Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Bruce Chen

#18512of 56,335
15.5Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2026-51663
6.5
2026-06-24
Qemu · Qemu · CVE-2026-9539
**Name of the Vulnerable Software and Affected Versions** libslirp versions prior to 4.9.2 **Description** An integer underflow and out-of-bounds heap read exist in the TCP urgent data handling (sosendoob) within hypervisor host environments, such as QEMU. A privileged attacker in a guest VM (possessing root or `CAP NET RAW` privileges) can leak significant amounts of sensitive host-process heap memory by sending crafted TCP segments with manipulated URG flags and urgent pointers `ti urp`. Real-world incidents have demonstrated that this issue can be chained to achieve arbitrary read and write access on the host. **Recommendations** Update libslirp to version 4.9.2 or later.
PT-2024-1654
9.0
2024-01-09
Microsoft · Sharepoint Server · CVE-2024-21318
**Name of the Vulnerable Software and Affected Versions** Microsoft SharePoint Server (affected versions not specified) **Description** A flaw exists in Microsoft SharePoint Server that enables remote attackers to execute arbitrary code and compromise the system. The issue stems from insufficient input validation. Exploitation of this flaw could allow an attacker to execute code remotely by using specially crafted data. This is a post-authentication remote code execution issue. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.