7.8

CVSS3.1

CVE-2024-26928 - smb: client: fix potential UAF in cifs_debug_files_proc_show()

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in cifs_debug_files_proc_show() Skip sessions that are being teared down (status == SES_EXITING) to avoid UAF.

πŸ“… Published: April 28, 2024, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:34 a.m.

7.8

CVSS3.1

CVE-2022-48637 - bnxt: prevent skb UAF after handing over to PTP worker

In the Linux kernel, the following vulnerability has been resolved: bnxt: prevent skb UAF after handing over to PTP worker When reading the timestamp is required bnxt_tx_int() hands over the ownership of the completed skb to the PTP worker. The skb should not be used afterwards, as the worker may…

πŸ“… Published: April 28, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 8:20 a.m.

5.3

CVSS3.1

CVE-2022-48638 - cgroup: cgroup_get_from_id() must check the looked-up kn is a directory

In the Linux kernel, the following vulnerability has been resolved: cgroup: cgroup_get_from_id() must check the looked-up kn is a directory cgroup has to be one kernfs dir, otherwise kernel panic is caused, especially cgroup id is provide from userspace.

πŸ“… Published: April 28, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 8:20 a.m.

5.5

CVSS3.1

CVE-2022-48640 - bonding: fix NULL deref in bond_rr_gen_slave_id

In the Linux kernel, the following vulnerability has been resolved: bonding: fix NULL deref in bond_rr_gen_slave_id Fix a NULL dereference of the struct bonding.rr_tx_counter member because if a bond is initially created with an initial mode != zero (Round Robin) the memory required for the count…

πŸ“… Published: April 28, 2024, midnight πŸ”„ Last Modified: Sept. 19, 2025, 2:57 p.m.

5.5

CVSS3.1

CVE-2022-48642 - netfilter: nf_tables: fix percpu memory leak at nf_tables_addchain()

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix percpu memory leak at nf_tables_addchain() It seems to me that percpu memory for chain stats started leaking since commit 3bc158f8d0330f0a ("netfilter: nf_tables: map basechain priority to hardware prior…

πŸ“… Published: April 28, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 8:20 a.m.

5.5

CVSS3.1

CVE-2022-48643 - netfilter: nf_tables: fix nft_counters_enabled underflow at nf_tables_addchain()

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix nft_counters_enabled underflow at nf_tables_addchain() syzbot is reporting underflow of nft_counters_enabled counter at nf_tables_addchain() [1], for commit 43eb8949cfdffa76 ("netfilter: nf_tables: do no…

πŸ“… Published: April 28, 2024, midnight πŸ”„ Last Modified: Sept. 18, 2025, 2:06 p.m.

5.5

CVSS3.1

CVE-2022-48644 - net/sched: taprio: avoid disabling offload when it was never enabled

In the Linux kernel, the following vulnerability has been resolved: net/sched: taprio: avoid disabling offload when it was never enabled In an incredibly strange API design decision, qdisc->destroy() gets called even if qdisc->init() never succeeded, not exclusively since commit 87b60cfacf9f ("ne…

πŸ“… Published: April 28, 2024, midnight πŸ”„ Last Modified: Sept. 19, 2025, 2:57 p.m.

5.5

CVSS3.1

CVE-2022-48648 - sfc: fix null pointer dereference in efx_hard_start_xmit

In the Linux kernel, the following vulnerability has been resolved: sfc: fix null pointer dereference in efx_hard_start_xmit Trying to get the channel from the tx_queue variable here is wrong because we can only be here if tx_queue is NULL, so we shouldn't dereference it. As the above comment in …

πŸ“… Published: April 28, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 8:20 a.m.

7.8

CVSS3.1

CVE-2022-48649 - mm/slab_common: fix possible double free of kmem_cache

In the Linux kernel, the following vulnerability has been resolved: mm/slab_common: fix possible double free of kmem_cache When doing slub_debug test, kfence's 'test_memcache_typesafe_by_rcu' kunit test case cause a use-after-free error: BUG: KASAN: use-after-free in kobject_del+0x14/0x30 Re…

πŸ“… Published: April 28, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 8:20 a.m.

4.7

CVSS3.1

CVE-2022-48650 - scsi: qla2xxx: Fix memory leak in __qlt_24xx_handle_abts()

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix memory leak in __qlt_24xx_handle_abts() Commit 8f394da36a36 ("scsi: qla2xxx: Drop TARGET_SCF_LOOKUP_LUN_FROM_TAG") made the __qlt_24xx_handle_abts() function return early if tcm_qla2xxx_find_cmd_by_tag() didn't…

πŸ“… Published: April 28, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 8:20 a.m.
Total resulsts: 349182
Page 10146 of 34,919
Β« previous page Β» next page
Filters