CWE-823 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Kategori: CWE-823 - CVE listesi
CWE 30 kayıt
High CVSS: 7.8

CVE-2024-49840

Memory corruption while Invoking IOCTL calls from user-space to validate FIPS encryption or decryption functionality.
High CVSS: 7.8

CVE-2024-45573

Memory corruption may occour while generating test pattern due to negative indexing of display ID.
High CVSS: 7.8

CVE-2024-47900

Software installed and run as a non-privileged user may conduct improper GPU system calls to access OOB kernel memory.
High CVSS: 7.8

CVE-2024-52938

Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to subvert reconstruction activities to trigger a write of data outside the Guest's virtualised GPU memory.
Medium CVSS: 6.7

CVE-2024-52937

Kernel software installed and running inside a Guest VM may exploit memory shared with the GPU Firmware to write data outside the Guest's virtualised GPU memory.
Medium CVSS: 4.4

CVE-2024-52936

Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to write data outside the Guest's virtualised GPU memory.
Medium CVSS: 4.1

CVE-2024-52935

Kernel software installed and running inside a Guest VM may exploit memory shared with the GPU Firmware to write data outside the Guest's virtualised GPU memory.
High CVSS: 7.1

CVE-2024-47895

Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to read data outside the Guest's virtualised GPU memory.
High CVSS: 7.1

CVE-2024-47894

Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to read data outside the Guest's virtualised GPU memory.
Medium CVSS: 6.7

CVE-2024-33041

Memory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls,