-
CVE-2024-57878 – Linux Kernel Arm64 Ptrace FPMR Initialization Leak
CVE ID : CVE-2024-57878 Published : Jan. 11, 2025, 3:15 p.m. | 1 day ago Description : In the Linux kernel, the following vulnerability has been resolved: arm64: ptrace: fix partial SETREGSET for NT_ARM_FPMR Currently fpmr_set() doesn’t initialize the temporary ‘fpmr’ variable, and a SETREGSET call with a length of zero will leave this uninitialized. Consequently…
-
CVE-2024-12847 – NETGEAR DGN1000 Remote Root Command Injection
CVE ID : CVE-2024-12847 Published : Jan. 10, 2025, 8:15 p.m. | 1 day, 19 hours ago Description : NETGEAR DGN1000 before 1.1.00.48 is vulnerable to an authentication bypass vulnerability. A remote and unauthenticated attacker can execute arbitrary operating system commands as root by sending crafted HTTP requests to the setup.cgi endpoint. This vulnerability has been exploited…
-
CVE-2025-22152 – “Atheos Remote File Inclusion Vulnerability”
CVE ID : CVE-2025-22152 Published : Jan. 10, 2025, 4:15 p.m. | 1 day, 23 hours ago Description : Atheos is a self-hosted browser-based cloud IDE. Prior to v600, the $path and $target parameters are not properly validated across multiple components, allowing an attacker to read, modify, or execute arbitrary files on the server. These vulnerabilities can…
-
CVE-2025-22777 (CVSS 9.8): Critical Security Alert for GiveWP Plugin with 100,000 Active Installations
CVE-2025-22777 (CVSS 9.8): Critical Security Alert for GiveWP Plugin with 100,000 Active Installations A severe vulnerability has been identified in the GiveWP plugin, one of WordPress’s most widely used tools for online donations and fundraising. Tracked as CVE-2025-22777, the flaw has a CVSS score of … Read more Published Date: Jan 12, 2025 (14 hours, 44 minutes…
-
CVE-2024-12847: Proof-of-Concept Exploit Code Released
CVE-2024-12847: Proof-of-Concept Exploit Code Released OverviewCVE-2024-12847 is a critical security vulnerability affecting certain models of NETGEAR routers, notably the DGN1000 and DGN2200 v1. This vulnerability has been assigned a CVSS score of 9.8, r … Read more Published Date: Jan 11, 2025 (1 day, 9 hours ago) Vulnerabilities has been mentioned in this article. CVE-2024-12847 CVE-2024-51741 CVE-2024-46981…
-
Shortwave Now Supports Play Internet Radio in the Background
Shortwave, the modern free open-source internet radio player, finally adds background playback support! Shortwave is an internet audio player designed for GNOME Desktop, though it also works in most other Linux desktops and even Linux phones. The app features a station database with over 50,000 stations, custom library, automatic recognition of songs, recording, and play…
-
Bad Apple but it’s 6,500 Regex Searches in Vim
In the world of showing off, there is alongside ‘Does it play Doom?’ that other classic of ‘Does it play Bad Apple?’. Whereas either would be quaint in the context of the Vim editor, this didn’t deter [Nolen Royalty] from making Vim play the Bad Apple video. As this is a purely black and white…
-
Blinkenlights-First Retrocomputer Design
[Boz] wants to build a retrocomputer, but where to start? You could start with the computery bits, like say the CPU or the bus architecture, but where’s the fun in that? Instead, [Boz] built a righteous blinkenlights array. What’s cool about this display is that it’s ready to go out of the box. All of the…
-
Back in 2012, Mark and I detailed a number of iOS kernel mitigations that were introduced in iOS 6 to prevent an attacker from leveraging well-known exploitation techniques such as the zone free list pointer overwrite. Most of these mitigations rely on entropy (of varying degree) provided by the kernel, and are therefore supported by a separate…
-
BlackPwn: BlackPhone SilentText Type Confusion Vulnerability
Privacy is a hot topic at the moment – it continues to dominate the headlines as news of new NSA incursions, celebrity phone hacks, and corporate breaches are being reported on an increasingly regular basis. In response to this, a number of products have been brought to market that attempt to provide consumers with a…