2211
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
spi: nxp-fspi: fix the KASAN report out-of-bounds bug
Change the memcpy length to fix the out-of-bounds issue when writing the
da…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-46853
|
2024-11-9 01:15 |
2024-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2212
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
ASoC: meson: axg-card: fix 'use-after-free'
Buffer 'card->dai_link' is reallocated in 'meson_card_reallocate_links()',
so move 'p…
|
CWE-416
Use After Free
|
CVE-2024-46849
|
2024-11-9 01:15 |
2024-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2213
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
gpio: prevent potential speculation leaks in gpio_device_get_desc()
Userspace may trigger a speculative read of an address outsid…
|
NVD-CWE-noinfo
|
CVE-2024-44931
|
2024-11-9 01:15 |
2024-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2214
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
wifi: mac80211: fix NULL dereference at band check in starting tx ba session
In MLD connection, link_data/link_conf are dynamical…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-43911
|
2024-11-9 01:15 |
2024-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2215
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Add null checks for 'stream' and 'plane' before dereferencing
This commit adds null checks for the 'stream' and …
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-43904
|
2024-11-9 01:15 |
2024-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2216
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net: ipv6: ensure we call ipv6_mc_down() at most once
There are two reasons for addrconf_notify() to be called with NETDEV_DOWN:
…
|
NVD-CWE-noinfo
|
CVE-2022-48910
|
2024-11-9 01:15 |
2024-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2217
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
KVM: Fix a data race on last_boosted_vcpu in kvm_vcpu_on_spin()
Use {READ,WRITE}_ONCE() to access kvm->last_boosted_vcpu to ensur…
|
-
|
CVE-2024-40953
|
2024-11-9 01:15 |
2024-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2218
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
inet: inet_defrag: prevent sk release while still in use
ip_local_out() and other functions can pass skb->sk as function argument…
|
-
|
CVE-2024-26921
|
2024-11-9 01:15 |
2024-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2219
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix DEVMAP_HASH overflow check on 32-bit arches
The devmap code allocates a number hash buckets equal to the next power
of t…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2024-26885
|
2024-11-9 01:15 |
2024-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2220
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
erofs: fix lz4 inplace decompression
Currently EROFS can map another compressed buffer for inplace
decompression, that was used t…
|
-
|
CVE-2023-52497
|
2024-11-9 01:15 |
2024-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|