Search

Found 5,398 results in 1869ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2024-36950 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: firewire: ohci: mask bus reset interrupts between ISR and bottom half In the FireWire OHCI interrupt handler, if a bus reset inte…
CVE-2024-35790 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: usb: typec: altmodes/displayport: create sysfs nodes as driver's default device attribute group The DisplayPort driver's sysfs no…
CVE-2024-27388 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: SUNRPC: fix some memleaks in gssx_dec_option_array The creds and oa->data need to be freed in the error-handling paths after thei…
CVE-2024-26802 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: stmmac: Clear variable when destroying workqueue Currently when suspending driver and stopping workqueue it is checked whether wo…
CVE-2024-26698 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: hv_netvsc: Fix race condition between netvsc_probe and netvsc_remove In commit ac5047671758 ("hv_netvsc: Disable NAPI before clos…
CVE-2023-52847 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: media: bttv: fix use after free error due to btv->timeout timer There may be some a race condition between timer function bttv_ir…
CVE-2023-52845 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: tipc: Change nla_policy for bearer-related names to NLA_NUL_STRING syzbot reported the following uninit-value access issue [1]: …
CVE-2023-52803 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Fix RPC client cleaned up the freed pipefs dentries RPC client pipefs dentries cleanup is in separated rpc_remove_pipedir…
CVE-2023-52777 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix gtk offload status event locking The ath11k active pdevs are protected by RCU but the gtk offload status event …
CVE-2023-52764 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: media: gspca: cpia1: shift-out-of-bounds in set_flicker Syzkaller reported the following issue: UBSAN: shift-out-of-bounds in dri…
CVE-2023-52653 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: SUNRPC: fix a memleak in gss_import_v2_context The ctx->mech_used.data allocated by kmemdup is not freed in neither gss_import_v2…
CVE-2023-52623 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Fix a suspicious RCU usage warning I received the following warning while running cthon against an ontap server running p…
CVE-2023-52530 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix potential key use-after-free When ieee80211_key_link() is called by ieee80211_gtk_rekey_add() but returns 0 d…
CVE-2023-52471 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: ice: Fix some null pointer dereference issues in ice_ptp.c devm_kasprintf() returns a pointer to dynamically allocated memory whi…
CVE-2022-48757 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: net: fix information leakage in /proc/net/ptype In one net namespace, after creating a packet socket without binding it to a devi…
CVE-2022-48747 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: block: Fix wrong offset in bio_truncate() bio_truncate() clears the buffer outside of last block of bdev, however current bio_tru…
CVE-2021-47624 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: net/sunrpc: fix reference count leaks in rpc_sysfs_xprt_state_change The refcount leak issues take place in an error handling pat…
CVE-2021-47491 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: mm: khugepaged: skip huge page collapse for special files The read-only THP for filesystems will collapse THP for files opened re…
CVE-2021-47468 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: isdn: mISDN: Fix sleeping function called from invalid context The driver can call card->isac.release() function from an atomic c…
CVE-2021-47461 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: userfaultfd: fix a race between writeprotect and exit_mmap() A race is possible when a process exits, its VMAs are removed by exi…
