CVE-2024-8472
Jue, 05/09/2024 – 13:15
CVE-2024-8472
https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-job-portal
CVE-2024-8472
Jue, 05/09/2024 – 13:15
CVE-2024-8472
https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-job-portal
CVE-2024-45107
Jue, 05/09/2024 – 09:15
CVE-2024-45107
CVE-2024-8363
Jue, 05/09/2024 – 09:15
CVE-2024-8363
CVE-2024-5309
Jue, 05/09/2024 – 09:15
CVE-2024-5309
CVE-2024-6332
Jue, 05/09/2024 – 10:15
CVE-2024-6332
CVE-2024-6929
Jue, 05/09/2024 – 10:15
CVE-2024-6929
CVE-2024-6894
Jue, 05/09/2024 – 10:15
CVE-2024-6894
CVE-2024-8178
Jue, 05/09/2024 – 05:15
CVE-2024-8178
Malicious software running in a guest VM that exposes virtio_scsi can exploit the vulnerabilities to achieve code execution on the host in the bhyve userspace process, which typically runs as root. Note that bhyve runs in a Capsicum sandbox, so malicious code is constrained by the capabilities available to the bhyve process. A malicious iSCSI initiator could achieve remote code execution on the iSCSI target host.
CVE-2024-45063
Jue, 05/09/2024 – 05:15
CVE-2024-45063
Malicious software running in a guest VM that exposes virtio_scsi can exploit the vulnerabilities to achieve code execution on the host in the bhyve userspace process, which typically runs as root. Note that bhyve runs in a Capsicum sandbox, so malicious code is constrained by the capabilities available to the bhyve process. A malicious iSCSI initiator could achieve remote code execution on the iSCSI target host.
CVE-2024-43110
Jue, 05/09/2024 – 05:15
CVE-2024-43110
Malicious software running in a guest VM that exposes virtio_scsi can exploit the vulnerabilities to achieve code execution on the host in the bhyve userspace process, which typically runs as root. Note that bhyve runs in a Capsicum sandbox, so malicious code is constrained by the capabilities available to the bhyve process. A malicious iSCSI initiator could achieve remote code execution on the iSCSI target host.