Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于构建ntlmssp协商blob失败时未释放内存,可能导致内存泄漏。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 49bd49f983b5026e4557d31c5d737d9657c4113e< fa5a70bdd5e565c8696fb04dfe18a4e8aff4695d |
affected |
49bd49f983b5026e4557d31c5d737d9657c4113e< 30b2d7f8f13664655480d6af45f60270b3eb6736 |
affected | ||
5.16 |
affected | ||
< 5.16 |
unaffected | ||
6.0.6≤ 6.0.* |
unaffected | ||
6.1≤ * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-53338 | 9.8 CRITICAL | lwt: Fix return values of BPF xmit ops |
| CVE-2023-53360 | 9.8 CRITICAL | NFSv4.2: Rework scratch handling for READ_PLUS (again) |
| CVE-2022-50363 | 9.8 CRITICAL | skmsg: pass gfp argument to alloc_sk_msg() |
| CVE-2022-50373 | 9.8 CRITICAL | fs: dlm: fix race in lowcomms |
| CVE-2023-53358 | 8.8 HIGH | ksmbd: fix racy issue under cocurrent smb2 tree disconnect |
| CVE-2022-50368 | 7.8 HIGH | drm/msm/dsi: fix memory corruption with too many bridges |
| CVE-2022-50367 | 7.8 HIGH | fs: fix UAF/GPF bug in nilfs_mdt_destroy |
| CVE-2023-53340 | 7.8 HIGH | net/mlx5: Collect command failures data only for known commands |
| CVE-2022-50362 | 7.8 HIGH | dmaengine: hisilicon: Add multi-thread support for a DMA channel |
| CVE-2023-53354 | 7.8 HIGH | skbuff: skb_segment, Call zero copy functions before using skbuff frags |
| CVE-2022-50355 | 7.8 HIGH | staging: vt6655: fix some erroneous memory clean-up loops |
| CVE-2022-50354 | 7.8 HIGH | drm/amdkfd: Fix kfd_process_device_init_vm error handling |
| CVE-2023-53335 | 7.5 HIGH | RDMA/cxgb4: Fix potential null-ptr-deref in pass_establish() |
| CVE-2022-50365 | 7.5 HIGH | skbuff: Account for tail adjustment during pull operations |
| CVE-2022-50374 | Bluetooth: hci_{ldisc,serdev}: check percpu_init_rwsem() failure | |
| CVE-2022-50353 | mmc: wmt-sdmmc: fix return value check of mmc_add_host() | |
| CVE-2023-53337 | nilfs2: do not write dirty data after degenerating to read-only | |
| CVE-2022-50371 | led: qcom-lpg: Fix sleeping in atomic | |
| CVE-2022-50369 | drm/vkms: Fix null-ptr-deref in vkms_release() | |
| CVE-2022-50370 | i2c: designware: Fix handling of real but unexpected device interrupts |
Showing top 20 of 56 CVEs. View all on vendor page → →
No comments yet