CVE-2024-2201
- EPSS 0.03%
- Veröffentlicht 19.12.2024 21:15:08
- Zuletzt bearbeitet 15.04.2026 00:35:42
A cross-privilege Spectre v2 vulnerability allows attackers to bypass all deployed mitigations, including the recent Fine(IBT), and to leak arbitrary Linux kernel memory on Intel systems.
CVE-2024-53144
- EPSS 0.01%
- Veröffentlicht 17.12.2024 16:15:25
- Zuletzt bearbeitet 03.11.2025 23:17:23
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: Align BR/EDR JUST_WORKS paring with LE This aligned BR/EDR JUST_WORKS method with LE which since 92516cd97fd4 ("Bluetooth: Always request for user confirmatio...
CVE-2024-53141
- EPSS 0.04%
- Veröffentlicht 06.12.2024 10:15:06
- Zuletzt bearbeitet 03.11.2025 21:17:30
In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: add missing range check in bitmap_ip_uadt When tb[IPSET_ATTR_IP_TO] is not present but tb[IPSET_ATTR_CIDR] exists, the values of ip and ip_to are slightly swapped...
CVE-2024-53142
- EPSS 0.02%
- Veröffentlicht 06.12.2024 10:15:06
- Zuletzt bearbeitet 03.11.2025 21:17:30
In the Linux kernel, the following vulnerability has been resolved: initramfs: avoid filename buffer overrun The initramfs filename field is defined in Documentation/driver-api/early-userspace/buffer-format.rst as: 37 cpio_file := ALGN(4) + cpio_...
CVE-2024-53140
- EPSS 0.01%
- Veröffentlicht 04.12.2024 15:15:16
- Zuletzt bearbeitet 03.11.2025 23:17:23
In the Linux kernel, the following vulnerability has been resolved: netlink: terminate outstanding dump on socket close Netlink supports iterative dumping of data. It provides the families the following ops: - start - (optional) kicks off the dump...
CVE-2024-53131
- EPSS 0.02%
- Veröffentlicht 04.12.2024 15:15:13
- Zuletzt bearbeitet 03.11.2025 23:17:22
In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix null-ptr-deref in block_touch_buffer tracepoint Patch series "nilfs2: fix null-ptr-deref bugs on block tracepoints". This series fixes null pointer dereference bugs th...
CVE-2024-53134
- EPSS 0.03%
- Veröffentlicht 04.12.2024 15:15:13
- Zuletzt bearbeitet 01.10.2025 21:16:34
In the Linux kernel, the following vulnerability has been resolved: pmdomain: imx93-blk-ctrl: correct remove path The check condition should be 'i < bc->onecell_data.num_domains', not 'bc->onecell_data.num_domains' which will make the look never fi...
CVE-2024-53135
- EPSS 0.01%
- Veröffentlicht 04.12.2024 15:15:13
- Zuletzt bearbeitet 03.11.2025 23:17:22
In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Bury Intel PT virtualization (guest/host mode) behind CONFIG_BROKEN Hide KVM's pt_mode module param behind CONFIG_BROKEN, i.e. disable support for virtualizing Intel PT v...
CVE-2024-53136
- EPSS 0.01%
- Veröffentlicht 04.12.2024 15:15:13
- Zuletzt bearbeitet 03.11.2025 23:17:22
In the Linux kernel, the following vulnerability has been resolved: mm: revert "mm: shmem: fix data-race in shmem_getattr()" Revert d949d1d14fa2 ("mm: shmem: fix data-race in shmem_getattr()") as suggested by Chuck [1]. It is causing deadlocks whe...
CVE-2024-53138
- EPSS 0.02%
- Veröffentlicht 04.12.2024 15:15:13
- Zuletzt bearbeitet 03.11.2025 23:17:23
In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: kTLS, Fix incorrect page refcounting The kTLS tx handling code is using a mix of get_page() and page_ref_inc() APIs to increment the page reference. But on the release p...