Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-11-05 CVE-2024-50333 Unspecified vulnerability in Salesagility Suitecrm
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application.
network
low complexity
salesagility
8.8
2024-11-05 CVE-2024-50335 Cross-site Scripting vulnerability in Salesagility Suitecrm
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application.
network
low complexity
salesagility CWE-79
5.4
2024-11-05 CVE-2024-51493 Missing Authentication for Critical Function vulnerability in Octoprint
OctoPrint provides a web interface for controlling consumer 3D printers.
network
low complexity
octoprint CWE-306
6.5
2024-11-05 CVE-2024-51740 Server-Side Request Forgery (SSRF) vulnerability in Combodo Itop
Combodo iTop is a simple, web based IT Service Management tool.
network
low complexity
combodo CWE-918
8.8
2024-11-05 CVE-2024-50098 Unspecified vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Set SDEV_OFFLINE when UFS is shut down There is a history of deadlock if reboot is performed at the beginning of booting.
local
low complexity
linux
5.5
2024-11-05 CVE-2024-50099 Unspecified vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: arm64: probes: Remove broken LDR (literal) uprobe support The simulate_ldr_literal() and simulate_ldrsw_literal() functions are unsafe to use for uprobes.
local
low complexity
linux
5.5
2024-11-05 CVE-2024-50100 Unspecified vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: USB: gadget: dummy-hcd: Fix "task hung" problem The syzbot fuzzer has been encountering "task hung" problems ever since the dummy-hcd driver was changed to use hrtimers instead of regular timers.
local
low complexity
linux
5.5
2024-11-05 CVE-2024-50101 Unspecified vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Fix incorrect pci_for_each_dma_alias() for non-PCI devices Previously, the domain_context_clear() function incorrectly called pci_for_each_dma_alias() to set up context entries for non-PCI devices. This could lead to kernel hangs or other unexpected behavior. Add a check to only call pci_for_each_dma_alias() for PCI devices.
local
low complexity
linux
5.5
2024-11-05 CVE-2024-50102 Information Exposure Through Discrepancy vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: x86: fix user address masking non-canonical speculation issue It turns out that AMD has a "Meltdown Lite(tm)" issue with non-canonical accesses in kernel space.
local
low complexity
linux CWE-203
5.5
2024-11-05 CVE-2024-50103 NULL Pointer Dereference vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: Fix NULL Dereference in asoc_qcom_lpass_cpu_platform_probe() A devm_kzalloc() in asoc_qcom_lpass_cpu_platform_probe() could possibly return NULL pointer.
local
low complexity
linux CWE-476
5.5