CVE-2024-21340

CVSS v3 Score
4.6
Medium

Vulnerability Description

Windows Kernel Information Disclosure Vulnerability

CVSS:4.7(Medium)

Windows Remote Access Connection Manager Information Disclosure Vulnerability

CVSS:4.7(Medium)

Windows Remote Access Connection Manager Information Disclosure Vulnerability

CVSS:4.7(Medium)

NGINX Open Source and NGINX Plus have a vulnerability in the ngx_http_mp4_module, which might allow an attacker to over-read NGINX worker memory resulting in its termination, using a specially crafted...

CVSS:4.4(Medium)

Invalid JPEG XL images using libjxl can cause an out of bounds access on a std::vector<std::vector<T>> when rendering splines. The OOB read access can either lead to a segfault, or rendering splines b...

CVSS:4.4(Medium)

A buffer over-read vulnerability was reported in the ThinkPadX13s BIOS PersistenceConfigDxe driver that could allow a local attacker with elevated privileges to cause information disclosure.

CVSS:4.4(Medium)

A buffer over-read vulnerability was reported in the ThinkPadX13s BIOS LenovoSetupConfigDxe driver that could allow a local attacker with elevated privileges to cause information disclosure.