Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于libbpf的ringbuf mmap操作中处理大小溢出不当,可能影响32位应用在64位内核上的mmap操作。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | bf99c936f9478a05d51e9f101f90de70bee9a89c< 8a549ab6724520aa3c07f47e0eba820293551490 |
affected |
bf99c936f9478a05d51e9f101f90de70bee9a89c< 0140e079a42064680394fff1199a7b5483688dec |
affected | ||
bf99c936f9478a05d51e9f101f90de70bee9a89c< 535a25ab4f9a45f74ba38ab71de95e97474922ed |
affected | ||
bf99c936f9478a05d51e9f101f90de70bee9a89c< 927cbb478adf917e0a142b94baa37f06279cc466 |
affected | ||
5.8 |
affected | ||
< 5.8 |
unaffected | ||
5.10.158≤ 5.10.* |
unaffected | ||
5.15.82≤ 5.15.* |
unaffected | ||
| … +2 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-49855 | 9.8 CRITICAL | nbd: fix race between timeout and normal completion |
| CVE-2024-47695 | 9.8 CRITICAL | RDMA/rtrs-clt: Reset cid to con_num - 1 to stay in bounds |
| CVE-2022-48985 | 9.8 CRITICAL | net: mana: Fix race on per-CQ variable napi work_done |
| CVE-2022-49003 | 9.8 CRITICAL | nvme: fix SRCU protection of nvme_ns_head list |
| CVE-2024-50046 | 9.8 CRITICAL | NFSv4: Prevent NULL-pointer dereference in nfs42_complete_copies() |
| CVE-2024-50047 | 9.8 CRITICAL | smb: client: fix UAF in async decryption |
| CVE-2024-50043 | 9.8 CRITICAL | nfsd: fix possible badness in FREE_STATEID |
| CVE-2024-50033 | 9.8 CRITICAL | slip: make slhc_remember() more robust against malicious packets |
| CVE-2024-47678 | 9.4 CRITICAL | icmp: change the order of rate limits |
| CVE-2024-49996 | 9.4 CRITICAL | cifs: Fix buffer overflow when parsing NFS reparse points |
| CVE-2022-48967 | 8.8 HIGH | NFC: nci: Bounds check struct nfc_target arrays |
| CVE-2024-50041 | 8.8 HIGH | i40e: Fix macvlan leak by synchronizing access to mac_filter_hash |
| CVE-2024-49950 | 8.8 HIGH | Bluetooth: L2CAP: Fix uaf in l2cap_connect |
| CVE-2022-48964 | 8.8 HIGH | ravb: Fix potential use-after-free in ravb_rx_gbeth() |
| CVE-2022-48962 | 8.8 HIGH | net: hisilicon: Fix potential use-after-free in hisi_femac_rx() |
| CVE-2024-49930 | 8.8 HIGH | wifi: ath11k: fix array out-of-bound access in SoC stats |
| CVE-2024-49936 | 8.8 HIGH | net/xen-netback: prevent UAF in xenvif_flush_hash() |
| CVE-2024-49939 | 8.8 HIGH | wifi: rtw89: avoid to add interface to list twice when SER |
| CVE-2022-48960 | 8.8 HIGH | net: hisilicon: Fix potential use-after-free in hix5hd2_rx() |
| CVE-2024-50029 | 8.8 HIGH | Bluetooth: hci_conn: Fix UAF in hci_enhanced_setup_sync |
Showing top 20 of 372 CVEs. View all on vendor page → →
No comments yet