CVE Database

117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-42148
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: bnx2x: Fix multiple UBSAN array-index-out-of-bounds Fix UBSAN warnings that occur when using a system with …

Jul 30, 2024
CVE-2024-42147
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/debugfs - Fix debugfs uninit process issue During the zip probe process, the debugfs …

Jul 30, 2024
CVE-2024-42146
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/xe: Add outer runtime_pm protection to xe_live_ktest@xe_dma_buf Any kunit doing any memory access should get …

Jul 30, 2024
CVE-2024-42145
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: IB/core: Implement a limit on UMAD receive List The existing behavior of ib_umad, which maintains …

Jul 30, 2024
CVE-2024-42144
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: thermal/drivers/mediatek/lvts_thermal: Check NULL ptr on lvts_data Verify that lvts_data is not NULL before using it.

Jul 30, 2024
CVE-2024-42143

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Jul 30, 2024
CVE-2024-42142
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: E-switch, Create ingress ACL when needed Currently, ingress acl is used for three features. …

Jul 30, 2024
CVE-2024-42141
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: Check socket flag instead of hcon This fixes the following Smatch static checker …

Jul 30, 2024
CVE-2024-42140
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: riscv: kexec: Avoid deadlock in kexec crash path If the kexec crash code is called …

Jul 30, 2024
CVE-2024-42139
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ice: Fix improper extts handling Extts events are disabled and enabled by the application ts2phc. …

Jul 30, 2024
CVE-2024-42138
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: mlxsw: core_linecards: Fix double memory deallocation in case of invalid INI file In case of …

Jul 30, 2024
CVE-2024-42137
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: qca: Fix BT enable failure again for QCA6390 after warm reboot Commit 272970be3dab ("Bluetooth: …

Jul 30, 2024
CVE-2024-42136
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: cdrom: rearrange last_media_change check to avoid unintentional overflow When running syzkaller with the newly reintroduced …

Jul 30, 2024
CVE-2024-42135
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: vhost_task: Handle SIGKILL by flushing work and exiting Instead of lingering until the device is …

Jul 30, 2024
CVE-2024-42134
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: virtio-pci: Check if is_avq is NULL [bug] In the virtio_pci_common.c function vp_del_vqs, vp_dev->is_avq is involved …

Jul 30, 2024
CVE-2024-42133
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Ignore too large handle values in BIG hci_le_big_sync_established_evt is necessary to filter out cases …

Jul 30, 2024
CVE-2024-42132
7.1 HIGH

In the Linux kernel, the following vulnerability has been resolved: bluetooth/hci: disallow setting handle bigger than HCI_CONN_HANDLE_MAX Syzbot hit warning in hci_conn_del() caused by freeing …

Jul 30, 2024
CVE-2024-42131
4.4 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: mm: avoid overflows in dirty throttling logic The dirty throttling logic is interspersed with assumptions …

Jul 30, 2024
CVE-2024-42130

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Jul 30, 2024
CVE-2024-42129
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: leds: mlxreg: Use devm_mutex_init() for mutex initialization In this driver LEDs are registered using devm_led_classdev_register() …

Jul 30, 2024
CVE-2024-42128
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: leds: an30259a: Use devm_mutex_init() for mutex initialization In this driver LEDs are registered using devm_led_classdev_register() …

Jul 30, 2024
CVE-2024-42127
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/lima: fix shared irq handling on driver remove lima uses a shared interrupt, so the …

Jul 30, 2024
CVE-2024-42126
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: powerpc: Avoid nmi_enter/nmi_exit in real mode interrupt. nmi_enter()/nmi_exit() touches per cpu variables which can lead …

Jul 30, 2024
CVE-2024-42125
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: fw: scan offload prohibit all 6 GHz channel if no 6 GHz sband …

Jul 30, 2024
CVE-2024-42124
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: scsi: qedf: Make qedf_execute_tmf() non-preemptible Stop calling smp_processor_id() from preemptible code in qedf_execute_tmf90. This results …

