CVE-2024-7000
published 2024-08-06CVE-2024-7000: Use after free in CSS in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially…
PriorityP346high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
0.53%
41.1th percentile
Use after free in CSS in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| chromium | chromium | >= 0 < 127.0.6533.88-1~deb12u1 | 127.0.6533.88-1~deb12u1 |
| chromium | chromium | >= 0 < 127.0.6533.88-1 | 127.0.6533.88-1 |
| chromium | chromium | >= 0 < 127.0.6533.88-1 | 127.0.6533.88-1 |
| debian | chromium | < chromium 127.0.6533.88-1~deb12u1 (bookworm) | chromium 127.0.6533.88-1~deb12u1 (bookworm) |
| chrome | < 127.0.6533.72 | 127.0.6533.72 | |
| chrome | >= 127.0.6533.72 < 127.0.6533.72 | 127.0.6533.72 | |
| chrome_chrome | — | — | |
| juniper | junos_os | — | — |
| msrc | microsoft_edge | — | — |
| paloalto | prisma_browser | — | — |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_debian8.8HIGH
vendor_msrc8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Chrome
Stable Channel Update for ChromeOS / ChromeOS Flex: CVE-2025-0447
vendor_chrome·2025-01-17·CVSS 8.8
CVE-2025-0447 [LOW] Stable Channel Update for ChromeOS / ChromeOS Flex: CVE-2025-0447
Stable Channel Update for ChromeOS / ChromeOS Flex
CVE-2025-0447: Inappropriate implementation in Navigation. Reported by Khiem Tran (@duckhiem) on 2024-10-25 [$7000
Severity: low
Chrome
Stable Channel Update for Desktop: CVE-2025-0434
vendor_chrome·2025-01-14·CVSS 8.8
CVE-2025-0434 [HIGH] Stable Channel Update for Desktop: CVE-2025-0434
Stable Channel Update for Desktop
CVE-2025-0434: Out of bounds memory access in V8. Reported by ddme on 2024-10-21 [$7000][ 379652406 ] High CVE-2025-0435: Inappropriate implementation in Navigation
Reported by Alesandro Ortiz on 2024-11-18 [$3000][ 382786791 ] High CVE-2025-0436: Integer overflow in Skia
Severity: high
Juniper
CVE-2024-47490: An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos O
vendor_juniper·2024-10-11·CVSS 8.2
CVE-2024-47490 [HIGH] CWE-923 CVE-2024-47490: An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos O
CVE-2024-47490: An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved on ACX 7000 Series allows an unauthenticated, network based attacker to cause increased consumption of resources, ultimately resulting in a Denial of Service (DoS).
When specific transit MPLS packets are received by the PFE, these packets are internally forwarded to the Routing Engine (RE), rather than being handled appropriately. Continuous receipt of these MPLS packets causes resources to be exhausted. MPLS config is not required to be affected by this issue.
