5.5

CVSS3.1

CVE-2024-38622 - drm/msm/dpu: Add callback function pointer check before its call

In the Linux kernel, the following vulnerability has been resolved: drm/msm/dpu: Add callback function pointer check before its call In dpu_core_irq_callback_handler() callback function pointer is compared to NULL, but then callback function is unconditionally called by this pointer. Fix this bug…

πŸ“… Published: June 21, 2024, midnight πŸ”„ Last Modified: Sept. 17, 2025, 4:59 p.m.

4.4

CVSS3.1

CVE-2023-52884 - Input: cyapa - add missing input core locking to suspend/resume functions

In the Linux kernel, the following vulnerability has been resolved: Input: cyapa - add missing input core locking to suspend/resume functions Grab input->mutex during suspend/resume functions like it is done in other input drivers. This fixes the following warning during system suspend/resume cyc…

πŸ“… Published: June 21, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 7:45 a.m.

7.8

CVSS3.1

CVE-2024-38629 - dmaengine: idxd: Avoid unnecessary destruction of file_ida

In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Avoid unnecessary destruction of file_ida file_ida is allocated during cdev open and is freed accordingly during cdev release. This sequence is guaranteed by driver file operations. Therefore, there is no need to…

πŸ“… Published: June 21, 2024, midnight πŸ”„ Last Modified: Oct. 3, 2025, 2:53 p.m.

5.5

CVSS3.1

CVE-2024-36489 - tls: fix missing memory barrier in tls_init

In the Linux kernel, the following vulnerability has been resolved: tls: fix missing memory barrier in tls_init In tls_init(), a write memory barrier is missing, and store-store reordering may cause NULL dereference in tls_{setsockopt,getsockopt}. CPU0 CPU1 ----- …

πŸ“… Published: June 21, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:11 a.m.

7.8

CVSS3.1

CVE-2024-36477 - tpm_tis_spi: Account for SPI header when allocating TPM SPI xfer buffer

In the Linux kernel, the following vulnerability has been resolved: tpm_tis_spi: Account for SPI header when allocating TPM SPI xfer buffer The TPM SPI transfer mechanism uses MAX_SPI_FRAMESIZE for computing the maximum transfer length and the size of the transfer buffer. As such, it does not acc…

πŸ“… Published: June 21, 2024, midnight πŸ”„ Last Modified: May 23, 2025, 8:48 p.m.

5.5

CVSS3.1

CVE-2024-38637 - greybus: lights: check return of get_channel_from_mode

In the Linux kernel, the following vulnerability has been resolved: greybus: lights: check return of get_channel_from_mode If channel for the given node is not found we return null from get_channel_from_mode. Make sure we validate the return pointer before using it in two of the missing places. …

πŸ“… Published: June 21, 2024, midnight πŸ”„ Last Modified: Nov. 4, 2025, 6:16 p.m.

5.5

CVSS3.1

CVE-2024-36286 - netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu()

In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() syzbot reported that nf_reinject() could be called without rcu_read_lock() : WARNING: suspicious RCU usage 6.9.0-rc7-syzkaller-02060-g5c1672705a1a #0 …

πŸ“… Published: June 21, 2024, midnight πŸ”„ Last Modified: Nov. 4, 2025, 6:16 p.m.

5.5

CVSS3.1

CVE-2024-36281 - net/mlx5: Use mlx5_ipsec_rx_status_destroy to correctly delete status rules

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Use mlx5_ipsec_rx_status_destroy to correctly delete status rules rx_create no longer allocates a modify_hdr instance that needs to be cleaned up. The mlx5_modify_header_dealloc call will lead to a NULL pointer derefere…

πŸ“… Published: June 21, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:11 a.m.

5.4

CVSS3.1

CVE-2024-37675 -

Cross Site Scripting vulnerability in Tessi Docubase Document Management product 5.x allows a remote attacker to execute arbitrary code via the parameter "sectionContent" related to the functionality of adding notes to an uploaded file.

πŸ“… Published: June 21, 2024, midnight πŸ”„ Last Modified: March 18, 2025, 3:15 p.m.

5.4

CVSS3.1

CVE-2024-37673 -

Cross Site Scripting vulnerability in Tessi Docubase Document Management product 5.x allows a remote attacker to execute arbitrary code via the filename parameter.

πŸ“… Published: June 21, 2024, midnight πŸ”„ Last Modified: Nov. 21, 2024, 9:24 a.m.
Total resulsts: 349182
Page 9368 of 34,919
Β« previous page Β» next page
Filters