CVE-2024-22268 – VMware Workstation SVGA Heap-based Buffer Overflow Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-22268
A malicious actor with non-administrative access to a virtual machine with 3D graphics enabled may be able to exploit this vulnerability to create a denial of service condition. • https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24280 •
CVE-2024-33498
https://notcve.org/view.php?id=CVE-2024-33498
This could allow an unauthenticated remote attacker to cause a denial of service condition by crashing the service when it runs out of memory. The service is restarted automatically after a short time. • https://cert-portal.siemens.com/productcert/html/ssa-093430.html • CWE-400: Uncontrolled Resource Consumption •
CVE-2024-33495
https://notcve.org/view.php?id=CVE-2024-33495
This could allow an unauthenticated remote attacker to exhaust system resources by creating a great number of log entries which could potentially lead to a denial of service condition. • https://cert-portal.siemens.com/productcert/html/ssa-093430.html • CWE-770: Allocation of Resources Without Limits or Throttling •
CVE-2024-32637
https://notcve.org/view.php?id=CVE-2024-32637
An attacker could leverage this vulnerability to crash the application causing denial of service condition. ... An attacker could leverage this vulnerability to crash the application causing denial of service condition. • https://cert-portal.siemens.com/productcert/html/ssa-046364.html https://cert-portal.siemens.com/productcert/html/ssa-856475.html • CWE-476: NULL Pointer Dereference •
CVE-2024-31484 – Siemens CP-8000 / CP-8021 / CP8-022 / CP-8031 / CP-8050 / SICORE Buffer Overread / Escalation
https://notcve.org/view.php?id=CVE-2024-31484
This could allow an attacker to execute code in the context of the current process or lead to denial of service condition. • http://seclists.org/fulldisclosure/2024/Jul/4 https://cert-portal.siemens.com/productcert/html/ssa-620338.html https://cert-portal.siemens.com/productcert/html/ssa-871704.html • CWE-170: Improper Null Termination •