
CVE-2023-26136 Versions of the package tough-cookie before 4.1.3 are vulnerable to Prototype Pollution due to improper handling of Cookies when using CookieJar in rejectPublicSuffixes=false mode. This issue arises from the manner in which the objects are initialized. txtify archive
CVE-2024-49962 ACPICA: check null return of ACPI_ALLOCATE_ZEROED() in acpi_db_convert_to_package() txtify archive
CVE-2021-38578 Existing CommBuffer checks in SmmEntryPoint will not catch underflow when computing BufferSize. txtify archive
CVE-2023-44270 An issue was discovered in PostCSS before 8.4.31. The vulnerability affects linters using PostCSS to parse external untrusted CSS. An attacker can prepare CSS in such a way that it will contains parts parsed by PostCSS as a CSS comment. After processing by PostCSS, it will be included in the PostCSS output in CSS nodes (rules, properties) despite being included in a comment. txtify archive
CVE-2025-37742 jfs: Fix uninit-value access of imap allocated in the diMount() function txtify archive
CVE-2020-36478 An issue was discovered in Mbed TLS before 2.25.0 (and before 2.16.9 LTS and before 2.7.18 LTS). A NULL algorithm parameters entry looks identical to an array of REAL (size zero) and thus the certificate is considered valid. However, if the parameters do not match in any way, then the certificate should be considered invalid. txtify archive
CVE-2024-49985 i2c: stm32f7: Do not prepare/unprepare clock during runtime suspend/resume txtify archive
CVE-2025-32023 Redis allows out of bounds writes in hyperloglog commands leading to RCE txtify archive
CVE-2024-57257 A stack consumption issue in sqfs_size in Das U-Boot before 2025.01-rc1 occurs via a crafted squashfs filesystem with deep symlink nesting. txtify archive
CVE-2025-38237 media: platform: exynos4-is: Add hardware sync wait to fimc_is_hw_change_mode() txtify archive
CVE-2024-50015 ext4: dax: fix overflowing extents beyond inode size when partially writing txtify archive
CVE-2025-27809 Mbed TLS before 2.28.10 and 3.x before 3.6.3, on the client side, accepts servers that have trusted certificates for arbitrary hostnames unless the TLS client application calls mbedtls_ssl_set_hostname. txtify archive
CVE-2025-37810 usb: dwc3: gadget: check that event count does not exceed event buffer length txtify archive
CVE-2023-45142 OpenTelemetry-Go Contrib has DoS vulnerability in otelhttp due to unbound cardinality metrics txtify archive
CVE-2019-14194 An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with a failed length check at nfs_read_reply when calling store_block in the NFSv2 case. txtify archive
CVE-2024-42070 netfilter: nf_tables: fully validate NFT_DATA_VALUE on store to data registers txtify archive
CVE-2019-14201 An issue was discovered in Das U-Boot through 2019.07. There is a stack-based buffer overflow in this nfs_handler reply helper function: nfs_lookup_reply. txtify archive
CVE-2025-38104 drm/amdgpu: Replace Mutex with Spinlock for RLCG register access to avoid Priority Inversion in SRIOV txtify archive
CVE-2023-39319 Improper handling of special tags within script contexts in html/template txtify archive
CVE-2024-42228 drm/amdgpu: Using uninitialized value *size when calling amdgpu_vce_cs_reloc txtify archive
CVE-2019-14199 An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy when parsing a UDP packet due to a net_process_received_packet integer underflow during an *udp_packet_handler call. txtify archive
CVE-2025-68756 block: Use RCU in blk_mq_[un]quiesce_tagset() instead of set->tag_list_lock txtify archive
CVE-2024-57258 Integer overflows in memory allocation in Das U-Boot before 2025.01-rc1 occur for a crafted squashfs filesystem via sbrk, via request2size, or because ptrdiff_t is mishandled on x86_64. txtify archive
CVE-2025-38227 media: vidtv: Terminating the subsequent process of initialization failure txtify archive
CVE-2023-51781 An issue was discovered in the Linux kernel before 6.6.8. atalk_ioctl in net/appletalk/ddp.c has a use-after-free because of an atalk_recvmsg race condition. txtify archive
CVE-2024-57926 drm/mediatek: Set private->all_drm_private[i]->drm to NULL if mtk_drm_bind returns err txtify archive
