5.5

CVSS3.1

CVE-2024-26935 - scsi: core: Fix unremoved procfs host directory regression

In the Linux kernel, the following vulnerability has been resolved: scsi: core: Fix unremoved procfs host directory regression Commit fc663711b944 ("scsi: core: Remove the /proc/scsi/${proc_name} directory earlier") fixed a bug related to modules loading/unloading, by adding a call to scsi_proc_h…

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: Dec. 23, 2025, 6:54 p.m.

5.5

CVSS3.1

CVE-2024-27012 - netfilter: nf_tables: restore set elements when delete set fails

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: restore set elements when delete set fails From abort path, nft_mapelem_activate() needs to restore refcounters to the original state. Currently, it uses the set->ops->walk() to iterate over these set elemen…

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: Nov. 4, 2025, 6:16 p.m.

5.5

CVSS3.1

CVE-2024-26980 - ksmbd: fix slab-out-of-bounds in smb2_allocate_rsp_buf

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix slab-out-of-bounds in smb2_allocate_rsp_buf If ->ProtocolId is SMB2_TRANSFORM_PROTO_NUM, smb2 request size validation could be skipped. if request size is smaller than sizeof(struct smb2_query_info_req), slab-out-of-bo…

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: Nov. 4, 2025, 6:15 p.m.

6.3

CVSS3.1

CVE-2024-27005 - interconnect: Don't access req_list while it's being manipulated

In the Linux kernel, the following vulnerability has been resolved: interconnect: Don't access req_list while it's being manipulated The icc_lock mutex was split into separate icc_lock and icc_bw_lock mutexes in [1] to avoid lockdep splats. However, this didn't adequately protect access to icc_no…

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: Dec. 23, 2025, 5:15 p.m.

7.8

CVSS3.1

CVE-2024-26965 - clk: qcom: mmcc-msm8974: fix terminating of frequency table arrays

In the Linux kernel, the following vulnerability has been resolved: clk: qcom: mmcc-msm8974: fix terminating of frequency table arrays The frequency table arrays are supposed to be terminated with an empty element. Add such entry to the end of the arrays where it is missing in order to avoid poss…

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: Dec. 23, 2025, 12:54 a.m.

5.5

CVSS3.1

CVE-2024-27014 - net/mlx5e: Prevent deadlock while disabling aRFS

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Prevent deadlock while disabling aRFS When disabling aRFS under the `priv->state_lock`, any scheduled aRFS works are canceled using the `cancel_work_sync` function, which waits for the work to end if it has already sta…

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: Nov. 4, 2025, 6:16 p.m.

7.1

CVSS3.1

CVE-2024-26982 - Squashfs: check the inode number is not the invalid value of zero

In the Linux kernel, the following vulnerability has been resolved: Squashfs: check the inode number is not the invalid value of zero Syskiller has produced an out of bounds access in fill_meta_index(). That out of bounds access is ultimately caused because the inode has an inode number with the…

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:35 a.m.

5.1

CVSS3.1

CVE-2024-26931 - scsi: qla2xxx: Fix command flush on cable pull

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix command flush on cable pull System crash due to command failed to flush back to SCSI layer. BUG: unable to handle kernel NULL pointer dereference at 0000000000000000 PGD 0 P4D 0 Oops: 0000 [#1] SMP NOPTI C…

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:35 a.m.

7.5

CVSS3.1

CVE-2024-24312 -

SQL injection vulnerability in Vaales Technologies V_QRS v.2024-01-17 allows a remote attacker to obtain sensitive information via the Models/UserModel.php component.

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.8

CVSS3.1

CVE-2024-27061 - crypto: sun8i-ce - Fix use after free in unprepare

In the Linux kernel, the following vulnerability has been resolved: crypto: sun8i-ce - Fix use after free in unprepare sun8i_ce_cipher_unprepare should be called before crypto_finalize_skcipher_request, because client callbacks may immediately free memory, that isn't needed anymore. But it will b…

πŸ“… Published: May 1, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:03 a.m.
Total resulsts: 349182
Page 10116 of 34,919
Β« previous page Β» next page
Filters