5.5

CVSS3.1

CVE-2024-35914 - nfsd: Fix error cleanup path in nfsd_rename()

In the Linux kernel, the following vulnerability has been resolved: nfsd: Fix error cleanup path in nfsd_rename() Commit a8b0026847b8 ("rename(): avoid a deadlock in the case of parents having no common ancestor") added an error bail out path. However this path does not drop the remount protectioโ€ฆ

๐Ÿ“… Published: May 19, 2024, midnight ๐Ÿ”„ Last Modified: Sept. 23, 2025, 3:14 p.m.

5.5

CVSS3.1

CVE-2024-35909 - net: wwan: t7xx: Split 64bit accesses to fix alignment issues

In the Linux kernel, the following vulnerability has been resolved: net: wwan: t7xx: Split 64bit accesses to fix alignment issues Some of the registers are aligned on a 32bit boundary, causing alignment faults on 64bit platforms. Unable to handle kernel paging request at virtual address ffffffcโ€ฆ

๐Ÿ“… Published: May 19, 2024, midnight ๐Ÿ”„ Last Modified: Sept. 24, 2025, 6:51 p.m.

5.5

CVSS3.1

CVE-2024-35908 - tls: get psock ref after taking rxlock to avoid leak

In the Linux kernel, the following vulnerability has been resolved: tls: get psock ref after taking rxlock to avoid leak At the start of tls_sw_recvmsg, we take a reference on the psock, and then call tls_rx_reader_lock. If that fails, we return directly without releasing the reference. Instead โ€ฆ

๐Ÿ“… Published: May 19, 2024, midnight ๐Ÿ”„ Last Modified: Sept. 24, 2025, 6:52 p.m.

5.5

CVSS3.1

CVE-2024-35907 - mlxbf_gige: call request_irq() after NAPI initialized

In the Linux kernel, the following vulnerability has been resolved: mlxbf_gige: call request_irq() after NAPI initialized The mlxbf_gige driver encounters a NULL pointer exception in mlxbf_gige_open() when kdump is enabled. The sequence to reproduce the exception is as follows: a) enable kdump bโ€ฆ

๐Ÿ“… Published: May 19, 2024, midnight ๐Ÿ”„ Last Modified: May 4, 2025, 9:08 a.m.

5.5

CVSS3.1

CVE-2024-35902 - net/rds: fix possible cp null dereference

In the Linux kernel, the following vulnerability has been resolved: net/rds: fix possible cp null dereference cp might be null, calling cp->cp_conn would produce null dereference [Simon Horman adds:] Analysis: * cp is a parameter of __rds_rdma_map and is not reassigned. * The following call-sโ€ฆ

๐Ÿ“… Published: May 19, 2024, midnight ๐Ÿ”„ Last Modified: May 4, 2025, 12:56 p.m.

5.5

CVSS3.1

CVE-2024-35901 - net: mana: Fix Rx DMA datasize and skb_over_panic

In the Linux kernel, the following vulnerability has been resolved: net: mana: Fix Rx DMA datasize and skb_over_panic mana_get_rxbuf_cfg() aligns the RX buffer's DMA datasize to be multiple of 64. So a packet slightly bigger than mtu+14, say 1536, can be received and cause skb_over_panic. Sampleโ€ฆ

๐Ÿ“… Published: May 19, 2024, midnight ๐Ÿ”„ Last Modified: Sept. 23, 2025, 1:35 p.m.

5.5

CVSS3.1

CVE-2024-35892 - net/sched: fix lockdep splat in qdisc_tree_reduce_backlog()

In the Linux kernel, the following vulnerability has been resolved: net/sched: fix lockdep splat in qdisc_tree_reduce_backlog() qdisc_tree_reduce_backlog() is called with the qdisc lock held, not RTNL. We must use qdisc_lookup_rcu() instead of qdisc_lookup() syzbot reported: WARNING: suspiciouโ€ฆ

๐Ÿ“… Published: May 19, 2024, midnight ๐Ÿ”„ Last Modified: Sept. 19, 2025, 6:51 p.m.

5.5

CVSS3.1

CVE-2024-35888 - erspan: make sure erspan_base_hdr is present in skb->head

In the Linux kernel, the following vulnerability has been resolved: erspan: make sure erspan_base_hdr is present in skb->head syzbot reported a problem in ip6erspan_rcv() [1] Issue is that ip6erspan_rcv() (and erspan_rcv()) no longer make sure erspan_base_hdr is present in skb linear part (skb->โ€ฆ

๐Ÿ“… Published: May 19, 2024, midnight ๐Ÿ”„ Last Modified: May 7, 2025, 7:58 p.m.

7.8

CVSS3.1

CVE-2024-35887 - ax25: fix use-after-free bugs caused by ax25_ds_del_timer

In the Linux kernel, the following vulnerability has been resolved: ax25: fix use-after-free bugs caused by ax25_ds_del_timer When the ax25 device is detaching, the ax25_dev_device_down() calls ax25_ds_del_timer() to cleanup the slave_timer. When the timer handler is running, the ax25_ds_del_timeโ€ฆ

๐Ÿ“… Published: May 19, 2024, midnight ๐Ÿ”„ Last Modified: May 4, 2025, 9:07 a.m.

5.5

CVSS3.1

CVE-2024-35883 - spi: mchp-pci1xxx: Fix a possible null pointer dereference in pci1xxx_spi_probe

In the Linux kernel, the following vulnerability has been resolved: spi: mchp-pci1xxx: Fix a possible null pointer dereference in pci1xxx_spi_probe In function pci1xxxx_spi_probe, there is a potential null pointer that may be caused by a failed memory allocation by the function devm_kzalloc. Hencโ€ฆ

๐Ÿ“… Published: May 19, 2024, midnight ๐Ÿ”„ Last Modified: May 4, 2025, 9:07 a.m.
Total resulsts: 349182
Page 9777 of 34,919
ยซ previous page ยป next page
Filters