5.5

CVSS3.1

CVE-2024-42124 - scsi: qedf: Make qedf_execute_tmf() non-preemptible

In the Linux kernel, the following vulnerability has been resolved: scsi: qedf: Make qedf_execute_tmf() non-preemptible Stop calling smp_processor_id() from preemptible code in qedf_execute_tmf90. This results in BUG_ON() when running an RT kernel. [ 659.343280] BUG: using smp_processor_id() in…

πŸ“… Published: July 30, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 10:17 p.m.

7.0

CVSS3.1

CVE-2024-42162 - gve: Account for stopped queues when reading NIC stats

In the Linux kernel, the following vulnerability has been resolved: gve: Account for stopped queues when reading NIC stats We now account for the fact that the NIC might send us stats for a subset of queues. Without this change, gve_get_ethtool_stats might make an invalid access on the priv->stat…

πŸ“… Published: July 30, 2024, midnight πŸ”„ Last Modified: May 21, 2025, 9:13 a.m.

6.3

CVSS3.1

CVE-2024-42111 - btrfs: always do the basic checks for btrfs_qgroup_inherit structure

In the Linux kernel, the following vulnerability has been resolved: btrfs: always do the basic checks for btrfs_qgroup_inherit structure [BUG] Syzbot reports the following regression detected by KASAN: BUG: KASAN: slab-out-of-bounds in btrfs_qgroup_inherit+0x42e/0x2e20 fs/btrfs/qgroup.c:3277 …

πŸ“… Published: July 30, 2024, midnight πŸ”„ Last Modified: Sept. 26, 2025, 3:27 p.m.

9.8

CVSS3.1

CVE-2024-39010 -

chase-moskal snapstate v0.0.9 was discovered to contain a prototype pollution via the function attemptNestedProperty. This vulnerability allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via injecting arbitrary properties.

πŸ“… Published: July 30, 2024, midnight πŸ”„ Last Modified: Nov. 21, 2024, 9:27 a.m.

9.8

CVSS3.1

CVE-2024-38983 -

Prototype Pollution in alykoshin mini-deep-assign v0.0.8 allows an attacker to execute arbitrary code or cause a Denial of Service (DoS) and cause other impacts via the _assign() method at (/lib/index.js:91)

πŸ“… Published: July 30, 2024, midnight πŸ”„ Last Modified: Nov. 21, 2024, 9:27 a.m.

1.9

CVSS3.1

CVE-2024-42155 - s390/pkey: Wipe copies of protected- and secure-keys

In the Linux kernel, the following vulnerability has been resolved: s390/pkey: Wipe copies of protected- and secure-keys Although the clear-key of neither protected- nor secure-keys is accessible, this key material should only be visible to the calling process. So wipe all copies of protected- or…

πŸ“… Published: July 30, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:24 a.m.

5.5

CVSS3.1

CVE-2024-42137 - Bluetooth: qca: Fix BT enable failure again for QCA6390 after warm reboot

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: qca: Fix BT enable failure again for QCA6390 after warm reboot Commit 272970be3dab ("Bluetooth: hci_qca: Fix driver shutdown on closed serdev") will cause below regression issue: BT can't be enabled after below steps:…

πŸ“… Published: July 30, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 10:17 p.m.

5.5

CVSS3.1

CVE-2024-42113 - net: txgbe: initialize num_q_vectors for MSI/INTx interrupts

In the Linux kernel, the following vulnerability has been resolved: net: txgbe: initialize num_q_vectors for MSI/INTx interrupts When using MSI/INTx interrupts, wx->num_q_vectors is uninitialized. Thus there will be kernel panic in wx_alloc_q_vectors() to allocate queue vectors.

πŸ“… Published: July 30, 2024, midnight πŸ”„ Last Modified: Sept. 26, 2025, 3:33 p.m.

7.8

CVSS3.1

CVE-2024-42112 - net: txgbe: free isb resources at the right time

In the Linux kernel, the following vulnerability has been resolved: net: txgbe: free isb resources at the right time When using MSI/INTx interrupt, the shared interrupts are still being handled in the device remove routine, before free IRQs. So isb memory is still read after it is freed. Thus mov…

πŸ“… Published: July 30, 2024, midnight πŸ”„ Last Modified: Oct. 7, 2025, 4:56 p.m.

5.5

CVSS3.1

CVE-2024-41443 -

A stack overflow in the function cp_dynamic() (/vendor/cute_png.h) of hicolor v0.5.0 allows attackers to cause a Denial of Service (DoS) via a crafted PNG file.

πŸ“… Published: July 30, 2024, midnight πŸ”„ Last Modified: March 19, 2025, 6:15 p.m.
Total resulsts: 349182
Page 9003 of 34,919
Β« previous page Β» next page
Filters