Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel 存在安全漏洞,该漏洞源于在非 NAPI softirq 上下文中调用 napi_consume_skb 时没有使用预算为 0,这可能导致在不安全的上下文中调用该函数。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 386e69865311044b576ff536c99c6ee9cc98a228< ef7646ed49fff962e97b276f4ab91327a67eeb5a |
affected |
386e69865311044b576ff536c99c6ee9cc98a228< 84b767f9e34fdb143c09e66a2a20722fc2921821 |
affected | ||
6.9 |
affected | ||
< 6.9 |
unaffected | ||
6.9.8≤ 6.9.* |
unaffected | ||
6.10≤ * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-41081 | 9.8 CRITICAL | ila: block BH in ila_output() |
| CVE-2024-41073 | 9.8 CRITICAL | nvme: avoid double free special payload |
| CVE-2024-41040 | 9.8 CRITICAL | net/sched: Fix UAF when resolving a clash |
| CVE-2024-41091 | 8.8 HIGH | tun: add missing verification for short frame |
| CVE-2024-42083 | 8.8 HIGH | ionic: fix kernel panic due to multi-buffer handling |
| CVE-2024-41062 | 8.8 HIGH | bluetooth/l2cap: sync sock recv cb and release |
| CVE-2024-41046 | 8.8 HIGH | net: ethernet: lantiq_etop: fix double free in detach |
| CVE-2024-41090 | 8.8 HIGH | tap: add missing verification for short frame |
| CVE-2024-41057 | 7.8 HIGH | cachefiles: fix slab-use-after-free in cachefiles_withdraw_cookie() |
| CVE-2024-41041 | 7.8 HIGH | udp: Set SOCK_RCU_FREE earlier in udp_lib_get_port(). |
| CVE-2024-42064 | 7.8 HIGH | drm/amd/display: Skip pipe if the pipe idx not set properly |
| CVE-2024-41017 | 7.8 HIGH | jfs: don't walk off the end of ealist |
| CVE-2024-42066 | 7.8 HIGH | drm/xe: Fix potential integer overflow in page size calculation |
| CVE-2024-41049 | 7.8 HIGH | filelock: fix potential use-after-free in posix_lock_inode |
| CVE-2024-41051 | 7.8 HIGH | cachefiles: wait for ondemand_object_worker to finish when dropping object |
| CVE-2024-42067 | 7.8 HIGH | bpf: Take return from set_memory_rox() into account with bpf_jit_binary_lock_ro() |
| CVE-2024-42068 | 7.8 HIGH | bpf: Take return from set_memory_ro() into account with bpf_prog_lock_ro() |
| CVE-2024-42069 | 7.8 HIGH | net: mana: Fix possible double free in error handling path |
| CVE-2024-41069 | 7.8 HIGH | ASoC: topology: Fix references to freed memory |
| CVE-2024-42075 | 7.8 HIGH | bpf: Fix remap of arena. |
Showing top 20 of 121 CVEs. View all on vendor page → →
No comments yet