CVE-2024-35866
- EPSS 0.01%
- Published 19.05.2024 09:15:08
- Last modified 03.11.2025 20:16:13
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in cifs_dump_full_key() Skip sessions that are being teared down (status == SES_EXITING) to avoid UAF.
CVE-2024-35867
- EPSS 0.01%
- Published 19.05.2024 09:15:08
- Last modified 03.11.2025 20:16:13
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in cifs_stats_proc_show() Skip sessions that are being teared down (status == SES_EXITING) to avoid UAF.
CVE-2024-35868
- EPSS 0.01%
- Published 19.05.2024 09:15:08
- Last modified 30.12.2024 17:37:00
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in cifs_stats_proc_write() Skip sessions that are being teared down (status == SES_EXITING) to avoid UAF.
CVE-2024-35869
- EPSS 0.01%
- Published 19.05.2024 09:15:08
- Last modified 07.04.2025 18:57:23
In the Linux kernel, the following vulnerability has been resolved: smb: client: guarantee refcounted children from parent session Avoid potential use-after-free bugs when walking DFS referrals, mounting and performing DFS failover by ensuring that...
CVE-2024-35870
- EPSS 0.01%
- Published 19.05.2024 09:15:08
- Last modified 03.11.2025 21:16:11
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix UAF in smb2_reconnect_server() The UAF bug is due to smb2_reconnect_server() accessing a session that is already being teared down by another thread that is execut...
- EPSS 0.05%
- Published 19.05.2024 09:15:08
- Last modified 21.11.2024 09:21:05
In the Linux kernel, the following vulnerability has been resolved: riscv: process: Fix kernel gp leakage childregs represents the registers which are active for the new thread in user context. For a kernel thread, childregs->gp is never used since...
CVE-2024-35872
- EPSS 0.02%
- Published 19.05.2024 09:15:08
- Last modified 24.09.2025 21:16:50
In the Linux kernel, the following vulnerability has been resolved: mm/secretmem: fix GUP-fast succeeding on secretmem folios folio_is_secretmem() currently relies on secretmem folios being LRU folios, to save some cycles. However, folios might re...
CVE-2024-35873
- EPSS 0.02%
- Published 19.05.2024 09:15:08
- Last modified 24.09.2025 21:15:15
In the Linux kernel, the following vulnerability has been resolved: riscv: Fix vector state restore in rt_sigreturn() The RISC-V Vector specification states in "Appendix D: Calling Convention for Vector State" [1] that "Executing a system call caus...
CVE-2024-35874
- EPSS 0.02%
- Published 19.05.2024 09:15:08
- Last modified 30.12.2024 17:37:18
In the Linux kernel, the following vulnerability has been resolved: aio: Fix null ptr deref in aio_complete() wakeup list_del_init_careful() needs to be the last access to the wait queue entry - it effectively unlocks access. Previously, finish_wa...
CVE-2024-35875
- EPSS 0.01%
- Published 19.05.2024 09:15:08
- Last modified 24.09.2025 21:13:12
In the Linux kernel, the following vulnerability has been resolved: x86/coco: Require seeding RNG with RDRAND on CoCo systems There are few uses of CoCo that don't rely on working cryptography and hence a working RNG. Unfortunately, the CoCo threat...