CVE-2024-46597
https://notcve.org/view.php?id=CVE-2024-46597
18 Sep 2024 — This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input. • https://ink-desk-28f.notion.site/Draytek-vigor-3910-Analysis-Report-b3b23e150c4f4bab822c3c47fd7b9de9#11467dddc16f460db85a5e8d3a6665fb •
CVE-2024-46598
https://notcve.org/view.php?id=CVE-2024-46598
18 Sep 2024 — This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input. • https://ink-desk-28f.notion.site/Draytek-vigor-3910-Analysis-Report-b3b23e150c4f4bab822c3c47fd7b9de9#0875f261ad5c4e1ba59448d49a261a99 •
CVE-2023-28451
https://notcve.org/view.php?id=CVE-2023-28451
18 Sep 2024 — There is a vulnerability (called BadDNS) in DNS resolving software, which triggers a resolver to ignore valid responses, thus causing DoS (denial of service) for normal resolution. • https://gist.github.com/idealeer/89947ca07836fd0f7e9761198ca9a0f3. • CWE-400: Uncontrolled Resource Consumption •
CVE-2023-28455
https://notcve.org/view.php?id=CVE-2023-28455
18 Sep 2024 — The forwarding mode enables attackers to create a query loop using Technitium resolvers, launching amplification attacks and causing potential DoS. • https://gist.github.com/idealeer/89947ca07836fd0f7e9761198ca9a0f3 • CWE-406: Insufficient Control of Network Message Volume (Network Amplification) •
CVE-2023-28456
https://notcve.org/view.php?id=CVE-2023-28456
18 Sep 2024 — It enables attackers to launch amplification attacks (3 times more than other "golden model" software like BIND) and cause potential DoS. • https://gist.github.com/idealeer/89947ca07836fd0f7e9761198ca9a0f3 • CWE-406: Insufficient Control of Network Message Volume (Network Amplification) •
CVE-2024-8939 – Vllm: denials of service in vllm json web api
https://notcve.org/view.php?id=CVE-2024-8939
17 Sep 2024 — A vulnerability was found in the ilab model serve component, where improper handling of the best_of parameter in the vllm JSON web API can lead to a Denial of Service (DoS). The API used for LLM-based sentence or chat completion accepts a best_of parameter to return the best completion from several options. When this parameter is set to a large value, the API does not handle timeouts or resource exhaustion properly, allowing an attacker to cause a DoS by
CVE-2024-8768 – Vllm: a completions api request with an empty prompt will crash the vllm api server.
https://notcve.org/view.php?id=CVE-2024-8768
17 Sep 2024 — A completions API request with an empty prompt will crash the vLLM API server, resulting in a denial of service. • https://access.redhat.com/security/cve/CVE-2024-8768 • CWE-617: Reachable Assertion •
CVE-2024-8110
https://notcve.org/view.php?id=CVE-2024-8110
17 Sep 2024 — Denial of Service (DoS) vulnerability has been found in Dual-redundant Platform for Computer. Denial of Service (DoS) vulnerability has been found in Dual-redundant Platform for Computer. If a computer on which the affected product is installed receives a large number of UDP broadcast packets in a short period, occasionally that computer may restart. • https://web-material3.yokogawa.com/1/36276/files/YSAR-24-0003-E.pdf • CWE-252: Unchecked Return Value •
CVE-2024-27874
https://notcve.org/view.php?id=CVE-2024-27874
16 Sep 2024 — A remote attacker may be able to cause a denial-of-service. • https://support.apple.com/en-us/121250 • CWE-400: Uncontrolled Resource Consumption •
CVE-2024-44176 – Apple macOS ImageIO JP2 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-44176
16 Sep 2024 — Processing an image may lead to a denial-of-service. • https://support.apple.com/en-us/121234 •