5.5

CVSS3.1

CVE-2024-50069 - pinctrl: apple: check devm_kasprintf() returned value

In the Linux kernel, the following vulnerability has been resolved: pinctrl: apple: check devm_kasprintf() returned value devm_kasprintf() can return a NULL pointer on failure but this returned value is not checked. Fix this lack and check the returned value. Found by code review.

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

4.7

CVSS3.1

CVE-2024-50082 - blk-rq-qos: fix crash on rq_qos_wait vs. rq_qos_wake_function race

In the Linux kernel, the following vulnerability has been resolved: blk-rq-qos: fix crash on rq_qos_wait vs. rq_qos_wake_function race We're seeing crashes from rq_qos_wake_function that look like this: BUG: unable to handle page fault for address: ffffafe180a40084 #PF: supervisor write acceโ€ฆ

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

7.8

CVSS3.1

CVE-2024-50085 - mptcp: pm: fix UaF read in mptcp_pm_nl_rm_addr_or_subflow

In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: fix UaF read in mptcp_pm_nl_rm_addr_or_subflow Syzkaller reported this splat: ================================================================== BUG: KASAN: slab-use-after-free in mptcp_pm_nl_rm_addr_or_subflow+0xโ€ฆ

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

7.8

CVSS3.1

CVE-2024-50086 - ksmbd: fix user-after-free from session log off

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix user-after-free from session log off There is racy issue between smb2 session log off and smb2 session setup. It will cause user-after-free from session log off. This add session_lock when setting SMB2_SESSION_EXPIRED โ€ฆ

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

7.8

CVSS3.1

CVE-2024-50088 - btrfs: fix uninitialized pointer free in add_inode_ref()

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix uninitialized pointer free in add_inode_ref() The add_inode_ref() function does not initialize the "name" struct when it is declared. If any of the following calls to "read_one_inode() returns NULL, dir = read_one_iโ€ฆ

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

8.8

CVSS3.1

CVE-2024-51181 -

A Reflected Cross Site Scripting (XSS) vulnerability was found in /ifscfinder/admin/profile.php in PHPGurukul IFSC Code Finder Project v1.0, which allows remote attackers to execute arbitrary code via " searchifsccode" parameter.

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2024, 1:39 p.m.

9.8

CVSS3.1

CVE-2024-48063 -

In PyTorch <=2.4.1, the RemoteModule has Deserialization RCE. NOTE: this is disputed by multiple parties because this is intended behavior in PyTorch distributed computing.

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: July 16, 2025, 12:25 a.m.

5.5

CVSS3.1

CVE-2024-50070 - pinctrl: stm32: check devm_kasprintf() returned value

In the Linux kernel, the following vulnerability has been resolved: pinctrl: stm32: check devm_kasprintf() returned value devm_kasprintf() can return a NULL pointer on failure but this returned value is not checked. Fix this lack and check the returned value. Found by code review.

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: May 4, 2025, 9:45 a.m.

5.5

CVSS3.1

CVE-2024-50077 - Bluetooth: ISO: Fix multiple init when debugfs is disabled

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: Fix multiple init when debugfs is disabled If bt_debugfs is not created successfully, which happens if either CONFIG_DEBUG_FS or CONFIG_DEBUG_FS_ALLOW_ALL is unset, then iso_init() returns early and does not set iโ€ฆ

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

8.8

CVSS3.1

CVE-2024-51180 -

A Reflected Cross Site Scripting (XSS) vulnerability was found in /ifscfinder/index.php in PHPGurukul IFSC Code Finder Project v1.0, which allows remote attackers to execute arbitrary code via the "searchifsccode" parameter.

๐Ÿ“… Published: Oct. 29, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2024, 1:37 p.m.
Total resulsts: 344009
Page 7591 of 34,401
ยซ previous page ยป next page
Filters