CVE-2023-52444
- EPSS 0.25%
- Veröffentlicht 22.02.2024 17:15:08
- Zuletzt bearbeitet 04.08.2026 10:18:27
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid dirent corruption As Al reported in link[1]: f2fs_rename() ... if (old_dir != new_dir && !whiteout) f2fs_set_link(old_inode, old_dir_entry, old_dir_page...
CVE-2023-52445
- EPSS 0.24%
- Veröffentlicht 22.02.2024 17:15:08
- Zuletzt bearbeitet 21.11.2024 08:39:46
In the Linux kernel, the following vulnerability has been resolved: media: pvrusb2: fix use after free on context disconnection Upon module load, a kthread is created targeting the pvr2_context_thread_func function, which may call pvr2_context_dest...
CVE-2023-52449
- EPSS 0.24%
- Veröffentlicht 22.02.2024 17:15:08
- Zuletzt bearbeitet 21.11.2024 08:39:47
In the Linux kernel, the following vulnerability has been resolved: mtd: Fix gluebi NULL pointer dereference caused by ftl notifier If both ftl.ko and gluebi.ko are loaded, the notifier of ftl triggers NULL pointer dereference when trying to access...
CVE-2023-52451
- EPSS 0.24%
- Veröffentlicht 22.02.2024 17:15:08
- Zuletzt bearbeitet 21.11.2024 08:39:47
In the Linux kernel, the following vulnerability has been resolved: powerpc/pseries/memhp: Fix access beyond end of drmem array dlpar_memory_remove_by_index() may access beyond the bounds of the drmem lmb array when the LMB lookup fails to match an...
CVE-2023-52436
- EPSS 0.3%
- Veröffentlicht 20.02.2024 21:15:08
- Zuletzt bearbeitet 15.08.2026 13:17:39
In the Linux kernel, the following vulnerability has been resolved: f2fs: explicitly null-terminate the xattr list When setting an xattr, explicitly null-terminate the xattr list. This eliminates the fragile assumption that the unused xattr space ...
CVE-2023-52429
- EPSS 0.25%
- Veröffentlicht 12.02.2024 03:15:32
- Zuletzt bearbeitet 04.11.2025 19:16:23
dm_table_create in drivers/md/dm-table.c in the Linux kernel through 6.7.4 can attempt to (in alloc_targets) allocate more than INT_MAX bytes, and crash, because of a missing check for struct dm_ioctl.target_count.
CVE-2024-25739
- EPSS 0.25%
- Veröffentlicht 12.02.2024 03:15:32
- Zuletzt bearbeitet 12.05.2026 12:16:18
create_empty_lvol in drivers/mtd/ubi/vtbl.c in the Linux kernel through 6.7.4 can attempt to allocate zero bytes, and crash, because of a missing check for ubi->leb_size.
CVE-2024-25740
- EPSS 0.21%
- Veröffentlicht 12.02.2024 03:15:32
- Zuletzt bearbeitet 07.05.2025 21:16:03
A memory leak flaw was found in the UBI driver in drivers/mtd/ubi/attach.c in the Linux kernel through 6.7.4 for UBI_IOCATT, because kobj->name is not released.
CVE-2024-24860
- EPSS 0.81%
- Veröffentlicht 05.02.2024 08:15:45
- Zuletzt bearbeitet 13.02.2025 18:17:10
A race condition was found in the Linux kernel's bluetooth device driver in {min,max}_key_size_set() function. This can result in a null pointer dereference issue, possibly leading to a kernel panic or denial of service issue.
CVE-2024-24861
- EPSS 0.21%
- Veröffentlicht 05.02.2024 08:15:45
- Zuletzt bearbeitet 13.02.2025 18:17:11
A race condition was found in the Linux kernel's media/xc4000 device driver in xc4000 xc4000_get_frequency() function. This can result in return value overflow issue, possibly leading to malfunction or denial of service issue.