|
252321
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
userfaultfd: don't BUG_ON() if khugepaged yanks our page table
Since khugepaged was changed to allow retracting page tables in fi…
|
NVD-CWE-noinfo
|
CVE-2024-46838
|
2024-10-10 00:35 |
2024-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252322
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
KVM: s390: fix validity interception issue when gisa is switched off
We might run into a SIE validity if gisa has been disabled e…
|
CWE-908
Use of Uninitialized Resource
|
CVE-2024-45005
|
2024-10-10 00:30 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252323
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
KEYS: trusted: dcp: fix leak of blob encryption key
Trusted keys unseal the key blob on load, but keep the sealed payload in
the …
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2024-45004
|
2024-10-10 00:19 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252324
|
7.8 |
HIGH
Local
|
authenticator
|
authenticator
|
Authenticator is a browser extension that generates two-step verification codes. In versions 7.0.0 and below, encryption keys for user data were stored encrypted at-rest using only AES-256 and the EV…
|
CWE-326 CWE-327
Inadequate Encryption Strength Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2024-45394
|
2024-10-10 00:15 |
2024-09-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252325
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net: mana: Fix RX buf alloc_size alignment and atomic op panic
The MANA driver's RX buffer alloc_size is passed into napi_build_s…
|
NVD-CWE-noinfo
|
CVE-2024-45001
|
2024-10-9 23:49 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252326
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
tcp: prevent concurrent execution of tcp_sk_exit_batch
Its possible that two threads call tcp_sk_exit_batch() concurrently,
once …
|
NVD-CWE-noinfo
|
CVE-2024-44991
|
2024-10-9 23:36 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252327
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
serial: sc16is7xx: fix TX fifo corruption
Sometimes, when a packet is received on channel A at almost the same time
as a packet i…
|
CWE-667
Improper Locking
|
CVE-2024-44951
|
2024-10-9 23:27 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252328
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
serial: sc16is7xx: fix invalid FIFO access with special register set
When enabling access to the special register set, Receiver t…
|
NVD-CWE-noinfo
|
CVE-2024-44950
|
2024-10-9 23:21 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252329
|
5.5 |
MEDIUM
Local
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
-
|
CVE-2024-42308
|
2024-10-9 23:15 |
2024-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252330
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
parisc: fix a possible DMA corruption
ARCH_DMA_MINALIGN was defined as 16 - this is too small - it may be
possible that two unrel…
|
NVD-CWE-noinfo
|
CVE-2024-44949
|
2024-10-9 22:53 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|