5.5

CVSS3.1

CVE-2024-50087 - btrfs: fix uninitialized pointer free on read_alloc_one_name() error

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix uninitialized pointer free on read_alloc_one_name() error The function read_alloc_one_name() does not initialize the name field of the passed fscrypt_str struct if kmalloc fails to allocate the corresponding buffer. Tโ€ฆ

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

5.5

CVSS3.1

CVE-2024-50075 - xhci: tegra: fix checked USB2 port number

In the Linux kernel, the following vulnerability has been resolved: xhci: tegra: fix checked USB2 port number If USB virtualizatoin is enabled, USB2 ports are shared between all Virtual Functions. The USB2 port number owned by an USB2 root hub in a Virtual Function may be less than total USB2 phyโ€ฆ

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Oct. 1, 2025, 9:15 p.m.

4.8

CVSS3.1

CVE-2024-48461 -

Cross Site Scripting vulnerability in TeslaLogger Admin Panel before v.1.59.6 allows a remote attacker to execute arbitrary code via the New Journey field.

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 1, 2024, 12:57 p.m.

5.5

CVSS3.1

CVE-2024-50068 - mm/damon/tests/sysfs-kunit.h: fix memory leak in damon_sysfs_test_add_targets()

In the Linux kernel, the following vulnerability has been resolved: mm/damon/tests/sysfs-kunit.h: fix memory leak in damon_sysfs_test_add_targets() The sysfs_target->regions allocated in damon_sysfs_regions_alloc() is not freed in damon_sysfs_test_add_targets(), which cause the following memory lโ€ฆ

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Oct. 1, 2025, 9:15 p.m.

5.5

CVSS3.1

CVE-2024-50069 - pinctrl: apple: check devm_kasprintf() returned value

In the Linux kernel, the following vulnerability has been resolved: pinctrl: apple: check devm_kasprintf() returned value devm_kasprintf() can return a NULL pointer on failure but this returned value is not checked. Fix this lack and check the returned value. Found by code review.

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

4.7

CVSS3.1

CVE-2024-50082 - blk-rq-qos: fix crash on rq_qos_wait vs. rq_qos_wake_function race

In the Linux kernel, the following vulnerability has been resolved: blk-rq-qos: fix crash on rq_qos_wait vs. rq_qos_wake_function race We're seeing crashes from rq_qos_wake_function that look like this: BUG: unable to handle page fault for address: ffffafe180a40084 #PF: supervisor write acceโ€ฆ

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

7.8

CVSS3.1

CVE-2024-50085 - mptcp: pm: fix UaF read in mptcp_pm_nl_rm_addr_or_subflow

In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: fix UaF read in mptcp_pm_nl_rm_addr_or_subflow Syzkaller reported this splat: ================================================================== BUG: KASAN: slab-use-after-free in mptcp_pm_nl_rm_addr_or_subflow+0xโ€ฆ

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

7.8

CVSS3.1

CVE-2024-50086 - ksmbd: fix user-after-free from session log off

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix user-after-free from session log off There is racy issue between smb2 session log off and smb2 session setup. It will cause user-after-free from session log off. This add session_lock when setting SMB2_SESSION_EXPIRED โ€ฆ

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

7.8

CVSS3.1

CVE-2024-50088 - btrfs: fix uninitialized pointer free in add_inode_ref()

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix uninitialized pointer free in add_inode_ref() The add_inode_ref() function does not initialize the "name" struct when it is declared. If any of the following calls to "read_one_inode() returns NULL, dir = read_one_iโ€ฆ

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

8.8

CVSS3.1

CVE-2024-51181 -

A Reflected Cross Site Scripting (XSS) vulnerability was found in /ifscfinder/admin/profile.php in PHPGurukul IFSC Code Finder Project v1.0, which allows remote attackers to execute arbitrary code via " searchifsccode" parameter.

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2024, 1:39 p.m.
Total resulsts: 343923
Page 7582 of 34,393
ยซ previous page ยป next page
Filters