CVE-2021-47408 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: netfilter: conntrack: serialize hash resizes and cleanups Syzbot was able to trigger the following warning [1] No repro found by…
CVE-2021-47304 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: tcp: fix tcp_init_transfer() to not reset icsk_ca_initialized This commit fixes a bug (found by syzkaller) that could cause spuri…
CVE-2021-47284 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: isdn: mISDN: netjet: Fix crash in nj_probe: 'nj_setup' in netjet.c might fail with -EIO and in this case 'card->irq' is initializ…
CVE-2021-47257 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: net: ieee802154: fix null deref in parse dev addr Fix a logic error that could result in a null deref if the user sets the mode i…
CVE-2021-47018 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: powerpc/64: Fix the definition of the fixmap area At the time being, the fixmap area is defined at the top of the address space o…
CVE-2021-46939 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: tracing: Restructure trace_clock_global() to never block It was reported that a fix to the ring buffer recursion detection would …
CVE-2024-3596 critical 9.0 9.0 FIX rhel rockydebian debian freeradiusbroadcom 2y ago RHSA-2024:8860: krb5 security update (Important)
CVE-2024-35952 high 8.0 FIX rhel rocky sles 2y ago In the Linux kernel, the following vulnerability has been resolved: drm/ast: Fix soft lockup There is a while-loop in ast_dp_set_on_off() that could lead to infinite-loop. This is because the regis…
CVE-2024-26982 high 7.1 7.1 FIX rhel rocky sles 2y ago Moderate: kernel security update
CVE-2024-26852 high 7.8 7.8 FIX rhel rocky sles 2y ago Moderate: kernel security update
CVE-2024-23638 high 8.0 FIX rhel rocky sles 2y ago RHSA-2024:9644: squid:4 security update (Important)
CVE-2024-4418 low 2.5 FIX rhel rocky sles 2y ago RHSA-2024:4351: virt:rhel and virt-devel:rhel security and bug fix update (Low)
CVE-2024-4032 low 2.5 FIX rhel rocky sles 2y ago Low: python3 security update
CVE-2024-39573 high 8.0 FIX debian debian rhel sles 2y ago Potential SSRF in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to cause unsafe RewriteRules to unexpectedly setup URL's to be handled by mod_proxy. Users are recommended to…
CVE-2024-38477 high 8.0 FIX debian debian rhel rocky 2y ago null pointer dereference in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows an attacker to crash the server via a malicious request. Users are recommended to upgrade to version 2.4.60, whic…
CVE-2024-38475 high 9.5 KEVFIX debian debian rhel sles 2y ago Improper escaping of output in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to map URLs to filesystem locations that are permitted to be served by the server but are not in…
CVE-2024-38474 high 8.0 FIX debian debian rhel sles 2y ago Substitution encoding issue in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows attacker to execute scripts in directories permitted by the configuration but not directly reachable by any …
CVE-2024-38473 high 8.0 FIX debian debian rhel sles 2y ago Encoding problem in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows request URLs with incorrect encoding to be sent to backend services, potentially bypassing authentication via crafted req…
CVE-2022-36765 high 8.0 FIX rheldebian debian sles 2y ago RHSA-2024:3017: edk2 security update (Important)
CVE-2024-5564 high 8.0 FIX rhel rocky sles 2y ago RHSA-2024:4620: libndp security update (Important)
CVE-2024-39936 high 8.0 FIX rhel rocky sles 2y ago An issue was discovered in HTTP2 in Qt before 5.15.18, 6.x before 6.2.13, 6.3.x through 6.5.x before 6.5.7, and 6.6.x through 6.7.x before 6.7.3. Code to make security-relevant decisions about an est…
CVE-2024-38663 high 8.0 FIX rhel sles rocky 2y ago Important: kernel security update
CVE-2024-38593 high 8.0 FIX rhel sles rocky 2y ago Important: kernel security update
CVE-2024-38586 high 8.0 FIX rhel rocky sles 2y ago Important: kernel security update
