Linux Latest Vulnerabilities

September 18

Optimistic Retrieval of Stached Dentry Can Lead to UAF

CVE-2024-46801
LinuxLinux

Use After Free in netem Fix

CVE-2024-46800
LinuxLinux

Fix NULL dereference on XDP_TX in net: ethernet

CVE-2024-46799
LinuxLinux

Use-After-Free Bug in snd_pcm_suspend_all() in Linux Kernel

CVE-2024-46798
LinuxLinux

Deadlock in MCS queue resolved in Linux kernel 5.14

CVE-2024-46797
LinuxLinux

Addressing a Memory corruption vulnerability in the SMB2 Compound Operation

CVE-2024-46796
LinuxLinux

ksmbd: unset the binding mark of a reused connection may lead to a null pointer dereference error

CVE-2024-46795
LinuxLinux

Data Leak in mmio_read() Resolved

CVE-2024-46794
LinuxLinux

Fixed NULL pointer deref in BYT/CHT boards

CVE-2024-46793
LinuxLinux

Restrict User Access to Kernel Memory

CVE-2024-46792
LinuxLinux

Resolved Deadlock in Linux Kernel's mcp251x_open Function

CVE-2024-46791
LinuxLinux

WARNING: CPU: 2 PID: 3282 Comm: madvise11 Kdump: loaded Tainted: G W 6.11.0-rc4-dirty #18

CVE-2024-46790
LinuxLinux

WARNING: CPU: 4 PID: 40 at ./include/linux/alloc_tag.h:130 kmem_cache_free+0x444/0x574

CVE-2024-46789
LinuxLinux

Predicting Recidivism Rates for Prisoners

CVE-2024-46788
LinuxLinux

Security Fix for Race Condition in Linux Kernel's Page Table Management

CVE-2024-46787
LinuxLinux

Resolved vulnerability in fscache module

CVE-2024-46786
LinuxLinux

Vendor: Facebook Product: Facebook

CVE-2024-46785
LinuxLinux

Fix error handling in mana_create_txq/rxq's NAPI cleanup

CVE-2024-46784
LinuxLinux

Bug in tcp_bpf may cause unexpected behavior

CVE-2024-46783
LinuxLinux

Illegal use of rhashtable_lookup

CVE-2024-46782
LinuxLinux

Fix Missing Cleanup on Rollforward Recovery Error in nilfs2

CVE-2024-46781
LinuxLinux

Protecting NILFS2 Superblock Buffers from Malicious Access

CVE-2024-46780
LinuxLinux

Linux Kernel Resolves Memory Leak in drm/imagination Codepath

CVE-2024-46779
LinuxLinux

Address Check for UnboundedRequestEnabled

CVE-2024-46778
LinuxLinux

Avoid Excessive Partition Lengths to Prevent Vulnerabilities

CVE-2024-46777
LinuxLinux

Run DC_LOG_DC after checking link->link_enc

CVE-2024-46776
LinuxLinux

Validate Function Returns

CVE-2024-46775
LinuxLinux

Preventing Spectre v1 Gadget Construction in sys_rtas()

CVE-2024-46774
LinuxLinux

Checking Denominators for Divide By Zero Issues

CVE-2024-46773
LinuxLinux

Check Denominator Before Using: Fixes 2 DIVIDE_BY_ZERO Issues

CVE-2024-46772
LinuxLinux

Remove proc entry when bound netdev is unregistered

CVE-2024-46771
LinuxLinux

NULL pointer dereference in netif_device_attach/detach during reset

CVE-2024-46770
LinuxLinux

Intel SPI Vulnerability: Unchecked Return Value in devm_kasprintf()

CVE-2024-46769
LinuxLinux

Linux Kernel Vulnerability: Ignoring WMI Event Data in HWMON

CVE-2024-46768
LinuxLinux

Fix of_node_put() for leds in Linux kernel

CVE-2024-46767
LinuxLinux

Addressed vulnerability in netif_queue_set_napi()

CVE-2024-46766
LinuxLinux

Protect Ice with Mutex

CVE-2024-46765
LinuxLinux

Linux Kernel Vulnerability Fix: Preventing Out-of-Bounds (OOB) Attacks

CVE-2024-46764
LinuxLinux

Fourier Optimization Update

CVE-2024-46763
LinuxLinux

Fix possible access to a freed kirqfd instance in xen

CVE-2024-46762
LinuxLinux

Fix for Hotplug Driver Crash in Linux Kernel

CVE-2024-46761
LinuxLinux

RTW Background Workflow Vulnerability

CVE-2024-46760
LinuxLinux

Fix Underflows in hwmon Kernelmodule

CVE-2024-46759
LinuxLinux

Underflow Fix in Linux Kernel's hwmon Module

CVE-2024-46758
LinuxLinux

Hardware Monitor Vulnerability Fix

CVE-2024-46757
LinuxLinux

Fix Underflows in hwmon with kstrtol

CVE-2024-46756
LinuxLinux

wifi: mwifiex: Do not return unused priv in mwifiex_get_priv_by_id()

CVE-2024-46755
LinuxLinux

Remove tst_run from lwt_seg6local_prog_ops

CVE-2024-46754
LinuxLinux

Proper Error Handling in btrfs Decrement Reference Function

CVE-2024-46753
LinuxLinux

Linux kernel: Fix for unexpected extent buffer behavior in btrfs

CVE-2024-46752
LinuxLinux

btrfs: don't BUG_ON() when 0 reference count at btrfs_lookup_extent_info()

