CVE-2024-53162
- EPSS 0.26%
- Veröffentlicht 24.12.2024 12:15:24
- Zuletzt bearbeitet 01.10.2025 21:16:38
In the Linux kernel, the following vulnerability has been resolved: crypto: qat/qat_4xxx - fix off by one in uof_get_name() The fw_objs[] array has "num_objs" elements so the > needs to be >= to prevent an out of bounds read.
CVE-2024-53163
- EPSS 0.25%
- Veröffentlicht 24.12.2024 12:15:24
- Zuletzt bearbeitet 01.10.2025 21:16:38
In the Linux kernel, the following vulnerability has been resolved: crypto: qat/qat_420xx - fix off by one in uof_get_name() This is called from uof_get_name_420xx() where "num_objs" is the ARRAY_SIZE() of fw_objs[]. The > needs to be >= to preven...
CVE-2024-53149
- EPSS 0.31%
- Veröffentlicht 24.12.2024 12:15:23
- Zuletzt bearbeitet 09.01.2025 16:16:21
In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: glink: fix off-by-one in connector_status UCSI connector's indices start from 1 up to 3, PMIC_GLINK_MAX_PORTS. Correct the condition in the pmic_glink_ucsi_connec...
CVE-2024-53150
- EPSS 1.35%
- Veröffentlicht 24.12.2024 12:15:23
- Zuletzt bearbeitet 04.11.2025 16:47:05
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix out of bounds reads when finding clock sources The current USB-audio driver code doesn't check bLength of each descriptor at traversing for clock descriptors. ...
CVE-2024-53151
- EPSS 0.27%
- Veröffentlicht 24.12.2024 12:15:23
- Zuletzt bearbeitet 03.11.2025 21:17:32
In the Linux kernel, the following vulnerability has been resolved: svcrdma: Address an integer overflow Dan Carpenter reports: > Commit 78147ca8b4a9 ("svcrdma: Add a "parsed chunk list" data > structure") from Jun 22, 2020 (linux-next), leads to t...
CVE-2024-53152
- EPSS 0.27%
- Veröffentlicht 24.12.2024 12:15:23
- Zuletzt bearbeitet 08.10.2025 14:43:44
In the Linux kernel, the following vulnerability has been resolved: PCI: tegra194: Move controller cleanups to pex_ep_event_pex_rst_deassert() Currently, the endpoint cleanup function dw_pcie_ep_cleanup() and EPF deinit notify function pci_epc_dein...
CVE-2024-53153
- EPSS 0.28%
- Veröffentlicht 24.12.2024 12:15:23
- Zuletzt bearbeitet 08.10.2025 14:43:14
In the Linux kernel, the following vulnerability has been resolved: PCI: qcom-ep: Move controller cleanups to qcom_pcie_perst_deassert() Currently, the endpoint cleanup function dw_pcie_ep_cleanup() and EPF deinit notify function pci_epc_deinit_not...
CVE-2024-53154
- EPSS 0.21%
- Veröffentlicht 24.12.2024 12:15:23
- Zuletzt bearbeitet 03.11.2025 21:17:33
In the Linux kernel, the following vulnerability has been resolved: clk: clk-apple-nco: Add NULL check in applnco_probe Add NULL check in applnco_probe, to handle kernel NULL pointer dereference error.
CVE-2024-53155
- EPSS 0.24%
- Veröffentlicht 24.12.2024 12:15:23
- Zuletzt bearbeitet 03.11.2025 21:17:33
In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix uninitialized value in ocfs2_file_read_iter() Syzbot has reported the following KMSAN splat: BUG: KMSAN: uninit-value in ocfs2_file_read_iter+0x9a4/0xf80 ocfs2_file_re...
CVE-2024-53156
- EPSS 0.24%
- Veröffentlicht 24.12.2024 12:15:23
- Zuletzt bearbeitet 03.11.2025 21:17:33
In the Linux kernel, the following vulnerability has been resolved: wifi: ath9k: add range check for conn_rsp_epid in htc_connect_service() I found the following bug in my fuzzer: UBSAN: array-index-out-of-bounds in drivers/net/wireless/ath/ath9...