1701
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
powerpc/pseries/memhp: Fix access beyond end of drmem array
dlpar_memory_remove_by_index() may access beyond the bounds of the
dr…
|
CWE-129
Improper Validation of Array Index
|
CVE-2023-52451
|
2024-11-4 22:16 |
2024-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1702
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
mtd: Fix gluebi NULL pointer dereference caused by ftl notifier
If both ftl.ko and gluebi.ko are loaded, the notifier of ftl
trig…
|
CWE-476
NULL Pointer Dereference
|
CVE-2023-52449
|
2024-11-4 22:16 |
2024-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1703
|
6.7 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
bpf: Defer the free of inner map when necessary
When updating or deleting an inner map in map array or map htab, the map
may stil…
|
CWE-416
Use After Free
|
CVE-2023-52447
|
2024-11-4 22:16 |
2024-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1704
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
f2fs: fix to avoid dirent corruption
As Al reported in link[1]:
f2fs_rename()
...
if (old_dir != new_dir && !whiteout)
f2fs_s…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2023-52444
|
2024-11-4 22:16 |
2024-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1705
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
apparmor: avoid crash when parsed profile name is empty
When processing a packed profile in unpack_profile() described like
"pr…
|
CWE-476
NULL Pointer Dereference
|
CVE-2023-52443
|
2024-11-4 22:16 |
2024-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1706
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
uio: Fix use-after-free in uio_open
core-1 core-2
-------------------------------------------------------
uio_unregister_devic…
|
CWE-415
Double Free
|
CVE-2023-52439
|
2024-11-4 22:16 |
2024-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1707
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
binder: fix use-after-free in shinker's callback
The mmap read lock is used during the shrinker's callback, which means
that usin…
|
CWE-416
Use After Free
|
CVE-2023-52438
|
2024-11-4 22:16 |
2024-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1708
|
8.0 |
HIGH
Adjacent
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
smb: client: fix potential OOBs in smb2_parse_contexts()
Validate offsets and lengths before dereferencing create contexts in
smb…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2023-52434
|
2024-11-4 22:16 |
2024-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1709
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
hwmon: (nct6775) Fix crash in clear_caseopen
Pawel Marciniak reports the following crash, observed when clearing
the chassis intr…
|
CWE-476
NULL Pointer Dereference
|
CVE-2022-48750
|
2024-11-4 22:15 |
2024-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1710
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
firmware: arm_scmi: Harden accesses to the reset domains
Accessing reset domains descriptors by the index upon the SCMI drivers
r…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2022-48655
|
2024-11-4 22:15 |
2024-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|