Bull DDFA
Fixes
List of available fixes.
| Short Name | Effective Date | Title | Description |
|---|---|---|---|
| vulnerability-in-mongodb-mongoose-psirt-2080-tlp-clear-version-2-5-cve-2025-23061 | 2025/09/18 11:35:45 GMT+2 |
|
Mongoose before 8.9.5 can improperly use a nested $where filter with a populate() match, leading to search injection. Mongoose, a popular MongoDB object modelin... |
| vulnerability-in-nvidia-gpu-display-driver-psirt-1742-tlp-clear-version-0-5-cve-2024-0126-cve-2024-0131-cve-2024-0147 | 2025/09/18 11:16:06 GMT+2 |
|
NVIDIA reported information about NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability which could allow a privileged attacker to escalate p... |
| multiple-vulnerabilities-in-elastic-products-psirt-2079-tlp-clear-version-0-4-cve-2024-37284-cve-2024-43709-cve-2024-52973 | 2025/09/12 09:22:05 GMT+2 |
|
CVE-2024-37284 - 5.5 (Medium) Elastic Defend Improper Handling of Alternate Encoding Leads to Crash (ESA2024-24) Improper handling of alternate encoding occurs ... |
| nvidia-cuda-toolkit-vulnerabilities-psirt-2196-tlp-clear-version-0.2 | 2025/09/11 11:27:44 GMT+2 |
|
NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in the cuobjdump binary, where a user could cause a crash by passing a malformed ELF file to ... |
| vulnerability-in-hashicorp-psirt-1718-tlp-clear-version-0-4-cve-2024-8365 | 2025/09/11 11:20:52 GMT+2 |
|
Vault Community Edition and Vault Enterprise experienced a regression where functionality that HMAC’d sensitive headers in the configured audit device, specif... |
| pkg | 2007/04/22 11:00:00 GMT+2 |
|
List of available packages. |
| update-package-1-0-2-linux | 2025/07/24 13:11:20 GMT+2 |
|
|
| update-package-1-0-2-windows | 2025/07/24 11:46:21 GMT+2 |
|
|
| vulnerability-in-virtualenv-psirt-1974-tlp-clear-version-0-3-cve-2024-53899 | 2025/07/22 17:56:14 GMT+2 |
|
A flaw was found in the virtualenv Python package. Due to the improper handling of quotes in magic template strings, the virtual environment activation script i... |
| partial-fix-in-spring-framework-psirt-1939-tlp-clear-version-0-3-cve-2024-38820 | 2025/07/22 17:54:34 GMT+2 |
|
The fix for CVE-2022-22968 made disallowedFields patterns in DataBinder case insensitive. However, String.toLowerCase() has some Locale dependent exceptions tha... |

