Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel 存在安全漏洞,该漏洞源于 bpf 组件在 pskb_pull_reason 处理中存在调试信息泄露问题。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 8af60bb2b215f478b886f1d6d302fefa7f0b917d< dacc15e9cb248d19e5fc63c54bef0b9b55007761 |
affected |
1b2b26595bb09febf14c5444c873ac4ec90a5a77< 7f9644782c559635bd676c12c59389a34ed7c866 |
affected | ||
219eee9c0d16f1b754a8b85275854ab17df0850a< 5e90258303a358e88737afb5048bee9113beea3a |
affected | ||
219eee9c0d16f1b754a8b85275854ab17df0850a< 2bbe3e5a2f4ef69d13be54f1cf895b4658287080 |
affected | ||
fff05b2b004d9a8a2416d08647f3dc9068e357c8 |
affected | ||
6.1.86< 6.1.96 |
affected | ||
6.6.27< 6.6.36 |
affected | ||
6.8.6< 6.9 |
affected | ||
| … +6 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-40907 | 9.8 CRITICAL | ionic: fix kernel panic in XDP_TX action |
| CVE-2024-40923 | 9.8 CRITICAL | vmxnet3: disable rx data ring on dma allocation failure |
| CVE-2024-40983 | 9.8 CRITICAL | tipc: force a dst refcount before doing decryption |
| CVE-2024-40999 | 9.8 CRITICAL | net: ena: Add validation for completion descriptors consistency |
| CVE-2024-40937 | 9.8 CRITICAL | gve: Clear napi->skb before dev_kfree_skb_any() |
| CVE-2024-40910 | 8.8 HIGH | ax25: Fix refcount imbalance on inbound connections |
| CVE-2024-40911 | 8.8 HIGH | wifi: cfg80211: Lock wiphy in cfg80211_get_station |
| CVE-2024-40941 | 8.1 HIGH | wifi: iwlwifi: mvm: don't read past the mfuart notifcation |
| CVE-2024-40953 | 7.9 HIGH | KVM: Fix a data race on last_boosted_vcpu in kvm_vcpu_on_spin() |
| CVE-2024-39495 | 7.8 HIGH | greybus: Fix use-after-free bug in gb_interface_release due to race condition. |
| CVE-2024-40943 | 7.8 HIGH | ocfs2: fix races between hole punching and AIO+DIO |
| CVE-2024-40958 | 7.8 HIGH | netns: Make get_net_ns() handle zero refcount net |
| CVE-2024-40956 | 7.8 HIGH | dmaengine: idxd: Fix possible Use-After-Free in irq_process_work_list |
| CVE-2024-40991 | 7.8 HIGH | dmaengine: ti: k3-udma-glue: Fix of_k3_udma_glue_parse_chn_by_id() |
| CVE-2024-40990 | 7.8 HIGH | RDMA/mlx5: Add check for srq max_sge attribute |
| CVE-2024-40989 | 7.8 HIGH | KVM: arm64: Disassociate vcpus from redistributor region on teardown |
| CVE-2024-40986 | 7.8 HIGH | dmaengine: xilinx: xdma: Fix data synchronisation in xdma_channel_isr() |
| CVE-2024-40918 | 7.8 HIGH | parisc: Try to fix random segmentation faults in package builds |
| CVE-2024-40947 | 7.8 HIGH | ima: Avoid blocking in RCU read-side critical section |
| CVE-2024-40979 | 7.8 HIGH | wifi: ath12k: fix kernel crash during resume |
Showing top 20 of 122 CVEs. View all on vendor page → →
No comments yet