CVE-2024-57259 sqfs_search_dir in Das U-Boot before 2025.01-rc1 exhibits an off-by-one error and resultant heap memory corruption for squashfs directory listing because the path separator is not considered in a size calculation. txtify archive
CVE-2025-23140 misc: pci_endpoint_test: Avoid issue of interrupts remaining after request_irq error txtify archive
CVE-2025-61099 FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the opaque_info_detail function at ospf_opaque.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LS Update packet. txtify archive
CVE-2023-51782 An issue was discovered in the Linux kernel before 6.6.8. rose_ioctl in net/rose/af_rose.c has a use-after-free because of a rose_accept race condition. txtify archive
CVE-2024-12705 DNS-over-HTTPS implementation suffers from multiple issues under heavy query load txtify archive
CVE-2024-3096 PHP function password_verify can erroneously return true when argument contains NUL txtify archive
CVE-2025-61104 FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_unknown_tlv function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet. txtify archive
CVE-2021-28216 BootPerformanceTable pointer is read from an NVRAM variable in PEI. Recommend setting PcdFirmwarePerformanceDataTableS3Support to FALSE. txtify archive
CVE-2023-45287 Before Go 1.20, the RSA based key exchange methods in crypto/tls may exhibit a timing side channel txtify archive
CVE-2022-46392 An issue was discovered in Mbed TLS before 2.28.2 and 3.x before 3.3.0. An adversary with access to precise enough information about memory accesses (typically an untrusted operating system attacking a secure enclave) can recover an RSA private key after observing the victim performing a single private-key operation if the window size (MBEDTLS_MPI_WINDOW_SIZE) used for the exponentiation is 3 or smaller. txtify archive
CVE-2025-38219 f2fs: prevent kernel warning due to negative i_nlink from corrupted image txtify archive
CVE-2025-61100 FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the ospf_opaque_lsa_dump function at ospf_opaque.c. This vulnerability allows attackers to cause a Denial of Service (DoS) under specific malformed LSA conditions. txtify archive
CVE-2024-57255 An integer overflow in sqfs_resolve_symlink in Das U-Boot before 2025.01-rc1 occurs via a crafted squashfs filesystem with an inode size of 0xffffffff, resulting in a malloc of zero and resultant memory overwrite. txtify archive
CVE-2025-61101 FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_rmt_itf_addr function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet. txtify archive
CVE-2024-50602 An issue was discovered in libexpat before 2.6.4. There is a crash within the XML_ResumeParser function because XML_StopParser can stop/suspend an unstarted parser. txtify archive
CVE-2025-69277 libsodium before ad3004e, in atypical use cases involving certain custom cryptography or untrusted data to crypto_core_ed25519_is_valid_point, mishandles checks for whether an elliptic curve point is valid because it sometimes allows points that aren't in the main cryptographic group. txtify archive
CVE-2025-23141 KVM: x86: Acquire SRCU in KVM_GET_MP_STATE to protect guest memory accesses txtify archive
CVE-2023-3341 A stack exhaustion flaw in control channel code may cause named to terminate unexpectedly txtify archive
CVE-2020-36422 An issue was discovered in Arm Mbed TLS before 2.23.0. A side channel allows recovery of an ECC private key, related to mbedtls_ecp_check_pub_priv, mbedtls_pk_parse_key, mbedtls_pk_parse_keyfile, mbedtls_ecp_mul, and mbedtls_ecp_mul_restartable. txtify archive
CVE-2024-31584 Pytorch before v2.2.0 has an Out-of-bounds Read vulnerability via the component torch/csrc/jit/mobile/flatbuffer_loader.cpp. txtify archive
CVE-2020-13630 ext/fts3/fts3.c in SQLite before 3.32.0 has a use-after-free in fts3EvalNextRow related to the snippet feature. txtify archive
CVE-2023-45284 Incorrect detection of reserved device names on Windows in path/filepath txtify archive
