5.5

CVSS3.1

CVE-2024-50284 - ksmbd: Fix the missing xa_store error check

In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix the missing xa_store error check xa_store() can fail, it return xa_err(-EINVAL) if the entry cannot be stored in an XArray, or xa_err(-ENOMEM) if memory allocation failed, so check error for xa_store() to fix it.

๐Ÿ“… Published: Nov. 19, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:17 p.m.

5.5

CVSS3.1

CVE-2024-50295 - net: arc: fix the device for dma_map_single/dma_unmap_single

In the Linux kernel, the following vulnerability has been resolved: net: arc: fix the device for dma_map_single/dma_unmap_single The ndev->dev and pdev->dev aren't the same device, use ndev->dev.parent which has dma_mask, ndev->dev.parent is just pdev->dev. Or it would cause the following issue: โ€ฆ

๐Ÿ“… Published: Nov. 19, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:17 p.m.

5.5

CVSS3.1

CVE-2024-50288 - media: vivid: fix buffer overwrite when using > 32 buffers

In the Linux kernel, the following vulnerability has been resolved: media: vivid: fix buffer overwrite when using > 32 buffers The maximum number of buffers that can be requested was increased to 64 for the video capture queue. But video capture used a must_blank array that was still sized for 32โ€ฆ

๐Ÿ“… Published: Nov. 19, 2024, midnight ๐Ÿ”„ Last Modified: Oct. 1, 2025, 9:16 p.m.

6.1

CVSS3.1

CVE-2024-50803 -

The mediapool feature of the Redaxo Core CMS application v 5.17.1 is vulnerable to Cross Site Scripting(XSS) which allows a remote attacker to escalate privileges

๐Ÿ“… Published: Nov. 19, 2024, midnight ๐Ÿ”„ Last Modified: June 13, 2025, 6:36 p.m.

7.8

CVSS3.1

CVE-2024-50283 - ksmbd: fix slab-use-after-free in smb3_preauth_hash_rsp

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix slab-use-after-free in smb3_preauth_hash_rsp ksmbd_user_session_put should be called under smb3_preauth_hash_rsp(). It will avoid freeing session before calling smb3_preauth_hash_rsp().

๐Ÿ“… Published: Nov. 19, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:17 p.m.

7.8

CVSS3.1

CVE-2024-50282 - drm/amdgpu: add missing size check in amdgpu_debugfs_gprwave_read()

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: add missing size check in amdgpu_debugfs_gprwave_read() Avoid a possible buffer overflow if size is larger than 4K. (cherry picked from commit f5d873f5825b40d886d03bd2aede91d4cf002434)

๐Ÿ“… Published: Nov. 19, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:17 p.m.

5.5

CVSS3.1

CVE-2024-50281 - KEYS: trusted: dcp: fix NULL dereference in AEAD crypto operation

In the Linux kernel, the following vulnerability has been resolved: KEYS: trusted: dcp: fix NULL dereference in AEAD crypto operation When sealing or unsealing a key blob we currently do not wait for the AEAD cipher operation to finish and simply return after submitting the request. If there is sโ€ฆ

๐Ÿ“… Published: Nov. 19, 2024, midnight ๐Ÿ”„ Last Modified: Oct. 1, 2025, 9:16 p.m.

7.8

CVSS3.1

CVE-2024-50274 - idpf: avoid vport access in idpf_get_link_ksettings

In the Linux kernel, the following vulnerability has been resolved: idpf: avoid vport access in idpf_get_link_ksettings When the device control plane is removed or the platform running device control plane is rebooted, a reset is detected on the driver. On driver reset, it releases the resources โ€ฆ

๐Ÿ“… Published: Nov. 19, 2024, midnight ๐Ÿ”„ Last Modified: Oct. 1, 2025, 9:16 p.m.

7.8

CVSS3.1

CVE-2024-50267 - USB: serial: io_edgeport: fix use after free in debug printk

In the Linux kernel, the following vulnerability has been resolved: USB: serial: io_edgeport: fix use after free in debug printk The "dev_dbg(&urb->dev->dev, ..." which happens after usb_free_urb(urb) is a use after free of the "urb" pointer. Store the "dev" pointer at the start of the function โ€ฆ

๐Ÿ“… Published: Nov. 19, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:17 p.m.

5.5

CVSS3.1

CVE-2024-53076 - iio: gts-helper: Fix memory leaks for the error path of iio_gts_build_avail_scale_table()

In the Linux kernel, the following vulnerability has been resolved: iio: gts-helper: Fix memory leaks for the error path of iio_gts_build_avail_scale_table() If per_time_scales[i] or per_time_gains[i] kcalloc fails in the for loop of iio_gts_build_avail_scale_table(), the err_free_out will fail tโ€ฆ

๐Ÿ“… Published: Nov. 19, 2024, midnight ๐Ÿ”„ Last Modified: Oct. 1, 2025, 9:16 p.m.
Total resulsts: 349182
Page 7818 of 34,919
ยซ previous page ยป next page
Filters