7.8

CVSS3.1

CVE-2024-36906 - ARM: 9381/1: kasan: clear stale stack poison

In the Linux kernel, the following vulnerability has been resolved: ARM: 9381/1: kasan: clear stale stack poison We found below OOB crash: [ 33.452494] ================================================================== [ 33.453513] BUG: KASAN: stack-out-of-bounds in refresh_cpu_vm_stats.cons…

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: Sept. 17, 2025, 10:14 p.m.

9.1

CVSS3.1

CVE-2024-36896 - USB: core: Fix access violation during port device removal

In the Linux kernel, the following vulnerability has been resolved: USB: core: Fix access violation during port device removal Testing with KASAN and syzkaller revealed a bug in port.c:disable_store(): usb_hub_to_struct_hub() can return NULL if the hub that the port belongs to is concurrently rem…

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:11 a.m.

5.5

CVSS3.1

CVE-2024-36887 - e1000e: change usleep_range to udelay in PHY mdic access

In the Linux kernel, the following vulnerability has been resolved: e1000e: change usleep_range to udelay in PHY mdic access This is a partial revert of commit 6dbdd4de0362 ("e1000e: Workaround for sporadic MDI error on Meteor Lake systems"). The referenced commit used usleep_range inside the PHY…

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: Sept. 18, 2025, 2:37 p.m.

5.5

CVSS3.1

CVE-2024-36884 - iommu/arm-smmu: Use the correct type in nvidia_smmu_context_fault()

In the Linux kernel, the following vulnerability has been resolved: iommu/arm-smmu: Use the correct type in nvidia_smmu_context_fault() This was missed because of the function pointer indirection. nvidia_smmu_context_fault() is also installed as a irq function, and the 'void *' was changed to a …

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:11 a.m.

4.4

CVSS3.1

CVE-2024-36928 - s390/qeth: Fix kernel panic after setting hsuid

In the Linux kernel, the following vulnerability has been resolved: s390/qeth: Fix kernel panic after setting hsuid Symptom: When the hsuid attribute is set for the first time on an IQD Layer3 device while the corresponding network interface is already UP, the kernel will try to execute a napi fu…

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 12:56 p.m.

6.2

CVSS3.1

CVE-2024-36910 - uio_hv_generic: Don't free decrypted memory

In the Linux kernel, the following vulnerability has been resolved: uio_hv_generic: Don't free decrypted memory In CoCo VMs it is possible for the untrusted host to cause set_memory_encrypted() or set_memory_decrypted() to fail such that an error is returned and the resulting memory is shared. Ca…

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:36 a.m.

5.6

CVSS3.1

CVE-2024-36894 - usb: gadget: f_fs: Fix race between aio_cancel() and AIO request complete

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Fix race between aio_cancel() and AIO request complete FFS based applications can utilize the aio_cancel() callback to dequeue pending USB requests submitted to the UDC. There is a scenario where the FFS appli…

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 10:16 p.m.

7.8

CVSS3.1

CVE-2024-36880 - Bluetooth: qca: add missing firmware sanity checks

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: qca: add missing firmware sanity checks Add the missing sanity checks when parsing the firmware files before downloading them to avoid accessing and corrupting memory beyond the vmalloced buffer.

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: Sept. 30, 2025, 5:46 p.m.

5.5

CVSS3.1

CVE-2024-36948 - drm/xe/xe_migrate: Cast to output precision before multiplying operands

In the Linux kernel, the following vulnerability has been resolved: drm/xe/xe_migrate: Cast to output precision before multiplying operands Addressing potential overflow in result of multiplication of two lower precision (u32) operands before widening it to higher precision (u64). -v2 Fix commi…

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: Oct. 1, 2025, 2:34 p.m.

7.1

CVSS3.1

CVE-2024-36033 - Bluetooth: qca: fix info leak when fetching board id

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: qca: fix info leak when fetching board id Add the missing sanity check when fetching the board id to avoid leaking slab data when later requesting the firmware.

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: Sept. 18, 2025, 2:36 p.m.
Total resulsts: 349182
Page 9633 of 34,919
Β« previous page Β» next page
Filters