CVE-2023-6337 Vault May be Vulnerable to a Denial of Service Through Memory Exhaustion When Handling Large HTTP Requests txtify archive
CVE-2025-58160 Tracing logging user input may result in poisoning logs with ANSI escape sequences txtify archive
CVE-2025-23084 A vulnerability has been identified in Node.js, specifically affecting the handling of drive names in the Windows environment. Certain Node.js functions do not treat drive names as special on Windows. As a result, although Node.js assumes a relative path, it actually refers to the root directory. On Windows, a path that does not start with the file separator is treated as relative to the current directory. This vulnerability affects Windows users of `path.join` API. txtify archive
CVE-2021-44732 Mbed TLS before 3.0.1 has a double free in certain out-of-memory conditions, as demonstrated by an mbedtls_ssl_set_session() failure. txtify archive
CVE-2023-42363 A use-after-free vulnerability was discovered in xasprintf function in xfuncs_printf.c:344 in BusyBox v.1.36.1. txtify archive
CVE-2024-3177 Bypassing mountable secrets policy imposed by the ServiceAccount admission plugin txtify archive
CVE-2023-4580 Push notifications stored on disk in private browsing mode were not being encrypted potentially allowing the leak of sensitive information. This vulnerability affects Firefox < 117, Firefox ESR < 115.2, and Thunderbird < 115.2. txtify archive
CVE-2020-36425 An issue was discovered in Arm Mbed TLS before 2.24.0. It incorrectly uses a revocationDate check when deciding whether to honor certificate revocation via a CRL. In some situations, an attacker can exploit this by changing the local clock. txtify archive
CVE-2022-3650 A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root in the form of a crash dump and dump privileged information. txtify archive
CVE-2022-30767 nfs_lookup_reply in net/nfs.c in Das U-Boot through 2022.04 (and through 2022.07-rc2) has an unbounded memcpy with a failed length check, leading to a buffer overflow. NOTE: this issue exists because of an incorrect fix for CVE-2019-14196. txtify archive
CVE-2025-37739 f2fs: fix to avoid out-of-bounds access in f2fs_truncate_inode_blocks() txtify archive
CVE-2025-38183 net: lan743x: fix potential out-of-bounds write in lan743x_ptp_io_event_clock_get() txtify archive
CVE-2023-0664 A flaw was found in the QEMU Guest Agent service for Windows. A local unprivileged user may be able to manipulate the QEMU Guest Agent's Windows installer via repair custom actions to elevate their privileges on the system. txtify archive
CVE-2025-38231 nfsd: Initialize ssc before laundromat_work to prevent NULL dereference txtify archive
CVE-2024-57254 An integer overflow in sqfs_inode_size in Das U-Boot before 2025.01-rc1 occurs in the symlink size calculation via a crafted squashfs filesystem. txtify archive
CVE-2024-0752 A use-after-free crash could have occurred on macOS if a Firefox update were being applied on a very busy system. This could have resulted in an exploitable crash. This vulnerability affects Firefox < 122. txtify archive
CVE-2025-61105 FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_link_info function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet. txtify archive
CVE-2024-27316 Apache HTTP Server: HTTP/2 DoS by memory exhaustion on endless continuation frames txtify archive
CVE-2022-25881 This affects versions of the package http-cache-semantics before 4.1.1. The issue can be exploited via malicious request header values sent to a server when that server reads the cache policy from the request using this library. txtify archive
CVE-2024-39495 greybus: Fix use-after-free bug in gb_interface_release due to race condition. txtify archive
CVE-2025-61102 FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_adj_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet. txtify archive
CVE-2022-34835 In Das U-Boot through 2022.07-rc5, an integer signedness error and resultant stack-based buffer overflow in the "i2c md" command enables the corruption of the return address pointer of the do_i2c_md function. txtify archive