Jul 30, 2024
CVE-2024-42123
4.4 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix double free err_addr pointer warnings In amdgpu_umc_bad_page_polling_timeout, the amdgpu_umc_handle_bad_pages will be run many …

Jul 30, 2024
CVE-2024-42122
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Add NULL pointer check for kzalloc [Why & How] Check return pointer of kzalloc …

Jul 30, 2024
CVE-2024-42121
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check index msg_id before read or write [WHAT] msg_id is used as an array …

Jul 30, 2024
CVE-2024-42120
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check pipe offset before setting vblank pipe_ctx has a size of MAX_PIPES so checking …

Jul 30, 2024
CVE-2024-42119
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Skip finding free audio for unknown engine_id [WHY] ENGINE_ID_UNKNOWN = -1 and can not …

Jul 30, 2024
CVE-2024-42118
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Do not return negative stream id for array [WHY] resource_stream_to_stream_idx returns an array index …

Jul 30, 2024
CVE-2024-42117
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: ASSERT when failing to find index by plane/stream id [WHY] find_disp_cfg_idx_by_plane_id and find_disp_cfg_idx_by_stream_id returns …

Jul 30, 2024
CVE-2024-42116

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Jul 30, 2024
CVE-2024-42115
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: jffs2: Fix potential illegal address access in jffs2_free_inode During the stress testing of the jffs2 …

Jul 30, 2024
CVE-2024-42114
4.4 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: restrict NL80211_ATTR_TXQ_QUANTUM values syzbot is able to trigger softlockups, setting NL80211_ATTR_TXQ_QUANTUM to 2^31. …

Jul 30, 2024
CVE-2024-42113
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net: txgbe: initialize num_q_vectors for MSI/INTx interrupts When using MSI/INTx interrupts, wx->num_q_vectors is uninitialized. Thus …

Jul 30, 2024
CVE-2024-42112
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: net: txgbe: free isb resources at the right time When using MSI/INTx interrupt, the shared …

Jul 30, 2024
CVE-2024-42111
6.3 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: btrfs: always do the basic checks for btrfs_qgroup_inherit structure [BUG] Syzbot reports the following regression …

Jul 30, 2024
CVE-2024-42110
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net: ntb_netdev: Move ntb_netdev_rx_handler() to call netif_rx() from __netif_rx() The following is emitted when using …

Jul 30, 2024
CVE-2024-42109
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: unconditionally flush pending work before notifier syzbot reports: KASAN: slab-uaf in nft_ctx_update include/net/netfilter/nf_tables.h:1831 …

Jul 30, 2024
CVE-2024-42108
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net: rswitch: Avoid use-after-free in rswitch_poll() The use-after-free is actually in rswitch_tx_free(), which is inlined …

Jul 30, 2024
CVE-2024-42107
4.7 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ice: Don't process extts if PTP is disabled The ice_ptp_extts_event() function can race with ice_ptp_release() …

Jul 30, 2024
CVE-2024-42106
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: inet_diag: Initialize pad field in struct inet_diag_req_v2 KMSAN reported uninit-value access in raw_lookup() [1]. Diag …

Jul 30, 2024
CVE-2024-42105
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix inode number range checks Patch series "nilfs2: fix potential issues related to reserved …

Jul 30, 2024
CVE-2024-42104
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: nilfs2: add missing check for inode numbers on directory entries Syzbot reported that mounting and …

Jul 30, 2024
CVE-2024-42103
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix adding block group to a reclaim list and the unused list during reclaim …

Jul 30, 2024
CVE-2024-42102
4.7 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: Revert "mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again" Patch series "mm: Avoid possible overflows in …

Jul 30, 2024
CVE-2024-42101
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: fix null pointer dereference in nouveau_connector_get_modes In nouveau_connector_get_modes(), the return value of drm_mode_duplicate() is …

Jul 30, 2024
CVE-2024-42100
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: clk: sunxi-ng: common: Don't call hw_to_ccu_common on hw without common In order to set the …

Jul 30, 2024
CVE-2024-42099
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: s390/dasd: Fix invalid dereferencing of indirect CCW data pointer Fix invalid dereferencing of indirect CCW …

Jul 30, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.