VendorsLinuxlinux_kernel6.9
Vulnerabilities

Linux Kernel 6.9

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

329CVEs
CVE-2024-26936
ksmbd: validate request buffer size in smb2_allocate_rsp_buf()
Published 2024-05-01 · Modified
8.2EPSS 0.006
CVE-2024-36032
Bluetooth: qca: fix info leak when fetching fw build id
Published 2024-05-30 · Modified
8.1EPSS 0.004
CVE-2024-27398
Bluetooth: Fix use-after-free bugs caused by sco_sock_timeout
Published 2024-05-13 · Modified
8.0EPSS 0.008
CVE-2024-35789
wifi: mac80211: check/clear fast rx for non-4addr sta VLAN changes
Published 2024-05-17 · Modified
8.0EPSS 0.004
CVE-2024-26924
netfilter: nft_set_pipapo: do not free live element
Published 2024-04-24 · Modified
7.8EPSS 0.008
CVE-2024-35880
io_uring/kbuf: hold io_buffer_list reference over mmap
Published 2024-05-19 · Modified
7.8EPSS 0.007
CVE-2024-36904
tcp: Use refcount_inc_not_zero() in tcp_twsk_unique().
Published 2024-05-30 · Modified
7.8EPSS 0.006
CVE-2024-26926
binder: check offset alignment in binder_get_object()
Published 2024-04-24 · Modified
7.8EPSS 0.004
CVE-2024-26921
inet: inet_defrag: prevent sk release while still in use
Published 2024-04-18 · Modified
7.8EPSS 0.004
CVE-2024-27058
tmpfs: fix race on handling dquot rbtree
Published 2024-05-01 · Modified
7.8EPSS 0.004
CVE-2024-27000
serial: mxs-auart: add spinlock around changing cts state
Published 2024-05-01 · Analyzed
7.8EPSS 0.003
CVE-2024-26922
drm/amdgpu: validate the parameters of bo mapping operations more clearly
Published 2024-04-23 · Modified
7.8EPSS 0.003
CVE-2024-36883
net: fix out-of-bounds access in ops_init
Published 2024-05-30 · Modified
7.8EPSS 0.003
CVE-2024-27401
firewire: nosy: ensure user_length is taken into account when fetching packet contents
Published 2024-05-13 · Modified
7.8EPSS 0.003
CVE-2024-27008
drm: nv04: Fix out of bounds access
Published 2024-05-01 · Analyzed
7.8EPSS 0.003
CVE-2024-36933
nsh: Restore skb->{protocol,data,mac_header} for outer header in nsh_gso_segment().
Published 2024-05-30 · Modified
7.8EPSS 0.003
CVE-2024-26994
speakup: Avoid crash on very long word
Published 2024-05-01 · Modified
7.8EPSS 0.003
CVE-2024-36934
bna: ensure the copied buf is NUL terminated
Published 2024-05-30 · Analyzed
7.8EPSS 0.003
CVE-2024-27017
netfilter: nft_set_pipapo: walk over current view on netlink dump
Published 2024-05-01 · Modified
7.8EPSS 0.003
CVE-2024-35886
ipv6: Fix infinite recursion in fib6_dump_done().
Published 2024-05-19 · Modified
7.8EPSS 0.003
CVE-2024-26988
init/main.c: Fix potential static_command_line memory overflow
Published 2024-05-01 · Modified
7.8EPSS 0.003
CVE-2024-26928
smb: client: fix potential UAF in cifs_debug_files_proc_show()
Published 2024-04-28 · Analyzed
7.8EPSS 0.003
CVE-2024-26981
nilfs2: fix OOB in nilfs_set_de_type
Published 2024-05-01 · Modified
7.8EPSS 0.003
CVE-2024-27012
netfilter: nf_tables: restore set elements when delete set fails
Published 2024-05-01 · Modified
7.8EPSS 0.003
CVE-2024-27022
fork: defer linking file vma until vma is fully initialized
Published 2024-05-01 · Modified
7.8EPSS 0.003
CVE-2024-35867
smb: client: fix potential UAF in cifs_stats_proc_show()
Published 2024-05-19 · Modified
7.8EPSS 0.003
CVE-2024-26925
netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path
Published 2024-04-24 · Modified
7.8EPSS 0.003
CVE-2024-27394
tcp: Fix Use-After-Free in tcp_ao_connect_init
Published 2024-05-09 · Modified
7.8EPSS 0.003
CVE-2024-35910
tcp: properly terminate timers for kernel sockets
Published 2024-05-19 · Modified
7.8EPSS 0.003
CVE-2024-35950
drm/client: Fully protect modes[] with dev->mode_config.mutex
Published 2024-05-20 · Modified
7.8EPSS 0.003
CVE-2024-35958
net: ena: Fix incorrect descriptor free behavior
Published 2024-05-20 · Modified
7.8EPSS 0.003
CVE-2024-26654
ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs
Published 2024-04-01 · Modified
7.8EPSS 0.003
CVE-2024-36020
i40e: fix vf may be used uninitialized in this function warning
Published 2024-05-30 · Modified
7.8EPSS 0.003
CVE-2024-35897
netfilter: nf_tables: discard table flag update with pending basechain deletion
Published 2024-05-19 · Modified
7.8EPSS 0.003
CVE-2024-35813
mmc: core: Avoid negative index with array access
Published 2024-05-17 · Modified
7.8EPSS 0.002
CVE-2024-36914
drm/amd/display: Skip on writeback when it's not applicable
Published 2024-05-30 · Modified
7.8EPSS 0.002
CVE-2024-36880
Bluetooth: qca: add missing firmware sanity checks
Published 2024-05-30 · Modified
7.8EPSS 0.002
CVE-2024-36940
pinctrl: core: delete incorrect free in pinctrl_enable()
Published 2024-05-30 · Modified
7.8EPSS 0.002
CVE-2024-35951
drm/panfrost: Fix the error path in panfrost_mmu_map_fault_addr()
Published 2024-05-20 · Modified
7.8EPSS 0.002
CVE-2024-35847
irqchip/gic-v3-its: Prevent double free on error
Published 2024-05-17 · Modified
7.8EPSS 0.002
← Prev2 / 9Next →