CVE-2024-38543 high 8.0 FIX rhel sles rocky 2y ago Important: kernel security update
CVE-2024-36957 high 8.0 FIX rhel sles rocky 2y ago Important: kernel security update
CVE-2024-36904 high 7.8 7.8 FIX rhel rocky sles 2y ago Important: kernel security update
CVE-2024-36886 high 8.0 FIX rhel rocky sles 2y ago Important: kernel security update
CVE-2024-27435 high 8.0 FIX rhel sles rocky 2y ago Important: kernel security update
CVE-2024-27397 high 7.0 7.0 FIX rhel rocky sles 2y ago Important: kernel security update
CVE-2024-26858 high 8.0 FIX rhel sles rocky 2y ago Important: kernel security update
CVE-2024-26783 high 8.0 FIX rhel sles rocky 2y ago Important: kernel security update
CVE-2024-21147 high 8.0 FIX rhel rocky sles 2y ago Important: java-1.8.0-openjdk security update
CVE-2024-21145 high 8.0 FIX rhel rocky sles 2y ago Important: java-1.8.0-openjdk security update
CVE-2024-21144 high 8.0 FIX rhel rocky sles 2y ago Important: java-1.8.0-openjdk security update
CVE-2024-21140 high 8.0 FIX rhel rocky sles 2y ago Important: java-1.8.0-openjdk security update
CVE-2024-21138 high 8.0 FIX rhel rocky sles 2y ago Important: java-1.8.0-openjdk security update
CVE-2024-21131 high 8.0 FIX rhel rocky sles 2y ago Important: java-1.8.0-openjdk security update
CVE-2023-52638 high 8.0 FIX rhel sles rocky 2y ago Important: kernel security update
CVE-2022-48627 high 8.0 FIX rhel rockydebian debian 2y ago Important: kernel security update
CVE-2021-47596 high 8.0 FIX rhel slesdebian debian 2y ago Important: kernel security update
CVE-2021-47548 high 8.0 FIX rhel rocky sles 2y ago Important: kernel security update
CVE-2024-6604 high 8.0 FIX rhel rockydebian debian 2y ago Memory safety bugs present in Firefox 127, Firefox ESR 115.12, and Thunderbird 115.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these cou…
CVE-2024-6603 high 8.0 FIX rhel rockydebian debian 2y ago In an out-of-memory scenario an allocation could fail but free would have been called on the pointer afterwards leading to memory corruption. This vulnerability affects Firefox < 128, Firefox ESR < 1…
CVE-2024-6601 high 8.0 FIX rhel rockydebian debian 2y ago A race condition could lead to a cross-origin container obtaining permissions of the top-level origin. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunde…
CVE-2024-35264 high 8.0 FIX rhel rockyalmalinux almalinux 2y ago RHSA-2024:4451: dotnet8.0 security update (Important)
CVE-2024-30105 high 8.0 FIX rhel rockyalmalinux almalinux 2y ago RHSA-2024:4451: dotnet8.0 security update (Important)
CVE-2024-38095 high 8.0 FIX rhel rockyalmalinux almalinux 2y ago RHSA-2024:4451: dotnet8.0 security update (Important)
CVE-2024-35960 critical 9.1 9.1 FIX rhel rocky sles 2y ago Moderate: kernel security and bug fix update
CVE-2024-26974 high 7.0 7.0 FIX rhel rocky sles 2y ago Moderate: kernel security and bug fix update
CVE-2021-47456 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: can: peak_pci: peak_pci_remove(): fix UAF When remove the module peek_pci, referencing 'chan' again after releasing 'dev' will ca…
CVE-2021-47356 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: mISDN: fix possible use-after-free in HFC_cleanup() This module's remove path calls del_timer(). However, that function does not …
CVE-2021-47353 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: udf: Fix NULL pointer dereference in udf_symlink function In function udf_symlink, epos.bh is assigned with the value returned by…
CVE-2024-6387 high 8.1 9.1 EXPFIX rhelarch arch sles openbsdredhatnetapp 2y ago A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote a…
CVE-2024-4467 high 8.0 FIX rhel slesdebian debian 2y ago A flaw was found in the QEMU disk image utility (qemu-img) 'info' command. A specially crafted image file containing a `json:{}` value describing block devices in QMP could cause the qemu-img process…
CVE-2023-52877 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpm: Fix NULL pointer dereference in tcpm_pd_svdm() It is possible that typec_register_partner() returns ERR_PTR on …