This issue affects Junos OS Evolved ACX 7000 Series:
* All versions before 21.4R3-S9-EVO,
* 22.2-EVO before 22.2R3-S4-EVO,
* 22.3-EVO before 22.3R3-S3-EV
Chrome
Stable Channel Update for ChromeOS / ChromeOS Flex: CVE-2024-7965
vendor_chrome·2024-09-09·CVSS 8.8
CVE-2024-7965 [HIGH] Stable Channel Update for ChromeOS / ChromeOS Flex: CVE-2024-7965
Stable Channel Update for ChromeOS / ChromeOS Flex
CVE-2024-7965: Inappropriate implementation in V8. Reported by TheDog on 2024-07-30 [$10000][ 355465305 ] High CVE-2024-7966: Out of bounds memory access in Skia
Reported by Renan Rios (@HyHy100) on 2024-07-25 [$7000][ 355731798 ] High CVE-2024-7967: Heap buffer overflow in Fonts
Severity: high
Chrome
Stable Channel Update for Desktop: CVE-2024-7972
vendor_chrome·2024-08-21·CVSS 8.8
CVE-2024-7972 [MEDIUM] Stable Channel Update for Desktop: CVE-2024-7972
Stable Channel Update for Desktop
CVE-2024-7972: Inappropriate implementation in V8. Reported by Simon Gerst (intrigus-lgtm), Liam Wachter, and Julian Gremminger on 2024-06-10 [$7000][ 345518608 ] Medium CVE-2024-7973: Heap buffer overflow in PDFium
Reported by soiax on 2024-06-06 [$3000][ 339141099 ] Medium CVE-2024-7974: Insufficient data validation in V8 API
Severity: medium
Palo Alto
PAN-SA-2024-0007 Prisma Browser: Monthly Vulnerability Updates
vendor_paloalto·2024-08-14·CVSS 8.8
[HIGH] PAN-SA-2024-0007 Prisma Browser: Monthly Vulnerability Updates
PAN-SA-2024-0007 Prisma Browser: Monthly Vulnerability Updates
Prisma Browser (supersedes Talon Browser) has incorporated the latest upstream Chromium security fixes listed here: - https://chromereleases.googleblog.com/2024/07/stable-channel-update-for-desktop.html - https://chromereleases.googleblog.com/2024/07/stable-channel-update-for-desktop_23.html - https://chromereleases.googleblog.com/2024/07/stable-channel-update-for-desktop_30.html - https://chromereleases.googleblog.com/2024/08/stable-channel-update-for-desktop.html CVE CVSS Summary CVE-2024-6772 8.8 ( CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H ) Chromium: Inappropriate implementation in V8. CVE-2024-6773 8.8 ( CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H ) Chromium: Type Confusion in V8. CVE-2024-6774 8.8 ( CVSS:3.1/AV:N/AC:
Chrome
Stable Channel Update for Desktop: CVE-2024-7532
vendor_chrome·2024-08-06·CVSS 8.8
CVE-2024-7532 [CRITICAL] Stable Channel Update for Desktop: CVE-2024-7532
Stable Channel Update for Desktop
CVE-2024-7532: Out of bounds memory access in ANGLE. Reported by wgslfuzz on 2024-07-02 [$11000][ 353552540 ] High CVE-2024-7533: Use after free in Sharing
Reported by lime(@limeSec_) from TIANGONG Team of Legendsec at QI-ANXIN Group on 2024-07-17 [$7000][ 355256380 ] High CVE-2024-7550: Type Confusion in V8
Severity: critical
Chrome
Stable Channel Update for Desktop: CVE-2024-7000
vendor_chrome·2024-07-23·CVSS 8.8
CVE-2024-7000 [MEDIUM] Stable Channel Update for Desktop: CVE-2024-7000
Stable Channel Update for Desktop
CVE-2024-7000: Use after free in CSS. Reported by Anonymous on 2024-05-11 [TBD][ 347509736 ] Medium CVE-2024-7001: Inappropriate implementation in HTML
Reported by Jake Archibald on 2024-06-17 [$2000][ 338233148 ] Low CVE-2024-7003: Inappropriate implementation in FedCM
Severity: medium
Chrome
Stable Channel Update for Desktop: CVE-2024-6772
vendor_chrome·2024-07-16·CVSS 8.8
CVE-2024-6772 [HIGH] Stable Channel Update for Desktop: CVE-2024-6772
Stable Channel Update for Desktop
CVE-2024-6772: Inappropriate implementation in V8. Reported by 5fceb6172bbf7e2c5a948183b53565b9 on 2024-06-12 [$7000][ 347724915 ] High CVE-2024-6773: Type Confusion in V8
Reported by 2ourc3 | Salim Largo on 2024-06-17 [$6000][ 346898524 ] High CVE-2024-6774: Use after free in Screen Capture
Severity: high
Juniper
CVE-2024-39535: An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved on AC
vendor_juniper·2024-07-11·CVSS 6.5
CVE-2024-39535 [MEDIUM] CWE-754 CVE-2024-39535: An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved on AC
CVE-2024-39535: An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved on ACX 7000 Series allows an unauthenticated, adjacent attacker to cause a Denial-of-Service (DoS).
