Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-08-14 CVE-2024-41835 Out-of-bounds Read vulnerability in Adobe products
Acrobat Reader versions 20.005.30636, 24.002.20965, 24.002.20964, 24.001.30123 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe CWE-125
5.5
2024-08-14 CVE-2024-41854 Out-of-bounds Read vulnerability in Adobe Indesign
InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe CWE-125
5.5
2024-08-14 CVE-2024-41866 NULL Pointer Dereference vulnerability in Adobe Indesign
InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to an application denial-of-service (DoS).
local
low complexity
adobe CWE-476
5.5
2024-08-14 CVE-2024-42259 Incorrect Calculation of Buffer Size vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: drm/i915/gem: Fix Virtual Memory mapping boundaries calculation Calculating the size of the mapped area as the lesser value between the requested size and the actual size does not consider the partial mapping offset.
local
low complexity
linux CWE-131
5.5
2024-08-14 CVE-2024-7347 Out-of-bounds Read vulnerability in F5 Nginx Open Source and Nginx Plus
NGINX Open Source and NGINX Plus have a vulnerability in the ngx_http_mp4_module, which might allow an attacker to over-read NGINX worker memory resulting in its termination, using a specially crafted mp4 file.
local
high complexity
f5 CWE-125
4.7
2024-08-14 CVE-2024-24580 Unspecified vulnerability in Intel products
Improper conditions check in some Intel(R) Data Center GPU Max Series 1100 and 1550 products may allow a privileged user to potentially enable denial of service via local access.
local
low complexity
intel
5.5
2024-08-14 CVE-2024-25562 Unspecified vulnerability in Intel Distribution for GDB and Oneapi Base Toolkit
Improper buffer restrictions in some Intel(R) Distribution for GDB software before version 2024.0.1 may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel
6.6
2024-08-14 CVE-2024-27461 Incorrect Default Permissions vulnerability in Intel Memory and Storage Tool GUI
Incorrect default permissions in software installer for Intel(R) MAS (GUI) may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-276
5.5
2024-08-14 CVE-2024-28050 Unspecified vulnerability in Intel ARC a Graphics and Iris XE Graphics
Improper access control in some Intel(R) Arc(TM) & Iris(R) Xe Graphics software before version 31.0.101.4824 may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel
5.5
2024-08-14 CVE-2024-7790 Cross-site Scripting vulnerability in Stitionai Devika
A stored cross site scripting vulnerabilities exists in DevikaAI from commit 6acce21fb08c3d1123ef05df6a33912bf0ee77c2 onwards via improperly decoded user input.
network
low complexity
stitionai CWE-79
5.4