VYPR

linux package

kernel

pkg:linux/kernel

Vulnerabilities (14,255)

  • CVE-2024-56605HigDec 27, 2024
    affected >= 3.6.0, < 5.4.287fixed 5.4.287

    In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: do not leave dangling sk pointer on error in l2cap_sock_create() bt_sock_alloc() allocates the sk object and attaches it to the provided sock object. On error l2cap_sock_alloc() frees the sk o

  • CVE-2024-56604HigDec 27, 2024
    affected >= 2.6.12, < 6.1.120fixed 6.1.120

    In the Linux kernel, the following vulnerability has been resolved: Bluetooth: RFCOMM: avoid leaving dangling sk pointer in rfcomm_sock_alloc() bt_sock_alloc() attaches allocated sk object to the provided sock object. If rfcomm_dlc_alloc() fails, we release the sk object, but l

  • CVE-2024-56603HigDec 27, 2024
    affected >= 2.6.25, < 5.4.287fixed 5.4.287

    In the Linux kernel, the following vulnerability has been resolved: net: af_can: do not leave a dangling sk pointer in can_create() On error can_create() frees the allocated sk object, but sock_init_data() has already attached it to the provided sock object. This will leave a d

  • CVE-2024-56602HigDec 27, 2024
    affected >= 2.6.31, < 5.4.287fixed 5.4.287

    In the Linux kernel, the following vulnerability has been resolved: net: ieee802154: do not leave a dangling sk pointer in ieee802154_create() sock_init_data() attaches the allocated sk object to the provided sock object. If ieee802154_create() fails later, the allocated sk obj

  • CVE-2024-56601HigDec 27, 2024
    affected >= 2.6.12, < 5.4.287fixed 5.4.287

    In the Linux kernel, the following vulnerability has been resolved: net: inet: do not leave a dangling sk pointer in inet_create() sock_init_data() attaches the allocated sk object to the provided sock object. If inet_create() fails later, the sk object is freed, but the sock o

  • CVE-2024-56600HigDec 27, 2024
    affected >= 2.6.12, < 5.4.287fixed 5.4.287

    In the Linux kernel, the following vulnerability has been resolved: net: inet6: do not leave a dangling sk pointer in inet6_create() sock_init_data() attaches the allocated sk pointer to the provided sock object. If inet6_create() fails later, the sk object is released, but the

  • CVE-2024-56599MedDec 27, 2024
    affected >= 3.11.0, < 5.10.237fixed 5.10.237

    In the Linux kernel, the following vulnerability has been resolved: wifi: ath10k: avoid NULL pointer error during sdio remove When running 'rmmod ath10k', ath10k_sdio_remove() will free sdio workqueue by destroy_workqueue(). But if CONFIG_INIT_ON_FREE_DEFAULT_ON is set to yes,

  • CVE-2024-56598HigDec 27, 2024
    affected >= 2.6.12, < 5.4.287fixed 5.4.287

    In the Linux kernel, the following vulnerability has been resolved: jfs: array-index-out-of-bounds fix in dtReadFirst The value of stbl can be sometimes out of bounds due to a bad filesystem. Added a check with appopriate return of error code in that case.

  • CVE-2024-56597HigDec 27, 2024
    affected >= 2.6.12, < 5.4.287fixed 5.4.287

    In the Linux kernel, the following vulnerability has been resolved: jfs: fix shift-out-of-bounds in dbSplit When dmt_budmin is less than zero, it causes errors in the later stages. Added a check to return an error beforehand in dbAllocCtl itself.

  • CVE-2024-56596HigDec 27, 2024
    affected >= 2.6.12, < 5.4.287fixed 5.4.287

    In the Linux kernel, the following vulnerability has been resolved: jfs: fix array-index-out-of-bounds in jfs_readdir The stbl might contain some invalid values. Added a check to return error code in that case.

  • CVE-2024-56595HigDec 27, 2024
    affected >= 2.6.12, < 5.4.287fixed 5.4.287

    In the Linux kernel, the following vulnerability has been resolved: jfs: add a check to prevent array-index-out-of-bounds in dbAdjTree When the value of lp is 0 at the beginning of the for loop, it will become negative in the next assignment and we should bail out.

  • CVE-2024-56594MedDec 27, 2024
    affected >= 4.2.0, < 5.4.287fixed 5.4.287

    In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: set the right AMDGPU sg segment limitation The driver needs to set the correct max_segment_size; otherwise debug_dma_map_sg() will complain about the over-mapping of the AMDGPU sg length as followin

  • CVE-2024-56593MedDec 27, 2024
    affected >= 3.15.0, < 5.4.287fixed 5.4.287

    In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: Fix oops due to NULL pointer dereference in brcmf_sdiod_sglist_rw() This patch fixes a NULL pointer dereference bug in brcmfmac that occurs when a high 'sd_sgentry_align' value applies (e.g. 512

  • CVE-2024-56592MedDec 27, 2024
    affected >= 4.13.0, < 6.6.66fixed 6.6.66

    In the Linux kernel, the following vulnerability has been resolved: bpf: Call free_htab_elem() after htab_unlock_bucket() For htab of maps, when the map is removed from the htab, it may hold the last reference of the map. bpf_map_fd_put_ptr() will invoke bpf_map_free_id() to fr

  • CVE-2024-56591HigDec 27, 2024
    affected >= 3.3.0, < 6.12.5fixed 6.12.5

    In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: Use disable_delayed_work_sync This makes use of disable_delayed_work_sync instead cancel_delayed_work_sync as it not only cancel the ongoing work but also disables new submit which is disar

  • CVE-2024-56590HigDec 27, 2024
    affected >= 2.6.12, < 5.15.174fixed 5.15.174

    In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_core: Fix not checking skb length on hci_acldata_packet This fixes not checking if skb really contains an ACL header otherwise the code may attempt to access some uninitilized/invalid memory past

  • CVE-2024-56589MedDec 27, 2024
    affected >= 4.5.0, < 5.10.231fixed 5.10.231

    In the Linux kernel, the following vulnerability has been resolved: scsi: hisi_sas: Add cond_resched() for no forced preemption model For no forced preemption model kernel, in the scenario where the expander is connected to 12 high performance SAS SSDs, the following call trace

  • CVE-2024-56588MedDec 27, 2024
    affected >= 4.5.0, < 6.6.70fixed 6.6.70

    In the Linux kernel, the following vulnerability has been resolved: scsi: hisi_sas: Create all dump files during debugfs initialization For the current debugfs of hisi_sas, after user triggers dump, the driver allocate memory space to save the register information and create de

  • CVE-2024-56587MedDec 27, 2024
    affected >= 2.6.26, < 5.4.287fixed 5.4.287

    In the Linux kernel, the following vulnerability has been resolved: leds: class: Protect brightness_show() with led_cdev->led_access mutex There is NULL pointer issue observed if from Process A where hid device being added which results in adding a led_cdev addition and later a

  • CVE-2024-56586MedDec 27, 2024
    affected >= 3.8.0, < 5.4.287fixed 5.4.287

    In the Linux kernel, the following vulnerability has been resolved: f2fs: fix f2fs_bug_on when uninstalling filesystem call f2fs_evict_inode. creating a large files during checkpoint disable until it runs out of space and then delete it, then remount to enable checkpoint again,

Page 542 of 713