When a device has a Layer 3 or an IRB interface configured in a VPLS instance and specific traffic is received, the evo-pfemand processes crashes which causes a service outage for the respective FPC until the system is recovered manually.
This issue only affects Junos OS Evolved 22.4R2-S1 and 22.4R2-S2 releases and is fixed in 22.4R3. No other releases are affected.
Juniper
CVE-2024-39537: An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in Juniper Networks Junos OS Evolved on ACX 7000 Series allows an
vendor_juniper·2024-07-11·CVSS 6.5
CVE-2024-39537 [MEDIUM] CWE-923 CVE-2024-39537: An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in Juniper Networks Junos OS Evolved on ACX 7000 Series allows an
CVE-2024-39537: An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in Juniper Networks Junos OS Evolved on ACX 7000 Series allows an unauthenticated, network-based attacker to cause a limited information disclosure and availability impact to the device.
Due to a wrong initialization, specific processes which should only be able to communicate internally within the device can be reached over the network via open ports.
This issue affects Junos OS Evolved on ACX 7000 Series:
* All versions before 21.4R3-S7-EVO,
* 22.2-EVO
versions
before 22.2R3-S4-EVO,
* 22.3-EVO versions before 22.3R3-S3-EVO,
* 22.4-EVO versions before 22.4R3-S2-EVO,
* 23.2-EVO versions before 23.2R2-EVO,
* 23.4-EVO versions before 23.4R1-S1-EVO, 23.4R2-EVO.
Juniper
CVE-2024-39519: An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved on AC
vendor_juniper·2024-07-11·CVSS 6.5
CVE-2024-39519 [MEDIUM] CWE-754 CVE-2024-39519: An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved on AC
CVE-2024-39519: An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved on ACX7000 Series allows an unauthenticated, adjacent attacker to cause a
Denial-of-Service (DoS).
On all ACX 7000 Series platforms running
Junos OS Evolved, and configured with IRBs, if a Customer Edge device (CE) device is dual homed to two Provider Edge devices (PE) a traffic loop will occur when the CE sends multicast packets. This issue can be triggered by IPv4 and IPv6 traffic.
This issue affects Junos OS Evolved:
All versions from 22.2R1-EVO and later versions before 22.4R2-EVO,
This issue does not affect Junos OS Evolved versions before 22.1R1-EVO.
Juniper
CVE-2024-39531: An Improper Handling of Values vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved on ACX 7000 Series allows a ne
vendor_juniper·2024-07-11·CVSS 7.5
CVE-2024-39531 [HIGH] CWE-229 CVE-2024-39531: An Improper Handling of Values vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved on ACX 7000 Series allows a ne
CVE-2024-39531: An Improper Handling of Values vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved on ACX 7000 Series allows a network-based, unauthenticated attacker to cause a Denial-of-Service (DoS).
If a value is configured for DDoS bandwidth or burst parameters for any protocol in
a queue, all protocols which share the same queue will have
their bandwidth or burst value changed to the new value. If, for example, OSPF was configured with a certain bandwidth value, ISIS would also be limited to this value. So inadvertently either the control plane is open for a high level of specific traffic which was supposed to be limited to a lower value, or the limit for a certain protocol is so low that chances to succeed with a volumetric DoS attack are signif
Microsoft
Chromium: CVE-2024-7000 Use after free in CSS
vendor_msrc·2024-07-09·CVSS 8.8
CVE-2024-7000 [HIGH] Chromium: CVE-2024-7000 Use after free in CSS
Chromium: CVE-2024-7000 Use after free in CSS
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-based). It is being documented in the Security Update Guide to announce that the latest version of Microsoft Edge (Chromium-based) is no longer vulnerable.
