7.8

CVSS3.1

CVE-2022-49006 - tracing: Free buffers when a used dynamic event is removed

In the Linux kernel, the following vulnerability has been resolved: tracing: Free buffers when a used dynamic event is removed After 65536 dynamic events have been added and removed, the "type" field of the event then uses the first type number that is available (not currently used by other eventโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: May 4, 2025, 8:27 a.m.

9.1

CVSS3.1

CVE-2024-41713 -

A vulnerability in the NuPoint Unified Messaging (NPM) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.201) could allow an unauthenticated attacker to conduct a path traversal attack, due to insufficient input validation. A successful exploit could allow unauthorized access, enabling the attโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2025, 3:02 p.m.

7.8

CVSS3.1

CVE-2024-47730 - crypto: hisilicon/qm - inject error before stopping queue

In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/qm - inject error before stopping queue The master ooo cannot be completely closed when the accelerator core reports memory error. Therefore, the driver needs to inject the qm error to close the master ooo. Currโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

5.5

CVSS3.1

CVE-2024-50014 - ext4: fix access to uninitialised lock in fc replay path

In the Linux kernel, the following vulnerability has been resolved: ext4: fix access to uninitialised lock in fc replay path The following kernel trace can be triggered with fstest generic/629 when executed against a filesystem with fast-commit feature enabled: INFO: trying to register non-statiโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: Jan. 5, 2026, 10:54 a.m.

5.5

CVSS3.1

CVE-2022-49005 - ASoC: ops: Fix bounds check for _sx controls

In the Linux kernel, the following vulnerability has been resolved: ASoC: ops: Fix bounds check for _sx controls For _sx controls the semantics of the max field is not the usual one, max is the number of steps rather than the maximum value. This means that our check in snd_soc_put_volsw_sx() needโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: May 4, 2025, 12:44 p.m.

5.5

CVSS3.1

CVE-2022-48978 - HID: core: fix shift-out-of-bounds in hid_report_raw_event

In the Linux kernel, the following vulnerability has been resolved: HID: core: fix shift-out-of-bounds in hid_report_raw_event Syzbot reported shift-out-of-bounds in hid_report_raw_event. microsoft 0003:045E:07DA.0001: hid_field_extract() called with n (128) > 32! (swapper/0) ===================โ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: May 4, 2025, 8:27 a.m.

7.8

CVSS3.1

CVE-2024-49883 - ext4: aovid use-after-free in ext4_ext_insert_extent()

In the Linux kernel, the following vulnerability has been resolved: ext4: aovid use-after-free in ext4_ext_insert_extent() As Ojaswin mentioned in Link, in ext4_ext_insert_extent(), if the path is reallocated in ext4_ext_create_new_leaf(), we'll use the stale path and cause UAF. Below is a sampleโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

5.5

CVSS3.1

CVE-2024-49891 - scsi: lpfc: Validate hdwq pointers before dereferencing in reset/errata paths

In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Validate hdwq pointers before dereferencing in reset/errata paths When the HBA is undergoing a reset or is handling an errata event, NULL ptr dereference crashes may occur in routines such as lpfc_sli_flush_io_rings()โ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: Jan. 5, 2026, 10:54 a.m.

7.1

CVSS3.1

CVE-2024-47757 - nilfs2: fix potential oob read in nilfs_btree_check_delete()

In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix potential oob read in nilfs_btree_check_delete() The function nilfs_btree_check_delete(), which checks whether degeneration to direct mapping occurs before deleting a b-tree entry, causes memory access outside the bloโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

5.5

CVSS3.1

CVE-2024-47756 - PCI: keystone: Fix if-statement expression in ks_pcie_quirk()

In the Linux kernel, the following vulnerability has been resolved: PCI: keystone: Fix if-statement expression in ks_pcie_quirk() This code accidentally uses && where || was intended. It potentially results in a NULL dereference. Thus, fix the if-statement expression to use the correct conditioโ€ฆ

๐Ÿ“… Published: Oct. 21, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.
Total resulsts: 344032
Page 7677 of 34,404
ยซ previous page ยป next page
Filters