Skip to main content

CWE archive

CWE-617 CVEs

Programmatic archive

789 CVEs tagged with CWE-6174 Critical, 327 High, 428 Medium, 30 Low, 0 Unrated.

CVE-2024-42252

Published Aug 8, 2024

In the Linux kernel, the following vulnerability has been resolved: closures: Change BUG_ON() to WARN_ON() If a BUG_ON() can be hit in the wild, it shouldn't be a BUG_ON() For…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-42251

Published Aug 8, 2024

In the Linux kernel, the following vulnerability has been resolved: mm: page_ref: remove folio_try_get_rcu() The below bug was reported on a non-SMP kernel: [ 275.267158][ T43…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-52887

Published Jul 29, 2024

In the Linux kernel, the following vulnerability has been resolved: net: can: j1939: enhanced error handling for tightly received RTS messages in xtp_rx_rts_session_new This pat…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-41043

Published Jul 29, 2024

In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_queue: drop bogus WARN_ON Happens when rules get flushed/deleted while packet is out, so…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-4076

Published Jul 23, 2024

Client queries that trigger serving stale data and that also require lookups in local authoritative zone data may result in an assertion failure. This issue affects BIND 9 version…

CVSS 7.5 · High
evidence mentions
2
Buzz score
17.5

CVE-2024-39509

Published Jul 12, 2024

In the Linux kernel, the following vulnerability has been resolved: HID: core: remove unnecessary WARN_ON() in implement() Syzkaller hit a warning [1] in a call to implement() w…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-39500

Published Jul 12, 2024

In the Linux kernel, the following vulnerability has been resolved: sock_map: avoid race between sock_map_close and sk_psock_put sk_psock_get will return NULL if the refcount of…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-39497

Published Jul 12, 2024

In the Linux kernel, the following vulnerability has been resolved: drm/shmem-helper: Fix BUG_ON() on mmap(PROT_WRITE, MAP_PRIVATE) Lack of check for copy-on-write (COW) mapping…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-39697

Published Jul 9, 2024

phonenumber is a library for parsing, formatting and validating international phone numbers. Since 0.3.4, the phonenumber parsing code may panic due to a panic-guarded out-of-boun…

CVSS 8.6 · High

CVE-2024-38306

Published Jun 25, 2024

In the Linux kernel, the following vulnerability has been resolved: btrfs: protect folio::private when attaching extent buffer folios [BUG] Since v6.8 there are rare kernel cras…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-52831

Published May 21, 2024

In the Linux kernel, the following vulnerability has been resolved: cpu/hotplug: Don't offline the last non-isolated CPU If a system has isolated CPUs via the "isolcpus=" comman…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-47351

Published May 21, 2024

In the Linux kernel, the following vulnerability has been resolved: ubifs: Fix races between xattr_{set|get} and listxattr operations UBIFS may occur some problems with concurre…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-47315

Published May 21, 2024

In the Linux kernel, the following vulnerability has been resolved: memory: fsl_ifc: fix leak of IO mapping on probe failure On probe error the driver should unmap the IO memory…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-47305

Published May 21, 2024

In the Linux kernel, the following vulnerability has been resolved: dma-buf/sync_file: Don't leak fences on merge failure Each add_fence() call does a dma_fence_get() on the rel…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-36000

Published May 20, 2024

In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: fix missing hugetlb_lock for resv uncharge There is a recent report on UFFDIO_COPY over hugetlb:…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-35957

Published May 20, 2024

In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Fix WARN_ON in iommu probe path Commit 1a75cc710b95 ("iommu/vt-d: Use rbtree to track iommu probe…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-35884

Published May 19, 2024

In the Linux kernel, the following vulnerability has been resolved: udp: do not accept non-tunnel GSO skbs landing in a tunnel When rx-udp-gro-forwarding is enabled UDP packets…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-3374

Published May 14, 2024

An unauthenticated user can trigger a fatal assertion in the server while generating ftdc diagnostic metrics due to attempting to build a BSON object that exceeds certain memory s…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-33263

Published May 14, 2024

QuickJS commit 3b45d15 was discovered to contain an Assertion Failure via JS_FreeRuntime(JSRuntime *) at quickjs.c.

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-34475

Published May 5, 2024

Open5GS before 2.7.1 is vulnerable to a reachable assertion that can cause an AMF crash via NAS messages from a UE: gmm_state_authentication in amf/gmm-sm.c for != OGS_ERROR.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-26946

Published May 1, 2024

In the Linux kernel, the following vulnerability has been resolved: kprobes/x86: Use copy_from_kernel_nofault() to read from unsafe address Read from an unsafe address with copy…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 301-325 of 789 CVEsPage 13 of 32