5.5

CVSS3.1

CVE-2024-44971 - net: dsa: bcm_sf2: Fix a possible memory leak in bcm_sf2_mdio_register()

In the Linux kernel, the following vulnerability has been resolved: net: dsa: bcm_sf2: Fix a possible memory leak in bcm_sf2_mdio_register() bcm_sf2_mdio_register() calls of_phy_find_device() and then phy_device_remove() in a loop to remove existing PHY devices. of_phy_find_device() eventually ca…

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:15 p.m.

5.4

CVSS3.1

CVE-2024-45177 -

An issue was discovered in za-internet C-MOR Video Surveillance 5.2401 and 6.00PL01. Due to improper input validation, the C-MOR web interface is vulnerable to persistent cross-site scripting (XSS) attacks. It was found out that the camera configuration is vulnerable to a persistent cross-site scri…

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: Sept. 4, 2025, 4:29 p.m.

5.5

CVSS3.1

CVE-2024-44956 - drm/xe/preempt_fence: enlarge the fence critical section

In the Linux kernel, the following vulnerability has been resolved: drm/xe/preempt_fence: enlarge the fence critical section It is really easy to introduce subtle deadlocks in preempt_fence_work_func() since we operate on single global ordered-wq for signalling our preempt fences behind the scene…

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:29 a.m.

7.8

CVSS3.1

CVE-2024-44977 - drm/amdgpu: Validate TA binary size

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Validate TA binary size Add TA binary size validation to avoid OOB write. (cherry picked from commit c0a04e3570d72aaf090962156ad085e37c62e442)

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: April 9, 2026, 5:42 p.m.

4.7

CVSS3.1

CVE-2024-44954 - ALSA: line6: Fix racy access to midibuf

In the Linux kernel, the following vulnerability has been resolved: ALSA: line6: Fix racy access to midibuf There can be concurrent accesses to line6 midibuf from both the URB completion callback and the rawmidi API access. This could be a cause of KMSAN warning triggered by syzkaller below (so …

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:52 a.m.

5.5

CVSS3.1

CVE-2024-44980 - drm/xe: Fix opregion leak

In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix opregion leak Being part o the display, ideally the setup and cleanup would be done by display itself. However this is a bigger refactor that needs to be done on both i915 and xe. For now, just fix the leak: unrefere…

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:30 a.m.

7.8

CVSS3.1

CVE-2024-44964 - idpf: fix memory leaks and crashes while performing a soft reset

In the Linux kernel, the following vulnerability has been resolved: idpf: fix memory leaks and crashes while performing a soft reset The second tagged commit introduced a UAF, as it removed restoring q_vector->vport pointers after reinitializating the structures. This is due to that all queue all…

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:29 a.m.

5.5

CVSS3.1

CVE-2024-45006 - xhci: Fix Panther point NULL pointer deref at full-speed re-enumeration

In the Linux kernel, the following vulnerability has been resolved: xhci: Fix Panther point NULL pointer deref at full-speed re-enumeration re-enumerating full-speed devices after a failed address device command can trigger a NULL pointer dereference. Full-speed devices may need to reconfigure t…

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:15 p.m.

5.5

CVSS3.1

CVE-2024-45005 - KVM: s390: fix validity interception issue when gisa is switched off

In the Linux kernel, the following vulnerability has been resolved: KVM: s390: fix validity interception issue when gisa is switched off We might run into a SIE validity if gisa has been disabled either via using kernel parameter "kvm.use_gisa=0" or by setting the related sysfs attribute to N (ec…

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:30 a.m.

5.5

CVSS3.1

CVE-2024-44991 - tcp: prevent concurrent execution of tcp_sk_exit_batch

In the Linux kernel, the following vulnerability has been resolved: tcp: prevent concurrent execution of tcp_sk_exit_batch Its possible that two threads call tcp_sk_exit_batch() concurrently, once from the cleanup_net workqueue, once from a task that failed to clone a new netns. In the latter ca…

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:15 p.m.
Total resulsts: 349182
Page 8668 of 34,919
Β« previous page Β» next page
Filters