CVE-2024-35863
- EPSS 0.66%
- Veröffentlicht 19.05.2024 09:15:07
- Zuletzt bearbeitet 04.08.2026 11:18:01
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in is_valid_oplock_break() Skip sessions that are being teared down (status == SES_EXITING) to avoid UAF.
CVE-2024-35864
- EPSS 0.66%
- Veröffentlicht 19.05.2024 09:15:07
- Zuletzt bearbeitet 04.08.2026 11:18:02
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in smb2_is_valid_lease_break() Skip sessions that are being teared down (status == SES_EXITING) to avoid UAF.
CVE-2024-25742
- EPSS 0.18%
- Veröffentlicht 17.05.2024 22:15:07
- Zuletzt bearbeitet 15.04.2026 00:35:42
In the Linux kernel before 6.9, an untrusted hypervisor can inject virtual interrupt 29 (#VC) at any point in time and can trigger its handler. This affects AMD SEV-SNP and AMD SEV-ES.
CVE-2024-35852
- EPSS 0.26%
- Veröffentlicht 17.05.2024 15:15:22
- Zuletzt bearbeitet 30.12.2024 18:11:22
In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_acl_tcam: Fix memory leak when canceling rehash work The rehash delayed work is rescheduled with a delay if the number of credits at end of the work is not negative...
CVE-2024-35853
- EPSS 0.73%
- Veröffentlicht 17.05.2024 15:15:22
- Zuletzt bearbeitet 07.04.2025 19:03:01
In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_acl_tcam: Fix memory leak during rehash The rehash delayed work migrates filters from one region to another. This is done by iterating over all chunks (all the filt...
CVE-2024-35854
- EPSS 0.62%
- Veröffentlicht 17.05.2024 15:15:22
- Zuletzt bearbeitet 04.08.2026 11:17:59
In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_acl_tcam: Fix possible use-after-free during rehash The rehash delayed work migrates filters from one region to another according to the number of available credits...
CVE-2024-35855
- EPSS 0.25%
- Veröffentlicht 17.05.2024 15:15:22
- Zuletzt bearbeitet 04.08.2026 11:17:59
In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_acl_tcam: Fix possible use-after-free during activity update The rule activity update delayed work periodically traverses the list of configured rules and queries t...
CVE-2024-35839
- EPSS 0.22%
- Veröffentlicht 17.05.2024 15:15:21
- Zuletzt bearbeitet 04.08.2026 11:17:57
In the Linux kernel, the following vulnerability has been resolved: netfilter: bridge: replace physindev with physinif in nf_bridge_info An skb can be added to a neigh->arp_queue while waiting for an arp reply. Where original skb's skb->dev can be ...
CVE-2024-35840
- EPSS 0.22%
- Veröffentlicht 17.05.2024 15:15:21
- Zuletzt bearbeitet 24.09.2025 21:00:50
In the Linux kernel, the following vulnerability has been resolved: mptcp: use OPTION_MPTCP_MPJ_SYNACK in subflow_finish_connect() subflow_finish_connect() uses four fields (backup, join_id, thmac, none) that may contain garbage unless OPTION_MPTCP...
CVE-2024-35844
- EPSS 0.24%
- Veröffentlicht 17.05.2024 15:15:21
- Zuletzt bearbeitet 26.09.2025 16:04:43
In the Linux kernel, the following vulnerability has been resolved: f2fs: compress: fix reserve_cblocks counting error when out of space When a file only needs one direct_node, performing the following operations will cause the file to be unrepaira...