0.0

CVE-2022-50139 - usb: aspeed-vhub: Fix refcount leak bug in ast_vhub_init_desc()

In the Linux kernel, the following vulnerability has been resolved: usb: aspeed-vhub: Fix refcount leak bug in ast_vhub_init_desc() We should call of_node_put() for the reference returned by of_get_child_by_name() which has increased the refcount.

πŸ“… Published: June 18, 2025, 11:03 a.m. πŸ”„ Last Modified: June 18, 2025, 1:47 p.m.

0.0

CVE-2022-50138 - RDMA/qedr: Fix potential memory leak in __qedr_alloc_mr()

In the Linux kernel, the following vulnerability has been resolved: RDMA/qedr: Fix potential memory leak in __qedr_alloc_mr() __qedr_alloc_mr() allocates a memory chunk for "mr->info.pbl_table" with init_mr_info(). When rdma_alloc_tid() and rdma_register_tid() fail, "mr" is released while "mr->in…

πŸ“… Published: June 18, 2025, 11:03 a.m. πŸ”„ Last Modified: June 18, 2025, 1:47 p.m.

0.0

CVE-2022-50137 - RDMA/irdma: Fix a window for use-after-free

In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix a window for use-after-free During a destroy CQ an interrupt may cause processing of a CQE after CQ resources are freed by irdma_cq_free_rsrc(). Fix this by moving the call to irdma_cq_free_rsrc() after the irdma_…

πŸ“… Published: June 18, 2025, 11:03 a.m. πŸ”„ Last Modified: June 18, 2025, 1:47 p.m.

0.0

CVE-2022-50136 - RDMA/siw: Fix duplicated reported IW_CM_EVENT_CONNECT_REPLY event

In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Fix duplicated reported IW_CM_EVENT_CONNECT_REPLY event If siw_recv_mpa_rr returns -EAGAIN, it means that the MPA reply hasn't been received completely, and should not report IW_CM_EVENT_CONNECT_REPLY in this case. This…

πŸ“… Published: June 18, 2025, 11:03 a.m. πŸ”„ Last Modified: June 18, 2025, 1:47 p.m.

0.0

CVE-2022-50135 - RDMA/rxe: Fix BUG: KASAN: null-ptr-deref in rxe_qp_do_cleanup

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix BUG: KASAN: null-ptr-deref in rxe_qp_do_cleanup The function rxe_create_qp calls rxe_qp_from_init. If some error occurs, the error handler of function rxe_qp_from_init will set both scq and rcq to NULL. Then rxe_cr…

πŸ“… Published: June 18, 2025, 11:02 a.m. πŸ”„ Last Modified: June 18, 2025, 1:47 p.m.

0.0

CVE-2022-50134 - RDMA/hfi1: fix potential memory leak in setup_base_ctxt()

In the Linux kernel, the following vulnerability has been resolved: RDMA/hfi1: fix potential memory leak in setup_base_ctxt() setup_base_ctxt() allocates a memory chunk for uctxt->groups with hfi1_alloc_ctxt_rcv_groups(). When init_user_ctxt() fails, uctxt->groups is not released, which will lead…

πŸ“… Published: June 18, 2025, 11:02 a.m. πŸ”„ Last Modified: June 18, 2025, 1:47 p.m.

0.0

CVE-2022-50133 - usb: xhci_plat_remove: avoid NULL dereference

In the Linux kernel, the following vulnerability has been resolved: usb: xhci_plat_remove: avoid NULL dereference Since commit 4736ebd7fcaff1eb8481c140ba494962847d6e0a ("usb: host: xhci-plat: omit shared hcd if either root hub has no ports") xhci->shared_hcd can be NULL, which causes the followin…

πŸ“… Published: June 18, 2025, 11:02 a.m. πŸ”„ Last Modified: June 18, 2025, 1:47 p.m.

0.0

CVE-2022-50132 - usb: cdns3: change place of 'priv_ep' assignment in cdns3_gadget_ep_dequeue(), cdns3_gadget_ep_enab…

In the Linux kernel, the following vulnerability has been resolved: usb: cdns3: change place of 'priv_ep' assignment in cdns3_gadget_ep_dequeue(), cdns3_gadget_ep_enable() If 'ep' is NULL, result of ep_to_cdns3_ep(ep) is invalid pointer and its dereference with priv_ep->cdns3_dev may cause panic.…

πŸ“… Published: June 18, 2025, 11:02 a.m. πŸ”„ Last Modified: June 18, 2025, 1:47 p.m.

0.0

CVE-2022-50131 - HID: mcp2221: prevent a buffer overflow in mcp_smbus_write()

In the Linux kernel, the following vulnerability has been resolved: HID: mcp2221: prevent a buffer overflow in mcp_smbus_write() Smatch Warning: drivers/hid/hid-mcp2221.c:388 mcp_smbus_write() error: __memcpy() '&mcp->txbuf[5]' too small (59 vs 255) drivers/hid/hid-mcp2221.c:388 mcp_smbus_write()…

πŸ“… Published: June 18, 2025, 11:02 a.m. πŸ”„ Last Modified: June 18, 2025, 1:47 p.m.

0.0

CVE-2022-50130 - staging: fbtft: core: set smem_len before fb_deferred_io_init call

In the Linux kernel, the following vulnerability has been resolved: staging: fbtft: core: set smem_len before fb_deferred_io_init call The fbtft_framebuffer_alloc() calls fb_deferred_io_init() before initializing info->fix.smem_len. It is set to zero by the framebuffer_alloc() function. It will…

πŸ“… Published: June 18, 2025, 11:02 a.m. πŸ”„ Last Modified: June 18, 2025, 1:47 p.m.
Total resulsts: 298686
Page 12 of 29,869
Β« previous page Β» next page
Filters