CVE-2024-53098
- EPSS 0.21%
- Veröffentlicht 25.11.2024 22:15:16
- Zuletzt bearbeitet 01.10.2025 21:16:30
In the Linux kernel, the following vulnerability has been resolved: drm/xe/ufence: Prefetch ufence addr to catch bogus address access_ok() only checks for addr overflow so also try to read the addr to catch invalid addr sent from userspace. (cherr...
CVE-2024-53099
- EPSS 0.23%
- Veröffentlicht 25.11.2024 22:15:16
- Zuletzt bearbeitet 04.08.2026 11:21:52
In the Linux kernel, the following vulnerability has been resolved: bpf: Check validity of link->type in bpf_link_show_fdinfo() If a newly-added link type doesn't invoke BPF_LINK_TYPE(), accessing bpf_link_type_strs[link->type] may result in an out...
CVE-2024-53096
- EPSS 0.34%
- Veröffentlicht 25.11.2024 22:15:15
- Zuletzt bearbeitet 03.11.2025 23:17:19
In the Linux kernel, the following vulnerability has been resolved: mm: resolve faulty mmap_region() error path behaviour The mmap_region() function is somewhat terrifying, with spaghetti-like control flow and numerous means by which issues can ari...
CVE-2024-53097
- EPSS 0.23%
- Veröffentlicht 25.11.2024 22:15:15
- Zuletzt bearbeitet 03.11.2025 23:17:19
In the Linux kernel, the following vulnerability has been resolved: mm: krealloc: Fix MTE false alarm in __do_krealloc This patch addresses an issue introduced by commit 1a83a716ec233 ("mm: krealloc: consider spare memory for __GFP_ZERO") which cau...
CVE-2024-8805
- EPSS 2.03%
- Veröffentlicht 22.11.2024 21:15:18
- Zuletzt bearbeitet 03.11.2025 23:17:32
BlueZ HID over GATT Profile Improper Access Control Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of BlueZ. Authentication is not required to exploit this...
CVE-2024-53090
- EPSS 0.46%
- Veröffentlicht 21.11.2024 19:15:12
- Zuletzt bearbeitet 04.08.2026 11:21:49
In the Linux kernel, the following vulnerability has been resolved: afs: Fix lock recursion afs_wake_up_async_call() can incur lock recursion. The problem is that it is called from AF_RXRPC whilst holding the ->notify_lock, but it tries to take a ...
CVE-2024-53091
- EPSS 0.23%
- Veröffentlicht 21.11.2024 19:15:12
- Zuletzt bearbeitet 04.08.2026 11:21:49
In the Linux kernel, the following vulnerability has been resolved: bpf: Add sk_is_inet and IS_ICSK check in tls_sw_has_ctx_tx/rx As the introduction of the support for vsock and unix sockets in sockmap, tls_sw_has_ctx_tx/rx cannot presume the sock...
CVE-2024-53093
- EPSS 0.61%
- Veröffentlicht 21.11.2024 19:15:12
- Zuletzt bearbeitet 04.08.2026 11:21:50
In the Linux kernel, the following vulnerability has been resolved: nvme-multipath: defer partition scanning We need to suppress the partition scan from occuring within the controller's scan_work context. If a path error occurs here, the IO will wa...
CVE-2024-53095
- EPSS 0.56%
- Veröffentlicht 21.11.2024 19:15:12
- Zuletzt bearbeitet 04.08.2026 11:21:52
In the Linux kernel, the following vulnerability has been resolved: smb: client: Fix use-after-free of network namespace. Recently, we got a customer report that CIFS triggers oops while reconnecting to a server. [0] The workload runs on Kubernet...
CVE-2024-53079
- EPSS 0.18%
- Veröffentlicht 19.11.2024 18:15:27
- Zuletzt bearbeitet 04.08.2026 11:21:48
In the Linux kernel, the following vulnerability has been resolved: mm/thp: fix deferred split unqueue naming and locking Recent changes are putting more pressure on THP deferred split queues: under load revealing long-standing races, causing list_...