CVE-2023-52977
- EPSS 0.04%
- Veröffentlicht 27.03.2025 16:43:17
- Zuletzt bearbeitet 01.10.2025 18:15:34
In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: fix flow memory leak in ovs_flow_cmd_new Syzkaller reports a memory leak of new_flow in ovs_flow_cmd_new() as it is not freed when an allocation of a key fails. ...
CVE-2023-52976
- EPSS 0.04%
- Veröffentlicht 27.03.2025 16:43:16
- Zuletzt bearbeitet 01.10.2025 18:15:34
In the Linux kernel, the following vulnerability has been resolved: efi: fix potential NULL deref in efi_mem_reserve_persistent When iterating on a linked list, a result of memremap is dereferenced without checking it for NULL. This patch adds a c...
CVE-2023-52975
- EPSS 0.05%
- Veröffentlicht 27.03.2025 16:43:15
- Zuletzt bearbeitet 19.01.2026 13:16:06
In the Linux kernel, the following vulnerability has been resolved: scsi: iscsi_tcp: Fix UAF during logout when accessing the shost ipaddress Bug report and analysis from Ding Hui. During iSCSI session logout, if another task accesses the shost ip...
CVE-2023-52974
- EPSS 0.04%
- Veröffentlicht 27.03.2025 16:43:13
- Zuletzt bearbeitet 01.04.2025 15:39:48
In the Linux kernel, the following vulnerability has been resolved: scsi: iscsi_tcp: Fix UAF during login when accessing the shost ipaddress If during iscsi_sw_tcp_session_create() iscsi_tcp_r2tpool_alloc() fails, userspace could be accessing the h...
CVE-2023-52973
- EPSS 0.04%
- Veröffentlicht 27.03.2025 16:43:12
- Zuletzt bearbeitet 01.04.2025 15:40:21
In the Linux kernel, the following vulnerability has been resolved: vc_screen: move load of struct vc_data pointer in vcs_read() to avoid UAF After a call to console_unlock() in vcs_read() the vc_data struct can be freed by vc_deallocate(). Because...
CVE-2022-49760
- EPSS 0.07%
- Veröffentlicht 27.03.2025 16:43:07
- Zuletzt bearbeitet 29.10.2025 17:16:04
In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: fix PTE marker handling in hugetlb_change_protection() Patch series "mm/hugetlb: uffd-wp fixes for hugetlb_change_protection()". Playing with virtio-mem and background...
CVE-2022-49761
- EPSS 0.03%
- Veröffentlicht 27.03.2025 16:43:07
- Zuletzt bearbeitet 01.04.2025 15:40:43
In the Linux kernel, the following vulnerability has been resolved: btrfs: always report error in run_one_delayed_ref() Currently we have a btrfs_debug() for run_one_delayed_ref() failure, but if end users hit such problem, there will be no chance ...
CVE-2022-49759
- EPSS 0.02%
- Veröffentlicht 27.03.2025 16:43:06
- Zuletzt bearbeitet 01.10.2025 18:15:33
In the Linux kernel, the following vulnerability has been resolved: VMCI: Use threaded irqs instead of tasklets The vmci_dispatch_dgs() tasklet function calls vmci_read_data() which uses wait_event() resulting in invalid sleep in an atomic context ...
CVE-2022-49758
- EPSS 0.05%
- Veröffentlicht 27.03.2025 16:43:05
- Zuletzt bearbeitet 01.10.2025 18:15:33
In the Linux kernel, the following vulnerability has been resolved: reset: uniphier-glue: Fix possible null-ptr-deref It will cause null-ptr-deref when resource_size(res) invoked, if platform_get_resource() returns NULL.
CVE-2022-49757
- EPSS 0.06%
- Veröffentlicht 27.03.2025 16:43:04
- Zuletzt bearbeitet 01.10.2025 18:15:32
In the Linux kernel, the following vulnerability has been resolved: EDAC/highbank: Fix memory leak in highbank_mc_probe() When devres_open_group() fails, it returns -ENOMEM without freeing memory allocated by edac_mc_alloc(). Call edac_mc_free() o...