CVE-2023-52835 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: perf/core: Bail out early if the request AUX area is out of bound When perf-record with a large AUX area, e.g 4GB, it fails with:…
CVE-2023-52781 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: usb: config: fix iteration issue in 'usb_get_bos_descriptor()' The BOS descriptor defines a root descriptor and is the base descr…
CVE-2023-52700 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: tipc: fix kernel warning when sending SYN message When sending a SYN message, this kernel stack trace is observed: ... [ 13.39…
CVE-2023-52675 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: powerpc/imc-pmu: Add a null pointer check in update_events_in_group() kasprintf() returns a pointer to dynamically allocated memo…
CVE-2023-52669 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: crypto: s390/aes - Fix buffer overread in CTR mode When processing the last block, the s390 ctr code will always read a whole blo…
CVE-2023-2953 low 2.5 FIX rocky slesdebian debian 2y ago RHSA-2024:4264: openldap security update (Low)
CVE-2021-47311 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: net: qcom/emac: fix UAF in emac_remove adpt is netdev private data and it cannot be used after free_netdev() call. Using adpt aft…
CVE-2021-47310 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: net: ti: fix UAF in tlan_remove_one priv is netdev private data and it cannot be used after free_netdev() call. Using priv after …
CVE-2021-47236 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: net: cdc_eem: fix tx fixup skb leak when usbnet transmit a skb, eem fixup it in eem_tx_fixup(), if skb_copy_expand() failed, it r…
CVE-2021-47073 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios init_dell_smbios_wmi() only registers the dell_smbios_wmi_driver on …
CVE-2021-47069 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: ipc/mqueue, msg, sem: avoid relying on a stack reference past its expiry do_mq_timedreceive calls wq_sleep with a stack local add…
CVE-2021-46972 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: ovl: fix leaked dentry Since commit 6815f479ca90 ("ovl: use only uppermetacopy state in ovl_lookup()"), overlayfs doesn't put tem…
CVE-2021-46909 high 8.0 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: ARM: footbridge: fix PCI interrupt mapping Since commit 30fdfb929e82 ("PCI: Add a call to pci_assign_irq() in pci_device_probe()"…
CVE-2023-4727 high 8.0 rhel rockydebian debian 2y ago RHSA-2024:4367: pki-core security update (Important)
CVE-2024-32465 high 8.0 FIX rhel rockydebian debian 2y ago RHSA-2024:4084: git security update (Important)
CVE-2024-32021 high 8.0 FIX rhel rockydebian debian 2y ago RHSA-2024:4084: git security update (Important)
CVE-2024-32020 high 8.0 FIX rhel rockydebian debian 2y ago RHSA-2024:4084: git security update (Important)
CVE-2024-32004 high 8.0 FIX rhel rockydebian debian 2y ago RHSA-2024:4084: git security update (Important)
CVE-2024-32002 high 8.0 FIX rhel rockydebian debian 2y ago RHSA-2024:4084: git security update (Important)
CVE-2023-6597 high 8.0 FIX rhel rocky sles 2y ago An issue was found in the CPython `tempfile.TemporaryDirectory` class affecting versions 3.12.1, 3.11.7, 3.10.13, 3.9.18, and 3.8.18 and prior. The tempfile.TemporaryDirectory class would dereferenc…
CVE-2024-33871 high 8.0 FIX rhel rockydebian debian 2y ago RHSA-2024:4000: ghostscript security update (Important)
CVE-2024-5702 high 8.0 FIX rhel rockydebian debian 2y ago RHSA-2024:4036: thunderbird security update (Important)
CVE-2024-5700 high 8.0 FIX rhel rockydebian debian 2y ago Memory safety bugs present in Firefox 126, Firefox ESR 115.11, and Thunderbird 115.11. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these cou…
CVE-2024-5696 high 8.0 FIX rhel rockydebian debian 2y ago By manipulating the text in an `&lt;input&gt;` tag, an attacker could have caused corrupt memory leading to a potentially exploitable crash. This vulnerability affects Firefox < 127, Firefox ESR < 11…