CVE-2024-46751
LinuxLinux

PCI: Add missing bridge lock to pci_bus_lock()

CVE-2024-46750
LinuxLinux

Bluetooth: btnxpuart: Fix Null pointer dereference in btnxpuart_flush()

CVE-2024-46749
LinuxLinux

cachefiles: Set the max subreq size for cache writes to MAX_RW_COUNT

CVE-2024-46748
LinuxLinux

HID: cougar: fix slab-out-of-bounds Read in cougar_report_fixup

CVE-2024-46747
LinuxLinux

HID: amd_sfh: free driver_data after destroying hid device

CVE-2024-46746
LinuxLinux

Input: uinput - reject requests with unreasonable number of slots

CVE-2024-46745
LinuxLinux

Squashfs: sanity check symbolic link size

CVE-2024-46744
LinuxLinux

of/irq: Prevent device address out-of-bounds read in interrupt map walk

CVE-2024-46743
LinuxLinux

smb/server: fix potential null-ptr-deref of lease_ctx_info in smb2_open()

CVE-2024-46742
LinuxLinux

misc: fastrpc: Fix double free of 'buf' in error path

CVE-2024-46741
LinuxLinux

Raw Data Copy Vulnerability in Linux Kernel

CVE-2024-46740
LinuxLinux

uio_hv_generic: Fix kernel NULL pointer dereference in hv_uio_rescind

CVE-2024-46739
LinuxLinux

VMCI: Fix use-after-free when removing resource in vmci_resource_remove()

CVE-2024-46738
LinuxLinux

nvmet-tcp: fix kernel crash if commands allocation fails

CVE-2024-46737
LinuxLinux

smb: client: fix double put of @cfile in smb2_rename_path()

CVE-2024-46736
LinuxLinux

ublk_drv: fix NULL pointer dereference in ublk_ctrl_start_recovery()

CVE-2024-46735
LinuxLinux

btrfs: fix race between direct IO write and fsync when using same fd

CVE-2024-46734
LinuxLinux

btrfs: fix qgroup reserve leaks in cow_file_range

CVE-2024-46733
LinuxLinux

drm/amd/display: Assign linear_pitch_alignment even for VM

CVE-2024-46732
LinuxLinux

Fix Out-of-bounds read warning in drm/amd/pm

CVE-2024-46731
LinuxLinux

Ensure Array Index tg_inst Won't Be -1

CVE-2024-46730
LinuxLinux

Fix Incorrect Size Calculation for Loop in drm/amd/display

CVE-2024-46729
LinuxLinux

fixes 3 OVERRUN and 1 INTEGER_OVERFLOW issues reported by Coverity

CVE-2024-46728
LinuxLinux

NULL Check Added to Resolve Vulnerability

CVE-2024-46727
LinuxLinux

Ensure Index Calculation Will Not Overflow

CVE-2024-46726
LinuxLinux

Fix out-of-bounds write warning

CVE-2024-46725
LinuxLinux

Fix Out-of-Bounds Read Vulnerability in drm/amdgpu

CVE-2024-46724
LinuxLinux

Fix for Out-of-Bounds Read Warning in drm/amdgpu

CVE-2024-46723
LinuxLinux

Fix for mc_data Out-of-Bounds Read Warning

CVE-2024-46722
LinuxLinux

apparmor: fix possible NULL pointer dereference

CVE-2024-46721
LinuxLinux

security vulnerability resolved: drm/amdgpu

CVE-2024-46720
LinuxLinux

Fix for Null Pointer Dereference in Linux Kernel's USB Driver

CVE-2024-46719
LinuxLinux

Don't Overmap Identity VRAM Mapping to Avoid Hardware Bugs

CVE-2024-46718
LinuxLinux

SHAMPO Vulnerability in Linux Kernel's net/mlx5e

CVE-2024-46717
LinuxLinux

Properly Free Descriptor in msgdma_free_descriptor

CVE-2024-46716
LinuxLinux

Vulnerability in Linux kernel IIO driver

CVE-2024-46715
LinuxLinux

Skip wbscl_set_scaler_filter if filter is null

CVE-2024-46714
LinuxLinux

September 13

Fix AUX buffer serialization

CVE-2024-46713
LinuxLinux

Disable coherent dumb buffers without 3d to improve graphics performance

CVE-2024-46712
LinuxLinux

Fix ID 0 Endpoint Usage after Multiple Re-Creations

CVE-2024-46711
LinuxLinux

Prevent unmapping of active read buffers

CVE-2024-46710
LinuxLinux

Fixing Prime with External Buffers to Improve Security

CVE-2024-46709
LinuxLinux

Fix Special Pin Offsets to Prevent Crashes and Intended State Changes

CVE-2024-46708
LinuxLinux

Guest ICC_*SGI*_EL1 Access Elevation of Privilege Vulnerability

CVE-2024-46707
LinuxLinux

Linux Kernel Vulnerability Fix: Lpuart Driver Suspension Issue

CVE-2024-46706
LinuxLinux

Resolved Vulnerability: Easier MMIO Mapping Management

CVE-2024-46705
LinuxLinux

`__flush_work()` Data Race in Linux Kernel Fix Committed

CVE-2024-46704
LinuxLinux

Linux kernel patches vulnerability in serial interface

CVE-2024-46703
LinuxLinux

Mark XDomain as unplugged when router is removed

CVE-2024-46702
LinuxLinux