CVE-2024-7246 – HPACK table poisoning in gRPC C++, Python & Ruby
https://notcve.org/view.php?id=CVE-2024-7246
06 Aug 2024 — A flaw was found in Google gRPC due to HPACK table poisoning between the proxy and backend so that other clients see failed requests, resulting in a denial of service. • https://github.com/grpc/grpc/issues/36245 • CWE-440: Expected Behavior Violation •
CVE-2024-28962
https://notcve.org/view.php?id=CVE-2024-28962
06 Aug 2024 — An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to denial of service. • https://www.dell.com/support/kbdoc/en-us/000227236/dsa-2024-169 • CWE-610: Externally Controlled Reference to a Resource in Another Sphere •
CVE-2024-36424 – K7 Ultimate Security NULL Pointer Dereference
https://notcve.org/view.php?id=CVE-2024-36424
06 Aug 2024 — K7RKScan.sys in K7 Ultimate Security before 17.0.2019 allows local users to cause a denial of service (BSOD) because of a NULL pointer dereference. In K7 Ultimate Security versions prior to 17.0.2019, the driver file (K7RKScan.sys - this version 15.1.0.7) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of a null pointer dereference from IOCtl 0x222010 and 0x222014. • https://github.com/secunnix/CVE-2024-36424 •
CVE-2024-30170
https://notcve.org/view.php?id=CVE-2024-30170
06 Aug 2024 — PrivX before 34.0 allows data exfiltration and denial of service via the REST API. • https://info.ssh.com/improper-input-validation-faq • CWE-400: Uncontrolled Resource Consumption •
CVE-2024-33026 – Buffer Over-read in WLAN Host
https://notcve.org/view.php?id=CVE-2024-33026
05 Aug 2024 — Transient DOS while parsing probe response and assoc response frame when received frame length is less than max size of timestamp. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html • CWE-126: Buffer Over-read •
CVE-2024-33025 – Buffer Over-read in WLAN Host
https://notcve.org/view.php?id=CVE-2024-33025
05 Aug 2024 — Transient DOS while parsing the BSS parameter change count or MLD capabilities fields of the ML IE. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html • CWE-126: Buffer Over-read •
CVE-2024-33024 – Integer Overflow or Wraparound in WLAN Host
https://notcve.org/view.php?id=CVE-2024-33024
05 Aug 2024 — Transient DOS while parsing the ML IE when a beacon with length field inside the common info of ML IE greater than the ML IE length. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html • CWE-190: Integer Overflow or Wraparound •
CVE-2024-33020 – Buffer Over-read in WLAN HOST
https://notcve.org/view.php?id=CVE-2024-33020
05 Aug 2024 — Transient DOS while processing TID-to-link mapping IE elements. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html • CWE-126: Buffer Over-read •
CVE-2024-33019 – Buffer Over-read in WLAN Host
https://notcve.org/view.php?id=CVE-2024-33019
05 Aug 2024 — Transient DOS while parsing the received TID-to-link mapping action frame. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html • CWE-126: Buffer Over-read •
CVE-2024-33018 – Buffer Over-read in WLAN Host
https://notcve.org/view.php?id=CVE-2024-33018
05 Aug 2024 — Transient DOS while parsing the received TID-to-link mapping element of the TID-to-link mapping action frame. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html • CWE-126: Buffer Over-read •