CVE-2024-31744 In Jasper 4.2.2 the jpc_streamlist_remove function in src/libjasper/jpc/jpc_dec.c:2407 has an assertion failure vulnerability allowing attackers to cause a denial of service attack through a specific image file. txtify archive
CVE-2023-29404 Improper handling of non-optional LDFLAGS in go command with cgo in cmd/go txtify archive
CVE-2024-45336 Sensitive headers incorrectly sent after cross-domain redirect in net/http txtify archive
CVE-2025-37787 net: dsa: mv88e6xxx: avoid unregistering devlink regions which were never registered txtify archive
CVE-2022-25883 Versions of the package semver before 7.5.2 are vulnerable to Regular Expression Denial of Service (ReDoS) via the function new Range when untrusted user data is provided as a range. txtify archive
CVE-2025-61107 FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_pref_pref_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LSA Update packet. txtify archive
CVE-2024-1737 BIND's database will be slow if a very large number of RRs exist at the same name txtify archive
CVE-2019-14204 An issue was discovered in Das U-Boot through 2019.07. There is a stack-based buffer overflow in this nfs_handler reply helper function: nfs_umountall_reply. txtify archive
CVE-2025-61106 FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_pref_pref_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet. txtify archive
CVE-2023-28321 An improper certificate validation vulnerability exists in curl <v8.1.0 in the way it supports matching of wildcard patterns when listed as "Subject Alternative Name" in TLS server certificates. curl can be built to use its own name matching function for TLS rather than one provided by a TLS library. This private wildcard matching function would match IDN (International Domain Name) hosts incorrectly and could as a result accept patterns that otherwise should mismatch. IDN hostnames are converted to puny code before used for certificate checks. Puny coded names always start with `xn--` and should not be allowed to pattern match but the wildcard check in curl could still check for `x*` which would match even though the IDN name most likely contained nothing even resembling an `x`. txtify archive
CVE-2017-7718 hw/display/cirrus_vga_rop.h in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (out-of-bounds read and QEMU process crash) via vectors related to copying VGA data via the cirrus_bitblt_rop_fwd_transp_ and cirrus_bitblt_rop_fwd_ functions. txtify archive
CVE-2024-49894 drm/amd/display: Fix index out of bounds in degamma hardware format translation txtify archive
CVE-2025-61103 FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_lan_adj_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet. txtify archive
CVE-2023-29932 llvm-project commit fdbc55a5 was discovered to contain a segmentation fault via the component mlir::IROperand<mlir::OpOperand. txtify archive
CVE-2024-45026 s390/dasd: fix error recovery leading to data corruption on ESE devices txtify archive
CVE-2019-14196 An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with a failed length check at nfs_lookup_reply. txtify archive
CVE-2020-36476 An issue was discovered in Mbed TLS before 2.24.0 (and before 2.16.8 LTS and before 2.7.17 LTS). There is missing zeroization of plaintext buffers in mbedtls_ssl_read to erase unused application data from memory. txtify archive
CVE-2024-49867 btrfs: wait for fixup workers before stopping cleaner kthread during umount txtify archive
CVE-2022-49043 xmlXIncludeAddNode in xinclude.c in libxml2 before 2.11.0 has a use-after-free. txtify archive
CVE-2025-68724 crypto: asymmetric_keys - prevent overflow in asymmetric_key_generate_id txtify archive
CVE-2024-45015 drm/msm/dpu: move dpu_encoder's connector assignment to atomic_enable() txtify archive
CVE-2024-10846 Excessive Platform Resource Consumption within a Loop when unmarshalling Compose file having recursive loop txtify archive
CVE-2019-14202 An issue was discovered in Das U-Boot through 2019.07. There is a stack-based buffer overflow in this nfs_handler reply helper function: nfs_readlink_reply. txtify archive
CVE-2024-46674 usb: dwc3: st: fix probed platform device ref count on probe error path txtify archive