- EPSS 1.02%
- Veröffentlicht 20.02.2024 18:15:50
- Zuletzt bearbeitet 04.08.2026 10:18:26
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential OOBs in smb2_parse_contexts() Validate offsets and lengths before dereferencing create contexts in smb2_parse_contexts(). This fixes following oops when...
CVE-2024-26581
- EPSS 2.22%
- Veröffentlicht 20.02.2024 13:15:09
- Zuletzt bearbeitet 01.10.2025 19:15:33
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_rbtree: skip end interval element from gc rbtree lazy gc on insert might collect an end interval element that has been just added in this transactions, skip end ...
CVE-2023-52429
- EPSS 0.25%
- Veröffentlicht 12.02.2024 03:15:32
- Zuletzt bearbeitet 04.11.2025 19:16:23
dm_table_create in drivers/md/dm-table.c in the Linux kernel through 6.7.4 can attempt to (in alloc_targets) allocate more than INT_MAX bytes, and crash, because of a missing check for struct dm_ioctl.target_count.
CVE-2024-25739
- EPSS 0.25%
- Veröffentlicht 12.02.2024 03:15:32
- Zuletzt bearbeitet 12.05.2026 12:16:18
create_empty_lvol in drivers/mtd/ubi/vtbl.c in the Linux kernel through 6.7.4 can attempt to allocate zero bytes, and crash, because of a missing check for ubi->leb_size.
CVE-2023-6356
- EPSS 1.46%
- Veröffentlicht 07.02.2024 21:15:08
- Zuletzt bearbeitet 04.11.2025 19:16:24
A flaw was found in the Linux kernel's NVMe driver. This issue may allow an unauthenticated malicious actor to send a set of crafted TCP packages when using NVMe over TCP, leading the NVMe driver to a NULL pointer dereference in the NVMe driver and c...
CVE-2023-6535
- EPSS 1.55%
- Veröffentlicht 07.02.2024 21:15:08
- Zuletzt bearbeitet 04.11.2025 19:16:24
A flaw was found in the Linux kernel's NVMe driver. This issue may allow an unauthenticated malicious actor to send a set of crafted TCP packages when using NVMe over TCP, leading the NVMe driver to a NULL pointer dereference in the NVMe driver, caus...
CVE-2023-6536
- EPSS 1.55%
- Veröffentlicht 07.02.2024 21:15:08
- Zuletzt bearbeitet 04.11.2025 19:16:24
A flaw was found in the Linux kernel's NVMe driver. This issue may allow an unauthenticated malicious actor to send a set of crafted TCP packages when using NVMe over TCP, leading the NVMe driver to a NULL pointer dereference in the NVMe driver, caus...
CVE-2024-24860
- EPSS 0.81%
- Veröffentlicht 05.02.2024 08:15:45
- Zuletzt bearbeitet 13.02.2025 18:17:10
A race condition was found in the Linux kernel's bluetooth device driver in {min,max}_key_size_set() function. This can result in a null pointer dereference issue, possibly leading to a kernel panic or denial of service issue.
CVE-2024-24861
- EPSS 0.21%
- Veröffentlicht 05.02.2024 08:15:45
- Zuletzt bearbeitet 13.02.2025 18:17:11
A race condition was found in the Linux kernel's media/xc4000 device driver in xc4000 xc4000_get_frequency() function. This can result in return value overflow issue, possibly leading to malfunction or denial of service issue.
CVE-2024-23196
- EPSS 0.17%
- Veröffentlicht 05.02.2024 08:15:44
- Zuletzt bearbeitet 21.11.2024 08:57:10
A race condition was found in the Linux kernel's sound/hda device driver in snd_hdac_regmap_sync() function. This can result in a null pointer dereference issue, possibly leading to a kernel panic or denial of service issue.