CVE-2024-35194 – Stacklok Minder vulnerable to denial of service from maliciously crafted templates
https://notcve.org/view.php?id=CVE-2024-35194
Prior to version 0.0.50, Minder engine is susceptible to a denial of service from memory exhaustion that can be triggered from maliciously created templates. • https://github.com/stacklok/minder/commit/fe321d345b4f738de6a06b13207addc72b59f892 https://github.com/stacklok/minder/security/advisories/GHSA-crgc-2583-rw27 • CWE-400: Uncontrolled Resource Consumption •
CVE-2024-31714
https://notcve.org/view.php?id=CVE-2024-31714
Buffer Overflow vulnerability in Waxlab wax v.0.9-3 and before allows an attacker to cause a denial of service via the Lua library component. • https://github.com/lakemoon602/vuln/blob/main/wax.md • CWE-121: Stack-based Buffer Overflow CWE-125: Out-of-bounds Read •
CVE-2024-34948
https://notcve.org/view.php?id=CVE-2024-34948
,Ltd IK-Q3000 3.7.10 x64 Build202401261655 allows attackers to cause a Denial of Service (DoS) when attempting to make TCP connections. Un problema en Quanxun Huiju Network Technology (Beijing) Co., Ltd IK-Q3000 3.7.10 x64 Build202401261655 permite a los atacantes provocar una denegación de servicio (DoS) al intentar realizar conexiones TCP. • https://gist.github.com/wuyuhang422/8de771b0b4538eb6fa23cf8282061209 •
CVE-2024-34953
https://notcve.org/view.php?id=CVE-2024-34953
An issue in taurusxin ncmdump v1.3.2 allows attackers to cause a Denial of Service (DoS) via memory exhaustion by supplying a crafted .ncm file Un problema en taurusxin ncmdump v1.3.2 permite a los atacantes provocar una denegación de servicio (DoS) mediante el agotamiento de la memoria al proporcionar un archivo .ncm manipulado. • https://github.com/Helson-S/FuzzyTesting/blob/master/ncmdump/dos_mmExhausted/dos_mmExhausted.assets/image-20240505161831080.png https://github.com/Helson-S/FuzzyTesting/blob/master/ncmdump/dos_mmExhausted/dos_mmExhausted.md https://github.com/Helson-S/FuzzyTesting/blob/master/ncmdump/dos_mmExhausted/poc/I7K9QM~F https://github.com/Helson-S/FuzzyTesting/tree/master/ncmdump/dos_mmExhausted https://github.com/Helson-S/FuzzyTesting/tree/master/ncmdump/dos_mmExhausted/poc https://github.com/taurusxin/ncmdump/ • CWE-400: Uncontrolled Resource Consumption •
CVE-2024-34952
https://notcve.org/view.php?id=CVE-2024-34952
This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted .ncm file. ... Esta vulnerabilidad permite a los atacantes provocar una denegación de servicio (DoS) a través de un archivo .ncm manipulado. • https://github.com/Helson-S/FuzzyTesting/blob/master/ncmdump/dos_FixMetadata/dos_FixMetadata.assets/debug-coredump.png https://github.com/Helson-S/FuzzyTesting/blob/master/ncmdump/dos_FixMetadata/dos_FixMetadata.md https://github.com/Helson-S/FuzzyTesting/blob/master/ncmdump/dos_FixMetadata/poc/I1DWE0~U https://github.com/Helson-S/FuzzyTesting/tree/master/ncmdump/dos_FixMetadata https://github.com/Helson-S/FuzzyTesting/tree/master/ncmdump/dos_FixMetadata/poc https://github.com/taurusxin/ncmdump/issues •