CWE-126 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Kategori: CWE-126 - CVE listesi
CWE 141 kayıt
Medium CVSS: 5.5

CVE-2024-43056

Transient DOS during hypervisor virtual I/O operation in a virtual machine.
Medium CVSS: 4.0

CVE-2024-57970

libarchive through 3.7.7 has a heap-based buffer over-read in header_gnu_longlink in archive_read_support_format_tar.c via a TAR archive because it mishandles truncation in the middle of a GNU long linkname.
High CVSS: 7.6

CVE-2024-12011

A CWE-126 “Buffer Over-read” was discovered affecting the 130.8005 TCP/IP Gateway running firmware version 12h. The information disclosure can be triggered by leveraging a memory leak affecting the web server. A remote unauthenticated attac…
High CVSS: 8.2

CVE-2024-49839

Memory corruption during management frame processing due to mismatch in T2LM info element.
High CVSS: 8.2

CVE-2024-49838

Information disclosure while parsing the OCI IE with invalid length.
High CVSS: 7.8

CVE-2024-45561

Memory corruption while handling IOCTL call from user-space to set latency level.
Medium CVSS: 6.1

CVE-2024-38417

Information disclosure while processing IO control commands.
Medium CVSS: 6.1

CVE-2024-38416

Information disclosure during audio playback.
Medium CVSS: 6.1

CVE-2024-38414

Information disclosure while processing information on firmware image during core initialization.
High CVSS: 7.5

CVE-2024-38404

Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in modem.
High CVSS: 7.5

CVE-2025-21277

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
High CVSS: 7.8

CVE-2025-21271

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
High CVSS: 8.8

CVE-2025-21176

.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability
Medium CVSS: 5.5

CVE-2024-45559

Transient DOS can occur when GVM sends a specific message type to the Vdev-FastRPC backend.
High CVSS: 7.5

CVE-2024-45558

Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.
High CVSS: 7.8

CVE-2024-45548

Memory corruption while processing FIPS encryption or decryption validation functionality IOCTL call.
High CVSS: 7.8

CVE-2024-45546

Memory corruption while processing FIPS encryption or decryption IOCTL call invoked from user-space.
Medium CVSS: 6.1

CVE-2024-43063

information disclosure while invoking the mailbox read API.
Medium CVSS: 6.1

CVE-2024-33067

Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound model driver.
Medium CVSS: 6.8

CVE-2024-33061

Information disclosure while processing IOCTL call made for releasing a trusted VM process release or opening a channel without initializing the process.