7.8

CVSS3.1

CVE-2024-50005 - mac802154: Fix potential RCU dereference issue in mac802154_scan_worker

In the Linux kernel, the following vulnerability has been resolved: mac802154: Fix potential RCU dereference issue in mac802154_scan_worker In the `mac802154_scan_worker` function, the `scan_req->type` field was accessed after the RCU read-side critical section was unlocked. According to RCU usagโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: May 4, 2025, 9:43 a.m.

7.8

CVSS3.1

CVE-2024-49931 - wifi: ath12k: fix array out-of-bound access in SoC stats

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix array out-of-bound access in SoC stats Currently, the ath12k_soc_dp_stats::hal_reo_error array is defined with a maximum size of DP_REO_DST_RING_MAX. However, the ath12k_dp_rx_process() function access ath12k_soโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: May 4, 2025, 9:41 a.m.

8.2

CVSS3.1

CVE-2024-47912 -

A vulnerability in the AWV (Audio, Web, and Video) Conferencing component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.201) could allow an unauthenticated attacker to perform unauthorized data-access attacks due to missing authentication mechanisms. A successful exploit could allow an attacker to aโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: July 7, 2025, 5:52 p.m.

9.8

CVSS3.1

CVE-2024-35314 -

A vulnerability in the Desktop Client of Mitel MiCollab through 9.7.1.110, and MiVoice Business Solution Virtual Instance (MiVB SVI) 1.0.0.25, could allow an unauthenticated attacker to conduct a command injection attack due to insufficient parameter sanitization. A successful exploit requires userโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: July 7, 2025, 5:54 p.m.

5.5

CVSS3.1

CVE-2024-49999 - afs: Fix the setting of the server responding flag

In the Linux kernel, the following vulnerability has been resolved: afs: Fix the setting of the server responding flag In afs_wait_for_operation(), we set transcribe the call responded flag to the server record that we used after doing the fileserver iteration loop - but it's possible to exit theโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: May 4, 2025, 9:43 a.m.

7.8

CVSS3.1

CVE-2024-49989 - drm/amd/display: fix double free issue during amdgpu module unload

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: fix double free issue during amdgpu module unload Flexible endpoints use DIGs from available inflexible endpoints, so only the encoders of inflexible links need to be freed. Otherwise, a double free issue may occโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 8:16 p.m.

7.8

CVSS3.1

CVE-2022-49017 - tipc: re-fetch skb cb after tipc_msg_validate

In the Linux kernel, the following vulnerability has been resolved: tipc: re-fetch skb cb after tipc_msg_validate As the call trace shows, the original skb was freed in tipc_msg_validate(), and dereferencing the old skb cb would cause an use-after-free crash. BUG: KASAN: use-after-free in tipcโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: May 4, 2025, 8:28 a.m.

7.0

CVSS3.1

CVE-2024-47741 - btrfs: fix race setting file private on concurrent lseek using same fd

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix race setting file private on concurrent lseek using same fd When doing concurrent lseek(2) system calls against the same file descriptor, using multiple threads belonging to the same process, we have a short time windoโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: May 4, 2025, 9:38 a.m.

5.5

CVSS3.1

CVE-2024-50027 - thermal: core: Free tzp copy along with the thermal zone

In the Linux kernel, the following vulnerability has been resolved: thermal: core: Free tzp copy along with the thermal zone The object pointed to by tz->tzp may still be accessed after being freed in thermal_zone_device_unregister(), so move the freeing of it to the point after the removal complโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: May 4, 2025, 9:44 a.m.

5.5

CVSS3.1

CVE-2024-50004 - drm/amd/display: update DML2 policy EnhancedPrefetchScheduleAccelerationFinal DCN35

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: update DML2 policy EnhancedPrefetchScheduleAccelerationFinal DCN35 [WHY & HOW] Mismatch in DCN35 DML2 cause bw validation failed to acquire unexpected DPP pipe to cause grey screen and system hang. Remove Enhanceโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: May 4, 2025, 9:43 a.m.
Total resulsts: 349182
Page 8221 of 34,919
ยซ previous page ยป next page
Filters