5.5

CVSS3.1

CVE-2024-35930 - scsi: lpfc: Fix possible memory leak in lpfc_rcv_padisc()

In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Fix possible memory leak in lpfc_rcv_padisc() The call to lpfc_sli4_resume_rpi() in lpfc_rcv_padisc() may return an unsuccessful status. In such cases, the elsiocb is not issued, the completion is not called, and thu…

πŸ“… Published: May 19, 2024, midnight πŸ”„ Last Modified: May 21, 2025, 9:12 a.m.

5.5

CVSS3.1

CVE-2024-35927 - drm: Check output polling initialized before disabling

In the Linux kernel, the following vulnerability has been resolved: drm: Check output polling initialized before disabling In drm_kms_helper_poll_disable() check if output polling support is initialized before disabling polling. If not flag this as a warning. Additionally in drm_mode_config_helpe…

πŸ“… Published: May 19, 2024, midnight πŸ”„ Last Modified: Sept. 24, 2025, 6:38 p.m.

5.5

CVSS3.1

CVE-2024-35926 - crypto: iaa - Fix async_disable descriptor leak

In the Linux kernel, the following vulnerability has been resolved: crypto: iaa - Fix async_disable descriptor leak The disable_async paths of iaa_compress/decompress() don't free idxd descriptors in the async_disable case. Currently this only happens in the testcases where req->dst is set to nul…

πŸ“… Published: May 19, 2024, midnight πŸ”„ Last Modified: Sept. 23, 2025, 3:31 p.m.

5.5

CVSS3.1

CVE-2024-35924 - usb: typec: ucsi: Limit read size on v1.2

In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: Limit read size on v1.2 Between UCSI 1.2 and UCSI 2.0, the size of the MESSAGE_IN region was increased from 16 to 256. In order to avoid overflowing reads for older systems, add a mechanism to use the read UCSI …

πŸ“… Published: May 19, 2024, midnight πŸ”„ Last Modified: Sept. 24, 2025, 6:47 p.m.

7.8

CVSS3.1

CVE-2024-35921 - media: mediatek: vcodec: Fix oops when HEVC init fails

In the Linux kernel, the following vulnerability has been resolved: media: mediatek: vcodec: Fix oops when HEVC init fails The stateless HEVC decoder saves the instance pointer in the context regardless if the initialization worked or not. This caused a use after free, when the pointer is freed i…

πŸ“… Published: May 19, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:08 a.m.

5.3

CVSS3.1

CVE-2024-35916 - dma-buf: Fix NULL pointer dereference in sanitycheck()

In the Linux kernel, the following vulnerability has been resolved: dma-buf: Fix NULL pointer dereference in sanitycheck() If due to a memory allocation failure mock_chain() returns NULL, it is passed to dma_fence_enable_sw_signaling() resulting in NULL pointer dereference there. Call dma_fence_…

πŸ“… Published: May 19, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:08 a.m.

5.5

CVSS3.1

CVE-2024-35914 - nfsd: Fix error cleanup path in nfsd_rename()

In the Linux kernel, the following vulnerability has been resolved: nfsd: Fix error cleanup path in nfsd_rename() Commit a8b0026847b8 ("rename(): avoid a deadlock in the case of parents having no common ancestor") added an error bail out path. However this path does not drop the remount protectio…

πŸ“… Published: May 19, 2024, midnight πŸ”„ Last Modified: Sept. 23, 2025, 3:14 p.m.

5.5

CVSS3.1

CVE-2024-35909 - net: wwan: t7xx: Split 64bit accesses to fix alignment issues

In the Linux kernel, the following vulnerability has been resolved: net: wwan: t7xx: Split 64bit accesses to fix alignment issues Some of the registers are aligned on a 32bit boundary, causing alignment faults on 64bit platforms. Unable to handle kernel paging request at virtual address ffffffc…

πŸ“… Published: May 19, 2024, midnight πŸ”„ Last Modified: Sept. 24, 2025, 6:51 p.m.

5.5

CVSS3.1

CVE-2024-35908 - tls: get psock ref after taking rxlock to avoid leak

In the Linux kernel, the following vulnerability has been resolved: tls: get psock ref after taking rxlock to avoid leak At the start of tls_sw_recvmsg, we take a reference on the psock, and then call tls_rx_reader_lock. If that fails, we return directly without releasing the reference. Instead …

πŸ“… Published: May 19, 2024, midnight πŸ”„ Last Modified: Sept. 24, 2025, 6:52 p.m.

5.5

CVSS3.1

CVE-2024-35907 - mlxbf_gige: call request_irq() after NAPI initialized

In the Linux kernel, the following vulnerability has been resolved: mlxbf_gige: call request_irq() after NAPI initialized The mlxbf_gige driver encounters a NULL pointer exception in mlxbf_gige_open() when kdump is enabled. The sequence to reproduce the exception is as follows: a) enable kdump b…

πŸ“… Published: May 19, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:08 a.m.
Total resulsts: 343448
Page 9203 of 34,345
Β« previous page Β» next page
Filters