5.5

CVSS3.1

CVE-2024-38557 - net/mlx5: Reload only IB representors upon lag disable/enable

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Reload only IB representors upon lag disable/enable On lag disable, the bond IB device along with all of its representors are destroyed, and then the slaves' representors get reloaded. In case the slave IB representor …

πŸ“… Published: June 19, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:14 a.m.

7.1

CVSS3.1

CVE-2024-38599 - jffs2: prevent xattr node from overflowing the eraseblock

In the Linux kernel, the following vulnerability has been resolved: jffs2: prevent xattr node from overflowing the eraseblock Add a check to make sure that the requested xattr node size is no larger than the eraseblock minus the cleanmarker. Unlike the usual inode nodes, the xattr nodes aren't s…

πŸ“… Published: June 19, 2024, midnight πŸ”„ Last Modified: Nov. 4, 2025, 6:16 p.m.

5.5

CVSS3.1

CVE-2021-47582 - USB: core: Make do_proc_control() and do_proc_bulk() killable

In the Linux kernel, the following vulnerability has been resolved: USB: core: Make do_proc_control() and do_proc_bulk() killable The USBDEVFS_CONTROL and USBDEVFS_BULK ioctls invoke usb_start_wait_urb(), which contains an uninterruptible wait with a user-specified timeout value. If timeout valu…

πŸ“… Published: June 19, 2024, midnight πŸ”„ Last Modified: Dec. 18, 2025, 11:38 a.m.

5.5

CVSS3.1

CVE-2021-47612 - nfc: fix segfault in nfc_genl_dump_devices_done

In the Linux kernel, the following vulnerability has been resolved: nfc: fix segfault in nfc_genl_dump_devices_done When kmalloc in nfc_genl_dump_devices() fails then nfc_genl_dump_devices_done() segfaults as below KASAN: null-ptr-deref in range [0x0000000000000008-0x000000000000000f] CPU: 0 PID…

πŸ“… Published: June 19, 2024, midnight πŸ”„ Last Modified: Dec. 18, 2025, 11:38 a.m.

7.1

CVSS3.1

CVE-2024-38538 - net: bridge: xmit: make sure we have at least eth header len bytes

In the Linux kernel, the following vulnerability has been resolved: net: bridge: xmit: make sure we have at least eth header len bytes syzbot triggered an uninit value[1] error in bridge device's xmit path by sending a short (less than ETH_HLEN bytes) skb. To fix it check if we can actually pull …

πŸ“… Published: June 19, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 9:16 p.m.

5.5

CVSS3.1

CVE-2024-38608 - net/mlx5e: Fix netif state handling

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix netif state handling mlx5e_suspend cleans resources only if netif_device_present() returns true. However, mlx5e_resume changes the state of netif, via mlx5e_nic_enable, only if reg_state == NETREG_REGISTERED. In th…

πŸ“… Published: June 19, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:15 a.m.

7.8

CVSS3.1

CVE-2021-47614 - RDMA/irdma: Fix a user-after-free in add_pble_prm

In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix a user-after-free in add_pble_prm When irdma_hmc_sd_one fails, 'chunk' is freed while its still on the PBLE info list. Add the chunk entry to the PBLE info list only after successful setting of the SD in irdma_hm…

πŸ“… Published: June 19, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 7:14 a.m.

5.5

CVSS3.1

CVE-2024-38547 - media: atomisp: ssh_css: Fix a null-pointer dereference in load_video_binaries

In the Linux kernel, the following vulnerability has been resolved: media: atomisp: ssh_css: Fix a null-pointer dereference in load_video_binaries The allocation failure of mycs->yuv_scaler_binary in load_video_binaries() is followed with a dereference of mycs->yuv_scaler_binary after the followi…

πŸ“… Published: June 19, 2024, midnight πŸ”„ Last Modified: Sept. 29, 2025, 11:15 a.m.

5.5

CVSS3.1

CVE-2021-47585 - btrfs: fix memory leak in __add_inode_ref()

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix memory leak in __add_inode_ref() Line 1169 (#3) allocates a memory chunk for victim_name by kmalloc(), but when the function returns in line 1184 (#4) victim_name allocated by line 1169 (#3) is not freed, which will l…

πŸ“… Published: June 19, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 7:14 a.m.

8.8

CVSS3.1

CVE-2024-6146 - Actiontec WCB6200Q uh_get_postdata_withupload Stack-based Buffer Overflow Remote Code Execution Vul…

Actiontec WCB6200Q uh_get_postdata_withupload Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Actiontec WCB6200Q routers. Authentication is not required to exploit this vulne…

πŸ“… Published: June 18, 2024, 11:39 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:49 a.m.
Total resulsts: 346618
Page 9154 of 34,662
Β« previous page Β» next page
Filters