Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于在调用efi.get_variable之前未能检查其是否存在。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 1cad8725f2b98965ed3658bc917090b30adb14fa< 5b6baaa7cbd77ff980516bad38bbc5a648bb5158 |
affected |
1cad8725f2b98965ed3658bc917090b30adb14fa< dc268085e499666b9f4f0fcb4c5a94e1c0b193b3 |
affected | ||
6.9 |
affected | ||
< 6.9 |
unaffected | ||
6.10.5≤ 6.10.* |
unaffected | ||
6.11≤ * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-44942 | 7.8 HIGH | f2fs: fix to do sanity check on F2FS_INLINE_DATA flag in inode during GC |
| CVE-2024-43910 | 7.8 HIGH | bpf: add missing check_func_arg_reg_off() to prevent out-of-bounds memory accesses |
| CVE-2024-44934 | 7.8 HIGH | net: bridge: mcast: wait for previous gc cycles when removing port |
| CVE-2024-43897 | 7.8 HIGH | net: drop bad gso csum_start and offset in virtio_net_hdr |
| CVE-2024-43892 | 7.8 HIGH | memcg: protect concurrent access to mem_cgroup_idr |
| CVE-2024-43891 | 7.8 HIGH | tracing: Have format file honor EVENT_FILE_FL_FREED |
| CVE-2024-44939 | 7.8 HIGH | jfs: fix null ptr deref in dtInsertEntry |
| CVE-2024-43888 | 7.8 HIGH | mm: list_lru: fix UAF for memory cgroup |
| CVE-2024-44941 | 7.8 HIGH | f2fs: fix to cover read extent cache access with lock |
| CVE-2024-44940 | 7.5 HIGH | fou: remove warn in gue_gro_receive on unsupported protocol |
| CVE-2024-44933 | 7.3 HIGH | bnxt_en : Fix memory out-of-bounds in bnxt_fill_hw_rss_tbl() |
| CVE-2024-43913 | 7.0 HIGH | nvme: apple: fix device reference counting |
| CVE-2024-44938 | jfs: Fix shift-out-of-bounds in dbDiscardAG | |
| CVE-2024-44937 | platform/x86: intel-vbtn: Protect ACPI notify handler against recursion | |
| CVE-2024-44936 | power: supply: rt5033: Bring back i2c_set_clientdata | |
| CVE-2024-44935 | sctp: Fix null-ptr-deref in reuseport_add_sock(). | |
| CVE-2024-44932 | idpf: fix UAFs when destroying the queues | |
| CVE-2024-44931 | gpio: prevent potential speculation leaks in gpio_device_get_desc() | |
| CVE-2024-43914 | md/raid5: avoid BUG_ON() while continue reshape after reassembling | |
| CVE-2024-43912 | wifi: nl80211: disallow setting special AP channel widths |
Showing top 20 of 39 CVEs. View all on vendor page → →
No comments yet