How can I see the version of the browser?
In your Microsoft Edge browser, click on the 3 dots (...) on the very right-hand side of the window
Click on Help and Feedback
Click on About Microsoft Edge
FAQ: What is
Chrome
Stable Channel Update for Desktop: CVE-2024-3914
vendor_chrome·2024-04-16·CVSS 8.8
CVE-2024-3914 [HIGH] Stable Channel Update for Desktop: CVE-2024-3914
Stable Channel Update for Desktop
CVE-2024-3914: Use after free in V8. Reported by Seunghyun Lee (@0x10n) of KAIST Hacking Lab, via Pwn2Own 2024 on 2024-03-21 [$3000][ 326607008 ] High CVE-2024-3834: Use after free in Downloads
Reported by ChaobinZhang on 2024-02-24 [$7000][ 41491379 ] Medium CVE-2024-3837: Use after free in QUIC
Severity: high
Chrome
Stable Channel Update for ChromeOS / ChromeOS Flex: CVE-2024-2173
vendor_chrome·2024-03-05·CVSS 8.8
CVE-2024-2173 [HIGH] Stable Channel Update for ChromeOS / ChromeOS Flex: CVE-2024-2173
Stable Channel Update for ChromeOS / ChromeOS Flex
CVE-2024-2173: Out of bounds memory access in V8. Reported by 5fceb6172bbf7e2c5a948183b53565b9 on 2024-02-19 [$7000][ 325866363 ] High CVE-2024-2174: Inappropriate implementation in V8
Reported by 5f46f4ee2e17957ba7b39897fb376be8 on 2024-02-19 [$6000][ 325936438 ] High CVE-2024-2176: Use after free in FedCM
Severity: high
Chrome
Stable Channel Update for Desktop: CVE-2024-1938
vendor_chrome·2024-02-27·CVSS 8.8
CVE-2024-1938 [HIGH] Stable Channel Update for Desktop: CVE-2024-1938
Stable Channel Update for Desktop
CVE-2024-1938: Type Confusion in V8. Reported by 5f46f4ee2e17957ba7b39897fb376be8 on 2024-02-11 [$7000][ 323694592 ] High CVE-2024-1939: Type Confusion in V8
Reported by Bohan Liu (@P4nda20371774) of Tencent Security Xuanwu Lab on 2024-02-05 We would also like to thank all security researchers that worked with us during the development cycle to prevent security bugs from ever reaching the stable channel
Severity: high
Debian
CVE-2024-7000: chromium - Use after free in CSS in Google Chrome prior to 127.0.6533.72 allowed a remote a...
vendor_debian·2024·CVSS 8.8
CVE-2024-7000 [HIGH] CVE-2024-7000: chromium - Use after free in CSS in Google Chrome prior to 127.0.6533.72 allowed a remote a...
Use after free in CSS in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
Scope: local
bookworm: resolved (fixed in 127.0.6533.88-1~deb12u1)
bullseye: open
forky: resolved (fixed in 127.0.6533.88-1)
sid: resolved (fixed in 127.0.6533.88-1)
trixie: resolved (fixed in 127.0.6533.88-1)
OSV
expat vulnerabilities
osv·2024-09-17·CVSS 7.5
CVE-2024-45490 expat vulnerabilities
expat vulnerabilities
USN-7000-1 fixed vulnerabilities in Expat. This update
provides the corresponding updates for Ubuntu 22.04 LTS.
