5.5

CVSS3.1

CVE-2024-26950 - wireguard: netlink: access device through ctx instead of peer

In the Linux kernel, the following vulnerability has been resolved: wireguard: netlink: access device through ctx instead of peer The previous commit fixed a bug that led to a NULL peer->device being dereferenced. It's actually easier and faster performance-wise to instead get the device from ctx…

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9 a.m.

5.5

CVSS3.1

CVE-2024-26949 - drm/amdgpu/pm: Fix NULL pointer dereference when get power limit

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/pm: Fix NULL pointer dereference when get power limit Because powerplay_table initialization is skipped under sriov case, We check and set default lower and upper OD value if powerplay_table is NULL.

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9 a.m.

5.5

CVSS3.1

CVE-2024-26943 - nouveau/dmem: handle kcalloc() allocation failure

In the Linux kernel, the following vulnerability has been resolved: nouveau/dmem: handle kcalloc() allocation failure The kcalloc() in nouveau_dmem_evict_chunk() will return null if the physical memory has run out. As a result, if we dereference src_pfns, dst_pfns or dma_addrs, the null pointer d…

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: July 12, 2025, 10:09 p.m.

7.8

CVSS3.1

CVE-2024-26934 - USB: core: Fix deadlock in usb_deauthorize_interface()

In the Linux kernel, the following vulnerability has been resolved: USB: core: Fix deadlock in usb_deauthorize_interface() Among the attribute file callback routines in drivers/usb/core/sysfs.c, the interface_authorized_store() function is the only one which acquires a device lock on an ancestor …

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9 a.m.

7.8

CVSS3.1

CVE-2024-26933 - USB: core: Fix deadlock in port "disable" sysfs attribute

In the Linux kernel, the following vulnerability has been resolved: USB: core: Fix deadlock in port "disable" sysfs attribute The show and store callback routines for the "disable" sysfs attribute file in port.c acquire the device lock for the port's parent hub device. This can cause problems if…

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9 a.m.

7.8

CVSS3.1

CVE-2024-26932 - usb: typec: tcpm: fix double-free issue in tcpm_port_unregister_pd()

In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpm: fix double-free issue in tcpm_port_unregister_pd() When unregister pd capabilitie in tcpm, KASAN will capture below double -free issue. The root cause is the same capabilitiy will be kfreed twice, the first time…

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9 a.m.

5.3

CVSS3.1

CVE-2024-22830 -

Anti-Cheat Expert's Windows kernel module "ACE-BASE.sys" version 1.0.2202.6217 does not perform proper access control when handling system resources. This allows a local attacker to escalate privileges from regular user to System or PPL level.

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2024-27004 - clk: Get runtime PM before walking tree during disable_unused

In the Linux kernel, the following vulnerability has been resolved: clk: Get runtime PM before walking tree during disable_unused Doug reported [1] the following hung task: INFO: task swapper/0:1 blocked for more than 122 seconds. Not tainted 5.15.149-21875-gf795ebc40eb8 #1 "echo 0 > /p…

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: Dec. 23, 2025, 12:41 a.m.

4.7

CVSS3.1

CVE-2024-25676 -

An issue was discovered in ViewerJS 0.5.8. A script from the component loads content via URL TAGs without properly sanitizing it. This leads to both open redirection and out-of-band resource loading.

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

3.4

CVSS3.1

CVE-2023-46294 -

An issue was discovered in Teledyne FLIR M300 2.00-19. User account passwords are encrypted locally, and can be decrypted to cleartext passwords using the utility umSetup. This utility requires root permissions to execute.

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 10113 of 34,919
Β« previous page Β» next page
Filters