4.7

CVSS3.1

CVE-2023-52898 - xhci: Fix null pointer dereference when host dies

In the Linux kernel, the following vulnerability has been resolved: xhci: Fix null pointer dereference when host dies Make sure xhci_free_dev() and xhci_kill_endpoint_urbs() do not race and cause null pointer dereference when host suddenly dies. Usb core may call xhci_free_dev() which frees the …

πŸ“… Published: Aug. 21, 2024, midnight πŸ”„ Last Modified: May 21, 2025, 8:49 a.m.

8.8

CVSS3.1

CVE-2024-42780 -

An Unrestricted file upload vulnerability was found in "/music/ajax.php?action=save_genre" in Kashipara Music Management System v1.0. This allows attackers to execute arbitrary code via uploading a crafted PHP file.

πŸ“… Published: Aug. 21, 2024, midnight πŸ”„ Last Modified: Aug. 23, 2024, 4:10 p.m.

9.8

CVSS3.1

CVE-2024-42777 -

An Unrestricted file upload vulnerability was found in "/music/ajax.php?action=signup" of Kashipara Music Management System v1.0, which allows attackers to execute arbitrary code via uploading a crafted PHP file.

πŸ“… Published: Aug. 21, 2024, midnight πŸ”„ Last Modified: Aug. 23, 2024, 4:09 p.m.

4.7

CVSS3.1

CVE-2022-48899 - drm/virtio: Fix GEM handle creation UAF

In the Linux kernel, the following vulnerability has been resolved: drm/virtio: Fix GEM handle creation UAF Userspace can guess the handle value and try to race GEM object creation with handle close, resulting in a use-after-free if we dereference the object after dropping the handle's reference.…

πŸ“… Published: Aug. 21, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 8:25 a.m.

5.5

CVSS3.1

CVE-2024-43871 - devres: Fix memory leakage caused by driver API devm_free_percpu()

In the Linux kernel, the following vulnerability has been resolved: devres: Fix memory leakage caused by driver API devm_free_percpu() It will cause memory leakage when use driver API devm_free_percpu() to free memory allocated by devm_alloc_percpu(), fixed by using devres_release() instead of de…

πŸ“… Published: Aug. 21, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 10:18 p.m.

5.5

CVSS3.1

CVE-2022-48895 - iommu/arm-smmu: Don't unregister on shutdown

In the Linux kernel, the following vulnerability has been resolved: iommu/arm-smmu: Don't unregister on shutdown Michael Walle says he noticed the following stack trace while performing a shutdown with "reboot -f". He suggests he got "lucky" and just hit the correct spot for the reboot while ther…

πŸ“… Published: Aug. 21, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 8:25 a.m.

5.5

CVSS3.1

CVE-2022-48876 - wifi: mac80211: fix initialization of rx->link and rx->link_sta

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix initialization of rx->link and rx->link_sta There are some codepaths that do not initialize rx->link_sta properly. This causes a crash in places which assume that rx->link_sta is valid if rx->sta is valid. One…

πŸ“… Published: Aug. 21, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 8:25 a.m.

5.5

CVSS3.1

CVE-2023-52903 - io_uring: lock overflowing for IOPOLL

In the Linux kernel, the following vulnerability has been resolved: io_uring: lock overflowing for IOPOLL syzbot reports an issue with overflow filling for IOPOLL: WARNING: CPU: 0 PID: 28 at io_uring/io_uring.c:734 io_cqring_event_overflow+0x1c0/0x230 io_uring/io_uring.c:734 CPU: 0 PID: 28 Comm:…

πŸ“… Published: Aug. 21, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 7:45 a.m.

5.5

CVSS3.1

CVE-2022-48875 - wifi: mac80211: sdata can be NULL during AMPDU start

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: sdata can be NULL during AMPDU start ieee80211_tx_ba_session_handle_start() may get NULL for sdata when a deauthentication is ongoing. Here a trace triggering the race with the hostapd test multi_ap_fronthaul_on_…

πŸ“… Published: Aug. 21, 2024, midnight πŸ”„ Last Modified: Dec. 23, 2025, 1:20 p.m.

8.4

CVSS3.1

CVE-2024-43882 - exec: Fix ToCToU between perm check and set-uid/gid usage

In the Linux kernel, the following vulnerability has been resolved: exec: Fix ToCToU between perm check and set-uid/gid usage When opening a file for exec via do_filp_open(), permission checking is done against the file's metadata at that moment, and on success, a file pointer is passed back. Muc…

πŸ“… Published: Aug. 21, 2024, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:52 a.m.
Total resulsts: 349182
Page 8782 of 34,919
Β« previous page Β» next page
Filters