Original advisory details:
Shang-Hung Wan discovered that Expat did not properly handle certain
function calls when a negative input length was provided. An attacker
could use this issue to cause a denial of service or possibly execute
arbitrary code. (CVE-2024-45490)
Shang-Hung Wan discovered that Expat did not properly handle the
potential for an integer overflow on 32-bit platforms. An attacker
could use this issue to cause a denial of service or possibly execute
arbitrary code. (CVE-2024-45491, CVE-2024-45492)
OSV
CVE-2024-7000: Use after free in CSS in Google Chrome prior to 127
osv·2024-08-06·CVSS 8.8
CVE-2024-7000 [HIGH] CVE-2024-7000: Use after free in CSS in Google Chrome prior to 127
Use after free in CSS in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
GHSA
GHSA-g494-wr54-xx2g: Use after free in CSS in Google Chrome prior to 127
ghsa_unreviewed·2024-08-06
CVE-2024-7000 [HIGH] CWE-416 GHSA-g494-wr54-xx2g: Use after free in CSS in Google Chrome prior to 127
Use after free in CSS in Google Chrome prior to 127.0.6533.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2024-36939 kernel: nfs: Handle error of rpc_proc_register() in nfs_net_init().
bugzilla·2024-06-03·CVSS 5.5
CVE-2024-36939 [MEDIUM] CVE-2024-36939 kernel: nfs: Handle error of rpc_proc_register() in nfs_net_init().
CVE-2024-36939 kernel: nfs: Handle error of rpc_proc_register() in nfs_net_init().
In the Linux kernel, the following vulnerability has been resolved:
nfs: Handle error of rpc_proc_register() in nfs_net_init().
The Linux kernel CVE team has assigned CVE-2024-36939 to this issue.
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024053043-CVE-2024-36939-8453@gregkh/T
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 2284629]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7001 https://access.redhat.com/errata/RHSA-2024:7001
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7000 https://access.redhat.com/errata/RHSA-2024:7000
-
Bugzilla
CVE-2021-47321 kernel: watchdog: Fix possible use-after-free by calling del_timer_sync()
bugzilla·2024-05-22·CVSS 7.8
CVE-2021-47321 [HIGH] CVE-2021-47321 kernel: watchdog: Fix possible use-after-free by calling del_timer_sync()
CVE-2021-47321 kernel: watchdog: Fix possible use-after-free by calling del_timer_sync()
In the Linux kernel, the following vulnerability has been resolved:
watchdog: Fix possible use-after-free by calling del_timer_sync()
The Linux kernel CVE team has assigned CVE-2021-47321 to this issue.
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024052132-CVE-2021-47321-1b9b@gregkh/T
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7001 https://access.redhat.com/errata/RHSA-2024:7001
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7000 https://access.redhat.com/errata/RHSA-2024:7000
---
This issue has been addressed in the following products:
Red Hat Ente
Bugzilla
CVE-2024-35809 kernel: PCI/PM: Drain runtime-idle callbacks before driver removal
bugzilla·2024-05-17·CVSS 4.7
CVE-2024-35809 [MEDIUM] CVE-2024-35809 kernel: PCI/PM: Drain runtime-idle callbacks before driver removal
CVE-2024-35809 kernel: PCI/PM: Drain runtime-idle callbacks before driver removal
In the Linux kernel, the following vulnerability has been resolved:
PCI/PM: Drain runtime-idle callbacks before driver removal
The Linux kernel CVE team has assigned CVE-2024-35809 to this issue.
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024051740-CVE-2024-35809-4a4e@gregkh/T
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 2281218]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7001 https://access.redhat.com/errata/RHSA-2024:7001
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7000 https://access.redhat.com/errata/RHSA-2024:7000
---
Bugzilla
CVE-2024-26939 kernel: drm/i915/vma: Fix UAF on destroy against retire race
bugzilla·2024-05-01·CVSS 7.0
CVE-2024-26939 [HIGH] CVE-2024-26939 kernel: drm/i915/vma: Fix UAF on destroy against retire race
CVE-2024-26939 kernel: drm/i915/vma: Fix UAF on destroy against retire race
In the Linux kernel, the following vulnerability has been resolved:
drm/i915/vma: Fix UAF on destroy against retire race
The Linux kernel CVE team has assigned CVE-2024-26939 to this issue.
