Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于netfilter: bpf模块在__nf_unregister_net_hook函数中未能正确持有网络命名空间引用,可能导致释放后重用问题。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 84601d6ee68ae820dec97450934797046d62db4b< f41bd93b3e0508edc7ba820357f949071dcc0acc |
affected |
84601d6ee68ae820dec97450934797046d62db4b< d0d7939543a1b3bb93af9a18d258a774daf8f162 |
affected | ||
84601d6ee68ae820dec97450934797046d62db4b< 1230fe7ad3974f7bf6c78901473e039b34d4fb1f |
affected | ||
6.4 |
affected | ||
< 6.4 |
unaffected | ||
6.6.59≤ 6.6.* |
unaffected | ||
6.11.6≤ 6.11.* |
unaffected | ||
6.12≤ * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-50106 | 9.8 CRITICAL | nfsd: fix race between laundromat and free_stateid |
| CVE-2024-50113 | 8.8 HIGH | firewire: core: fix invalid port index for parent device |
| CVE-2024-50115 | 8.4 HIGH | KVM: nSVM: Ignore nCR3[4:0] when loading PDPTEs from memory |
| CVE-2024-50125 | 8.0 HIGH | Bluetooth: SCO: Fix UAF on sco_sock_timeout |
| CVE-2024-50124 | 8.0 HIGH | Bluetooth: ISO: Fix UAF on iso_sock_timeout |
| CVE-2024-50132 | 7.8 HIGH | tracing/probes: Fix MAX_TRACE_ARGS limit handling |
| CVE-2023-52920 | 7.8 HIGH | bpf: support non-r10 register spill/fill to/from stack in precision tracking |
| CVE-2024-50091 | 7.8 HIGH | dm vdo: don't refer to dedupe_context after releasing it |
| CVE-2024-50101 | 7.8 HIGH | iommu/vt-d: Fix incorrect pci_for_each_dma_alias() for non-PCI devices |
| CVE-2024-50114 | 7.8 HIGH | KVM: arm64: Unregister redistributor for failed vCPU creation |
| CVE-2024-50127 | 7.8 HIGH | net: sched: fix use-after-free in taprio_change() |
| CVE-2024-50126 | 7.8 HIGH | net: sched: use RCU read-side critical section in taprio_dump() |
| CVE-2024-50128 | 7.8 HIGH | net: wwan: fix global oob in wwan_rtnl_policy |
| CVE-2024-50090 | 7.8 HIGH | drm/xe/oa: Fix overflow in oa batch buffer |
| CVE-2024-50094 | 7.5 HIGH | sfc: Don't invoke xdp_do_flush() from netpoll. |
| CVE-2024-50095 | 7.5 HIGH | RDMA/mad: Improve handling of timed out WRs of mad agent |
| CVE-2024-50099 | 7.3 HIGH | arm64: probes: Remove broken LDR (literal) uprobe support |
| CVE-2024-50096 | 7.3 HIGH | nouveau/dmem: Fix vulnerability in migrate_to_ram upon copy error |
| CVE-2024-50131 | 7.3 HIGH | tracing: Consider the NULL character when validating the event length |
| CVE-2024-50117 | 7.3 HIGH | drm/amd: Guard against bad data for ATIF ACPI method |
Showing top 20 of 50 CVEs. View all on vendor page → →
No comments yet