Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于在 bpf_timer_cancel_and_free 中,如果两个定时器回调尝试相互取消,或者释放包含定时器的映射元素时,可能发生死锁。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | b00628b1c7d595ae5b544e059c27b1f5828314b4< 5eaa11c500ed07f505f86cec07d5593a71927e26 |
affected |
b00628b1c7d595ae5b544e059c27b1f5828314b4< 7aa5a19279c3639ae8b758b63f05d0c616a39fa1 |
affected | ||
b00628b1c7d595ae5b544e059c27b1f5828314b4< a6fcd19d7eac1335eb76bc16b6a66b7f574d1d69 |
affected | ||
5.15 |
affected | ||
< 5.15 |
unaffected | ||
6.6.158≤ 6.6.* |
unaffected | ||
6.9.10≤ 6.9.* |
unaffected | ||
6.10≤ * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-41073 | 9.8 CRITICAL | nvme: avoid double free special payload |
| CVE-2024-41040 | 9.8 CRITICAL | net/sched: Fix UAF when resolving a clash |
| CVE-2024-41081 | 9.8 CRITICAL | ila: block BH in ila_output() |
| CVE-2024-41091 | 8.8 HIGH | tun: add missing verification for short frame |
| CVE-2024-41046 | 8.8 HIGH | net: ethernet: lantiq_etop: fix double free in detach |
| CVE-2024-42083 | 8.8 HIGH | ionic: fix kernel panic due to multi-buffer handling |
| CVE-2024-41090 | 8.8 HIGH | tap: add missing verification for short frame |
| CVE-2024-41062 | 8.8 HIGH | bluetooth/l2cap: sync sock recv cb and release |
| CVE-2024-41070 | 7.8 HIGH | KVM: PPC: Book3S HV: Prevent UAF in kvm_spapr_tce_attach_iommu_group() |
| CVE-2024-41049 | 7.8 HIGH | filelock: fix potential use-after-free in posix_lock_inode |
| CVE-2024-41057 | 7.8 HIGH | cachefiles: fix slab-use-after-free in cachefiles_withdraw_cookie() |
| CVE-2024-41060 | 7.8 HIGH | drm/radeon: check bo_va->bo is non-NULL before using it |
| CVE-2024-41059 | 7.8 HIGH | hfsplus: fix uninit-value in copy_name |
| CVE-2024-42075 | 7.8 HIGH | bpf: Fix remap of arena. |
| CVE-2024-41064 | 7.8 HIGH | powerpc/eeh: avoid possible crash when edev->pdev changes |
| CVE-2024-42072 | 7.8 HIGH | bpf: Fix may_goto with negative offset. |
| CVE-2024-41069 | 7.8 HIGH | ASoC: topology: Fix references to freed memory |
| CVE-2024-41086 | 7.8 HIGH | bcachefs: Fix sb_field_downgrade validation |
| CVE-2024-42066 | 7.8 HIGH | drm/xe: Fix potential integer overflow in page size calculation |
| CVE-2024-42064 | 7.8 HIGH | drm/amd/display: Skip pipe if the pipe idx not set properly |
Showing top 20 of 121 CVEs. View all on vendor page → →
No comments yet