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024050124-CVE-2024-26939-5314@gregkh/T
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 2278221]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7001 https://access.redhat.com/errata/RHSA-2024:7001
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7000 https://access.redhat.com/errata/RHSA-2024:7000
---
This issue
Bugzilla
CVE-2024-27042 kernel: drm/amdgpu: Fix potential out-of-bounds access in 'amdgpu_discovery_reg_base_init()'
bugzilla·2024-05-01
CVE-2024-27042 [MEDIUM] CVE-2024-27042 kernel: drm/amdgpu: Fix potential out-of-bounds access in 'amdgpu_discovery_reg_base_init()'
CVE-2024-27042 kernel: drm/amdgpu: Fix potential out-of-bounds access in 'amdgpu_discovery_reg_base_init()'
In the Linux kernel, the following vulnerability has been resolved:
drm/amdgpu: Fix potential out-of-bounds access in 'amdgpu_discovery_reg_base_init()'
The Linux kernel CVE team has assigned CVE-2024-27042 to this issue.
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024050113-CVE-2024-27042-e812@gregkh/T
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 2278448]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7001 https://access.redhat.com/errata/RHSA-2024:7001
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7000
Bugzilla
CVE-2024-26894 kernel: ACPI: processor_idle: Fix memory leak in acpi_processor_power_exit()
bugzilla·2024-04-17·CVSS 6.0
CVE-2024-26894 [MEDIUM] CVE-2024-26894 kernel: ACPI: processor_idle: Fix memory leak in acpi_processor_power_exit()
CVE-2024-26894 kernel: ACPI: processor_idle: Fix memory leak in acpi_processor_power_exit()
In the Linux kernel, the following vulnerability has been resolved:
ACPI: processor_idle: Fix memory leak in acpi_processor_power_exit()
The Linux kernel CVE team has assigned CVE-2024-26894 to this issue.
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024041743-CVE-2024-26894-53ad@gregkh/T
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 2275662]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7001 https://access.redhat.com/errata/RHSA-2024:7001
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7000 https://access.redhat.com/errata
Bugzilla
CVE-2024-26846 kernel: nvme-fc: do not wait in vain when unloading module
bugzilla·2024-04-17·CVSS 4.4
CVE-2024-26846 [MEDIUM] CVE-2024-26846 kernel: nvme-fc: do not wait in vain when unloading module
CVE-2024-26846 kernel: nvme-fc: do not wait in vain when unloading module
In the Linux kernel, the following vulnerability has been resolved:
nvme-fc: do not wait in vain when unloading module
The Linux kernel CVE team has assigned CVE-2024-26846 to this issue.
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024041717-CVE-2024-26846-9593@gregkh/T
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 2275559]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7000 https://access.redhat.com/errata/RHSA-2024:7000
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 9
Via RHSA-2024:9315 https://access.redhat.com/errata/RHSA-2024:9315
---
This issue has
Bugzilla
CVE-2024-26769 kernel: nvmet-fc: avoid deadlock on delete association path
bugzilla·2024-04-03·CVSS 4.4
CVE-2024-26769 [MEDIUM] CVE-2024-26769 kernel: nvmet-fc: avoid deadlock on delete association path
CVE-2024-26769 kernel: nvmet-fc: avoid deadlock on delete association path
In the Linux kernel, the following vulnerability has been resolved:
nvmet-fc: avoid deadlock on delete association path
The Linux kernel CVE team has assigned CVE-2024-26769 to this issue.
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024040307-CVE-2024-26769-e9cc@gregkh/T
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 2273181]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7001 https://access.redhat.com/errata/RHSA-2024:7001
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7000 https://access.redhat.com/errata/RHSA-2024:7000
Bugzilla
CVE-2024-26717 kernel: HID: i2c-hid-of: fix NULL-deref on failed power up
bugzilla·2024-04-03·CVSS 5.5
CVE-2024-26717 [MEDIUM] CVE-2024-26717 kernel: HID: i2c-hid-of: fix NULL-deref on failed power up
CVE-2024-26717 kernel: HID: i2c-hid-of: fix NULL-deref on failed power up
In the Linux kernel, the following vulnerability has been resolved:
HID: i2c-hid-of: fix NULL-deref on failed power up
The Linux kernel CVE team has assigned CVE-2024-26717 to this issue.
