CVE-2024-49952
- EPSS 0.29%
- Veröffentlicht 21.10.2024 18:15:16
- Zuletzt bearbeitet 04.08.2026 11:21:01
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: prevent nf_skb_duplicated corruption syzbot found that nf_dup_ipv4() or nf_dup_ipv6() could write per-cpu variable nf_skb_duplicated in an unsafe way [1]. Di...
CVE-2024-49957
- EPSS 0.25%
- Veröffentlicht 21.10.2024 18:15:16
- Zuletzt bearbeitet 03.11.2025 23:16:34
In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix null-ptr-deref when journal load failed. During the mounting process, if journal_reset() fails because of too short journal, then lead to jbd2_journal_load() fails with ...
CVE-2024-49931
- EPSS 0.24%
- Veröffentlicht 21.10.2024 18:15:15
- Zuletzt bearbeitet 25.10.2024 15:16:07
In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix array out-of-bound access in SoC stats Currently, the ath12k_soc_dp_stats::hal_reo_error array is defined with a maximum size of DP_REO_DST_RING_MAX. However, the...
CVE-2024-49932
- EPSS 0.2%
- Veröffentlicht 21.10.2024 18:15:15
- Zuletzt bearbeitet 04.08.2026 11:20:58
In the Linux kernel, the following vulnerability has been resolved: btrfs: don't readahead the relocation inode on RST On relocation we're doing readahead on the relocation inode, but if the filesystem is backed by a RAID stripe tree we can get ENO...
CVE-2024-49935
- EPSS 0.25%
- Veröffentlicht 21.10.2024 18:15:15
- Zuletzt bearbeitet 03.11.2025 23:16:31
In the Linux kernel, the following vulnerability has been resolved: ACPI: PAD: fix crash in exit_round_robin() The kernel occasionally crashes in cpumask_clear_cpu(), which is called within exit_round_robin(), because when executing clear_bit(nr, a...
CVE-2024-49936
- EPSS 0.27%
- Veröffentlicht 21.10.2024 18:15:15
- Zuletzt bearbeitet 04.08.2026 11:20:59
In the Linux kernel, the following vulnerability has been resolved: net/xen-netback: prevent UAF in xenvif_flush_hash() During the list_for_each_entry_rcu iteration call of xenvif_flush_hash, kfree_rcu does not exist inside the rcu read critical se...
CVE-2024-49938
- EPSS 0.26%
- Veröffentlicht 21.10.2024 18:15:15
- Zuletzt bearbeitet 12.05.2026 12:17:18
In the Linux kernel, the following vulnerability has been resolved: wifi: ath9k_htc: Use __skb_set_length() for resetting urb before resubmit Syzbot points out that skb_trim() has a sanity check on the existing length of the skb, which can be unini...
CVE-2024-49939
- EPSS 0.34%
- Veröffentlicht 21.10.2024 18:15:15
- Zuletzt bearbeitet 04.08.2026 11:20:59
In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: avoid to add interface to list twice when SER If SER L2 occurs during the WoWLAN resume flow, the add interface flow is triggered by ieee80211_reconfig(). However, due...
CVE-2024-49940
- EPSS 0.22%
- Veröffentlicht 21.10.2024 18:15:15
- Zuletzt bearbeitet 04.08.2026 11:21:00
In the Linux kernel, the following vulnerability has been resolved: l2tp: prevent possible tunnel refcount underflow When a session is created, it sets a backpointer to its tunnel. When the session refcount drops to 0, l2tp_session_free drops the t...
CVE-2024-49944
- EPSS 0.28%
- Veröffentlicht 21.10.2024 18:15:15
- Zuletzt bearbeitet 12.05.2026 12:17:18
In the Linux kernel, the following vulnerability has been resolved: sctp: set sk_state back to CLOSED if autobind fails in sctp_listen_start In sctp_listen_start() invoked by sctp_inet_listen(), it should set the sk_state back to CLOSED if sctp_aut...