5.5

CVSS3.1

CVE-2022-48692 - RDMA/srp: Set scmnd->result only when scmnd is not NULL

In the Linux kernel, the following vulnerability has been resolved: RDMA/srp: Set scmnd->result only when scmnd is not NULL This change fixes the following kernel NULL pointer dereference which is reproduced by blktests srp/007 occasionally. BUG: kernel NULL pointer dereference, address: 0000000…

πŸ“… Published: May 3, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 8:21 a.m.

8.0

CVSS3.1

CVE-2023-50230 - BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability

BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of BlueZ. User interaction is required to exploit this vulnerability in that the target must conne…

πŸ“… Published: May 3, 2024, midnight πŸ”„ Last Modified: Nov. 4, 2025, 5:15 p.m.

8.0

CVSS3.1

CVE-2023-50229 - BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability

BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of BlueZ. User interaction is required to exploit this vulnerability in that the target must conne…

πŸ“… Published: May 3, 2024, midnight πŸ”„ Last Modified: Nov. 4, 2025, 5:15 p.m.

7.5

CVSS3.1

CVE-2024-34447 - org.bouncycastle: Use of Incorrectly-Resolved Name or Reference

An issue was discovered in the Bouncy Castle Crypto Package For Java before BC TLS Java 1.0.19 (ships with BC Java 1.78, BC Java (LTS) 2.73.6) and before BC FIPS TLS Java 1.0.19. When endpoint identification is enabled in the BCJSSE and an SSL socket is created without an explicit hostname (as happ…

πŸ“… Published: May 3, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.8

CVSS3.1

CVE-2024-34062 - tqdm CLI arguments injection attack

tqdm is an open source progress bar for Python and CLI. Any optional non-boolean CLI arguments (e.g. `--delim`, `--buf-size`, `--manpath`) are passed through python's `eval`, allowing arbitrary code execution. This issue is only locally exploitable and had been addressed in release version 4.66.3. …

πŸ“… Published: May 3, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.2

CVSS3.1

CVE-2022-48686 - nvme-tcp: fix UAF when detecting digest errors

In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: fix UAF when detecting digest errors We should also bail from the io_work loop when we set rd_enabled to true, so we don't attempt to read data from the socket when the TCP stream is already out-of-sync or corrupted.

πŸ“… Published: May 3, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 8:21 a.m.

8.0

CVSS3.1

CVE-2023-27349 - BlueZ Audio Profile AVRCP Improper Validation of Array Index Remote Code Execution Vulnerability

BlueZ Audio Profile AVRCP Improper Validation of Array Index Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code via Bluetooth on affected installations of BlueZ. User interaction is required to exploit this vulnerability in that the t…

πŸ“… Published: May 3, 2024, midnight πŸ”„ Last Modified: Nov. 4, 2025, 5:15 p.m.

5.3

CVSS3.1

CVE-2022-48691 - netfilter: nf_tables: clean up hook list when offload flags check fails

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: clean up hook list when offload flags check fails splice back the hook list so nft_chain_release_hook() has a chance to release the hooks. BUG: memory leak unreferenced object 0xffff88810180b100 (size 96): …

πŸ“… Published: May 3, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 8:21 a.m.

5.5

CVSS3.1

CVE-2022-48675 - IB/core: Fix a nested dead lock as part of ODP flow

In the Linux kernel, the following vulnerability has been resolved: IB/core: Fix a nested dead lock as part of ODP flow Fix a nested dead lock as part of ODP flow by using mmput_async(). From the below call trace [1] can see that calling mmput() once we have the umem_odp->umem_mutex locked as re…

πŸ“… Published: May 3, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 8:21 a.m.

5.5

CVSS3.1

CVE-2022-48693 - soc: brcmstb: pm-arm: Fix refcount leak and __iomem leak bugs

In the Linux kernel, the following vulnerability has been resolved: soc: brcmstb: pm-arm: Fix refcount leak and __iomem leak bugs In brcmstb_pm_probe(), there are two kinds of leak bugs: (1) we need to add of_node_put() when for_each__matching_node() breaks (2) we need to add iounmap() for each …

πŸ“… Published: May 3, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 8:21 a.m.
Total resulsts: 349182
Page 10067 of 34,919
Β« previous page Β» next page
Filters