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024040344-CVE-2024-26717-0d01@gregkh/T
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 2273149]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7001 https://access.redhat.com/errata/RHSA-2024:7001
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7000 https://access.redhat.com/errata/RHSA-2024:7000
---
This issue has
Bugzilla
CVE-2024-26638 kernel: nbd: always initialize struct msghdr completely
bugzilla·2024-03-18·CVSS 4.4
CVE-2024-26638 [MEDIUM] CVE-2024-26638 kernel: nbd: always initialize struct msghdr completely
CVE-2024-26638 kernel: nbd: always initialize struct msghdr completely
In the Linux kernel, the following vulnerability has been resolved:
nbd: always initialize struct msghdr completely
The Linux kernel CVE team has assigned CVE-2024-26638 to this issue.
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/[email protected]/T
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 2270104]
---
This was fixed for Fedora with the 6.7.3 stable kernel updates.
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7000 https://access.redhat.com/errata/RHSA-2024:7000
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 9
Via RHSA-2024:9315 h
Bugzilla
CVE-2023-52605 kernel: ACPI: extlog: fix NULL pointer dereference check
bugzilla·2024-03-06
CVE-2023-52605 [LOW] CVE-2023-52605 kernel: ACPI: extlog: fix NULL pointer dereference check
CVE-2023-52605 kernel: ACPI: extlog: fix NULL pointer dereference check
In the Linux kernel, the following vulnerability has been resolved:
ACPI: extlog: fix NULL pointer dereference check
The Linux kernel CVE team has assigned CVE-2023-52605 to this issue.
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024030647-CVE-2023-52605-292a@gregkh/T
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 2268296]
---
This was fixed for Fedora with the 6.7.4 stable kernel updates.
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7001 https://access.redhat.com/errata/RHSA-2024:7001
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7000 ht
Bugzilla
CVE-2021-47101 kernel: asix: fix uninit-value in asix_mdio_read()
bugzilla·2024-03-05·CVSS 7.1
CVE-2021-47101 [HIGH] CVE-2021-47101 kernel: asix: fix uninit-value in asix_mdio_read()
CVE-2021-47101 kernel: asix: fix uninit-value in asix_mdio_read()
In the Linux kernel, the following vulnerability has been resolved:
asix: fix uninit-value in asix_mdio_read()
The Linux kernel CVE team has assigned CVE-2021-47101 to this issue.
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024030415-CVE-2021-47101-f3fa@gregkh/T
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7001 https://access.redhat.com/errata/RHSA-2024:7001
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7000 https://access.redhat.com/errata/RHSA-2024:7000
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 9
Via RHSA-2024:9315 https://acc
Bugzilla
CVE-2024-23848 kernel: use-after-free in cec_queue_msg_fh
bugzilla·2024-01-24·CVSS 5.5
CVE-2024-23848 [MEDIUM] CVE-2024-23848 kernel: use-after-free in cec_queue_msg_fh
CVE-2024-23848 kernel: use-after-free in cec_queue_msg_fh
In the Linux kernel through 6.7.1, there is a use-after-free in cec_queue_msg_fh, related to drivers/media/cec/core/cec-adap.c and drivers/media/cec/core/cec-api.c.
https://lore.kernel.org/lkml/e9f42704-2f99-4f2c-ade5-f952e5fd53e5%40xs4all.nl/
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 2260039]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7001 https://access.redhat.com/errata/RHSA-2024:7001
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:7000 https://access.redhat.com/errata/RHSA-2024:7000
---
This issue has been addressed in the following products:
Red Hat Enterprise L
2024-08-06
Published