5.5

CVSS3.1

CVE-2024-36029 - mmc: sdhci-msm: pervent access to suspended controller

In the Linux kernel, the following vulnerability has been resolved: mmc: sdhci-msm: pervent access to suspended controller Generic sdhci code registers LED device and uses host->runtime_suspended flag to protect access to it. The sdhci-msm driver doesn't set this flag, which causes a crash when L…

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: Sept. 30, 2025, 5:43 p.m.

6.2

CVSS3.1

CVE-2024-36888 - workqueue: Fix selection of wake_cpu in kick_pool()

In the Linux kernel, the following vulnerability has been resolved: workqueue: Fix selection of wake_cpu in kick_pool() With cpu_possible_mask=0-63 and cpu_online_mask=0-7 the following kernel oops was observed: smp: Bringing up secondary CPUs ... smp: Brought up 1 node, 8 CPUs Unable to handle …

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:11 a.m.

5.5

CVSS3.1

CVE-2024-36936 - efi/unaccepted: touch soft lockup during memory accept

In the Linux kernel, the following vulnerability has been resolved: efi/unaccepted: touch soft lockup during memory accept Commit 50e782a86c98 ("efi/unaccepted: Fix soft lockups caused by parallel memory acceptance") has released the spinlock so other CPUs can do memory acceptance in parallel and…

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: Sept. 17, 2025, 10:18 p.m.

5.5

CVSS3.1

CVE-2024-36023 - Julia Lawall reported this null pointer dereference, this should fix it.

In the Linux kernel, the following vulnerability has been resolved: Julia Lawall reported this null pointer dereference, this should fix it.

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:10 a.m.

7.8

CVSS3.1

CVE-2024-36898 - gpiolib: cdev: fix uninitialised kfifo

In the Linux kernel, the following vulnerability has been resolved: gpiolib: cdev: fix uninitialised kfifo If a line is requested with debounce, and that results in debouncing in software, and the line is subsequently reconfigured to enable edge detection then the allocation of the kfifo to conta…

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: April 23, 2026, 1:51 p.m.

7.1

CVSS3.1

CVE-2024-36883 - net: fix out-of-bounds access in ops_init

In the Linux kernel, the following vulnerability has been resolved: net: fix out-of-bounds access in ops_init net_alloc_generic is called by net_alloc, which is called without any locking. It reads max_gen_ptrs, which is changed under pernet_ops_rwsem. It is read twice, first to allocate an array…

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: Jan. 22, 2026, 8:24 p.m.

5.5

CVSS3.1

CVE-2024-36020 - i40e: fix vf may be used uninitialized in this function warning

In the Linux kernel, the following vulnerability has been resolved: i40e: fix vf may be used uninitialized in this function warning To fix the regression introduced by commit 52424f974bc5, which causes servers hang in very hard to reproduce conditions with resets races. Using two sources for the …

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: Dec. 23, 2025, 7:16 p.m.

5.5

CVSS3.1

CVE-2024-36890 - mm/slab: make __free(kfree) accept error pointers

In the Linux kernel, the following vulnerability has been resolved: mm/slab: make __free(kfree) accept error pointers Currently, if an automatically freed allocation is an error pointer that will lead to a crash. An example of this is in wm831x_gpio_dbg_show(). 171 char *label __free(kfree) …

πŸ“… Published: May 30, 2024, midnight πŸ”„ Last Modified: Oct. 29, 2025, 2:15 p.m.

8.6

CVSS3.1

CVE-2024-36114 - Decompressors can crash the JVM and leak memory content in Aircompressor

Aircompressor is a library with ports of the Snappy, LZO, LZ4, and Zstandard compression algorithms to Java. All decompressor implementations of Aircompressor (LZ4, LZO, Snappy, Zstandard) can crash the JVM for certain input, and in some cases also leak the content of other memory of the Java proce…

πŸ“… Published: May 29, 2024, 8:24 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.3

CVSS3.1

CVE-2024-35221 - Denial of service when publishing a package on rubygems.org

Rubygems.org is the Ruby community's gem hosting service. A Gem publisher can cause a Remote DoS when publishing a Gem. This is due to how Ruby reads the Manifest of Gem files when using Gem::Specification.from_yaml. from_yaml makes use of SafeYAML.load which allows YAML aliases inside the YAML-bas…

πŸ“… Published: May 29, 2024, 8:18 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 9640 of 34,919
Β« previous page Β» next page
Filters