Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel 存在安全漏洞,该漏洞源于 net:bridge:mst 组件在 br_mst_set_state 函数中存在可疑的 RCU 使用问题。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 8ca9a750fc711911ef616ceb627d07357b04545e< caaa2129784a04dcade0ea92c12e6ff90bbd23d8 |
affected |
4488617e5e995a09abe4d81add5fb165674edb59< 7caefa2771722e65496d85b62e1dc4442b7d1345 |
affected | ||
e43dd2b1ec746e105b7db5f9ad6ef14685a615a4< 406bfc04b01ee47e4c626f77ecc7d9f85135b166 |
affected | ||
3a7c1661ae1383364cd6092d851f5e5da64d476b< 546ceb1dfdac866648ec959cbc71d9525bd73462 |
affected | ||
a2b01e65d9ba8af2bb086d3b7288ca53a07249ac |
affected | ||
6.8.12< 6.9 |
affected | ||
6.1.93< 6.1.95 |
affected | ||
6.6.33< 6.6.35 |
affected | ||
| … +1 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-40999 | 9.8 CRITICAL | net: ena: Add validation for completion descriptors consistency |
| CVE-2024-40907 | 9.8 CRITICAL | ionic: fix kernel panic in XDP_TX action |
| CVE-2024-40923 | 9.8 CRITICAL | vmxnet3: disable rx data ring on dma allocation failure |
| CVE-2024-40983 | 9.8 CRITICAL | tipc: force a dst refcount before doing decryption |
| CVE-2024-40937 | 9.8 CRITICAL | gve: Clear napi->skb before dev_kfree_skb_any() |
| CVE-2024-40910 | 8.8 HIGH | ax25: Fix refcount imbalance on inbound connections |
| CVE-2024-40911 | 8.8 HIGH | wifi: cfg80211: Lock wiphy in cfg80211_get_station |
| CVE-2024-40941 | 8.1 HIGH | wifi: iwlwifi: mvm: don't read past the mfuart notifcation |
| CVE-2024-40953 | 7.9 HIGH | KVM: Fix a data race on last_boosted_vcpu in kvm_vcpu_on_spin() |
| CVE-2024-40954 | 7.8 HIGH | net: do not leave a dangling sk pointer, when socket creation fails |
| CVE-2024-40918 | 7.8 HIGH | parisc: Try to fix random segmentation faults in package builds |
| CVE-2024-40924 | 7.8 HIGH | drm/i915/dpt: Make DPT object unshrinkable |
| CVE-2024-40925 | 7.8 HIGH | block: fix request.queuelist usage in flush |
| CVE-2024-40943 | 7.8 HIGH | ocfs2: fix races between hole punching and AIO+DIO |
| CVE-2024-40947 | 7.8 HIGH | ima: Avoid blocking in RCU read-side critical section |
| CVE-2024-40949 | 7.8 HIGH | mm: shmem: fix getting incorrect lruvec when replacing a shmem folio |
| CVE-2024-40990 | 7.8 HIGH | RDMA/mlx5: Add check for srq max_sge attribute |
| CVE-2024-40986 | 7.8 HIGH | dmaengine: xilinx: xdma: Fix data synchronisation in xdma_channel_isr() |
| CVE-2024-40989 | 7.8 HIGH | KVM: arm64: Disassociate vcpus from redistributor region on teardown |
| CVE-2024-40984 | 7.8 HIGH | ACPICA: Revert "ACPICA: avoid Info: mapping multiple BARs. Your kernel is fine." |
Showing top 20 of 122 CVEs. View all on vendor page → →
No comments yet